Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Mathias Payer

@gannimo@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

1358 Followers
279 Following
24 Posts
Joined November 07, 2022
Homepage:
https://nebelwelt.net
Group:
https://hexhive.epfl.ch
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago

🎉 I'm excited to share that I've been appointed to Full Professor, effective today: https://ethrat.ch/en/appointments-march-26/

Looking back, this milestone would not have been possible without the incredible group of students, collaborators, and colleagues I had the pleasure of working with over the past 20 years of research. I'm also grateful for all the collaborators, letter writers, mentors, supporters, and whoever helped and supported us on the way.

The HexHive group has grown into a vibrant group focusing on software and systems security 🔐. Together we have secured over CHF 12M in funding 💰 for the group (including the prestigious ERC Starting Grant and ERC Advanced Grant), published close to 200 papers 📄, with 26 papers at USENIX Security, 13 at Oakland, 12 at NDSS, and 11 at CCS.

But the achievements I value most are not the distinguished paper awards, open source prototypes, or grants. I'm most proud of the people who spent time in my lab. Out of those, I especially cherish the 16 PhD students who have graduated and are now carrying forward the spirit of the HexHive lab: inclusive, collaborative research in software and system security, working together on security challenges that matter.

ethrat.ch
42
12
11
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago

What's the state of digital sovereignty for our academic landscape?

Inspired by a similar post looking at digital sovereignty of municipalities, I explored what messaging infrastructure universities rely on. Sadly, many have switched to hyper scalars but few large universities keep running their own email infrastructure. Germany, Austria, France does not look too bad and lead by example.

[Note that the assessment is based on a simple MX records comparison against a list of known scalars, I don't yet check SPF records or guesstimate the SMTP software/version, this may be done in a future version.]

Check out the interactive map: https://nebelwelt.net/gannimo/unimx/

nebelwelt.net

University Email Sovereignty Map

20
9
14
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago

RE: @aristot73@infosec.exchange

LLM bug finding vs fuzzing: LLMs explore a different part of the bug space, my guess is that we'll see a similar curve as with fuzzing where new bugs get more expensive to find with the key difference that we can hit new capabilities to find different types of bug patterns resulting in a saw function than just a sigmoid. Fun times ahead, especially for researchers looking into defense!

infosec.exchange
12
2
5
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago

From "What the Fuzz?" to "All The Fuzz!" (Keynote fuzzing workshop @ NDSS'26)

Reflections on the three phases of fuzzing: from origins of fuzzing to the greybox fuzzing, ending with how fuzzing will continue evolving in the future.
Comments welcome!

https://youtu.be/In3kRAVVbzQ?si=lNTX6ebFu_rvRZbf&t=548

8
0
2
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 4mo ago

Have you ever wondered what is running on your Android phone? As it turns out, it's not just the apps that you install but there are also so called "trusted applications" that handle your sensitive data like passwords, fingerprints, or keys.

We have developed a high-level rehosting approach that enables security researchers to thoroughly test these applications and found 17 0-days that were responsibly disclosed and are now fixed. This work was presented at this week's IEEE Symposium on Security and Privacy, one of the top-4 security conferences.
https://nebelwelt.net/blog/2026/0521-taemu.html

nebelwelt.net
6
0
1
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago

LLMs are automating not just coding, but vulnerability discovery and exploitation. At scale, this shifts the economics of offensive security: lower skill barriers, faster iteration, and massively increased attack surface coverage.

As exploitation becomes cheap and ubiquitous, how can we leverage this for defense?

https://nebelwelt.net/blog/2026/0420-AIpocalypse.html

nebelwelt.net
8
2
4
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 4mo ago

For ACM CCS we are organizing a doctoral symposium. The goal is to enable PhD students to discuss their research agenda and get feedback from mentors across varying sub areas.
The submission deadline is July 30 and accepted students will receive a generous travel grant. So please apply and share with your colleagues!
https://www.sigsac.org/ccs/CCS2026/call-for/call-for-doctoral-symposium.html

sigsac.org
6
0
8
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago

It was my honor to give a keynote at the FUZZING workshop at #NDSSSymposium today. Under the title From "What The Fuzz?" to "All The Fuzz!", I discussed how fuzzing evolved over time from its origins as random mutation testing over the greybox revolution to fuzzing niches. The key takeaways are that fuzzing matured as a field, coverage-guided feedback was key to its success, and the future is customizing fuzzing to niches where the next breakthroughs will be contextual and semantic.

