Posts
2711
Following
681
Followers
1505
"I'm interested in all kinds of astronomy."
@fesshole and if your team is incompetent and takes 2x time to produce 2x buggy code, you get 4x the money because in agile invoicing by time is the norm. Brilliant idea for a business actually!
0
0
1
repeated
Edited 1 year ago

My response when people ask me about the state of computer security:
(Modified from https://xkcd.com/2030/)

1
3
0
iFixit (and AliExpress) rocks!

#RightToRepair
0
0
2
repeated
repeated

🔥 The initial schedule for is now public! The CFP is still open, but we may only accept now if you are fine submitting them for the “Online Sunday” in video format. https://radare.org/con/2024/

🎟️ Conference tickets and other details will be made available soon. Stay tuned, we will meet us all again in less than two months!

0
7
0
repeated
CVE-2024-29847 Deep Dive: Ivanti Endpoint Manager AgentPortal Deserialization of Untrusted Data Remote Code Execution Vulnerability

https://www.horizon3.ai/attack-research/attack-blogs/cve-2024-29847-deep-dive-ivanti-endpoint-manager-agentportal-deserialization-of-untrusted-data-remote-code-execution-vulnerability/
0
1
0
(You see, I'm very insightful today)
0
1
1
If it's stupid, but it works, it's not stupid.
It's technical debt.
1
3
8
Twitter account of note:

https://x.com/Fortibitch
0
0
1
repeated
Edited 1 year ago

SolarWinds: SolarWinds Access Rights Manager (ARM) Deserialization of Untrusted Data Remote Code Execution Vulnerability (CVE-2024-28991)
CVE-2024-28991 (9.0 critical, disclosed 12 September 2024) SolarWinds Access Rights Manager (ARM) was found to be susceptible to a remote code execution vulnerability. If exploited, this vulnerability would allow an authenticated user to abuse the service, resulting in remote code execution.
Reported by Piotr Bazydlo (@chudypb) of Trend Micro Zero Day Initiative. No mention of exploitation.

EDIT: Piotr states that CVE-2024-28991 can be chained with CVE-2024-28990 (6.3 medium) SolarWinds Access Rights Manager (ARM) Hardcoded Credentials Authentication Bypass Vulnerability for pre-authenticated remote code execution.

2
2
0
repeated

I talk to the press largely to *combat* AI hype. It's beyond frustrating to be misquoted in ways that contribute to it instead.

New newsletter post:

https://buttondown.com/maiht3k/archive/correcting-the-record/

1
4
0
It seems after burning God knows how much money and CO2, OpenAI decided that *maybe* if you want to have anything close to "intelligence" you'll need some reasoning. Can't wait to see how they scale against this problem!
0
0
0
repeated

This is cool. We ported parts of the Windows MDM stack (used by Intune) to Linux!! Now you can use it to EASILY control the configuration and security posture of Linux VMs in Azure.

https://learn.microsoft.com/en-us/azure/osconfig/quickstart-sec-baseline-mc?tabs=azure-cli

0
3
0
repeated

Microsoft is building new Windows security features to prevent another CrowdStrike https://trib.al/otEVx6r

0
2
0
Some exploits are just three curl commands in a trench coat.
1
5
17
Show older