Alex Matrosov
@matrosov.bsky.social
240 followers 98 following 1 posts
Posts Media Videos Starter Packs
matrosov.bsky.social
This research demonstrates how easily full persistence can be achieved on Supermicro BMC, allowing complete takeover of the server.

- CVE-2025-7937: bypassed “fix” for CVE-2024-10237.
- CVE-2025-6198: Supermicro RoT bypass.

www.binarly.io/blog/broken-...
Reposted by Alex Matrosov
Reposted by Alex Matrosov
Reposted by Alex Matrosov
sentinelone.com
In case you missed it from #LABScon24: BINARLY’s @matrosov.bsky.social and @pagabuc.bsky.social reveal their research into a firmware supply-chain security issue that affected major device vendors and hundreds of models, PKfail.

📺 Watch the full video: s1.ai/PKfail