The slides are available at https://nebelwelt.net/files/26FUZZING-presentation.pdf

Happy to hear any feedback!

infosec.exchange
12
1
4
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago

Outlook is a bane for humanity, even in space 🤣,🚀
https://www.tomshardware.com/software/microsoft-office/artemis-ii-astronaut-finds-two-outlook-instances-running-on-computers-call-on-houston-to-fix-microsoft-anomaly-puzzled-caller-describes-two-outlooks-and-neither-one-of-those-are-working

tomshardware.com
7
0
1
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago

It was a pleasure to present Sysphuzz at #NDSSSymposium this year. Our key intuition is that focusing in under-fuzzed areas allows us to discover new bugs even in extensively fuzzed code. We applied this intuition to the Linux kernel by boosting basic blocks that were rarely hit even after years of fuzzing.

The blog post is at: https://nebelwelt.net/blog/2026/0226-sysyphuzz.html

infosec.exchange
8
0
2
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 4mo ago

Good bye San Francisco, it was a pleasure!

The last few days I spent at the IEEE Symposium on Security and Privacy (Oakland) to catch up with friends, learn about the latest research in security and to support Philipp in presenting our latest research work TÄMU --- high-level rehosting of trusted applications on the Android platform. Check out the short blog for a few more details:
https://nebelwelt.net/blog/2026/0521-oakland.html

nebelwelt.net
3
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago

On my way ✈️ to San Diego for @ndsssymposium@bird.makeup to catch up on the latest security trends. I'm excited to present our paper Sysyphuzz on focusing energy on under explored areas in the kernel and to give a keynote at the fuzzing workshop on Friday. Let me know if you're around for a chat or, ideally, for a morning run! 🌅🏄🏃

7
0
1
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago

Has anyone checked out the new Frame.Work Laptop 13 Pro? I'm especially interested in power management given that I hate the most recent Lenovo X1 as the keyboard is annoying, it no longer has the trackpoint, it only support s2idle, and in general battery runtime is abysmal. [I.e., would not recommend Lenovo anymore]

https://frame.work/ch/en/laptop13pro

frame.work
4
2
1
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago

Subscription bombing is a (re-)emerging threat vector where attackers flood your inbox with thousands of unwanted messages. This is not just nuisance but attackers often leverage subscription bombing to hide their true goals such as support scams or account takeovers. Even worse, subscription bombing has become a service. We analyzed 24 subscription bombing attack campaigns to reflect and provide insights.

Check out our CACM article for details: https://cacm.acm.org/practice/subscription-bombing-email-under-attack/

cacm.acm.org
3
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago

While I'm a bug fan of second factor authentication for high risk environments, it also comes at a cost due to additional friction.

Can someone explain to me while the EU for the Horizon portal had to create a new dedicated 2FA app that maximises friction? I log into this portal once every 1.5 years. This means I'll likely have to go through the 2FA recovery process every single time.

3
3
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago
Replying to
@freddy I wasn't involved in the decision making but support the no-LLM-based on honor principle. Most teams were strongly in favor as slopping takes a lot of the fun out of CTFs. There's a difference between online and onsite though as policing is next to impossible. And the situation evolves, so we'll have to see where this whole movement goes.
2
3
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 5mo ago
Replying to
@rene_mobile@infosec.exchange this annoying s2idle only seems to be a thing now. Apparently Windows support is better. But generally when I turn my laptop off, I want it to be off and not wake up every 5min and burn through my battery. Not sure who came up with that idea.
1
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago
Replying to
@ricci thank you! this would not be possible with lots of support --- and amazing collaborators
1
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 8mo ago

Getting to MPI is quite a challenge. Bus - Train - Flight - Skytrain - S Bahn - Bus (Schienenersatzverkehrsautobus) - Train - Underground. I spent over 2hrs for the final 40km. If I were just named Kipchoge 🏃😅

1
2
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago
Replying to
@stefan Switzerland is not part of eID
0
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 6mo ago
Replying to
@ligasser most servers stopped advertising the software name, would have to start parsing SPF and potentially connect to IMAP as well
0
5
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 7mo ago
Replying to
@kleisli @epfl vielen Dank! Bin schon länger hier ;)
0
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 8mo ago
Replying to
@mkskeller Dagstuhl is always hard to reach. I heard RUB is only bad when DB fails. Which seems to start to approximate always 😅
0
0
0
0
Open post
Mathias Payer @gannimo@infosec.exchange
· 3w ago
Are you worried about trackers like Apple's FindMy devices stalking you? You may want to check out PrivacyShield, our anti-tracking framework that helps relay these beacons (published at SEC'26) https://nebelwelt.net/blog/2026/0915-privacyshield.html
nebelwelt.net

PrivacyShield: Privacy-aware Tracking Protection

Trackers like Apple

0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 03:19:47 UTC