Posts
2954
Following
697
Followers
1540
"I'm interested in all kinds of astronomy."
Google Chrome is removing Hungarian CA NetLock from its trust store:

https://security.googleblog.com/2025/05/sustaining-digital-certificate-security-chrome-root-store-changes.html

Stated reason: "a pattern of compliance failures, unmet improvement commitments, and the absence of tangible, measurable progress in response to publicly disclosed incident reports"

I've personally ran into revoked NetLock certs during the past months, the reason for revocation was unclear ("administrative").

NetLock was compromised previously as part of the Stuxnet/Duqu campaign:

https://theintercept.com/2014/11/12/stuxnet/
0
3
2
Hidden Bear: The GRU hackers of Russia’s most notorious kill squad

https://theins.press/en/inv/281731
0
4
3
I don't want to log in with a fucking Microsoft account.

I want to use my fucking serial port.
0
7
28
repeated

Inspirational Skeletor💀

2
3
0
@rickoooooo Yes. The main problem is that Windows does some sorcery when it detects a VM, while (in case of Win11) it won't boot if the problematic value is overridden. Overriding the enlightenment works like a charm with Win10.
0
0
1
repeated

Data from the domain DNS shows that many European public services rely on proprietary cloud services: https://jurgen.gaeremyn.be/2025/03/08/european-critical-dependencies/

"Querying mail-servers teaches that in some countries, over 70% of all public services rely on this American provider."

Last week, allegedly decided to cancel MS365 services of Chinese universities with a notice of about one week: https://www.scmp.com/tech/tech-war/article/3305889/microsoft-abruptly-cuts-services-chinese-university-genomics-firm

1/2

1
4
0
Has anyone set up kernel debugging with a Windows 11 target with Proxmox (QEMU-KVM)?

This only works with Win10, Win11 doesn't boot for me:

https://forum.proxmox.com/threads/windbg-remote-kernel-debugging-and-proxmox-not-working.163625/

Serial would also be an option if I could make them recognized by guests:

https://forum.proxmox.com/threads/two-windows-guests-communicating-via-serial-console-comn.67588/
0
1
1
repeated

Beating the kCTF PoW with AVX512IFMA for $51k

https://anemato.de/blog/kctf-vdf

0
3
0
A casual player finds a memory corruption in Super Mario allowing arbitrary code execution and speedrunners exploit it *by hand* to warp to the credits screen.

https://www.youtube.com/watch?v=WdadpHLAfdA

#GameHacking is really something else!
0
6
9
repeated

yossarian (1.3.6.1.4.1.55738)

npm is getting trusted publishing soon!

https://github.com/orgs/community/discussions/161015

helping build and design the original version of trusted publishing for PyPI is easily in the top 3 moments of my career so far -- it's really amazing to see it get adopted by RubyGems, Rust (in progress), and now the JS ecosystem.

0
5
0
Had to make a proper GIF of this
0
0
0
repeated

Every time I lock my bike to a wall loop I fear a topologist will appear and prove my bike is not attached to the loop, or in fact, not even locked

4
11
0
repeated
Edited 6 months ago

Hot take: ISO standards do not meaningfully matter to me, because an extremely impoverished, unbanked person cannot freely access their contents from a smartphone or library computer.

Therefore, I go out of my way to avoid referring to them or relying on them in anyway.

15
10
0
repeated

Edge group policy ADMX is truly a masterpiece of bad-faith fuckery even by Microsoft standards: misleading, obfuscation, omission, outright lying.

Top 3 favorites so far:
1. Setting to disable the ChatGPT sidebar is called "Show Hubs Sidebar". Obviously, it is not under the "Generational AI" subfolder.
2. There are a number of "AI assistance" settings tucked under Settings > Languages in the UI. "Collaborate with Copilot" doesn't have a GPO item (forum answer from MS droid suggests that someone "forgot" it).
3. Three separate settings to prevent Edge from running in the background and "preloading" things, in three different folders.

2
4
0
repeated

Also, I'm pretty sure I've said this before, but I'll say it again:

Part of your job as a senior is to tell your juniors about your fuckups. The embarrassing cringe reckless and lazy bullshit that you did when you were new, and the various times you brought down Prod. We ALL did it sometime. And then tell them: the moment you realized you fucked up, I know, the impulse is to try and cover it up, but don't do it. Come to the seniors you trust, and they'll help you unfuck it, and fight management tooth and claw like mamma and pappa bears to defend you from any shitheads in management. Because that's what our seniors did to us.

15
25
1
Show older