Latest Articles
KRACKing WPA2
Cyber Threats
A new vulnerability in the WPA2 protocol was discovered by Mathy Vanhoef (researcher at KU Leuven) and published yesterday. The vulnerability - dubbed …
My Internship Experience at NVISO – by Etienne de Jambelinne
NVISO
Hello, my name is Étienne de Jamblinne.I am a second year MA student in cyber-security at the ULB. I am…
Enabling Verified boot on Raspberry Pi 3
Uncategorized
TL;DR: Verified boot is a fundamental security technology and it is important to be able to experiment with it on…
Will they melt? Testing the resistance of flash memory chips
Uncategorized
Firmware: the holy grail of most Internet of Things (IoT) security assessments! Sometimes, getting access to a device's firmware can…
Users ignore your security awareness program? Ditch it!
Uncategorized
Yes, getting staff attention for security awareness is hard. It's not that users don’t care. But everybody is fighting for…
Creating Responders in The Hive
Uncategorized
The Hive is an open source Security Incident Response Platform (SIRP) that has gained quite some popularity over the last…
Deep dive into the security of Progressive Web Apps
Web Application
In order to expand existing web applications to mobile and desktop environments, more and more web developers are creating Progressive…
IoT hacking field notes #1: Intro to glitching attacks
Uncategorized
TL;DR: First in a new series of short, IoT-related posts, this tells the story of a simple glitching attack we…
Testing Ripple20: A closer look and proof of concept script for CVE-2020-11898
Uncategorized
TL;DR: We use a proof of concept script to attack a Digi Connect ME 9210 device affected by CVE-2020-11898, part…
Why Crisis management exercises (still) work
Uncategorized
Do you know that feeling, when you think you did a great job, and suddenly you look at it with…
