Posts
2575
Following
631
Followers
1418
"I'm interested in all kinds of astronomy."
repeated

Clicking this will bring up a graph view of the control flow of the function. Think of it as a visual representation of the 'uf' command:

0
2
0
repeated

If you click "Parallel Stacks", you'll see a visualized tree view of the call stacks in the process... something *similar* to what you might see in VS:

1
3
0
repeated

If you update WinDbg today (1.2504.15001.0), you might notice another icon in the View tab of the ribbon, one called "Parallel Stacks". While incredibly useful in its own right, this isn't just a parallel stacks view. It's the introduction of graph visualization for extensions!

1
8
0
repeated

Kinda want a DirBuster style list of headers at this point, so many times, we see new CVEs stemming from headers with magical properties.

2
2
0
repeated
infosec, black humor, suicide
Show content

OH: see, if you slit your wrists, at least you accomplish something in the end. unlike doing a CTF

1
1
0
repeated

Fire In The Hole, We’re Breaching The Vault - Commvault Remote Code Execution (CVE-2025-34028) - watchTowr Labs https://labs.watchtowr.com/fire-in-the-hole-were-breaching-the-vault-commvault-remote-code-execution-cve-2025-34028/

0
2
0
[RSS] Authenticated Remote Code Execution on USG FLEX H Series (CVE-2025-1731 / CVE-2025-1732)

https://0xdeadc0de.xyz/blog/cve-2025-1731_cve-2025-1732

SSH tunnels FTW!
0
2
3
repeated

🚨 New advisory was just published! 🚨

Two Use After Free (UAF) vulnerabilities were discovered within Chrome’s Browser process by one of our researchers at SSD Labs:
https://ssd-disclosure.com/ssd-advisory-miracleptr-sandbox/

0
3
0
Edited 18 days ago
"Document My #Pentest: you hack, the AI writes it up!" - A sure way to get yourself into embarrassing calls with the technical team of the client...
1
0
6
repeated
[RSS] Exploiting the Synology DiskStation with Null-byte Writes

https://blog.ret2.io/2025/04/23/pwn2own-soho-2024-diskstation/
0
4
6
@MegaMichelle I wouldn't outrule self-hosted options, but tailoring Nextcloud for this seems too much effort. Mobilizon looks really cool though, I'll give it a shot, thanks for the tip!
0
0
2
@somebody I would very much want to tear down FB's effective monopoly in event organization, and I even have a fully anonymized plan, but this particular request is unrealted ;)
0
0
1
@somebody I don't need names or any PII other than a (disposable) e-mail addresses to send notifications to.

So, any suggestions?
0
0
0
@kirakira Time to register the lib and add some (fake) ransomware code
0
0
3
Edited 19 days ago
Any tips for a privacy respecting, free event organization platform? I'm thinking about features like:

- Some rich text + images hosted online for the event
- Subscription form to get updates
- Stats about expected attendance
- ??? (this is my first time)

Edit: I don't charge anything for the event, so percentage commission can work.
3
5
0
Edited 19 days ago
MEDA 43HA analogue computer formerly used at the Paks nuclear power plant

https://muzeuldecalculatoare.ro/2020/06/11/the-meda-43-analog-hybrid-computer/
0
0
4
repeated

The FastCGI library, mostly used in embedded equipment, was vulnerable for decades to an integer overflow over the IPC socket in 32-bits architecture. Check out how @shiropycatchown found it and exploited it for RCE!
https://www.synacktiv.com/en/publications/cve-2025-23016-exploiting-the-fastcgi-library

0
5
0
repeated

I know Chrome is the browser everybody loves to hate, but I think most would agree this would be very bad.

https://www.axios.com/2025/04/23/open-ai-google-chrome

2
5
0
Show older