@theevilbiti
iAccount based inHungary
About this account
- Account based in
- Hungary
- Connected via
- Hungary App Store
Account-level information from X, not a live location or the device used for a specific post.
macOS Security -- Trail running 🏃 -- Mountains ⛰ -- Tolkien fan For mountain pictures, go to: https://nitter.cf/t.co/Xf7KDW5fKu
Hungary
Joined April 2010
- Tweets14.9K
- Following1.1K
- Followers8.7K
- Likes19.1K
Pinned Tweet
Our next macOS Vulnerability Researcher trainings with @gergely_kalman will be:
📆 2026-10-12 - 15: Self-organized, 4 (!!!!) day training (Budapest, Hungary)
📆 2026-11-15 - 17: Objective by the Sea v9 (Hawaii, USA)
More info here:
macosvuln.training/
People often ask how do I find bugs. I always tell them I learn how things work, and bugs follow.
I spent the last month deep diving into the inner bits of GateKeeper and all the related technologies.
It's MASSIVE! I still feel I'm scratching the surface however bugs starting to fall out...
People afraid of AI finding all the bugs. Honestly me too... It can certainly find single-component well described issues really well.
But when it comes to multi layered, multi component spaghetti like interconnections and dependencies... well that is where your human 🧠 can shine.
But it does require you to understand and oversee the whole system. It's not easy, but it was never meant to be.
🍎🐛 Found my second Notarization/GateKeeper bug. I can get something stamped and then modify contents and still accepted by the system. 🙈
Remember: Everything that was notarized was checked for malware by Apple... unless you can modify content as you wish. 🤷♂️
So apparently according to Apple:
MITMing an encrypted communication to a service on the LAN and sniffing clear text password is... fine.
"We’re unable to identify a security issue in your report."
🤷♂️
Csaba Fitzl retweeted
Join my short introductory workshop to Apple fs logic bugs during #Hacktivity2026
hacktivity.wixsite.com/so/04…
As I was writing Day 4 content about a sandbox escape vulnerability, I added a whole section about GateKeeper internals as well.
Interested in finding that 100k$ GK bypass vulnerability? Join our training and understand the basics so you know how to get started!
Only in Budapest this year.
Our next training with @gergely_kalman will be in Budapest between the 12th and 15th of October. This is our only training in Europe for this year, and this is the only time we will teach the 4 day version of the training.
If you are looking getting into Apple vuln research then this is Your training. Although we don't do iOS here, many of the concepts we teach are applicable there as well.
macosvuln.training/
Csaba Fitzl retweeted
Please don't install - it's trivial to turn Muse into the ultimate backdoor 💀👀
Ya, as an AI assistant built to manage your Mac, Muse needs broad access to your digital life.
But serious 0-day flaw(s) can let local malware/attackers invisibly hijack it.
Let me show you. 🧵
Csaba Fitzl retweeted
A new species of cat has been identified for the first time in a century—and experts think that there may be even more to discover around the world: on.natgeo.com/n5nxra
Csaba Fitzl retweeted
We made it possible for Santa to stop the pid_suspend call against a client. SIGKILL and SIGSTOP still left as an exercise for the reader because legitimate updaters still use these.
Longer form explainer here northpole.security/blog/edr-…
Thanks for calling this out @patrickwardle
Reminder: 🍎-security tools subscribing to ES AUTH_* events must respond before an ES deadline (~15s) or the kernel kills them ...& they stay ☠️
Privileged attacker? SIGSTOP the tool ...⏳💥😂
Mitigation (per @PeteMarkowsky) subscribe to/block signals!
docs.google.com/presentation…
Csaba Fitzl retweeted
Endpoint Security arrives in the iPhone kernelcache as a kext. (iOS 27.2 beta)
+ com.apple.iokit.EndpointSecuritySE
+ /usr/lib/libEndpointSecurity.dylib
"An Endpoint Security product on the system denied the process from executing."
ES on iOS? 👀
🍏 Fresh LPE in macOS: Repair Permissions - Get Root!
CVE-2026-43783 found by our researcher Ilya Andr (@andrd3v) has been recently fixed by Apple. A single XPC request to DesktopServicesHelper lets you chown any path on disk - straight to root.
👇👇👇
ptswarm.com/blog/cve-2026-43…
Csaba Fitzl retweeted
We are officially sold out!
We are absolutely blown away by your support and cannot wait to see everyone at macsysadmin.se. #msa2026
😈 Dirty little tricks make beautiful exploits.
AI is a huge help in my research, however I find that it can't help with finding small tricks which moves something from impossible to exploit to trivial.
Csaba Fitzl retweeted
I am just crying 😆
youtube.com/watch?v=gGlpBuW6…
A bird? A plane? NO! It's Binary Ninja 6.0, codename "Krypton". Major new stable with massive performance improvements, built-in MCP, Binary Similarity, Extension Manager, TMS320C6x, New User Wizard, and so much more: binary.ninja/2026/09/03/bina…
Part of Recon 2026 video have been released recon.cx/2027/en/index.html on our youtube channel youtube.com/@reconmtl we are still waiting for confirmation from our speakers to release the rest.
Csaba Fitzl retweeted
Did you know macOS binaries can run on iOS? It needs rewriting architecture information and adjusting library paths. I automated this, including DYLD shared cache library extraction and replacement, allowing many macOS command line tools to run on iOS.
github.com/mowisec/macos-to-…
Our next training with @gergely_kalman will be in Budapest between the 12th and 15th of October. This is our only training in Europe for this year, and this is the only time we will teach the 4 day version of the training.
If you are looking getting into Apple vuln research then this is Your training. Although we don't do iOS here, many of the concepts we teach are applicable there as well.
macosvuln.training/
I normally don't run on roads, maybe once a week, but only for short sections. I can happily run 100k on trails, but doing more than 10k on roads is not for me.
Except if it's for a good cause!
Me and some of my trainee partners at the mountain leader training decided to do a donation campaign, and we would like to collect 1500$ to donate it to a children hospital foundation in Hungary. For that, we will run a half-marathon as a group. If anyone is willing to support here is the link, unfortunately this is a Hungarian website, but hopefully browser translator can help. Any small amount is appreciated 🙏
orzok.hu/termek/egyutt-a-kis…