fosstodon.org is one of the many independent Mastodon servers you can use to participate in the fediverse.
Fosstodon is an invite only Mastodon instance that is open to those who are interested in technology; particularly free & open source software. If you wish to join, contact us for an invite.

Administered by:

Server stats:

10K
active users

#Quack

0 posts0 participants0 posts today

Two weeks ago, I watched 𝘙𝘶𝘣𝘣𝘦𝘳 𝘋𝘶𝘤𝘬 𝘛𝘩𝘶𝘳𝘴𝘥𝘢𝘺𝘴 🐤—a GitHub live stream by Chris Reddington.

He showed how to turn GitHub contributions into a 3D model with the Skyline extension for the GitHub CLI. Looked cool, so I made mine for 2024… and 3D printed it! 🖨️✨

Oh, and it’s Thursday! Chris is live again at 𝟭𝟬:𝟯𝟬 𝗚𝗠𝗧 → gh.io/rubberduckthursdays 🤘

As we welcome 2025, I'd like to take a moment to reflect on what an extraordinary year 2024 has been for Brown CS Secure Systems Lab (gitlab.com/brown-ssl/). It has been a year of innovation, creativity, and growth—both for the lab and for me personally as its director. Witnessing the passion, dedication, and brilliance of our team—Neophytos Christou, Alexander Gaidis, Marius Momeu, @dijin, and Vaggelis Atlidakis—has been truly fulfilling and inspiring!

In 2024, we tackled complex challenges and made significant strides in advancing our research on software hardening and OS kernel protection. Here are some highlights from this remarkable year:

✳️ Marius Momeu presented #SafeSlab at @acm_ccs #CCS2024. Safeslab hardens the Linux SLUB allocator against exploits that abuse use-after-free (#UaF) vulnerabilities, using #Intel #MPK. (Joint work with Technical University of Munich and @mikepo.)
📄 cs.brown.edu/~vpk/papers/safes
💾 github.com/tum-itsec/safeslab

✳️ Neophytos Christou presented #Eclipse at @acm_ccs #CCS2024. Eclipse is a compiler-assisted framework that propagates artificial data dependencies onto sensitive data, preventing the CPU from using attacker-controlled input during speculative execution.
📄 cs.brown.edu/~vpk/papers/eclip
💾 gitlab.com/brown-ssl/eclipse

✳️ Di Jin presented #BeeBox at the @usenixassociation Security Symposium 2024. BeeBox hardens #Linux BPF/eBPF against transient execution attacks. #usesec24
📄 cs.brown.edu/~vpk/papers/beebo
💾 gitlab.com/brown-ssl/beebox

✳️ Yaniv David presented #Quack at the NDSS Symposium 2024. Quack hardens PHP code against deserialization attacks using a novel (static) duck typing-based approach. (Joint work with Andreas D Kellas and Junfeng Yang.) #NDSSsymposium2024
📄 cs.brown.edu/~vpk/papers/quack
💾 github.com/columbia/quack

✳️ Marius Momeu presented #ISLAB at @ACM #ASIACCS24. ISLAB hardens SLAB-based (kernel) allocators, against memory errors, via SMAP-assisted isolation. (Joint work with Technical University of Munich and @mikepo.) #asiaccs
📄 cs.brown.edu/~vpk/papers/islab
💾 github.com/tum-itsec/islab

🏆 #EPF (presented by Di Jin at @usenixassociation #ATC 2023) was the runner-up for the "Bug of the Year" award ("Weirdest Machine" category) at IEEE Symposium on Security and Privacy LangSec (Language-Theoretic Security) workshop 2024! #atc23 #LangSec
⌨️ langsec.org/spw24/bugs-of-the-
📄 cs.brown.edu/~vpk/papers/epf.a
💾 gitlab.com/brown-ssl/epf

🏅 I am honored and delighted to have received the "Distinguished Reviewer Award" at @acm_ccs #CCS2024!

🏅Alexander Gaidis has been awarded the "Distinguished Artifact Reviewer" award at the @usenixassociation Security Symposium 2024!
cs.brown.edu/news/2024/09/20/b
#usesec24 #proudadvisor

📢 I had the great pleasure of discussing some of these works recently at the Computer Systems Seminar at Boston University!
📽️ bu.edu/rhcollab/events/bu-syst

#brownssl #browncs 🚀

GitLabBrown Secure Systems Lab · GitLabhttps://brown-ssl.slack.com

#WorkoutOfTheDay

Adjusted workout, due to heat (when the sweat pours down even before you star.t..)

Warmup:
* 10 Downward Dog to Cobra
* 10 Inchworms

3 rounds
* 30" Good Morning to Squats
* 30" Wall Taps
* 30" Duck Walks (#quack!)
* 30" Rest

* 10 Slow Air Squats
* 10 Med Ball Squats
* 10 Wall Balls
* 10 Deadlifts

4 rounds of 5 reps deadlifts, to build up weight on the bar

#workout: ".com"
#EMOM 20'

(RX / Intermediate / Beginner)

First minute:
* 2 Wall Walks / 2 Wall Walks / 2 Inchworms + push-ups
* 4 Deadlifts (93/125) (70/102) (30/43)
* Max Wall Balls (14/20) (10/14) (6/10)

Second minute
* Rest

Scaled it to
* 2 Scaled Wall Walks + 2 Push-Ups
* 4 Deadlifts at 70kg
* 8 / 10 / 8 / 12 / 10 / 8 / 11 / 9 / 10 / 11 Wall Balls with an 11lbs medball

I went to the local nursery this morning because I ran out of the planting soil in the middle of a planting session! Of course one would never walk out of a nursery with just a bag of soil. I got some organic fertilizer, a plant and a little packet of duck food that they were giving away. Look at this cute drawing… artists rock. Totally.
#MastoArt #birb #quack