Posts
3849
Following
725
Followers
1595
"I'm interested in all kinds of astronomy."
repeated

Binary Ninja 5.3 (Jotunheim) adds new architecture APIs for full function level lifting. We are already using them for upcoming TMS320C6x work, and plugin authors should be able to put them to good use too. Also new: NDS32 and AArch64 ILP32 ABI updates. Check out the latest blog: https://binary.ninja/2026/04/13/binary-ninja-5.3-jotunheim.html#architecture--platform

0
3
0
Look into yourself and ask:

"Why am I still wearing pants?"
1
7
14
repeated

btw y'all should* write cracks for software you use, even (and especially) if you paid for it

it's a good reversing exercise and you'll thank yourself when the licensing server has an outage or some company doesn't like your new motherboard

(*only if you can do it legally)

3
2
0
repeated

The fuzzer that found https://project-zero.issues.chromium.org/issues?q=componentid:1638259%20%22V8%20Sandbox%20Bypass%22 (and a number of issues prior to that as well) is now open-source: https://crrev.com/c/7580844

It uses pkeys, trap-handling and single-stepping to intercept and mutate in-sandbox reads (see trap-fuzzer.h for details). Definitely had fun writing it!

0
6
0
repeated

Did you know that `ipsw` has had a secret sandbox decompiler hidden in it for ~4 years? 🤫 Well now it's public 🙌

Check it out and let me know what you think! 🎉

https://github.com/blacktop/ipsw/releases/tag/v3.1.672

0
5
0
repeated

2026 at MPL and MPZPM – experience science up close!

With our participation we want to get more girls excited about . We show them that , and offer diverse and thrilling career opportunities.

They get the opportunity to step into the role of scientist, engineer and lab technician for a day. MPL and MPZPM open their doors on April 23 – offering hands-on experiments, lab tours and real insights into cutting-edge research.

👉 https://mpl.mpg.de/de/news/artikel/wissenschaft-hautnah-erleben-girlsday-2026-am-mpl-und-mpzpm

0
2
0
[RSS] SASS King: reverse engineering NVIDIA SASS

https://github.com/florianmattana/sass-king
0
0
0
repeated

no vibes just a lot of IDA Pro debugging MAME and hunting down as much info that’s surfaced in the past… 42 years as possible (thanks, Atari of Ireland file cabinet contents)

0
2
0
repeated

I mapped out enough of the Atari System 1 BIOS to create a cartridge ROM that the motherboard will boot and that calls some fancy printing functions. The blinking, teletype, banner effects are from the BIOS but the fade in/fade out effect I had to hook up myself through palette registers at VBLANK interrupt time.

1
3
0
@cygnus-xr1 Nice noises :) I'm afraid I couldn't even turn the thing on though...
0
0
0
repeated

I've been seeing this extension all over and wasn't sure exactly what folks were doing. Turns out, they weren't doing anything. Claude for Desktop is secretly installing this thing that activates when one of three other extensions are also present.

https://www.thatprivacyguy.com/blog/anthropic-spyware/

3
6
0
Command injection in a qmail fork (not the original!) - CVE-2026-41113:

"On the wire, a DNS label is just a length byte followed by up to 63 arbitrary bytes; RFC 1035 lets you put nearly anything in there, and most recursive resolvers will happily pass it through."

https://blog.calif.io/p/we-asked-claude-to-audit-sagredos

#LLM
1
1
1
repeated

Finally, it is published 😁 Making Vulnerable Drivers Exploitable Without Hardware - my latest research on driver vulnerability hardware-gating, explaining the concept of hardware-dependent code and diving deep into creative deployment techniques - software-emulated phantom devices, driver restacking, and forced driver replacement — all explored through the lens of Bring Your Own Vulnerable Driver (BYOVD) attacks:
https://atos.net/wp-content/uploads/2026/04/atos-byovd-article.pdf

0
1
0
repeated

Happy Bicycle Day to all who celebrate! On this date in 1943, Albert Hofman took the LSD off the shelf that synthesized five years previously, ingested 0.25 milligrams and then rode his bicycle on the first LSD trip.

https://en.wikipedia.org/wiki/History_of_lysergic_acid_diethylamide#%22Bicycle_Day%22

0
3
0
@PurpleJillybeans There are pretty good Java decompilers out there (e.g. jd-gui), so you don't have to mess with the bytecode.
0
0
2
repeated
repeated
Edited yesterday

The folks at iTerm2 figured out a way to get arbitrary code execution as the result of cat <file>, which is... impressive?

3
8
0
Show older