Live data from Hacker News

Viewing profile — umanghere

umanghere

HN member
Joined
Mon, Dec 14, 2020, 4:40 AM UTC
HN karma
212
Public activity
27 items

About umanghere

Security researcher, focusing on XNU/iOS.

[ my public key: https://keybase.io/ur0; my proof: https://keybase.io/ur0/sigs/S1l8JjJ16lrWTHTtMb5zPmXXziBr7851mPVxtmbyWnU ]

https://twitter.com/umanghere

Recent public activity

  1. comment
    Comment #49166037

    They did recently add the iCloud@Work compartment (right before I left), and it seemed like an OK compromise and kosher policy-wise.

  2. comment
    Comment #49003203

    This is bizarre. I used to work in offensive security, doing a lot of vulnerability research and exploit development. Given the nature of the work and the fact that our products we…

  3. comment
    Comment #48158126

    I completely encourage you to write this as a blog post, you’ve articulated all of the concerns I had with Go’s package management wonderfully.

  4. comment
    Comment #47150211

    Fascinating article, and I am surprised how well peer pressure works on LLMs. Somewhat tangential though, but I find the amount of perl clutching from the AI industry about writing…

  5. story
  6. comment
    Comment #47040906

    I started reverse engineering at 13 with an IDA Pro of questionable provenance - at that time, I found it quite difficult. One thing which really helped me (and I wholeheartedly re…

  7. comment
    Comment #46625214

    https://umangis.me Not a lot of content, but enough to be of some interest to a few niches.

  8. comment
    Comment #40960132

    > 4) Hacking is Cool Pardon my French, but this is the dumbest thing I have read all week. You simply cannot work on defensive techniques without understanding offensive techniques…

  9. comment
    Comment #37340023

    I don’t mean to sound argumentative, but that’s a knee jerk response. It’s possible to reverse engineer the OS code to verify that the biometrics indeed end up on the SEP’s encrypt…

  10. comment
    Comment #37153506

    In my opinion, a better submission title would be: Open Source distributions for macOS 13.5 have been released. The current title is a bit misleading, because several parts of macO…

  11. comment
    Comment #36081144

    https://archive.is/Kxdeh

  12. comment
    Comment #35852714

    It took forever to get the document off SFTC’s website, so I mirrored it behind CloudFront for everyone’s convenience. https://blog.umangis.me/static/08539708.pdf

  13. story
  14. story
  15. comment
    Comment #31651186

    Unfortunately it can’t be done even if you target an M1 iPad — virtualization is locked behind an entitlement that’s not publicly available on iOS.

  16. comment
    Comment #31108626

    Just allowing kexts to be loaded should not increase the attack surface or expose the author to any currently known exploits. The reason that people avoid doing it anyways is becau…

  17. comment
    Comment #30263837

    There are publicly available SecureROM dumps online, see http://securerom.fun The author(s) maintain the site out of personal interest.

  18. comment
    Comment #28491642

    __padding replied to you, but unfortunately their comment is dead because of their account being new, so I’ve reposted it as I cannot vouch yet. > __padding 45 minutes ago [dead] […

  19. comment
    Comment #27287991

    iPhones do not use the A1 chip as of quite a few years ago. Besides, the M1 and the A12+ have significant microarchitectural similarities, to the point that the DTK used the A12Z. …

  20. comment
    Comment #27287683

    While Marcan has written in a very entertaining fashion, there is perhaps one application of this vulnerability that wasn't considered. If this can be reproduced on the iPhone, it …

  21. story
  22. comment
    Comment #25901207

    They (Facebook) have done this before too. I recall that they bought full-page ads in all major newspapers to promote their "Free Basics" initiative. There are also other examples,…

  23. comment
    Comment #25745978

    You can still pull the database from an iOS backup on your Mac or created from `idevicebackup2`. The file is named `1b6b187a1b60b9ae8b720c79e2c67f472bab09c0`, `275ee4a160b7a7d60825…

  24. comment
    Comment #25558841

    On macOS, these executables can be signed with a detached signature. Surprisingly, the embedded codesignature also works (but the signature is stored in an extended attribute on th…

  25. comment
    Comment #25469126

    Speaking from experience, that's not necessarily true. EU countries accept equivalent experience in lieu of academic qualifications. Assuming that you are offered a position that p…