Principal Engineer at Amazon. QEMU enthusiast. Enjoys working on KVM/Virtualization, Emulation, RE, Booting, Security, s390x, PowerPC, ARM. @agraf@fosstodon.org

Joined November 2018
17 Photos and videos
Alexander Graf - @agraf@fosstodon.org retweeted
6 Apr 2024
auth bypass confirmed! > INFO:paramiko.transport:Authentication (password) successful! mm_keyallowed_backdoor cmd 1 allows to override the response for mm_answer_authpassword with a custom one. if you set it to { u32(9), u8(13), u32(1), u32(0) } you can login with any pass 🤓
12
135
1,056
110,160
Alexander Graf - @agraf@fosstodon.org retweeted
Listen up, Silicon Valley… “Hardcore Engineer”
16
221
820
176,004
Alexander Graf - @agraf@fosstodon.org retweeted
Amazon EC2 now supports AMD SEV-SNP Amazon EC2 now supports AMD Secure Encrypted Virtualization-Secure Nested Paging (AMD SEV-SNP), a feature on AMD EPYC™ processors, on M6a, C6a, and R6a instance types. The availability of AMD SEV-SNP in EC2 furth... aws.amazon.com/about-aws/wha…
5
11
4,733
Alexander Graf - @agraf@fosstodon.org retweeted
Spot on by @joshuaseattle. Out of AWS, GCP and Azure, only AWS guarantees that their zones are 3 (or more) physically separate DCs. Turns out for Google, even a region isn’t physically separate! On paper both GCP and Azure have more zones & regions than AWS: but in practice…
Replying to @GergelyOrosz
TLDR: Both Google and Microsoft don't guarantee that all zones are physically separate buildings or separated by at least <x> km/miles. Many of their "zones" in smaller regions are just separate buildings by the same DC facility
12
47
266
77,402
Alexander Graf - @agraf@fosstodon.org retweeted
A process is a purposeful bottleneck. It directly limits ownership by moving decision-making from the individual, to the organization. It limits the ownership and actions of great hires, and limits the downside of poor hires. scarletink.com/creating-proc…

2
22
2,360
Alexander Graf - @agraf@fosstodon.org retweeted
If you're a software engineer, your main job is maintaining legacy code. Why? Because building a system doesn't take long, in comparison to how long code will last, assuming the code/business are successful. Here are the 10 commandments of maintaining legacy code. 🧵
24
345
1,678
242,281
Alexander Graf - @agraf@fosstodon.org retweeted
The #cfp for #kvmforum has gone out. This is a conference where you will find a lot of #qemu hackers: qemu.org/2023/03/08/kvm-foru…

2
4
576
Alexander Graf - @agraf@fosstodon.org retweeted
Wheee. QEMU 8.0 will support hosting Xen guests, but under Linux/KVM instead of actual Xen. qemu-project.gitlab.io/qemu/… We've already used it to find and fix guest kernel regressions that would otherwise have needed a full Xen setup to test and reproduce.

1
12
71
9,521
I genuinely can't even hear the difference 😅. Both pronounciations sound 100% identical to me.
ok look i didn’t have to do it… but i really wanted to 😂
3
4
Alexander Graf - @agraf@fosstodon.org retweeted
29 Nov 2022
We recently found a vulnerability affecting Hyundai and Genesis vehicles where we could remotely control the locks, engine, horn, headlights, and trunk of vehicles made after 2012. To explain how it worked and how we found it, we have @_specters_ as our mock car thief:
75
1,138
4,639
Same offer here: I have an extra bed in the Hilton Garden Inn Dublin from 11th until 15th that I'm happy to share with anyone who didn't manage to snatch one yet 😀. Please DM me if you're interested.
Replying to @paulmckrcu
And if someone now suddenly needs a hotel bed in Dublin for @linuxplumbers or has one to offer, see the "Hotel room sharing" page (editable by anyone with an account) lpc.events/event/16/contribu…
4
8
I can seriously hear it - my brain just tunes it in 🤯
If you’re over 30, you’ll be able to hear this tweet …
1
2
12
I'll be at #ew22 @embedded_world tomorrow (Wednesday). Please DM me or reply here if you're around as well and interested to meet 😎
8
Achievement unlocked: My name is up on stage @KernelRecipes #kr2022 🥳. Super happy to see the UEFI U-Boot work enabling "Just Works" style ARM SBCs 😁
3
59
Who would have thought you need to press Shift-; to get a . on AZERTY - and M is not next to N! 😆
Many thanks to @_AlexGraf who did the show while we were facing technical problem. As a side note, Mac is not friendly with video projector
8
I've read about how jammed everything is in Paris, but experiencing it myself if quite something. Almost like the highways are made of goo 😅
2
6
Russian soldiers make ~6k€ per year. Ukraine gets 500M€ from the EU for this war. Can't UA just send push messages to every Russian phone logged into UA mobile networks saying "We give you 10k€ and a new passport if you desert. Reply to this number for instructions"?
7
13
82