Posts
2513
Following
650
Followers
1472
"I'm interested in all kinds of astronomy."
repeated

The slides from our @reconmtl talk, "Breaking Mixed Boolean-Arithmetic Obfuscation in Real-World Applications" (CC @nicolodev), are now online!

Slides: https://synthesis.to/presentations/recon25_mba_obfuscation.pdf

Plugin: https://github.com/mrphrazer/obfuscation_analysis

0
2
0
repeated

Interesting Git repos of the week:

Detection:

* https://github.com/telekom-security/tpotce - have some honey

Exploitation:

* https://github.com/tlsfuzzer/tlsfuzzer - fuzz TLS
* https://github.com/ShawnDEvans/smbmap - map SMB shares
* https://github.com/nccgroup/fuzzowski - another nice fuzzer

Data:

* https://github.com/sneakers-the-rat/gpu-free-ai - the AI implementation you don't want to use!

, ,

0
3
0
repeated

Again with the showing Bill how wrong he was when he said memory interference flaws were just theoretical.

https://www.securityweek.com/rowhammer-attack-demonstrated-against-nvidia-gpu/

1
2
0
repeated

using government traffic cams for free selfies ^_^

0
4
0
repeated

New Daily Disc! : Computer World 😻🎹 💿 https://youtube.com/shorts/w5xbsBiBCcc?feature=share

0
1
0
repeated

Yes, I did sound the alarm on agentic AI's privacy threat, and rightly so.

https://observer.com/2025/07/signal-meredith-whittaker-agentic-ai-risk/

2
16
0
repeated
[RSS] Asus and Adobe vulnerabilities

Summary post of vulnerabilities disclosed by Cisco Talos

https://blog.talosintelligence.com/asus-and-adobe-vulnerabilities/
0
0
1
[RSS] Bin2Wrong: Fuzzing Binary Decompilers

https://github.com/FuturesLab/Bin2Wrong
0
0
2
repeated

Micropatches Released for "WSPCoerce" Coerced Authentication via Windows Search Protocol (NO CVE/WONTFIX) https://blog.0patch.com/2025/07/micropatches-released-for-wspcoerce.html

1
3
0
[RSS] exploits.club Weekly Newsletter 79 - Lenovo LPEs, WhatsApp Vulns, Forgotten Syzkaller Bugs, And More

https://blog.exploits.club/exploits-club-weekly-newsletter-79-lenovo-lpes-whatsapp-vulns-forgotten-syzkaller-bugs-and-more/
0
0
1
repeated

In a rare move, CISA gave federal agencies just one day to patch Citrix Netscaler bug CVE-2025-5777

Patch ASAP

https://therecord.media/cisa-orders-agencies-patch-citrix-bleed-2

0
3
0
repeated

Pre-Auth SQL Injection to RCE - Fortinet FortiWeb Fabric Connector (CVE-2025-25257) - watchTowr Labs https://labs.watchtowr.com/pre-auth-sql-injection-to-rce-fortinet-fortiweb-fabric-connector-cve-2025-25257

0
3
0
@jpmens how to make VC run away screaming
0
0
0
repeated

It has officially begun. The CRA info request counter is no longer at zero.

25
18
0
repeated

It makes me laugh/cry that we spent decades trying to get the software industry to internalise that it takes far more effort to support & maintain systems than it does to write them in the first place, and yet seemingly every trendy development in the last 5-10 years has been about making that initial stage faster & sloppier at the expense of everything else

5
12
0
Show older