user avatar
Openwall
@Openwall
Infosec focused free software, research, publications, community activities @oss_security. Tweets are announcements. Please direct questions to @solardiz.
Joined June 2010
  • user avatar
    After 4.5 years and 6000+ commits, John the Ripper 1.9.0-jumbo-1 password cracker is out: openwall.com/lists/announce…
  • user avatar
    Announcing our most controversial project ever: Linux Kernel Runtime Guard is an LKM that post-detects kernel exploits openwall.com/lkrg/
  • user avatar
    Linux Kernel Runtime Guard (LKRG) now has its own website lkrg.org and Twitter account @lkrg_org. Version 0.9.2 by @Adam_pi3 et al. adds support for new Linux kernels (5.14 to 5.16-rc* and hopefully beyond). openwall.com/lists/announce…
  • user avatar
    John the Ripper 1.8.0-jumbo-1 is out after 2+ years in development: openwall.com/lists/john-use…
  • user avatar
    John the Ripper 1.9.0 core is out: openwall.com/lists/announce… Stay tuned for 1.9.0-jumbo-1, which will be "the real one".
  • user avatar
    Just published slides of @solardiz's @offensive_con keynote talk "Password cracking: past, present, future" openwall.com/lists/announce…
  • user avatar
    "yescrypt - password hashing scalable beyond bcrypt and scrypt" #PHDays talk slides by @solardiz: openwall.com/presentations/…
  • user avatar
    CVE IDs difficult and slow to obtain? Enter OVE: openwall.com/ove Problem solved?
  • user avatar
    yespower 1.0.0 - a proof-of-work (PoW) focused fork of yescrypt: openwall.com/lists/announce…
  • user avatar
    Juho Junnila's Master's Thesis "Effectiveness of Linux Rootkit Detection Tools" shows our LKRG as by far the most effective kernel rootkit detector (of those tested), even though that wasn't our primary focus: openwall.com/lists/lkrg-use… h/t @Adam_pi3
  • user avatar
    John the Ripper 1.7.9-jumbo-6 adds GPU support (CUDA & OpenCL) and A LOT more, biggest -jumbo update ever: openwall.com/1796
  • user avatar
    Our USENIX WOOT'13 slides and paper "Looking inside the (Drop) box" (Security Analysis of #Dropbox): openwall.com/presentations/…
  • user avatar
    Linux Kernel Runtime Guard (LKRG) 0.9.8 by @Adam_pi3 et al. is out, adding a remote kernel message logging capability sponsored by @binarly_io. openwall.com/lists/announce… This update is already packaged for Rocky Enterprise Linux 8.9 and 9.3 @rocky_linux. sig-security.rocky.page/packages/lkrg/
  • user avatar
    Linux Kernel Runtime Guard (LKRG) 0.6 by @Adam_pi3 adds poor man's CFI, systemd support, and much more: openwall.com/lists/announce…