Sign in

lukas seidel

@pr0me.bsky.social
417 followers 209 following 54 posts

Firmware Security • Embedded Systems • AI x Infosec • Researcher @binarly • PhD Candidate @TUBerlin • Capturing Flags with ENOFLAG

PostsRepliesMedia
lukas seidel @pr0me.bsky.social · 13/05/2025
personal achievement: [h-index 5 unlocked]
060
Reposted by lukas seidel
Daniel Klischies @dklischies.bsky.social · 11/05/2025
📢 Excited to announce that the results on BaseBridge, our project on improving cellular baseband emulation, are going public this week. Dyon will present at IEEE S&P on Monday 3pm, while David and I will be on stage at @offensivecon.bsky.social on Saturday 11am with even more details! 1/6
1147
lukas seidel @pr0me.bsky.social · 09/05/2025
recently, the google scholar feed I used to explore new work in my fields of interest was removed. so I built my own paper discovery website: a minimalistic design with high information density and full control over search terms.
2110
lukas seidel @pr0me.bsky.social · 05/05/2025
okay deepwiki is pretty sweet. just replace 'github' with 'deepwiki' in a repo's url and it will generate an architecture overview, explanations for components, flow diagrams etc. I tried it on large code bases like afl++ and libafl and it's actually impressive
050
lukas seidel @pr0me.bsky.social · 28/04/2025
new CCS workshop on decompilation, reversing, root cause analysis, debugging, etc. 👀
030
lukas seidel @pr0me.bsky.social · 23/04/2025
the guy who reversed the denuvo drm @momo5502.bsky.social works on a high-perf windows emulator for security research. I noticed that it supports icicle as a backend, a fuzzing-specific emulator. awesome to see academic work being continuously developed and making it into the real world
263
lukas seidel @pr0me.bsky.social · 23/04/2025
I thought USENIX was huge with like 300 accepted papers and 6 speaker tracks in parallel. but man these ml conferences look kinda dystopian
060
lukas seidel @pr0me.bsky.social · 13/04/2025
the recording of my talk "Rethinking Emulation for Fu(zzi)n(g) and Profit: Near-Native Rehosting for Embedded ARM Firmware" is online! I had an absolute blast speaking and being at @re-verse.io, so many great talks and hallway discussions
062
lukas seidel @pr0me.bsky.social · 10/04/2025
more exciting stuff coming to libAFL @aflplusplus.bsky.social , including a binary-only ASan implementation in Rust for QEMU and integration with the unicorn emulator! reminds me of how @dmnk.bsky.social and I got the unicornafl rust bindings up and running to fuzz some basebands 5 years ago
0103
lukas seidel @pr0me.bsky.social · 02/04/2025
some convenient features coming to binja, incl. auto-classification of embedded devices based on peripheral accesses making firmware hacking maybe a little less painful cc @stacksmashing.bsky.social
041
lukas seidel @pr0me.bsky.social · 21/03/2025
3.7 is both in api and in cursor just utterly disappointing. when it does what it's supposed to, it's great, but man is it trying hard to misinterpret my intentions.
000
lukas seidel @pr0me.bsky.social · 20/03/2025
beautiful and incredibly interesting talk on reverse engineering the OG xbox by @ret2systems.bsky.social's Markus, incl. building a custom interposer to upgrade the CPU a deep dive into hardware hacking, an ode to hw engineering and a call for software-focused researchers to try new things
031
lukas seidel @pr0me.bsky.social · 12/03/2025
libAFL is a beast. it has so many settings to tweak, different modes to select and the code can be quite scary at first. but writing a target-specific custom fuzzer is super powerful! to get started, Trail of Bits just published a nice primer: appsec.guide/docs/fuzzing...
appsec.guide
LibAFL
LibAFL # The LibAFL fuzzer implements features from AFL-based fuzzers like AFL++. Similarly to AFL++, LibAFL provides better fuzzing performance and more advanced features over libFuzzer. However, wit...
071
lukas seidel @pr0me.bsky.social · 12/03/2025
my google scholar's 'recommended articles' feed has been empty for weeks. where is, it I miss it :/ anyone any recommendation for an alternative? some tunable feed of recent papers?
010
lukas seidel @pr0me.bsky.social · 03/03/2025
I had a blast speaking and being at the RE//verse conference! so many cool people and great discussions on firmware, fuzzing, ai and binary analysis if you want to find out more about firmware rehosting or are an enjoyer of ascii diagrams, check out the slides to my talk below :)
183
lukas seidel @pr0me.bsky.social · 27/02/2025
today was blessed. had a super fun day at Kennedy Space Center. and then I got to witness my first rocket launch in person, a falcon 9 bringing Intuitive Machine's lunar lander into orbit. my space-nerd heart is so happy.
