Rusted_Anchors.pdf
4.5 MB
#Research
"Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem", CCS'2021.
"Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem", CCS'2021.
Beacon.pdf
2.5 MB
#Research
"BEACON: Directed Grey-Box Fuzzing with Provable Path Pruning", S&P, 2022.
]-> Code:
https://hub.docker.com/r/yguoaz/beacon
t.iss.one/Library_Sec
"BEACON: Directed Grey-Box Fuzzing with Provable Path Pruning", S&P, 2022.
]-> Code:
https://hub.docker.com/r/yguoaz/beacon
t.iss.one/Library_Sec
Modern_Pentest_Report_2021.pdf
4.6 MB
The ROI of Modern Pentesting 2021:
Does your pentesting program bring enough value?
t.iss.one/Library_Sec
Does your pentesting program bring enough value?
t.iss.one/Library_Sec
NIST_SP_800_40r4.pdf
494.3 KB
#Infosec_Standards
NIST SP 800-40 Rev.4:
"Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology", November 2021.
t.iss.one/Library_Sec
NIST SP 800-40 Rev.4:
"Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology", November 2021.
t.iss.one/Library_Sec
nist_sp1800_31.pdf
7.2 MB
#Infosec_Standards
NIST SP 1800-31 (Draft):
"Improving Enterprise Patching for General IT Systems: Utilizing Existing Tools and Performing Processes in Better Ways", November 2021.
t.iss.one/Library_Sec
NIST SP 1800-31 (Draft):
"Improving Enterprise Patching for General IT Systems: Utilizing Existing Tools and Performing Processes in Better Ways", November 2021.
t.iss.one/Library_Sec
blacksmith.pdf
1.4 MB
#Research
"BLACKSMITH: Scalable Rowhammering in the Frequency Domain", 2022.
]-> Blacksmith Revives Rowhamer:
https://comsec.ethz.ch/research/dram/blacksmith
"BLACKSMITH: Scalable Rowhammering in the Frequency Domain", 2022.
]-> Blacksmith Revives Rowhamer:
https://comsec.ethz.ch/research/dram/blacksmith