Elektrine lite

← Feed

Anderson Nascimento

andersonc0d3@infosec.exchange

<p>Director and Security Researcher <span class="h-card" translate="no"><a href="https://infosec.exchange/@alleleintel" class="u-url mention">@<span>alleleintel</span></a></span><br />Blog: <a href="https://blog.andersonc0d3.io" target="_blank" rel="nofollow noopener" translate="no"><span class="invisible">https://</span><span class="">blog.andersonc0d3.io</span><span class="invisible"></span></a></p>

Posts

  • View post

    RE: https://infosec.exchange/@andersonc0d3/117325659239046952 I shared this because it was with this article series that I learned about LLC (CCX) as a NUMA domain on AMD processors. I have finally found the time and incentive to learn more about modern processors and systems. There are many acronyms and details that I didn&#39;t know about. In fact, I came across that term/feature in an official tuning guide from AMD for Red Hat Enterprise Linux, and when searching about it, I bumped into the...

  • View post

    AMD EPYC Rome Application Performance on vSphere Series: Part 1 – SQL Server 2019 https://blogs.vmware.com/cloud-foundation/2020/04/23/amd-epyc-rome-application-performance-on-vsphere-series-part-1-sql-server-2019/ AMD 2nd Gen EPYC (Rome) Application Performance on vSphere Series: Part 2 – VMmark https://blogs.vmware.com/cloud-foundation/2020/05/27/app-perf-vmware-vsphere-amd-epyc-rome/

  • View post

    AT_SECURE programs may load attacker-controlled code via $ORIGIN AT_SECURE program buffer overflow via $ORIGIN processing https://sourceware.org/pipermail/libc-announce/2026/000064.html

  • View post

    RE: https://infosec.exchange/@andersonc0d3/117293431452812266 Registration is officially open for our September 2027 Introduction to Linux Kernel Exploitation training. We are capping this at 10 students. There are only 4 Super Early Bird seats available. If you have any questions, just contact me! Introduction to Linux Kernel Exploitation – September 2027 https://allelesecurity.com/introduction-to-linux-kernel-exploitation-september-2027/

  • View post

    I&#39;ll be offering an Introduction to Linux Kernel Exploitation training in English, to be held online next year (likely September). This will be a whole-month training, totaling 48 hours split across 12 sessions. We will have live classes with me, and the sessions will be recorded and provided to students within 24 hours for those who can&#39;t join live. The classes will happen on Monday, Wednesday, and Thursday from 07:00 PM to 11:00 PM (GMT-3), meaning 4 hours of class per day. The traini...

  • View post

    We can&#39;t even do a simple ret anymore. x86/bugs: Make Safe-RET robust against interrupt injection https://github.com/torvalds/linux/commit/7e7f81cf6f5ca3311e526308f55d7c54d3ba71f9

  • View post

    amd64: do not allow to set reserved bits in MXCSR for ptrace(PT_SETFPREGS) https://github.com/freebsd/freebsd-src/commit/cef05c5a62ba63eda222eed083972bfaa1449ac2

  • View post

    Initial discussion of what became the perf subsystem in the Linux kernel. [patch 0/3] [Announcement] Performance Counters for Linux https://lore.kernel.org/all/20081204225345.654705757@linutronix.de/

  • View post

    Release 2.47 of the GNU Binutils is now available https://inbox.sourceware.org/binutils/87o6fty5pz.fsf@redhat.com/

  • View post

    CoreFreq https://github.com/cyring/CoreFreq

  • View post

    RE: https://infosec.exchange/@andersonc0d3/116574727959286021 Playing with canaries Looking at SSP over several architectures. https://www.elttam.com/blog/playing-with-canaries

  • View post

    RE: https://infosec.exchange/@andersonc0d3/116980936217755939 This was fixed after I reported a way to bypass pointer guard (PTR_MANGLE) in glibc. I had known about and taught the technique in my binary exploitation classes for a few years (since ~2020/2021), but I wasn&#39;t sure whether the glibc team was aware of it. After the report, a developer mentioned several related issues and started working on the fixes. Besides the technique I reported, I didn&#39;t know about the others — I don&#3...

  • View post

    Claude referenced an exploitation technique by the name of the researcher who wrote a public paper about it. The thing is that I had used the technique a few years before that work appeared. I didn&#39;t discover it, though. A co-worker shared it with me at the time, and he had learned it from a public work. It was there in a public work, but just a few people seem to have noticed it. That&#39;s not a problem, and today I am totally fine with it. I believe this is part of becoming mature intell...

