Posts
2425
Following
592
Followers
1314
"I'm interested in all kinds of astronomy."
repeated

Find your first zero-day vulnerability!

In this article, we want to share a step-by-step guide on how to run American Fuzzy Lop ++ (AFL++) to fuzz an open source target.
https://www.hackers-arise.com/post/exploit-development-fuzzing-with-american-fuzzy-lop-afl-to-find-zero-day-vulnerabilities

0
2
0
repeated

Safe AIN'T SAFE!? (cve-rs explainer)

https://youtu.be/vfMpIsJwpjU

1
2
0
@raptor I'm working myself through https://rust-exercises.com/100-exercises/ right now :)

Can't wait for your recommendations!
1
4
6
repeated

🀣🀣🀣
[CVE-2024-40896][libxml2] XXE protection broken in downstream code
https://gitlab.gnome.org/GNOME/libxml2/-/issues/761
https://gitlab.gnome.org/GNOME/libxml2/-/commit/1a8932303969907f6572b1b6aac4081c56adb5c6

"...bug should occur if you compile libraptor with the commit above and libxml2 2.11 or greater."

PoC:
https://git.libreoffice.org/core/+/cdda6533b44333b18d3dc6306dfd0f7058e40b32/unoxml/qa/unit/data/cve_2012_0037.rdf

0
6
0
repeated

πŸŽ„ All I Want for Christmas is a CVE-2024-30085 Exploit πŸŽ„
As always, we at @starlabs_sg are sharing what we learnt. This time, it's brought to you by Cherie-Anne Lee

https://starlabs.sg/blog/2024/all-i-want-for-christmas-is-a-cve-2024-30085-exploit/

1
8
0
repeated

More than funds, what Wikipedia really needs is more good editors. The number of people who regularly edit articles in English Wikipedia hasn't grown substantially in years, while the number of articles has, and editor demographics remains skewed. The foundation itself largely stays away from editing, leaving it to volunteers. While articles that get a lot of attention are often good, it's not hard to find ones with biased and promotional content in less-visited topics, and in other languages.

6
14
0
repeated

FooneπŸ³οΈβ€βš§οΈ

Oh my god, I just learned of a hilariously obvious bug that Nintendo (of all companies) failed to fix.

So, NES & SNES games often have a problem with pressing left+right and up+down, at the same time. This is because that's not supposed to be possible. It's physically prevented from happening by the design of the controller itself.

2
5
0
Former NSA cyberspy's not-so-secret hobby – Xmas light hacks β€’ The Register
https://www.theregister.com/2024/12/25/joyce_christmas_lights/

#frombsky
0
0
0
repeated

Elon Musk has ordered everyone to stop donating to Wikipedia.

I never started, until this morning.

https://donate.wikimedia.org is the link, if anyone feels like disobeying a direct order from a billionaire jerkwad.

6
20
1
repeated

Happy Holidays to my oncall buddies today. I wish you all a quiet and uneventful shift.

0
3
0
I survived #Whamageddon \o/
1
0
3
@stf @pluralistic @cstross I learned at Bsky that at least author royalties are independent from distributors which is good news!

https://bsky.app/profile/notaname.info/post/3le53oer4hk24
1
0
0
To avoid sudden dangerous drops of frustration during these peaceful Holidays I'm configuring Postfix.
0
0
3
repeated
@infosecdj That's a good one, thanks! I'd be also interested in broader topics like contemporary literature, sci-fi, etc.
0
0
0
What are the online #book stores that are neither a) monopolistic giants built on enshittification nor b) copyright bullies?

If I ask for a unicorn, which ones do at least give authors a more fair share for their work?
4
2
4
repeated

The slides for the keynote our Cristofaro Mune(@pulsoid) has given at @h2hconference
"False Injections: Tales of Physics, Misconceptions and Weird Machines" are now available here:

https://raelize.com/upload/research/2024/2024_H2HC2024_False-Injections-Tales-of-Physics-Misconceptions-and-Weird-Machines.pdf

Enjoy!

0
4
0
repeated
repeated

In light of the Crowdstrike outage over 5 months ago, what specific changes has your organization made to your enterprise security program? What changes to policies, procedures, training, alerting, testing, and your written IRP have you made? Please share!

2
4
0
repeated

European Space Agency's official web shop was hacked as it started to load a piece of JavaScript code that generates a fake Stripe payment page at checkout.

https://www.bleepingcomputer.com/news/security/european-space-agencys-official-store-hacked-to-steal-payment-cards/

0
4
0
Show older