RSSAmplifier

Blog

HardenedVault - Building Your Own Cyber Bunker

Recent content on HardenedVault - Building Your Own Cyber Bunker

hardenedvault.netRSS feed ↗51 posts

Latest posts

Beyond Cat-and-Mouse: From 2021 (a13xp0p0v) to 2026 (Singularity) — Exploitation Stage Is the Only Real Frontier

Beyond Cat-and-Mouse: From 2021 (a13xp0p0v) to 2026 (Singularity) — Exploitation Stage Is the Only Real Frontier Singularity is currently one of the most highly engineered rootkits.

VED 2026: after CFI - data only

after CFI - data only The exploitation techniques and mitigation has been evolving rapidly since the paper “Smash the Stack for Fun and Profit” released in Phrack Issue 49.

HOWTO: build ATF (Trusted Firmware ARM) and OPTEE for RK3588

HOWTO: build ATF (Trusted Firmware ARM) and OPTEE for RK3588 To better implement the protection of digital assets in embedded systems, we have chosen the RK3588 as the prototype platform.

OpenBMC Remote OS Deployment: A Simplified Approach

OpenBMC Remote OS Deployment: A Simplified Approach Many BMC implementations can accept a disk image and present it as a read-only USB mass storage device inserted into the host machine, allowing the host machine to boot from this “disk” for remote installation of the operating system or maintenance tasks.

SimpleX low-level protocol analysis

Background The SimpleX Chat Protocol is utilized by SimpleX Chat clients for message exchange.

A Survey of deterministic approach RFC6979 for open source implementations: Mbed-TLS, GnuTLS and OpenSSL

Background The original implementation of DSA-type signature algorithms (including ECDSA) requires a random number that belongs to the same type of mathematical object as the private key (an element of GF(p), where p is a prime number).

Project Cascais

SLUBStick risk assessment for embedded systems

SLUBStick risk assessment for embedded systems The Linux kernel is susceptible to memory safety vulnerabilities due to its size and complexity.

NBD: A Powerful Tool for data center

NBD: A Powerful Tool for data center NBD, the abbreviation for Network Block Device (protocol), is a protocol that was initially implemented in the Linux kernel version 2.

Demystifying SFTP

Introduction SFTP is an auxiliary protocol of SSH that allows file transfer between two hosts over the SSH protocol.

HardenedVault released a hardened version of Ubuntu 24.04 LTS to enhancing various fields such as smart factory and crypto custody

Hardened Linux Canonical released Ubuntu 24.04 LTS, bringing comprehensive upgrades to the free and open-source software components recently.

xz/liblzma Backdoor: Open Source Nuke? Maybe Not That Bad!

xz/liblzma Backdoor: Open Source Nuke? Maybe Not That Bad! Story Background On March 29, 2024, a report exposing a backdoor in the upstream source code of the controversial open-source project, the xz software package, was made public on the oss-security mailing list.

Supermicro x11ssh-F OpenBMC Porting (WIP)

Supermicro x11ssh-F OpenBMC Porting (WIP) Introduction to BMC and OpenBMC BMC, short for Baseboard Management Controller, is a specialized microcontroller embedded in certain computers, typically servers.

Key management of OpenPGP Card

Key management of OpenPGP Card Background As blank smartcards supporting Java Card 3.

Protect the Watcher: Hardened SIEM/XDR server with VED

Background Modern cybersecurity operation centers significantly depend on two key elements: agent-based security solutions operating on desktops, laptops, and server operating systems, and a threat analysis system, often referred to as a Security Information and Event Management (SIEM) system or eXtended Detection and Response (XDR).

Announcing VED-eBPF: A Proof-of-Concept Implementation of Kernel Exploit and Rootkit Detection using eBPF

We are thrilled to introduce VED-eBPF, an innovative proof-of-concept implementation that showcases the power of eBPF (extended Berkeley Packet Filter) technology in enabling robust kernel security monitoring and exploit detection for Linux systems.

Secure Your Assets with HardenedVault’s security-enhanced Linux Built on AWS

Hardened Linux AWS has established multiple regions and availability zones worldwide, strictly adhering to security regulations and standards in each region, providing global deployment solutions to enterprises.

Vault Range - The Measure and Resilience of Weaponized Exploit Methods for Linux

Disclaimer VED (Vault Exploit Defense) test image contains only the VED kernel module, and does not contain any security baselines, access control policies and situational hardening solution.

+PROTECTING LINUX AT KERNEL LEVEL WHY AND HOW

Introduction We designed Vault Exploits Defense (VED) as a foundation security layer for various flavors of Linux operating system.

Memory corruption in JCRE: An unpatchable HSM may swallow your private key

Background The key has always been a core target of security protection.