030
lukas seidel @pr0me.bsky.social · 24/02/2025
excellent blog post on garbage collectors: "Memory Hell" it addresses many of humanity's great questions: - do we actually know how to do garbage collection? - pointers, indices or handlers? - and what are typesafe use-after-frees?
051
Reposted by lukas seidel
Zion Leonahenahe Basque @mahal0z.bsky.social · 29/01/2025
2024 was a significant year for decompilation, constituting a possible resurgence in the field. Major talks, the thirty-year anniversary of research, movements in AI, and an all-time high for top publications in decompilation. Join me for a retrospective: mahaloz.re/dec-progr...
mahaloz.re
Decompiling 2024: A Year of Resurgance in Decompilation Research
The year 2024 was a resurgant year for decompilation. Academic publications from that year made up nearly 30% of all top publications ever made in decompilat...
0229
Reposted by lukas seidel
RE//verse @re-verse.io · 28/01/2025
Rehost embedded ARM firmware at near-native speeds! Lukas Seidel @pr0me.bsky.social introduces SAFIREFUZZ, achieving 690x fuzzing throughput with ARM Cortex-M firmware. Dive into instruction rewriting, emulation, and performance gains. re-verse.sessionize.com/session/784… #REverse2025
042
lukas seidel @pr0me.bsky.social · 17/01/2025
"IoT Firmware Emulation and Its Security Application in Fuzzing" is a great read to get started with rehosting firmware it provides a taxonomy of nearly all the available approaches and discusses the most important concepts, such as peripheral modeling and fidelity trade-offs
162
Reposted by lukas seidel
Konrad Rieck 🌈 @rieck.mlsec.org · 09/01/2025
Hooked on computer security, adversarial learning, or even both? 🤩 The BIFOLD Graduate School has 10 open PhD positions! Join us in vibrant Berlin to work with top-notch researchers on machine learning, data management, and, of course, security! 🔗 mlsec.org/jobs.html#jobs
053
Reposted by lukas seidel
msm0.bsky.social @msm0.bsky.social · 30/12/2024
RULECOMPILE - Undocumented Ghidra decompiler rule language. A blog post about how frustration with poor decompilation led me to dive deep into Ghidra's decompiler to discover (and reverse-engineer) - an obscure, undocumented DSL msm.lt/re/ghidra/ru... #reverseengineering #ghidra
A image that shows a piece of code. On top there is an expression (param_1 & 1) * 2 + (param_1 ^ 1). On the bottom is a deobfuscated version, param_1 + 1. In the middle there is a custom Ghidra DSL, explained in the post.
0149
lukas seidel @pr0me.bsky.social · 01/01/2025
happy new year 🎉 to continue the tradition, here is some of my favorite firmware & embedded security research of 2024: Defeating the new Raspberry Pi's RP2350 Security Features [1] Reversing and Hacking Firmware of an in-orbit Satellite to Re-establish Lost Communication [2]
2106
Reposted by lukas seidel
Adrian Herrera @adrianherrera.bsky.social · 30/12/2024
2024 is almost done, so here’s a thread on my 5 favorite fuzzing papers published this year. In no particular order…🧵
162
lukas seidel @pr0me.bsky.social · 29/12/2024
recovering a satellite by creatively using existing telecommands and overwriting vtables to persistently add new commands without needing to touch (and risk breaking) the running OBC firmware. also, because that firmware didn't have an update mechanism incredible talk! media.ccc.de/v/38c3-hacki...
media.ccc.de
Hacking yourself a satellite - recovering BEESAT-1
In 2013, the satellite BEESAT-1 started returning invalid telemetry, rendering it effectively unusable. Because it is projected to remain...
060
Reposted by lukas seidel
cts @gf256.bsky.social · 25/12/2024
My videos for Flare-On 2024 are live! Watch me reverse engineer all the challenges from start to end. 🎉🥳 + Commentary video featuring SuperFashi, where we review the chals together. * 45 hours of content * 400+ GB of raw footage Merry Christmas! Link: www.youtube.com/watch?v=vwW9...
youtube.com
Flare-On 2024 Solutions and Commentary
YouTube video by BasteG0d69
04911
Reposted by lukas seidel
SentinelOne @sentinelone.com · 13/12/2024
In case you missed it from #LABScon24: BINARLY’s @matrosov.bsky.social and @pagabuc.bsky.social reveal their research into a firmware supply-chain security issue that affected major device vendors and hundreds of models, PKfail. 📺 Watch the full video: s1.ai/PKfail
183
Reposted by lukas seidel
Konrad Rieck 🌈 @rieck.mlsec.org · 13/12/2024
Is your GPU trustworthy? 🤔 Today, Julian presents our work on implanting machine learning backdoors in hardware at @acsacconf.bsky.social. Our backdoors reside within a hardware ML accelerator, manipulating models on-the-fly and invisible from outside. mlsec.org/docs/2024-ac... 1/3
Overview of our hardware-based backdoor attack.
