Posts
3454
Following
716
Followers
1580
"I'm interested in all kinds of astronomy."
repeated
Edited 3 hours ago

New challenge. I did repair this today at work.

Please hide your deductions and guesses behind a CW to not spoil it for others. Googling is fair game.

Please don't just write a single word as answer, instead describe your observations and deductions so we all can learn about electronics.

If you are familiar with this kind of device, try to figure out the specific make and model instead of just saying something like 'Audio amplifier'.
Solution will be posted on Monday.

3
1
0
repeated

This should be obvious for everyone by now, but if you're not from US you must assume that all your use of US AI services (#ChatGPT, , etc) is fed directly to US intelligence services.

"We may share your Personal Data, including information about your interaction with our Services, with government authorities ... in compliance with the law (i)" (OpenAI)

"We may disclose personal data to governmental regulatory authorities as required by law" (Claude)

"We will share personal information outside of Google ... to: Respond to any applicable law, regulation, legal process, or enforceable governmental request" (Gemini)

The amount of valuable information fed to the systems voluntarily is staggering. It's not a matter of "if" it is happening, but "of course it is". It would be outright negligent if they weren’t capturing and disseminating it all.

https://en.wikipedia.org/wiki/Foreign_Intelligence_Surveillance_Act#Without_a_court_order

1
7
0
repeated

"Never have, never will." Promise, shmomise.

This is some bullshit, Mozilla.

https://github.com/mozilla/bedrock/commit/d459addab846d8144b61939b7f4310eb80c5470e#diff-a24e74e4595fa85440a2f4e7e5dcfe68aba6e1e593aef05a2d35581a91423847

And the explanation is bullshit, too, and sounds rather annoyed at having to explain to us silly users that *of course* you have to "share some data with our partners".

https://blog.mozilla.org/en/firefox/update-on-terms-of-use/

0
3
0
repeated

A very good use of Gorton.

4
5
1
repeated

*long drag on cigarette* Kid, this is Mastodon. We're all the algorithm here. You. Me. Everybody. Now get out there and boost somebody's bullshit.

1
10
0
@tmr232

"- Didn't you have ads in the 20th century?

- Well, sure, but not in our commit messages. Only on TV and radio. And in magazines and movies and at ball games, on buses and milk cartons and T-shirts and bananas and written on the sky. But not in commit messages. No, sir-ee!"
0
0
1
repeated
repeated

Team member @sigabrt was able to bypass Apache FOP Postscript escaping to reach GhostScript engine.

https://offsec.almond.consulting/bypassing-apache-fop-escaping-to-reach-ghostscript.html

0
2
0
repeated

In case anyone was still under the assumption that US Big Tech and the Trump regime aren't one and the same:

The US has ordered its diplomats to lobby against EU attempts to regulate US tech companies 🚨

We need ethical open alternatives.

https://www.reuters.com/sustainability/boards-policy-regulation/us-orders-diplomats-fight-data-sovereignty-initiatives-2026-02-25/

3
7
0
[RSS] From DDS Packets to Robot Shells: Two RCEs in Unitree Robots (CVE-2026-27509 & CVE-2026-27510)

https://boschko.ca/unitree-go2-rce/
0
2
1
repeated

Michael Kohl 🇦🇹🇹🇭

Edited yesterday

A tale in 3 pictures. In which our hero wonders if he can and doesn't stop to ask if he should.

4
24
1
[RSS] Building a Custom Architecture and Platform: Part 2

https://binary.ninja/2026/02/26/quark-platform-part-2.html

#BinaryNinja
0
0
1
[RSS] Buy A Help Desk, Bundle A Remote Access Solution? (SolarWinds Web Help Desk Pre-Auth RCE Chain

https://labs.watchtowr.com/buy-a-help-desk-bundle-a-remote-access-solution-solarwinds-web-help-desk-pre-auth-rce-chain-s/
0
1
1
[RSS] Intego X9: Why your macOS antivirus should not trust PIDs

http://blog.quarkslab.com/intego_lpe_macos_2.html
0
1
3
repeated

Updated breach: Attackers have released another 1M records from Dutch telco Odido, adding 371k more unique email addresses to the breach. The data is consistent with the first dump, with further releases threatened. More: https://haveibeenpwned.com/Breach/Odido

0
5
0
repeated

My final blog related to admin protection is up. https://projectzero.google/2026/02/gphfh-deep-dive.html I go into a bit of history of the interesting GetProcessHandleFromHwnd API, how it ended up allow you to bypass protected process restrictions and how it's now "fixed".

0
7
0
Former General Manager [L3Harris Trenchant] Sentenced to 87 Months for Selling Stolen [0day] to Russian Broker

https://www.justice.gov/opa/pr/former-general-manager-us-defense-contractor-sentenced-87-months-selling-stolen-trade
0
1
1
repeated

PSA: The Amazon wishlist doxing threat is much greater and more immediate than folks might realize. Attack works like this:

Stalker who wants your address opens an Amazon seller account and lists themselves as a third party seller for any item on your public wishlist. Then, they order the item from themselves as a gift for you. Bam, they have your address.

In particular, attack does not depend on an existing third party seller having poor PII handling hygiene, like the articles have implied.

15
35
1
Show older