Posts
2469
Following
662
Followers
1486
"I'm interested in all kinds of astronomy."
repeated

Sven Slootweg 🔜 eth0 ("still kinky and horny anyway")

Everyone who is able to come back to #WHY2025, we are short-staffed on teardown volunteers, so *please* show up to help, either today (during daylight) or tomorrow. Given the shortage, even if this toot was a couple of hours ago by the time you read it, it will probably still be necessary, so please show up!

1
5
0
repeated

20 years in between these Phrack releases 😊 Got the small one at WTH2005 and the larger one at 😄

0
3
1
repeated

If someone wants to commit to buying the answer, locking it in a safe deposit box and throwing away the key, I'll throw $50 at the effort.

https://www.washingtonpost.com/entertainment/art/2025/08/14/kryptos-code-k4-solution-jim-sanborn-auction/

0
2
0
repeated

The plaintext of Kryptos, the mysterious statue at the heart of CIA headquarters, is for up for sale to the highest bidder. Here's my story: https://www.nytimes.com/2025/08/14/science/kryptos-sculpture-cia-solution-auction.html?unlocked_article_code=1.eE8.m90H.Onsi2at1i2_U&smid=url-share

0
3
0
repeated
repeated

Our Windows CTF is coming to Nullcon in Berlin, Sept 4-5 🎯 https://github.com/eshard/TTA-CTF

Play for a chance to win a Binary Ninja license or a Flipper Zero.

0
2
0
repeated

There is a new short domain name for !

https://putty.software/

At present, this is just a "landing page": a nice short name to remember, which will redirect you to the full PuTTY website at the same longer URL where it's always been.

But unlike putty.org or other third-party landing pages, this one is run by us, the actual PuTTY team, and it doesn't have a weird separate agenda of its own.

I intend to move the main PuTTY site over to that domain in the future, and leave just a redirector at the old location. But first I want to get the word out, so that people know which site to trust.

If anyone is still linking to putty.org, here's a place to link to instead. Please spread the word!

3
46
1
Edited 1 month ago
1
3
4
The mess we're in - Lack of downstream fixes in fdk-aac-free AAC media codec:

https://www.openwall.com/lists/oss-security/2025/08/13/9

#FOSS #supplychain
0
1
2
repeated

“Head, shoulders, knees and toes.”

Went from being a fun little kids song to a list of things that hurt.

5
11
0
As much as I despise Spotify's business model getting incredibly good music I'd have never known thrown to my stream constantly is mind-blowing!
1
0
0
repeated

In case I know anyone here who's familiar with the finer details of DNS and particularly DNS amplification attacks and their mitigations, I have some questions.

1
4
0
[RSS] Function-level Basic Block Analysis [in Binary Ninja]

https://binary.ninja/2025/08/12/function-level-basic-block-analysis.html
0
0
3
repeated

Somehow landed on the NetBSD manpage of sleep(1) and they seem to have a rather unique take on what is considered a bug.

7
37
3
repeated

🚨Alleged Sale of Fortinet 0-Day RCE Exploit

• Industry: N/A
• Threat Actor: WISDOM
• Network: Clearnet, Dark Web
• Price: 0.5 BTC

• Details: A threat actor claims to be selling a 0-day remote code execution (RCE) exploit affecting FortiOS VPN versions 7.4 to 7.6. The listing includes a proof of concept (PoC) available to serious buyers with deposit or established reputation.

0
1
0
repeated

I edited my Cross-Site Request Forgery countermeasures research into a stand-alone article, including recommendations reusable by other projects.

tl;dr: no need for tokens or keys, modern browsers tell you if a request is cross-origin!

https://words.filippo.io/csrf?source=Mastodon

1
3
0
repeated
[RSS] From Support Ticket to Zero Day (CVE-2025-8356, CVE-2025-8355 - Xerox FreeFlow Core)

https://horizon3.ai/attack-research/attack-blogs/from-support-ticket-to-zero-day/
0
0
0
repeated
repeated

Here's the full writeup of CVE-2025-53773 - Visual Studio & Copilot – Wormable Command Execution via Prompt Injection: https://www.persistent-security.net/post/part-iii-vscode-copilot-wormable-command-execution-via-prompt-injection

Patch now!

1
4
0
Show older