Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. tfw there is a post you know you saw months ago but can't find anymore...

tfw there is a post you know you saw months ago but can't find anymore...

Scheduled Pinned Locked Moved Uncategorized
14 Posts 5 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

    tfw there is a post you know you saw months ago but can't find anymore...

    Was about someone testing the "secureboot certificate apocalypse" by setting the clock forward & I think everything was fine?

    kajer@infosec.exchangeK This user is from outside of this forum
    kajer@infosec.exchangeK This user is from outside of this forum
    kajer@infosec.exchange
    wrote last edited by
    #2

    @nyanbinary

    soon: CVE-something: setting clock ahead in bios results in TPM malfunction and unbootable PCs.

    PoC code == NTP server using UDP/123 with clock set in 3012

    nyanbinary@infosec.exchangeN ryanc@infosec.exchangeR 2 Replies Last reply
    0
    • kajer@infosec.exchangeK kajer@infosec.exchange

      @nyanbinary

      soon: CVE-something: setting clock ahead in bios results in TPM malfunction and unbootable PCs.

      PoC code == NTP server using UDP/123 with clock set in 3012

      nyanbinary@infosec.exchangeN This user is from outside of this forum
      nyanbinary@infosec.exchangeN This user is from outside of this forum
      nyanbinary@infosec.exchange
      wrote last edited by
      #3

      @kajer more like: setting clock to the past bypasses certificate expiration check, leading to complete integrity & confidentiality loss

      1 Reply Last reply
      0
      • kajer@infosec.exchangeK kajer@infosec.exchange

        @nyanbinary

        soon: CVE-something: setting clock ahead in bios results in TPM malfunction and unbootable PCs.

        PoC code == NTP server using UDP/123 with clock set in 3012

        ryanc@infosec.exchangeR This user is from outside of this forum
        ryanc@infosec.exchangeR This user is from outside of this forum
        ryanc@infosec.exchange
        wrote last edited by
        #4

        @kajer @nyanbinary are you still mad about DEFCON kids?

        kajer@infosec.exchangeK 1 Reply Last reply
        0
        • ryanc@infosec.exchangeR ryanc@infosec.exchange

          @kajer @nyanbinary are you still mad about DEFCON kids?

          kajer@infosec.exchangeK This user is from outside of this forum
          kajer@infosec.exchangeK This user is from outside of this forum
          kajer@infosec.exchange
          wrote last edited by
          #5

          @ryanc @nyanbinary

          957 0-days found!!!!

          ryanc@infosec.exchangeR nyanbinary@infosec.exchangeN 2 Replies Last reply
          0
          • kajer@infosec.exchangeK kajer@infosec.exchange

            @ryanc @nyanbinary

            957 0-days found!!!!

            ryanc@infosec.exchangeR This user is from outside of this forum
            ryanc@infosec.exchangeR This user is from outside of this forum
            ryanc@infosec.exchange
            wrote last edited by
            #6

            @kajer @nyanbinary so, yes, then

            1 Reply Last reply
            0
            • kajer@infosec.exchangeK kajer@infosec.exchange

              @ryanc @nyanbinary

              957 0-days found!!!!

              nyanbinary@infosec.exchangeN This user is from outside of this forum
              nyanbinary@infosec.exchangeN This user is from outside of this forum
              nyanbinary@infosec.exchange
              wrote last edited by
              #7

              @kajer feels like I am missing a story?

              ryanc@infosec.exchangeR 1 Reply Last reply
              0
              • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

                @kajer feels like I am missing a story?

                ryanc@infosec.exchangeR This user is from outside of this forum
                ryanc@infosec.exchangeR This user is from outside of this forum
                ryanc@infosec.exchange
                wrote last edited by
                #8

                @nyanbinary @kajer kajer once got really annoyed about someone involved in DEFCON kids referring to setting the clock on a phone to bypass timers and whatnot for mobile "games" as 0-days

                nyanbinary@infosec.exchangeN ryanc@infosec.exchangeR 2 Replies Last reply
                1
                0
                • R relay@relay.infosec.exchange shared this topic
                • ryanc@infosec.exchangeR ryanc@infosec.exchange

                  @nyanbinary @kajer kajer once got really annoyed about someone involved in DEFCON kids referring to setting the clock on a phone to bypass timers and whatnot for mobile "games" as 0-days

                  nyanbinary@infosec.exchangeN This user is from outside of this forum
                  nyanbinary@infosec.exchangeN This user is from outside of this forum
                  nyanbinary@infosec.exchange
                  wrote last edited by
                  #9

                  @ryanc @kajer ah!