  • View post

    The GNU C Library version 2.44 is now available https://sourceware.org/pipermail/libc-alpha/2026-July/179159.html

  • View post

    This commit fixed a recent vulnerability in the FreeBSD kernel. procdesc: Disallow pddupfd() of non-passable files https://github.com/freebsd/freebsd-src/commit/91e11c8f2b38eb1d1f3a1d57b27378fb2c6ab3c1

  • View post

    Turing Award Winner: TPUs vs GPUs vs CPUs, Computer Architecture, RISC vs CISC | David Patterson https://www.developing.dev/p/turing-award-winner-tpu-vs-gpu-vs

  • View post

    Dnsmasq DNS Remote Heap Buffer Overflow https://blog.exodusintel.com/2026/07/20/dnsmasq-dns-remote-heap-buffer-overflow/

  • View post

    RE: https://infosec.exchange/@andersonc0d3/116903287835170560 The fixes in the quoted post are a great example of LLM-assisted development. One issue was fixed, and Sashiko automatically noticed that another component had the same issue. This has likely happened several times in Linux kernel history. I remember one case I posted about years ago — it took 301 days for the fix in the other component to land upstream. In this era of LLM-assisted development, the similar issue was spotted in jus...

  • View post

    I used FreeBSD Boot Environment (BE) for the first time and it&#39;s awesome! It allows me to build a kernel and world (userspace), switch to them and in case of failure, revert everything back with just a command. Check out the articles below for more information about it. Managing Boot Environments https://klarasystems.com/articles/managing-boot-environments/ FreeBSD Boot Environments on ZFS https://srobb.net/fbsdbe.html ZFS Boot Environment Introduction https://wiki.freebsd.org/unitrunker...

  • View post

    Second server that I am having issues with the fan. The first one wasn&#39;t under warranty and I didn&#39;t have support from the vendor to fix it. I ended up damaging it when trying to understand what was going on and how to fix it. This one now is new and it&#39;s already the third fan with issues. In the first two occurrences with this server, the vendor sent me new fans. I am intrigued that two different servers ended up having the same issues. The consequence of the issue is that the fan...

  • View post

    perf/x86/amd/brs: Fix kernel address leakage https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=47915e855fb38b42133e31ba917d99565f862154 perf/x86/amd/lbr: Fix kernel address leakage https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=2a892294b83f541115c94b0bb637f39bef187657

  • View post

    Debugging with CHERI CHERI is designed to improve the security of both existing and future software. https://freebsdfoundation.org/our-work/journal/browser-based-edition/improving-software-quality/debugging-with-cheri-2/

  • View post

    FreeBSD has added the pdopenpid() system call. It is the FreeBSD equivalent of pidfd_open() on Linux. kern: add pdopenpid(2) https://github.com/freebsd/freebsd-src/commit/5c32aa785184bb1e646b0b4c73d3c5fd9a6b8951 pdfork.2: document pdopenpid(2) https://github.com/freebsd/freebsd-src/commit/3e8b68c26e2b108dac96517ef8fd26fe7dce5bcd sys: add pdopenpid(2) https://reviews.freebsd.org/D57124

  • View post

    vm.overcommit_memory=2 is always the right setting for servers https://ariadne.space/2025/12/16/vmovercommitmemory-is-always-the-right.html vm.max_map_count growing steadily when vm.overcommit_memory is 2 #1328 https://github.com/jemalloc/jemalloc/issues/1328

  • View post

    Red Hat is working on a capability for virtual machine guests (tenants) to provide their own firmware (UEFI). This is interesting for measured boot (attestation), implementing per-guest features/configurations, and various other use cases. It&#39;s known as Bring Your Own Firmware (BYOF). Introducing FUKI, guest firmware in a UKI for confidential cloud deployments (2025) https://archive.fosdem.org/2025/schedule/event/fosdem-2025-4661-introducing-fuki-guest-firmware-in-a-uki-for-confidential-cl...

  • View post

    Linux kernel is adding support for a new mechanism to validate lock usage during compile-time. It depends on a new Clang feature called Thread Safety Analysis. &amp;quot;Implement compiler-driven static analysis locking context checking, using the upcoming Clang 22 compiler&amp;#39;s context analysis features.&amp;quot; https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=0923fd0419a1a2c8846e15deacac11b619e996d9 Documentation/dev-tools/context-analysis.rst https://git...