Xeno Kovah
xenokovah.bsky.social
Xeno Kovah
@xenokovah.bsky.social
Interested in reverse engineering, firmware, bluetooth, trusted computing, and training. Founder of OpenSecurityTraining2 https://ost2.fyi
As VUSec is one of the places that found some of the early "named/logo bugs" for microarchitectural attacks, I liked that they had an emulation cabinet with a "LOGO INVADERS" design on it :)
November 24, 2025 at 1:19 AM
And I got to meet #OST2 instructor Sina Karvandi (of HyperDbg fame -> ost2.fyi/Dbg3301) in person for the first time, as he's doing a PhD there.
November 24, 2025 at 1:19 AM
(And I promise I learned my lesson that next time I teach the in-person workshop I will make sure to upgrade the BTIDALPOOL server to a paid-tier AWS VM instead of the free-tier one, so that it can handle everyone hitting it at once ;))
November 23, 2025 at 11:50 PM
Someday I will go back and find out if my logic capabilities have improved yet or not (but I suspect not.) So I’ve always been keenly aware of how easy it is to spoof logic with just memorization…
November 11, 2025 at 11:31 AM
This is it for now, but make sure to check out the other talks on the timeline, and LMK if there’s stuff missing (there most likely will be due to my long time between updates)
November 10, 2025 at 11:28 AM
A misc observation: Beyond the recent 3x “we can interpose on RAM and break confidential compute TEEs” (Wiretap, BatteringRAM, and TEE.fail), I also noticed a pattern of researchers finding more signed UEFI shell problems (so I added a new tag for it)
November 10, 2025 at 11:28 AM
2025-10-29
"TEE.fail: Breaking Trusted Execution Environments via DDR5 Memory Bus Interposition"
By Jalen Chuang et al.
Added at darkmentor.com/timeline.htm...
Low Level PC/Server Attack & Defense Timeline — By @XenoKovah of @DarkMentorLLC
darkmentor.com
November 10, 2025 at 11:28 AM
2025-10-17
"Missing Mitigations: Inside The Security Gap in UEFI Firmware"
By Binarly
Added at darkmentor.com/timeline.htm...
Low Level PC/Server Attack & Defense Timeline — By @XenoKovah of @DarkMentorLLC
darkmentor.com
November 10, 2025 at 11:28 AM
2025-10-14
"BombShell: The Signed Backdoor Hiding in Plain Sight on Framework Devices"
By Paul Asadoorian
Added at darkmentor.com/timeline.htm...
Low Level PC/Server Attack & Defense Timeline — By @XenoKovah of @DarkMentorLLC
darkmentor.com
November 10, 2025 at 11:28 AM
2025-10-01
"WireTap: Breaking Server SGX via DRAM Bus Interposition"
By Alex Seto et al.
Added at darkmentor.com/timeline.htm...
Low Level PC/Server Attack & Defense Timeline — By @XenoKovah of @DarkMentorLLC
darkmentor.com
November 10, 2025 at 11:28 AM
2025-09-30
"Battering RAM: Low-Cost Interposer Attacks on Confidential Computing"
By Jesse De Meulemeester et al.
Added at darkmentor.com/timeline.htm...
Low Level PC/Server Attack & Defense Timeline — By @XenoKovah of @DarkMentorLLC
darkmentor.com
November 10, 2025 at 11:28 AM