matthiasdeeg's profile picture. Interested in IT and likes to see whether security assumptions in soft-, firm-, or hardware hold true when taking a closer look. 📚author // http://books.deeg.xyz

Matthias Deeg

@matthiasdeeg

Interested in IT and likes to see whether security assumptions in soft-, firm-, or hardware hold true when taking a closer look. 📚author // http://books.deeg.xyz

Matthias Deeg reposted

Photos from 2025 No Hat Computer Security Conference are online! You can find them here photos.app.goo.gl/9TLiUNXYPFLzGZ…


If you have a short attention span or not much time right now, I recommend the following YouTube short demonstrating a successful brute-force attack against a vulnerable Verbatim Keypad Secure: youtube.com/shorts/wUXupV7…

matthiasdeeg's tweet card. Your security update is not secure enough // Hacking a secure USB...

youtube.com

YouTube

Your security update is not secure enough // Hacking a secure USB...


You can find the recording of my No Hat 2025 talk titled "Your Security Update is not Secure Enough" here: youtube.com/watch?v=WSJyZc… Thanks again to the whole @nohatcon team for inviting me to Bergamo.

matthiasdeeg's tweet card. No Hat 2025 - Matthias Deeg - Your Security Update is Not Secure...

youtube.com

YouTube

No Hat 2025 - Matthias Deeg - Your Security Update is Not Secure...


The video recordings of the No Hat 2025 (@nohatcon) talks are now available on YouTube: youtube.com/playlist?list=…


Matthias Deeg reposted

Another blog post about attacking the Trezor One #Bitcoin wallet with the #PicoGlitcher and #findus: mkesenheimer.github.io/blog/trezor-wa… This time, a fully locked down device is attacked via a double glitching attack.


Matthias Deeg reposted

Glitching the Trezor One crypto wallet with the #PicoGlitcher and #findus: mkesenheimer.github.io/blog/trezor-wa… It's now possible to recover lost #Bitcoin with relatively low effort.


Today, we have published two security advisories by my colleague Florian Holley concerning the IBM TS4500 Tape Library WebUI (CVE-2021-23450 and CVE-2025-36088). You can find more information in the SySS Pentest Blog: syss.de/pentest-blog/s…


Matthias Deeg reposted

Excited to contribute to the content of this year‘s @hardwear_io . Looking forward to Amsterdam! hardwear.io/netherlands-20…


I've also learned last weekend that concerning insecure encrypted USB flash drives I'm a "bug cousin" to @k8em0. And another "bug cousin" has already reached out to me after my talk via email. 😀 Insecure portable storage devices are definitely not only a thing of the past.


Matthias Deeg reposted

Before lunch at @nohatcon: @TheKenMunroShow “All at sea. Thought your OT/IT was complex? Try doing it on a cruise ship.” 🚢 + @matthiasdeeg “Your Security Update is Not Secure Enough — Hacking Portable Storage Devices Again.” 💻 #nohat2025 #cybersecurity

simo_m2001's tweet image. Before lunch at @nohatcon: @TheKenMunroShow “All at sea. Thought your OT/IT was complex? Try doing it on a cruise ship.” 🚢 + @matthiasdeeg “Your Security Update is Not Secure Enough — Hacking Portable Storage Devices Again.” 💻

#nohat2025 #cybersecurity
simo_m2001's tweet image. Before lunch at @nohatcon: @TheKenMunroShow “All at sea. Thought your OT/IT was complex? Try doing it on a cruise ship.” 🚢 + @matthiasdeeg “Your Security Update is Not Secure Enough — Hacking Portable Storage Devices Again.” 💻

#nohat2025 #cybersecurity

I‘m on my way to @nohatcon - just across the street. 😄 My first day in Bergamo was already great, and I hope that the weekend will also be an awesome experience.


Matthias Deeg reposted

The talk recording can now be found on YouTube youtube.com/watch?v=tmIoT2…

iiiikarus's tweet card. BalCCon2k25 - IKARUS - Prison Break - Kiosk Mode Environments

youtube.com

YouTube

BalCCon2k25 - IKARUS - Prison Break - Kiosk Mode Environments

I was giving a talk at @BalCC0n about breaking out of kiosk mode environments. The conference was an fantastic experience! You can find the full write-up with tips & tricks, slides, etc. here: github.com/ikarus23/kiosk…



Matthias Deeg reposted

Less than two weeks to go! Are you ready to experience some mind-blowing talks with our Technical Track? @TheKenMunroShow @gibbersen @vesnafvr Find out more nohat.it/agenda

nohatcon's tweet image. Less than two weeks to go! Are you ready to experience some mind-blowing talks with our Technical Track?

@TheKenMunroShow @gibbersen @vesnafvr 

Find out more
nohat.it/agenda

Matthias Deeg reposted

Information security may seem chaotic, but within that chaos lies opportunity, the spark of discovery that leads to groundbreaking findings. Join our Research Track to find out some incredible talks! @vesnafvr @matthiasdeeg @J_kangel @In0de_16 @yaumn_ @wil_fri3d @IgNavarro1

nohatcon's tweet image. Information security may seem chaotic, but within that chaos lies opportunity, the spark of discovery that leads to groundbreaking findings.
Join our Research Track to find out some incredible talks!

@vesnafvr @matthiasdeeg @J_kangel @In0de_16 @yaumn_ @wil_fri3d @IgNavarro1

Matthias Deeg reposted

I was giving a talk at @BalCC0n about breaking out of kiosk mode environments. The conference was an fantastic experience! You can find the full write-up with tips & tricks, slides, etc. here: github.com/ikarus23/kiosk…


Yesterday, my colleague Andreas Grasser published a tech blog article titled "Windows local privilege escalation through the bitpixie vulnerability". I can highly recommend this article to learn more about this boot vulnerability and its mitigations. blog.syss.com/posts/bitpixie/


Loading...

Something went wrong.


Something went wrong.