Posts
3877
Following
728
Followers
1597
"I'm interested in all kinds of astronomy."
@tj there should be no API for this at all!
0
0
0
repeated
Edited 11 hours ago

Can web developers stop fucking with scroll bars please? No website is so beautiful that it justifies losing the ability to see how far the page scrolls down. I don't give two shits about your design vision.

9
12
0
repeated

CARTOON/BOFFO1.GIF

0
1
0
repeated

Interesting Git repos of the week:

Detection:

* https://github.com/gadievron/honeyslop - a side bar to RAPTOR, a vulndev slop detector from @gadi 🤖
* https://github.com/Nehboro/nehboro - a Chrome extension to help protect you from phishing scams
* https://github.com/trustedsec/SysmonCommunityGuide - TrustedSec dropped guides for Sysmon
* https://github.com/JPCERTCC/LogonTracer - watch out for unexpected logins with JPCERT
* https://github.com/persistent-security/month-of-bypasses - a month of detection engineering tips and tricks
* https://github.com/sjzasada/agentflash - my old uni house mate has written a tool to keep an eye on Claude

Bugs:

* https://github.com/theori-io/copy-fail-CVE-2026-31431 - copy.fail \o/

Exploitation:

* https://github.com/CyberStrikeus/CyberStrike - sloppy pen testing 🤖
* https://github.com/SnailSploit/Claude-Red - another agentic pen tester 🤖
* https://github.com/PurpleAILAB/Decepticon - rise of the bots 🤖
* https://github.com/hackerschoice/team-teso - courtesy of @thc, an archive of TESO
* https://github.com/BishopFox/cirro - @BishopFox created Cirro to map clouds 🤖
* https://github.com/thomasdullien/vulpine - @HalvarFlake dabbles in AI bug hunting and vulndev
* https://github.com/boostsecurityio/smokedmeat - smoked meat attacks CICD pipelines for hot red team action
* https://github.com/mandiant/gopacket - Mandiant ported Impacket to Go
* https://github.com/trailofbits/trailmark - @trailofbits's Trailmark graphs code 🤖
* https://github.com/sailay1996/vss-fr2system - arbitrary reads to SYSTEM \o/
* https://github.com/asset-group/Sni5Gect-5GNR-sniffing-and-exploitation - attacking 5G for sniffs and giggles
* https://github.com/ANSSI-FR/bmc-tools - ANSSI parses your RDP screenshots
* https://github.com/BSI-Bund/RdpCacheStitcher - BSI stitches them together
* https://github.com/califio/publications - @thaidn and friends do interesting things 🤖
* https://github.com/jedireza/reserved-subdomains - what subdomains are reserved?

Hardening:

* https://github.com/sektioneins/ovpncc - One of SektionEins's various config checking tools, this onefor OpenVPN
* https://github.com/HarmonicSecurity/claudit-sec - audit your Claude Desktop posture

Cryptography:

* https://github.com/nitram2342/bruteforce-crc - crunching through CRC32

Data:

* https://github.com/op7ic/SwarmMaker - my good friend opt7ic drops a new tool to build LLM skills

Nerd:

* https://github.com/moshix/BRICKS_TS - mainframe code

, ,

1
3
0
repeated

Infosec community right now…

0
7
0
repeated

control room, Yerevan

Physics Institute, Alikhanyan National Science Laboratory, Yerevan, Armenia
In 1956, the Soviet physicist Artem Alikhanian began the development of the Armenian accelerator, known as . His aim was to construct the most powerful electron synchrotron in the world, capable of accelerating particles to nearly the speed of light around a closed loop.





1
2
0
repeated

IFIN - The Independent Federated Intelligence Network

313 Team, the Iraqi-aligned group claiming credit for the Ubuntu attack, are now encouraging the use of against Ubuntu targets while servers may not be able to reach updates.

https://discourse.ifin.network/t/ubuntu-services-under-attack/356

0
2
0
@sj chaotic alignment was lacking so I created a chart
2
74
83
repeated

Ask Jeeves, one of the first search engines, has shut down on Friday

https://www.ask.com/

1
4
0
repeated

Security firm Trellix has disclosed a security breach after hackers gained access to its source code

This highlighted section here is important since Trellix is one of Europol's closest industry partners

If this is TeamPCP, as I suspect, they might have screwed up

https://www.trellix.com/statement/

0
3
0
repeated
repeated

album of the day by a friend of mine: Malevolic, Complete Integrity Corruption.

https://malevolic.bandcamp.com/album/complete-integrity-corruption

0
1
0
This is a temp+humidity sensor pcb + 4 sensing connectors. Can you tell what the full product was (genuine Q, not a challenge) #namethatware
0
2
4
repeated
Edited 2 days ago

My first ever open source release: lib0xc, the C standard library you wish you had.

https://aka.ms/lib0xc

0
4
0
[RSS] A Shortcut to Coercion: Incomplete Patch of APT28's Zero-Day Leads to CVE-2026-32202

https://www.akamai.com/blog/security-research/2026/apr/incomplete-patch-apt28s-zero-day-cve-2026-32202
0
1
1
[RSS] Revealing NVIDIA Closed-Source Driver Command Streams for CPU-GPU Runtime Behavior Insight

https://arxiv.org/abs/2604.26889
0
0
0
[RSS] Bypassing Windows authentication reflection mitigations for SYSTEM shells - Part (2)

https://www.synacktiv.com/en/publications/bypassing-windows-authentication-reflection-mitigations-for-system-shells-part.html
0
1
1
[RSS] Bypassing Windows authentication reflection mitigations for SYSTEM shells - Part 1

https://www.synacktiv.com/en/publications/bypassing-windows-authentication-reflection-mitigations-for-system-shells-part-1.html
0
1
3
Show older