Posts
3865
Following
725
Followers
1594
"I'm interested in all kinds of astronomy."
repeated

I checked and it's been 2 years since my last blog post??? So anyway, here's a quick blog post about KDP pool - the latest KDP feature that will replace the secure pool in future Windows versions: https://windows-internals.com/goodbye-secure-pool-hello-kdp-pool/

0
2
0
repeated

Interesting links of the week:

Standards:

* https://github.com/OWASP/APTS - @owasp has a crack at defining autonomous testing standards
* https://cert.pl/en/posts/2026/04/annual-report-2025/ - .pl CERT gives us their annual update
* https://www.ncsc.gov.uk/news/apt28-exploit-routers-to-enable-dns-hijacking-operations - more on that Guardian story from a couple of weeks back about Russian hostmasters working for free
* https://arxiv.org/abs/2603.29545 - exploring how cyber crime's vibe will change
* https://gambit.security/blog-post/a-single-operator-two-ai-platforms-nine-government-agencies-the-full-technical-report - how .mx got popped
* https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-097a - .ir are planning a silent disco and all of US are invited

Threats:

* https://socket.dev/blog/bitwarden-cli-compromised - careful warden, I see you're managing a password
* https://krebsonsecurity.com/2026/04/germany-doxes-unkn-head-of-ru-ransomware-gangs-revil-gandcrab/ - .de doxes head of REvil
* https://www.ic3.gov/PSA/2026/PSA260407 - .ru completes sticker collection of logos from every major law enforcement agency
* https://www.lumen.com/blog/en-us/frostarmada-forest-blizzard-dns-hijacking - .ru... in your modem, stealing your DNS requests
* https://dti.domaintools.com/research/dprk-malware-modularity-diversity-and-functional-specialization - .kp IT skills continue to develop
* https://pushsecurity.com/blog/device-code-phishing - phishermen continue to catch phish, news at 10

Bugs:

* https://www.jamf.com/blog/darksword-ios-exploit-kit-three-lessons-mobile-security/ - breaking our on Safari
* https://blog.calif.io/p/we-asked-claude-to-audit-sagredos - Claude vs qmail but FFS, it shouldn't have taken that much effort to spot that one
* https://heyitsas.im/posts/cups/ - printing a new 0day

Exploitation:

* https://vulnbench.ghostsecurity.com/ - testing LLM efficacy on the work bench
* https://agentic-threat-modeling.github.io/MAESTRO/ - how to make friends with agents and influence them

Hard hacks:

* https://gpubreach.ca/ - another hammer, another pixel dead...

Hardening:

* https://lore.kernel.org/lkml/20260404133746.80914-1-zybo1000@gmail.com/ - an interesting new kernel driver for Linux

Cryptography:

* https://www.openssh.org/pq.html - takes a stance on PQC

,

0
2
0
repeated

Effective security measures are easier to implement and maintain than to bypass

0
2
0
repeated
repeated

a new zero-trust security appliance just dropped

3
4
0
repeated

Hister v0.13.0 is out with quite a few new features. Update your instances.

https://github.com/asciimoo/hister/releases/tag/v0.13.0

Hister is a general purpose web search engine providing automatic full-text indexing for visited websites.

0
1
0
repeated

TrendAI Zero Day Initiative

CVE-2026-33824: Remote Code Execution in Windows IKEv2 - the folks from TrendAI Research break down this wormable bug that was patched last week. The show root cause & offer detection guidance. Read the details as https://www.zerodayinitiative.com/blog/2026/4/22/cve-2026-33824-remote-code-execution-in-windows-ikev2

0
3
0
[RSS] Mapping the page tables into memory via the page tables

https://devblogs.microsoft.com/oldnewthing/20260422-00/?p=112255
0
0
0
repeated

A 4-star admiral told Congress the U.S. military runs a Bitcoin node to “secure networks” and endorsed Bitcoin as a “power projection” capability. The cryptographic primitives he cited like proof or work aren’t exactly earth shuttering in 2026. https://gooden.house.gov/2026/4/gooden-reveals-historic-u-s-military-use-of-bitcoin-node

0
2
1
CVE-2026-41651: TOCTOU vulnerability in PackageKit <= 1.3.4 leads to
local root exploit

https://www.openwall.com/lists/oss-security/2026/04/22/6
0
3
0
repeated

Micropatches released for Windows Telephony Service Elevation of Privilege Vulnerability (CVE-2026-20931)
https://blog.0patch.com/2026/04/micropatches-released-for-windows.html

1
3
0
repeated
#classstruggle #vent
Show content
Today I read one too many utterly stupid takes on "capitalism" (which seems to be an alias for Everything Bad in Society) from one of the Fedi-comrades, so as a former business owner let me tell you this:

When some ppl (not you!) tell their friends at the pub about how they abuse WFH, or even have two full-time jobs because they can arrange their calls creatively...well, your boss probably goes to the same pubs.

Now I won't assume that everyone does the same, but in exchange please also consider that not all bosses are greedy assholes just like not all employees are lazy liars.
0
0
2
repeated

if the part before the main, is the "prequel" then why is the part after the main a "sequel" and not a "postquel"?

1
1
0
repeated
Edited 2 days ago

Today I learned a spell to TOAST A BAGEL. It is supposed to be a spell to REFORGE A RING but it does not check the ring’s MATERIAL, and if you cancel about a second into casting the bagel will NOT be DESTROYED.

#wizardposting #wizard
5
8
1
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

Adobe Photoshop Installation Privilege Escalation Vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2025-2274

CVE-2026-34632
0
1
0
"I'm here to chew bubblegum and punish microsoft for their sins. And I'm all out of bubblegum."

SandboxEscaper is back :)

https://xcancel.com/WeirdQuadratic/status/2046683620987809947
0
2
2
repeated

I typically recommend people do not pick a Firefox fork because keeping up with security patches is a lot of work and being downstream of our code typically implies a delay.

But if you feel like you really have to use a Firefox fork, I suggest you find one that has the means to ship an update within a day.

From those I looked at, most did not bring an update based on 150 yet. (Special shout out to the Tor Browser. You're awesome!)

0
3
0
Show older