1126
Reposted by lukas seidel
gannimo.bsky.social @gannimo.bsky.social · 11/12/2024
The yearly academic security circus concludes. Exponential growth continues with 1146 published papers (vs 947 in '23 and 93 in '05). Essentially, we published 14% of all security papers this year. Two authors cracked 100 papers and 13 published >=10 this year. Details: nebelwelt.net/pubstats/top...
073
lukas seidel @pr0me.bsky.social · 09/12/2024
one week left to submit to the SpaceSec NDSS workshop! some highlights from the first two years: A Case Study on Fuzzing Satellite Firmware [1] Merge/Space: A Security Testbed for Satellite Systems [2] Death By A Thousand COTS: Disrupting Satellite Comms using Low Earth Orbit Constellations [3]
143
lukas seidel @pr0me.bsky.social · 07/12/2024
I started curating an infosec academia starter pack: go.bsky.app/Ff3WYBA I'm sure I'm still missing a ton of people, so feel free to let me know :) if you want an infosec research focused feed without following a bunch of people, you can also just pin my corresponding list bsky.app/profile/did:...
151
lukas seidel @pr0me.bsky.social · 06/12/2024
happy to be part of a company that values open-access research and education in the security space (go binarly :D )! and OST is just an awesome project
030
Reposted by lukas seidel
Izzy Muerte @izzys.casa · 18/11/2024
Hi! I've written 22,000+ words on "Safe" C++ izzys.casa/2024/11/on-s...
izzys.casa
On "Safe" C++
ATTENTION! This post contains high amounts of both psychic damage and catharsis. Everything you learn will be done so against your will. Reader discretion is advised.
4824993
Reposted by lukas seidel
Bluesky @bsky.app · 03/12/2024
Scientists, academics, researchers: We’re excited to share that @altmetric.com is now tracking mentions of your research on Bluesky! 🧪
456294874996
lukas seidel @pr0me.bsky.social · 04/12/2024
TIL about ropes was well aware of all the problems with strings but never looked into the solution, e.g., what editors handling large files and collaborative editing use great explanation by the @zed.dev team: zed.dev/blog/zed-dec...
021
lukas seidel @pr0me.bsky.social · 02/12/2024
I really wish I could bookmark stuff on this site
000
lukas seidel @pr0me.bsky.social · 29/11/2024
this is very true. especially in fuzzing, a thorough evaluation (statistically sound and reproducible) is super important for any claims you want to make. I can highly recommend @mu00d8.bsky.social et al.'s work "Prudent Evaluation Practices for Fuzzing" if you want to avoid mistakes
130
Reposted by lukas seidel
Alex Plaskett @alexplaskett.bsky.social · 27/11/2024
ESET analyze bootkitty, a UEFI bootkit for Linux systems: www.welivesecurity.com/en/eset-rese...
welivesecurity.com
Bootkitty: Analyzing the first UEFI bootkit for Linux
ESET's discovery of the first UEFI bootkit designed for Linux sendss an important message: UEFI bootkits are no longer confined to Windows systems alone.
021
Reposted by lukas seidel
Sam Thomas @xorpse.ghost.sh · 13/11/2024
To showcase this release, I've released parascope, a tool that simplifies weggli pattern scanning by adding a ruleset language and the ability to mass-scan source code and binaries (via idalib) in parallel! github.com/xorpse/paras...
recording of a parascope scan on a directory of binaries
165
Reposted by lukas seidel
hextree.io @hextreeio.bsky.social · 25/11/2024
But we will not just cover hardware: We also created a customized bootloader + router OS, combining a lot of vulnerabilities we saw in routers, IoT and industrial/SCADA devices.
Picture of a router login page
172
lukas seidel @pr0me.bsky.social · 25/11/2024
paper read of the day: "Vulnerability Repair via Concolic Execution and Code Mutations" finally a worthwhile approach of tackling this problem. if I see another work trying to "solve" this with only an LLM I'm gonna scream rshariffdeen.com/paper/TOSEM2...
rshariffdeen.com
040
lukas seidel @pr0me.bsky.social · 24/11/2024
someone told me THIS time the exodus will work. and actually, most of the people I've been following on the other site now have accounts here. so let's hope that they also will post here
140