Posts
2588
Following
669
Followers
1495
"I'm interested in all kinds of astronomy."
repeated

And now you can develop NES/Famicom games using exclusively your web browser, and online CVBasic 0.9.0. Thanks to Haroldoop https://haroldo-ok.itch.io/cvbasic-online-compiler

0
3
0
[RSS] The case of the crash on a null pointer even though we checked it for null

https://devblogs.microsoft.com/oldnewthing/20250905-00/?p=111560
0
0
1
repeated

Preview of PHRACK #72 🐊 BSides Canberra/Australia 🦘edition.

👉Release: 25th of September. GET READY👈

How many logos of famous Australian/New-Zealand cons can you spot on the back cover?

0
3
0
@lcamtuf This one by @eevee is still among my favorites for similar reasons: https://eev.ee/blog/2016/09/15/music-theory-for-nerds/

Also, @3blue1brown ...
0
0
1
repeated

retoot to scare a cryptographer

1
11
1
[Cloudflare] Addressing the unauthorized issuance of multiple TLS certificates for 1.1.1.1

https://blog.cloudflare.com/unauthorized-issuance-of-certificates-for-1-1-1-1/
0
0
1
[RSS] Investigating a Mysteriously Malformed Authenticode Signature -- Elastic Security Labs

https://www.elastic.co/security-labs/malformed-authenticode-signature
0
0
1
[RSS] Reverse engineering of Apple's iOS 0-click CVE-2025-43300: 2 bytes that make size matter

http://blog.quarkslab.com/patch-analysis-of-Apple-iOS-CVE-2025-43300.html
0
0
4
repeated

Pro tip: if you're using @kagihq's video search instead of 's own search (which you should), you can customize your search results using the little shield icon next to each result just like with the regular search, except you don't block entire domains here but individual YouTube channels, allowing you to permanently ban trash/clickbait/AI channels from your results.

https://hachyderm.io/@gollyhatch/114998713218333668

0
3
0
repeated

You know what's really great? Not getting polio.

9
11
0
repeated

#BOFH excuse #404:

Sysadmin accidentally destroyed pager with a large hammer.

0
3
0
repeated

CVE-2025-53149: Heap-based buffer overflow in Windows Kernel Streaming https://www.crowdfense.com/cve-2025-53149-windows-ksthunk-heap-overflow/

0
2
0
repeated

We built local backdoors for Signal, 1Password & Slack through V8 heap snapshot tampering (CVE-2025-55305).

Method: Replace v8_context_snapshot.bin files with versions that override JavaScript builtins. When apps call Array.isArray(), malicious code executes.
Works because integrity checks ignore these "non-executable" files that actually contain executable JavaScript.

Impact: Nearly every Chromium-based app is vulnerable.
https://blog.trailofbits.com/2025/09/03/subverting-code-integrity-checks-to-locally-backdoor-signal-1password-slack-and-more/

1
15
1
[RSS] Exploit development for IBM i

https://blog.silentsignal.eu/2025/09/04/Exploit-development-for-IBM-i/

Another one from my old partners in crime, incl. exploit for CVE-2023-30990 #IBMi
0
1
3
repeated

Alright Fedi. This is going to be my more far fetched question as of yet.

Do any of you happens to have, lying in a box somewhere, a Photo CD? And if so, would you be willing to part with it?

Just to clear any possible confusion, I’m specifically looking for a disc in the Photo CD format, not a CD-R on which pictures have been stored as files. Here is the article on the subject: https://en.wikipedia.org/wiki/Photo_CD.

Boosts are appreciated, as my search has not been fruitful this far.

5
18
0
repeated

After a decade of neglect, ELF object file specification is being maintained again
https://groups.google.com/g/generic-abi/c/doY6WIIPqhU Updated my notes https://maskray.me/blog/2024-01-14-exploring-object-file-formats
Cary is maintaining both DWARF and ELF :)

0
7
0
repeated
Show older