Posts
3639
Following
724
Followers
1594
"I'm interested in all kinds of astronomy."
repeated

Trying to convince my students that having all your security policy changes include a design doc describing the status quo, the desired outcome, why this change will achieve it, why alternatives were rejected, and then implementing it via some automation schema so it can't accidentally be reverted for no obvious reason is good actually

2
4
0
repeated

i read the autumn/winter edition of the Good Internet Magazine on the day it arrived: https://goodinternetmagazine.com/

it's a cozy digital-and-print publication about the indie web, very accessible to everyone, not just to technologists

reading it reignited some of the desire to build an experience on the web that lies outside the norm of "usefulness" and "coherence"

i'm grateful to all authors and to @xandra for orchestrating it

1
3
0
repeated

My life with Claude Code

Via @david buchanan

0
3
0
Gotta say #IDA Semantic Engine sounds incredibly cool!

https://hex-rays.com/blog/2026-product-direction-priorities
1
1
2
repeated

Why I Left Kali for Exegol https://bltsec.com/posts/exegol/

0
2
0
repeated

Full Disclosure: A Third (and Fourth) Azure Sign-In Log Bypass Found https://trustedsec.com/blog/full-disclosure-a-third-and-fourth-azure-sign-in-log-bypass-found

0
3
0
repeated

What's new is old, and what's old is new - as is relentlessly proven.

Join us in our analysis of CVE-2026-32746, the recent pre-auth RCE in inteutils' Telnetd.

Speak soon.

https://labs.watchtowr.com/a-32-year-old-bug-walks-into-a-telnet-server-gnu-inetutils-telnetd-cve-2026-32746

1
5
0
[RSS] OpenSIPS SQL Injection to Authentication Bypass (CVE-2026-25554)

https://aisle.com/blog/opensips-sql-injection-aisle-deep-dive-sql-injection-authentication-bypass
0
0
0
[RSS] A Copy-Paste Bug That Broke PSpice(R) AES-256 Encryption

https://jtsylve.blog/post/2026/03/18/PSpice-Encryption-Weakness
0
0
0
repeated

Catch Christopher Domas’ keynote from RE//verse 2026! fail: jmp fail (everything I got wrong in RE and security research) gets into the dead ends, bad ideas, and wasted hours behind real progress in RE and security work. Watch now: https://youtu.be/iOq8O_phwbA?si=65EWW3XT8BTww5px

0
3
0
repeated
repeated
Edited 19 hours ago

In case you didn't believe it, i tested it for you.
Yes, you can in fact brick an iPhone 3Gs baseband ._.

1
2
0
[RSS] CVE-2026-22730: SQL Injection in Spring AI's MariaDB Vector Store

https://blog.securelayer7.net/cve-2026-22730-sql-injection-spring-ai-mariadb/
0
0
0
[RSS] Kanboard Authenticated SQL Injection CVE-2026-33058 Writeup

https://0dave.ch/posts/cve-2026-33058/
0
0
0
Edited 19 hours ago
LLM joke
Show content
0
1
2
[RSS] Streamlining Google's OSS VRP: Key Rule Updates

https://bughunters.google.com/blog/ossvrp-rule-updates-2026
1
1
0
Show older