Avoiding Single-Point-of-Failure and securing the Root Infrastructure: TCG TPM 2.0

What is TCG TPM 2.0? Trusted Computing Group (TCG) Trusted Platform Module (TPM) 2.

Demystifiying SMPC (Secure multi-party computation) and its threat model

Prologue SMPC is an interesting topic, whose the applications include systematic security and cryptographic engineering, and this article will discuss its principles, threat models and use-case.

The exploit recon 'msg_msg' and its mitigation in VED

Why msg_msg? The size of structure is control by userspace Firstly, the length of the msg_msg struct can be indirectly controlled from userspace, which means that msg can overlap the cache of the specified types.

The below-OS for supply chain of critical infrastructure protection

Background The endless cyber “war” in the levels of OS

What can we learn from leaked Insyde's BIOS for Intel Alder Lake

Leaked story timeline According to the timestamp of the github repository, an unidentified user uploaded the Insyde’s partial firmware solution (4.

The magic about how modern OS boot

Linux kernel Under x86/amd64 architecture, Linux kernel is usually packed into bzImage format, which contains a partially-filled data structure for boot parameter, and multiple entry points of stages for 16-bit real mode, 32-bit protected mode, and 64-bit long mode if built for amd64, the last stage is a self-decompressing flat binary, which will decompress and execute the gzip-compressed kernel…

Technical analysis of syzkaller based fuzzers: It's not about VaultFuzzer!

0. VaultFuzzer S0rry, VaultFuzzer is not the main player today. We’re going have little ride with Harbian-QA and GREBE today.

Next Generation Data Center Security: The Cornerstone of Web3?

0. Next generation data center What is the next generation data center?

VaultBoot: Attestation as a Service

VaultBoot In the highest level of security profile (CRITICAL), the Vault 111 hardware node enables multi-trust anchors through the chip security features.

VED (Vault Exploit Defense): Open source implementation

VED - Linux kernel threat detection and prevention system LKM version of VED goes public finally.

VaultBoot

VED (Vault Exploit Defense) & SIEM/XDR integration

Tetragon: case study of security product's self-protection

Story background CTO of cloud-native security company Isovalent announced that their eBPF-based Security Observability and Runtime Enforcement solution Tetragon ( WayBackMachine 20220516 ) become open source after years of development in May 16 2022.

Exploiting CVE-2021-26708 (Linux kernel) with sshd

Kernel vulnerability CVE-2021-26708 Alexander Popov has published an article Four Bytes of Power: Exploiting CVE-2021-26708 in the Linux kernel which use a four-byte overwrite vulnerability to do privilege escalation.

Intel SGX deprecation review

The rumors about Intel SGX deprecated in new processors has been confirmed, 12th generation processors (Workstation/Desktop/Laptop/embedded platforms) will deprecate SGX and the SGX will continue to support only in high-end Xeon CPU for server:

Risk analysis of Log4Shell (CVE-2021-44228) and mitigation

Risk analysis of Log4Shell (CVE-2021-44228) and mitigation Log4Shell is a high impact exploitable bug in Java logging framework logj4.

VaultBoot: Next-Gen Firmware Security Solution

Background Firmware is a special type of software, mainly used for the control and communication of the underlying hardware.

VaultFuzzer: A state-based approach for Linux kernel

Background Since the beginning of computer software development, software quality has become an inevitable issue in the field of software testing.

VED (Vault Exploit Defense): A threat detection and prevention system

Background In the beginning of the hacker's era, a long-term battle for control of the “CORE” in memory has been waged since Aleph One published the paper Smashing The Stack For Fun And Profit on Phrack Issue 49 in 1996.

What every CISO and security engineer should know about Intel CSME

Background The majority of infosec community are trying to ignore the risks below the OS in past decades but it’s impossible to bury all of them at low cost today.

VaultHSM report: The way to confirm whether the Smart Card (J3H145) supports RFC-6979 ECDSA implementation

Background The original implementation of DSA-type signature algorithm (including ECDSA) needs a random number which belongs to the same mathematical object of the private key (an element of GF(p), in which p is a prime number).

Public crypto audit report: lurch/OMEMO

lurch/OMEMO Security Assessment Crypto is a neutral technology just like the natural existence (“For he makes his sun rise on the evil and on the good, and sends rain on the just and on the unjust.

Vault1317 protocol: a modern approach for metadata protection with deniability

vault1317/signal-dakez: An authenticated key exchange protocol with a public key concealing and a participation deniability designed for secure messaging Richard B.

Hello Vault* world!

About Us

Contact Us

Why you should contact us! The strength of the security defender’s spirit would then be measured by how much ’truth’ he/she could tolerate.

Frequently Asked Questions

How it Works

Our Team

Security as a Service - ATP (Advanced Threat Protection)