SentinelLabs Logo RGB WhitePurp
ABOUT
CVE DATABASE
CONTACT
VISIT SENTINELONE.COM

Assaf Carlsbad

Assaf Carlsbad is a security researcher and a member of the Innovation team at SentinelOne. Previously, he spent nearly six years at Unit 8200, where he took part in various R&D projects. His current interests include reverse engineering, Windows kernel security and digging into UEFI firmwares.
Another Brick In The Wall Uncovering SMM Vulnerabilities In HP Firmware 1
labs
Security Research

Another Brick in the Wall: Uncovering SMM Vulnerabilities in HP Firmware

Assaf Carlsbad / March 10, 2022

How we used Brick to discover six different vulnerabilities affecting HP laptops' firmware

Read More
Zen And The Art Of SMM Bug Hunting 5
labs
Security Research

Zen and the Art of SMM Bug Hunting | Finding, Mitigating and Detecting UEFI Vulnerabilities

Assaf Carlsbad / March 3, 2022

In Part 5 of our ongoing series on UEFI security research, we dive into the fascinating world of hunting and exploiting SMM vulnerabilities.

Read More
Adventures From UEFI Land  The Hunt For The S3 Boot Script 1
labs
Security Research

Adventures From UEFI Land: the Hunt For the S3 Boot Script

Assaf Carlsbad / April 8, 2021

In Part 4 of our UEFI Internals and Exploitation series, we abandon VMs and dive into UEFI on a physical machine. The quest: recovery of the S3 Boot Script.

Read More
Moving From Dynamic Emulation Of UEFI Modules To Coverage Guided Fuzzing Of UEFI Firmware 1
labs
Security Research

Moving From Dynamic Emulation of UEFI Modules To Coverage-Guided Fuzzing of UEFI Firmware

Assaf Carlsbad / November 2, 2020

In Part 3 of our series on emulating, debugging and fuzzing UEFI modules, we provide a step-by-step guide to making a coverage-guided fuzzer for UEFI code.

Read More
Moving From Manual RE Of UEFI Modules To Coverage Guided Fuzzing Of UEFI Firmware 3
labs
Security Research

Moving From Manual Reverse Engineering of UEFI Modules To Dynamic Emulation of UEFI Firmware

Assaf Carlsbad / October 8, 2020

Learn how to emulate, trace, debug, and Reverse Engineer UEFI modules in part 2 of our new blog series on Firmware Security

Read More
Moving From Common Sense Knowledge About UEFI To Actually Dumping UEFI Firmware 6
labs
Security Research

Moving From Common-Sense Knowledge About UEFI To Actually Dumping UEFI Firmware

Assaf Carlsbad / August 5, 2020

The first in a series of posts for researchers on how to emulate, debug and fuzz UEFI modules, we begin with a refresher on how to dump SPI flash memory.

Read More
sentinelone

SKREAM Reloaded: Randomizing Kernel Pool Allocations

From the Front Lines | 10 minute read
Read More >
sentinelone

SKREAM: Kernel-Mode Exploits Mitigations For the Rest of Us

From the Front Lines | 8 minute read
Read More >
sentinelone

Deep Hooks: Monitoring native execution in WoW64 applications – Part 3

From the Front Lines | 13 minute read
Read More >
sentinelone

Deep Hooks: Monitoring native execution in WoW64 applications – Part 2

From the Front Lines | 12 minute read
Read More >
Previous
1 2
Next

SentinelLabs

In the era of interconnectivity, when markets, geographies, and jurisdictions merge in the melting pot of the digital domain, the perils of the threat ecosystem become unparalleled. Crimeware families achieve an unparalleled level of technical sophistication, APT groups are competing in fully-fledged cyber warfare, while once decentralized and scattered threat actors are forming adamant alliances of operating as elite corporate espionage teams.

Recent Posts

  • FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network
    FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network
    May 8, 2025
  • Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries
    Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries
    April 28, 2025
  • AkiraBot | AI-Powered Bot Bypasses CAPTCHAs, Spams Websites At Scale
    AkiraBot | AI-Powered Bot Bypasses CAPTCHAs, Spams Websites At Scale
    April 9, 2025

Sign Up

Get notified when we post new content.

Thanks! Keep an eye out for new content!

  • Twitter
  • LinkedIn
©2025 SentinelOne, All Rights Reserved.