                  ... I guess technically we have a 0-day if you do that, as in "a day" passing in 0 time? :3

                  ryanc@infosec.exchangeR 1 Reply Last reply
                  0
                  • ryanc@infosec.exchangeR ryanc@infosec.exchange

                    @nyanbinary @kajer kajer once got really annoyed about someone involved in DEFCON kids referring to setting the clock on a phone to bypass timers and whatnot for mobile "games" as 0-days

                    ryanc@infosec.exchangeR This user is from outside of this forum
                    ryanc@infosec.exchangeR This user is from outside of this forum
                    ryanc@infosec.exchange
                    wrote last edited by
                    #10

                    @nyanbinary @kajer he came to my gender repeal party and also we used to play and run CTFs together

                    1 Reply Last reply
                    0
                    • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

                      @ryanc @kajer ah!

                      ... I guess technically we have a 0-day if you do that, as in "a day" passing in 0 time? :3

                      ryanc@infosec.exchangeR This user is from outside of this forum
                      ryanc@infosec.exchangeR This user is from outside of this forum
                      ryanc@infosec.exchange
                      wrote last edited by
                      #11

                      @nyanbinary @kajer I highly recommend reminding kajer of this in a few weeks once he's forgotten about this exchange.

                      kajer@infosec.exchangeK 1 Reply Last reply
                      0
                      • nyanbinary@infosec.exchangeN nyanbinary@infosec.exchange

                        tfw there is a post you know you saw months ago but can't find anymore...

                        Was about someone testing the "secureboot certificate apocalypse" by setting the clock forward & I think everything was fine?

                        tomsellers@infosec.exchangeT This user is from outside of this forum
                        tomsellers@infosec.exchangeT This user is from outside of this forum
                        tomsellers@infosec.exchange
                        wrote last edited by
                        #12

                        @nyanbinary Seems like I remember @wdormann or @mjg59 saying something about this. It's been while so I apologize for @'ing either or both of you that didn't post about it.

                        mjg59@nondeterministic.computerM 1 Reply Last reply
                        0
                        • ryanc@infosec.exchangeR ryanc@infosec.exchange

                          @nyanbinary @kajer I highly recommend reminding kajer of this in a few weeks once he's forgotten about this exchange.

                          kajer@infosec.exchangeK This user is from outside of this forum
                          kajer@infosec.exchangeK This user is from outside of this forum
                          kajer@infosec.exchange
                          wrote last edited by
                          #13

                          @ryanc @nyanbinary kajer does not forget 0-day countz

                          Link Preview Image
                          1 Reply Last reply
                          0
                          • tomsellers@infosec.exchangeT tomsellers@infosec.exchange

                            @nyanbinary Seems like I remember @wdormann or @mjg59 saying something about this. It's been while so I apologize for @'ing either or both of you that didn't post about it.

                            mjg59@nondeterministic.computerM This user is from outside of this forum
                            mjg59@nondeterministic.computerM This user is from outside of this forum
                            mjg59@nondeterministic.computer
                            wrote last edited by
                            #14

                            @TomSellers @nyanbinary @wdormann https://mjg59.dreamwidth.org/72892.html should cover it

                            1 Reply Last reply
                            0
                            Reply
                            • Reply as topic
                            Log in to reply
                            • Oldest to Newest
                            • Newest to Oldest
                            • Most Votes


                            • Login

                            • Login or register to search.
                            • First post
                              Last post
                            0
                            • Categories
                            • Recent
                            • Tags
                            • Popular
                            • World
                            • Users
                            • Groups