Posts
3497
Following
717
Followers
1583
"I'm interested in all kinds of astronomy."
repeated

Wikipedia bans Archive.today after site executed DDoS and altered web captures
If DDoSing a blog wasn't bad enough, archive site also tampered with web snapshots.
https://arstechnica.com/tech-policy/2026/02/wikipedia-bans-archive-today-after-site-executed-ddos-and-altered-web-captures/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social

3
5
0
repeated

RE: https://infosec.exchange/@timb_machine/116068550511596363

If there's anyone on here that works at GitHub, do you think you could remind your support team to check their emails.

For reasons unknown you decided to suspend my account a week ago and I'm yet to even get a response that a ticket has been opened to investigate. I'm sure there's a reason (although I suspect it's debatable) but it would at least be nice to hear from you that it's being looked at.

1
5
0
[RSS] Reverse engineering the Creative Katana V2X soundbar to be able to control it from Linux

https://blog.nns.ee/2026/02/20/katana-v2x-re/
0
0
0
[RSS] Discovery & Analysis of CVE-2025-29969

https://www.safebreach.com/blog/safebreach_labs_discovers_cve-2025-29969/

(Windows MS-EVEN RPC Remote Code Execution Vulnerability)
0
0
1
[RSS] OpenCFD OpenFOAM Code Stream directive arbitrary code execution vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2025-2292
0
0
0
repeated
Edited 13 days ago

Before launch, Perplexity hired us to test the security of Comet, their AI browser assistant. We demonstrated how four prompt injection techniques could extract users' private information from Gmail. https://blog.trailofbits.com/2026/02/20/using-threat-modeling-and-prompt-injection-to-audit-comet/

0
2
1
@leyrer Wait till one of those techbros announce they reserved capacity for future weapons manufacturing...
0
0
2
repeated

SGI stack overflow 😱
booting the IRIS Indigo R3k..

5
9
1
repeated

Just shipped updates for rhabdomancer, haruspex, and augur. Now compatible with @HexRaysSA IDA 9.3 and @xorpse's idalib-rs 8.0.

These headless plugins are built for workflows where you want IDA's power without the GUI. This release brings a bunch of small improvements and bug fixes.

https://hnsecurity.it/blog/streamlining-vulnerability-research-with-the-idalib-rust-bindings-for-ida-9-2/

0
4
0
[RSS] CVE-2026-20841: Arbitrary Code Execution in the Windows Notepad

https://www.thezdi.com/blog/2026/2/19/cve-2026-20841-arbitrary-code-execution-in-the-windows-notepad

ZDI analysis of the notorious vuln
0
0
2
[RSS] "Good enough" emulation: Fuzzing a single thread to uncover vulnerabilities

https://blog.talosintelligence.com/good-enough-emulation/
0
0
0
repeated

I'm pleased to announce a new release of the Rust bindings for @HexRaysSA IDA SDK! This release includes v9.3 compatibility.
Code: https://git.idalib.rs
Docs: https://docs.idalib.rs
Thank you to @yegor who contributed to this release, and to @HexRaysSA for their support.

0
3
0
repeated

I KNOW somebody in this community can win this money.

“Fulu’s latest bounty is for Ring’s video doorbell cameras, meant to encourage hackers and tinkerers to disable software features that require the devices to send data to Amazon. The reward is a potential payout of $10,000 or more.” https://www.wired.com/story/a-10k-bounty-awaits-anyone-who-can-hack-ring-cameras-to-stop-sharing-data-with-amazon/

0
14
0
repeated

RE: https://infosec.exchange/@Weld/116100770024505311

One of my best memories was staying up all night drinking and exchanging stories with Par at a DEF CON decades ago. Stores about him inspired me in my earlier days, and to finally get to "meet your hero" left a lasting impression.

"Parmasterisgod" is legend in the old school circles, a story I heard second hand many years and many times before I got to meet him to hear it first hand.

I'll definitely have a drink this evening and talk to some friends and share Par stories.

2
2
0
repeated

After decades of research, a seemingly unremarkable find retrieved from a Roman shipwreck proved to be a sensational scientific discovery, proving that the ancient Greeks were capable of making mechanical models of the cosmos. The Antikythera Mechanism is the world‘s first known analog computer.

https://blog.nationalmuseum.ch/en/2023/11/an-ancient-greek-computer/

My virtual replica:

https://www.thomasweibel.ch/anticythera2/

0
4
0
repeated

The most monstrous lie that I regularly tell myself is "I'll get that work done while I'm on the plane."

6
2
0
repeated

the watchers: how , the US government, and built an identity machine that files reports on you to the feds

https://vmfunc.re/blog/persona/

1
4
0
repeated

Vito Sartori (ヴィト) 🦊

Just posted a little follow-up on the asset format uses!

https://vito.io/articles/2026-02-19-the-specification

Includes a PDF with the whole spec for nerds tagging along! <3

0
2
0
Show older