Posts
2753
Following
681
Followers
1504
"I'm interested in all kinds of astronomy."
repeated

Friendly reminder from @buherator about your thoughts on reshare and r4ghidra projects:

r4ghidra-r2web - https://mbbkepfl.formester.com/f/GfJNIHusN
r4ghidra-REPL - https://mbbkepfl.formester.com/f/invMupinF
REshare - https://mbbkepfl.formester.com/f/rLvls916S

1
3
1
repeated

Have a fun Patch Tuesday, nerds. heart_cyber

2
2
0
repeated

You install PSP on your operator workstation and the vendor starts spying on you.

https://www.huntress.com/blog/rare-look-inside-attacker-operation

0
2
0
This article highlights how much control endpoint security vendors have over customer machines, and transitively over companies and maybe even nations:

https://www.huntress.com/blog/rare-look-inside-attacker-operation

You only install this stuff, because you trust the vendor (and their government, etc.). Or not, see Kaspersky vs. US.

#AntiVirus #EDR #HackBack
1
1
1
repeated

That's … special. Scientists in the field of artifical intelligence telling von der Leyen to stop AGI buzzwording.

https://www.iccl.ie/wp-content/uploads/2025/11/20251110_Scientists-letter-to-the-President-AI-Hype.pdf

3
9
1
repeated

@keepassxc I think you misunderstood the “plausible-looking generation” criticism. The issue is not that the LLM is created to purposefully slip changes past reviewers, that would indeed be quite silly. It is trained by optimizing for plausible looking output – in essence the LLM “tries” to generate code that looks plausibly correct and such code is correct only inasmuch as code being correct is correlated with code looking correct. In contract humans when coding are trying to create correct code, and correctness there is related to how well a given human can generate correct code. The worry is that when a human makes a mistake it has a much higher chance of looking like a mistake, while LLMs are more likely to create correct-looking mistakes, because they are optimized for creating correct-looking output in general. This is what people mean when they say that LLMs will “sneak” mistakes past reviewers, and perhaps a reason to at least have different approaches to reviewing these two kinds of code.

I’m not sure what to think about the change in general, given what I know about LLMs your approach still makes me quite uneasy, but probably not enough to switch to a different password manager. Anyway, just wanted to explain the apparent confusion about this specific argument.

Oh, and since I’m writing to you already – thanks a lot for maintaining KeePassXC, it’s on the short list of software that works exactly as I like and I really have no complaints about. heart_cybre

2
2
1
Edited 7 days ago
From vendor to ESC1

https://scribe.rip/@Debugger/from-vendor-to-esc1-ed32281b7ea7

Awesome blog post explaining why ~all enterprise domains could be pwned via ADCS lately: vendors prescribe insecure configuration to integrate their stuff!

(AFAICT I couldn't post this from my RSS reader, but if you see this for the fifth time, I'm sorry!)
0
0
1
#music #edm #acid
Show content
So glad to see KI/KI getting the recognition she deserves, super fun DJ!

https://www.youtube.com/watch?v=WownWX6HUTs
0
0
0
@G33KatWork Every single line in that video is brilliant 😂

@TomSellers
0
0
0
@TomSellers "Every time Prometheus says 'up' I ask: 'up, compared to what?'" https://www.youtube.com/watch?v=rXPpkzdS-q4
1
3
2
repeated
hypothetical worst case fascism reality check
Show content

I am once again begging people to understand that “the government” already knows you’re queer whether you do elaborate online opsec dance rituals or not, and if they decide to just start shooting people for being gay, they’ll do it whether the evidence is airtight or not. is that grim? yes. but you can stop giving yourself undercover superhero identity PTSD about it

2
2
1
repeated
repeated

Few exploits with their CVEs for the Unitree G1 humanoid robot https://github.com/Bin4ry/UniPwn

0
3
0
repeated

HyperDbg v0.17 is out! ✨🥂

This update brings major improvements to the script engine, including multidimensional arrays, compound & multiple assignments, plus key interpretation bug fixes.

Check it out:
https://github.com/HyperDbg/HyperDbg/releases/tag/v0.17

For more information, you can check:

Compound assignments:
https://docs.hyperdbg.org/commands/scripting-language/variables-and-assignments#compound-assignment

Arrays:
https://docs.hyperdbg.org/commands/scripting-language/variables-and-assignments#arrays

Multidimensional arrays:
https://docs.hyperdbg.org/commands/scripting-language/variables-and-assignments#multidimensional-array

0
4
0
@Toastie “Your homework tonight, and I’ll remind you of this later, go listen to the song ‘43% Burnt.’” Hell yeah, this guy doesn't fuck around \m/
1
1
1
repeated
Edited 10 days ago

I've never published anything so close to my heart. Hope ya love it.

https://www.hcn.org/issues/57-11/heavy-metal-is-healing-teens-on-the-blackfeet-nation/

41
13
0
Show older