Posts
2506
Following
650
Followers
1471
"I'm interested in all kinds of astronomy."
repeated

Want to learn about Chrome exploitation and the role of WebAssembly in it?

In our new article, we'll break down the world of WASM, how it interacts with V8, and use CVE-2024-2887 as a case study to show how flaws in WASM can lead to remote code execution.

Read it here: https://ssd-disclosure.com/an-introduction-to-chrome-exploitation-webassembly-edition/

0
2
0
[RSS] ControlPlane Local Privilege Escalation Vulnerability on macOS

http://blog.quarkslab.com/controlplane_lpe_macos.html
0
0
1
"Exclusive: Meta won't tweak pay-or-consent model further despite risk of EU fines, sources say"

https://www.reuters.com/sustainability/boards-policy-regulation/meta-wont-tweak-pay-or-consent-model-further-despite-risk-eu-fines-sources-say-2025-07-11/

IMO pay-or-consent is a reasonable model for #adtech, but if Meta implements that *and* pays fines, that's good enough for me!
0
0
1
repeated

We just updated our bug bounty hall of fame to include the great security researchers from the last two quarters. Thank you for securing the best yet :)

https://www.mozilla.org/en-US/security/bug-bounty/hall-of-fame/

0
3
0
repeated
Edited 18 days ago

in the interest of helping other small publications, i want to pass along a request for elpis zine, an online zine about the small web, retro tech, and alternate protocols that recently celebrated its 10th issue!

for their next issue, they want to focus on of the : "who, one way or another, influenced the creation of the modern Internet, which is why the modern World Wide Web looks exactly like this."

from elpis:

These are women who are at the forefront of the attack and work on the technologies that surround us. These are women who have influenced design, content, and politics. But we're not just talking about the modern Internet, we're also talking about the small web.

There are legendary women here, too. We want to write about you, about your sites, if you have ideas about whom we can also write about, or links to pages (feel free to give your sites), that's cool! We'll publish them.

the editors are looking specifically for "ideas about who can be written about from the great women who influenced the modern Internet (designers, programmers, and so on)." there's so many women in internet that we must keep their stories going! <3

the editor of the zine, turboblack, is a 32-bit cafe member and a passionate member of the independent web. :) i hope you appreciate this departure to spread some internet-focused publication love!

0
2
0
repeated

I'm pleased to announce a new version of the Rust bindings for IDA Pro! With: - Improved strings, metadata, and core APIs. - Support for the names API. Thank you to @raptor.infosec.exchange.ap.brid.gy & Willi Ballenthin for contributing! Docs: idalib.rs Code: git.idalib.rs

idalib documentation

0
3
0
@badsamurai @meadxmoon could you point me to implementarion details?
0
0
0
repeated
@cR0w @badsamurai where does the article show prevention/blocking options? I've scrolled my fingers off on mobile but can only see the reitaration of the technique in reeeeally long form...
1
0
0
repeated
Edited 18 days ago

local restaurants I love you but please have a website that isn't your instagram profile and has your hours of business on it. kthx

8
16
0
@Catarina @0xabad1dea Maybe we did reach singularity - it's just not technological, but the spacetime kind?
0
0
2
[RSS] CVE-2025-5333 - CVSS 9.5: Remote Code Execution in Broadcom Symantec Endpoint Management Suite (Altiris)

https://www.lrqa.com/en/cyber-labs/remote-code-execution-in-broadcom-altiris-irm/
0
0
1
repeated
repeated

WHAT IS THIS SOURCERY?!

has support now?!

I can start and have the required security tools installed !

https://github.com/microsoft/winget-dsc/tree/main/samples/DscResources/Microsoft.WindowsSandbox.DSC

0
2
0
repeated

There’s an entire rant buried in here but, in short, I absolutely agree.

5
8
0
[RSS] [CVE-2024-58258] SugarCRM <= 14.0.0 (css/preview) LESS Code Injection Vulnerability

https://karmainsecurity.com/KIS-2025-04
0
0
1
@freddy Yeah that one caught my eye too, and based on the timeline I agree that it's likely unfixed.

(I linked the talk FTR and so that I can tag in @ifsecure in case he has some more info :))
1
0
0
Show older