Ulf Frisk
@UlfFrisk
IT-Security Minion | http://github.com/ufrisk | https://discord.gg/pcileech | DMA | PCILeech | MemProcFS
The PCILeech and MemProcFS projects have a Discord server! Join today at discord.gg/pcileech !

This is what you need to listen to @DairyatGuelph your narrative is not science it's opinion, driven by the the lust for cobtrol of Bill Gates who is buying up farmland ...who stands to gain?
Some new techniques of code injection in Hyper-V guest VM in compare with Pcileech by @UlfFrisk and Hyper-V Virtual machine plugin for MemProcFS? It will be interesting, I suppose. x.com/gerhart_x/stat…
We’re proud to have Andrei Lutas, Senior Team Lead at Bitdefender, presenting live at REcon 2025 in Montreal. 🎤 Andrei will introduce HyperVinject—a powerful new tool that enables code injection into a running Hyper-V VM (Child Partition) directly from the Root Partition, along…
NetworkMiner 3.0 Released! 🔐 QUIC 🏭 CIP (EtherNet/IP) 🏭 UMAS (over Mobdus) 👾 Remcos RAT 🔍 Improved OS fingerprinting 🐧 Better Linux integration netresec.com/?b=254caa9
I’ve posted a detailed explanation of why the claimed ESP32 Bluetooth chip “backdoor” is not a backdoor. It’s just a poor security practice which is found in other Bluetooth chips by vendors like Broadcom, Cypress, and Texas Instruments too. darkmentor.com/blog/esp32_non…
🔷 A backdoor in the ESP32 chip would allow it to infect millions of devices. Miguel Tarascó and @antonvblanco have revealed this at the @rootedcon this backdoor and presented a tool to perform Bluetooth security audits on any gadget. tarlogic.com/news/backdoor-…
github.com/google/securit… Our newest research project is finally public! We can load malicious microcode on Zen1-Zen4 CPUs!
I captured the entire "Planetary Parade" using my 11" telescope, and combined everything into one composite photo that stayed true to the angular scale of these objects. Made entirely with real photos, I hope this composite helps illustrate the scale of these things!
🎉 In just one week (January 30 & 31), we will hold our first “Defeating Microsoft’s Default BitLocker Implementation” training session of 2025 in Zurich! Dive into the training program featured at Black Hat USA 2023 & 2024 and explore hardware hacking while learning how to break…
I'm from Berlin. Afghanistan gets better tech than Europeans now. It's not a joke. It's the result of 30 years of suffocating regulation. And now, the EU's new AI Act is about to make it 10x worse. Here's the tragic story of how the EU is killing our tech future 🧵:
Updated PCILeech/MemProcFS to support Intel macs as well. Previously only Apple silicon macs were supported.
PCILeech PCIe DMA attacks and MemProcFS memory forensics now runs on macOS analyzing Windows memory! MemProcFS 5.14 and PCILeech 4.19 just released! github.com/ufrisk/MemProc… github.com/ufrisk/pcileech
PCILeech PCIe DMA attacks and MemProcFS memory forensics now runs on macOS analyzing Windows memory! MemProcFS 5.14 and PCILeech 4.19 just released! github.com/ufrisk/MemProc… github.com/ufrisk/pcileech




Updated version of Hyper-V Virtual Machine plugin for MemProcFS by @UlfFrisk: bit.ly/3BwYLUZ
We’ve now scheduled our next Network Forensics for Incident Response training 📅 Dates: May 12-15, 2025 🕑 Duration: Four half-days 🌐 Type: Live Online Network Forensics Training 💵 Price: € 960 EUR netresec.com/?page=Training
Part 5 of @j00ru's Windows Registry Adventure is out! googleprojectzero.blogspot.com/2024/12/the-wi… Incredible depth of knowledge on display, and good to see it shared as a reference with the world ❤️
If you like Windows internals + x86_64 follow: @sixtyvividtails @ivanrouzanov @C5pider @mrexodia @yarden_shafir @chompie1337 @timmisiak @Intel80x86 @_winterknife_ @horsicq @d_olex @UlfFrisk @aall86 @zodiacon @standa_t @0vercl0k @PetrBenes @zwclose @rwfpl @TheEnergyStory
🆕 Check out our latest publication on DMA attacks via SD cards! 💾 The article was written by our researcher Gesser. ➡️ swarm.ptsecurity.com/new-dog-old-tr…
Dr. Mitloehner also said: Methane emitted by livestock is part of the biogenic carbon cycle, a natural process. And: Livestock numbers remain stable and have done so since the PRE-EUROPEAN SETTLEMENT! So, how can livestock add to climate change?
Bovaer is being added to BEEF and MILK because it is thought to prevent climate change. This is based on woke science. The truth is, it might harm your health in many ways. I’ll explain.
Improvements to MemProcFS forensic file recovery in 5.12.6. More data is now recovered, with correct file sizes, and with file signing info! MemProcFS super fast memory forensics and analysis: github.com/ufrisk/MemProc…
