Posts
2931
Following
697
Followers
1538
"I'm interested in all kinds of astronomy."
repeated

Besides watermelon, there should be windmelon, firemelon and earthmelon - the four elemelons.

5
10
0
repeated

@matildalove @soatok
ISO: "We created global standards for everyone to follow"
Everyone: "Can we see them?"
ISO: "No"

8
28
2
repeated

The Tiny Awards are back, and so am I! After a year off, I'll be a judge helping to decide "the best of the small, poetic, creative, handmade web" made in the last 12 months. Nominations open until the end of June, submit anything you love! https://tinyawards.net/

1
2
0
repeated
Edited 6 months ago

So, my technical report on fuzzing CPython with fusil is almost done.

I'd really appreciate some help categorizing the found issues by relevance/severity/importance or any other name for impact.

Do you have the chops to help with that? And do you have time and interest? Please get in touch if so! And please boost if you can :)

A plot, some tables, links to the report and some discussion are available in this thread:

https://discuss.python.org/t/feedback-on-the-recent-fusil-fuzzing-campaign-of-cpython/91737

0
5
0
Edited 6 months ago
I tried to improve on @carrot_c4k3 's work to bypass Windows KASLR with a prefetch side-channel. I summarized my results in a new blog post, spiced up with some geek art:

https://scrapco.de/blog/visualizing-prefetch-infoleaks-to-defeat-kaslr.html
0
8
13
repeated
repeated

FreddyB Aviation Photography

0
1
0
[RSS] Solo: A Pixel 6 Pro Story (When one bug is all you need)

https://starlabs.sg/blog/2025/06-solo-a-pixel-6-pro-story-when-one-bug-is-all-you-need/
0
0
5
[RSS] exploits.club Weekly Newsletter 74 - iOS 18 mitigations, CoreAudio RCAs, kCTF optimizations, and More

https://blog.exploits.club/exploits-club-weekly-newsletter-74/
0
0
2
@Viss Remember Fur TV? (literally everything was better back in the day...)
1
0
0
repeated

Fucking stupid UI/UX choices.

Fortigate Firewall/Routers - All options for BGP/IPSEC are behind an "advanced options" user preference.... IT'S A FORTIFUCKINGROUTER the only people in this interface are advanced users.

PaloAlto XDR portal - Right-click for options on a line... fine... But wait, if you hold option/alt, you get even more options. I get the need to define which options are less common choices, but you should not be hiding things behind click-modifiers. The only people using the XDR interface will be advanced users. If a user doesn't have authorization for a command, then don't show it. If the option is destructive, then confirm with N number of dialogs. Also, the ENTIRE user interface is in italics.

Admin interfaces should never have hidden options.

1
3
1
Edited 6 months ago
Make some noise!
1
0
1
repeated

There’s still time for you to submit your article for the 40th anniversary edition of Phrack!

https://bird.makeup/@phrack/1901633924532408680

0
6
0
repeated

What is the most inappropriate connector with enough pins to support USB-C?

I suggest:

17
16
2
[RSS] Too Much of a Good Thing: (In-)Security of Mandatory Security Software for Financial Services in South Korea

https://kaist-hacking.github.io/publication/yun-ksa/
0
0
1
repeated
Show older