Posts
2992
Following
698
Followers
1545
"I'm interested in all kinds of astronomy."
repeated

"Bavarian pensioner lays trap to catch phone fraudster who was out for his gold":

https://www.theguardian.com/world/2025/dec/18/german-pensioner-lays-trap-catch-fraudsters-after-gold

0
3
0
repeated

Any of the @offsec folks on here?

0
2
0
repeated
repeated

It's done. I can't believe it's finally done. I've been working on this in mostly secret for so long, and I'm so excited to share it with y'all!

https://taggart-tech.com/ringspace/

https://ringspace.net

14
15
0
[RSS] Inside PostHog: How SSRF, a ClickHouse SQL Escaping 0day, and Default PostgreSQL Credentials Formed an RCE Chain (ZDI-25-099, ZDI-25-097, ZDI-25-096)

https://mdisec.com/inside-posthog-how-ssrf-a-clickhouse-sql-escaping-0day-and-default-postgresql-credentials-formed-an-rce-chain-zdi-25-099-zdi-25-097-zdi-25-096/
0
0
1
[RSS] Libbiosig, Grassroot DiCoM, Smallstep step-ca vulnerabilities

https://blog.talosintelligence.com/libbiosig-grassroot-dicom-smallstep-step-ca-vulnerabilities/
0
0
0
repeated

We wrote a little bit on FortiCloud SSO login bypass CVE-2025-59718 (and 59719). Both the known PoCs for the former are fake / invalid. There does appear to be real exploitation evidence, but detections based on fake PoCs ain't it (and it seems like that's where a lot of chatter is coming from)

https://www.vulncheck.com/blog/forticloud-sso-login-bypass

0
2
0
repeated

Perfect 10 in HPE OneView with no description and the advisory behind a login? Must be good. Go hack that shit please. 🥳

https://www.cve.org/CVERecord?id=CVE-2025-37164

0
3
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: Linearize uses full image on trimmed source image, leading to out-of-bounds read

https://project-zero.issues.chromium.org/issues/452483592

CVE-2025-64784
0
1
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: out-of-bounds read in RefBaselineABCDtoRGB during the Render phase

https://project-zero.issues.chromium.org/issues/457419672

CVE-2025-64893
0
1
0
repeated

Project Zero Bot

New Project Zero issue:

Adobe DNG SDK: out-of-bounds write in dng_resample_weights::Initialize due to invalid floating point arithmetic

https://project-zero.issues.chromium.org/issues/457987854

CVE-2025-64894
0
1
0
repeated

French authorities said they arrested the man who hacked their Ministry of Interior email servers.

He's a known hacker who was already convicted this year. Anyone has any ideas who this could be?

https://www.rfi.fr/en/france/20251218-france-detains-suspect-over-interior-ministry-cyberattack-as-probe-widens

2
1
0
repeated

Update on the iOS emulator 🔥

We’ve been deep into acceleration work lately, and the performance is already very promising for an emulated iOS18.

Still cooking, but we’re getting close to sharing it with you. And more is coming with iOS26...

1
3
0
@pancake You're the Man! I uploaded two samples here (.reshare.json):

https://scrapco.de/dataslate/

Do you need the binaries too? Should I generate the C (de)serializers for you?
0
0
0
repeated

The Amphora of Great Intelligence (AGI)

9
43
3
repeated

ORM Leaking More Than You Joined For - Part 3/3 on ORM Leak Vulnerabilities https://www.elttam.com/blog/leaking-more-than-you-joined-for/

0
2
0
Show older