Posts
3454
Following
716
Followers
1580
"I'm interested in all kinds of astronomy."
@freddy I wouldn't mind getting notified that I need a restart and loosing data *when I finally decide I'm ready*, but in the current situation the browser just stops working during active use because an update executed in the background.
0
0
0
repeated

Assn for Computing Machinery

Today, let’s remember Charles Thacker, who was born on this day in 1943. Thacker received the in 2009 for the pioneering design and realization of the first modern personal computer -- the Alto at Xerox PARC -- and seminal inventions and contributions to local area networks (including the Ethernet), multiprocessor workstations, snooping cache coherence protocols, and tablet personal computers.

Read more about him, here: https://amturing.acm.org/award_winners/thacker_1336106.cfm

0
3
0
@freddy I browse in private mode for various reasons (not all security/privacy related) so it doesn't work (as it shouldn't).

Now I would link that thread where there are users with this very same problem but y'know, I just had to restart my browser so I don't have the link anymore :)

Now I get that my setup is still counts as strange but this behavior *guarantees* regular users run away screaming regardless if they can restore or not.
1
0
0
You know what, I'm kind of OK with the #Firefox AI opt-whatever solution they have

...compared to the fact that they kill all my sessions by a forced fucking restart when I try to act responsibly and update.

That's fucking outrageous!
1
1
1
Wow, Blogspot seems to have a massive spam problem!
0
0
0
repeated

Log4j, *the* project that escalated the need for funding open source in the first place, is currently being DOS’d by slop vulnerability reports. Well done everyone. Slow fucking clap.

https://github.com/apache/logging-log4j2/discussions/4052

1
14
0
@fridadotre Thank you for the additional info! I already opened #1096 and #1097 in frida-gum, hope they will be useful!

Right now I'm trying to fingerprint the runtime based on JS behavior (e.g. `console.log(gc.toString())`) but neither gadget configs nor `frida --runtime` seem to have any effect.

Update: It seems in V8 `gc.toString()` doesn't have newlines
1
0
1
repeated

is secured for the billions - the steps we take. There is no silver bullet. No magic solution. Just plain engineering and doing everything as good as we can and to keep tightening every bolt there is.

(slide for upcoming presentation)

1
2
0
repeated
repeated

LOGOS/ASTLOGO.GIF

0
1
0
@algernon

> both double as AI scrapers too

Yes that's definitely a problem, but that can be decided on a case-by-case basis (again, nuance).

> traditional search is dead

In my dreams a service with pagerank+full-text indexing+user-defined ranking would be incredibly useful. I have to deal with so much new shit every day that a personal index wouldn't even be remotely useful.

You may be right about GH, but in this case the means matter more than the ends. "A systems purpose is what it does", and it'd be painful to see anti-scaping work *for* LLMs (I'm still not sure if this is happening or not).
1
0
1
@algernon I get that there's a lot of nuance here, that's why I asked for "consideration" that can include e.g. allowing standard crawlers.

Apparently building an index is much bigger effort than I expected (based on the struggles of EU and alternative providers), so I don't think that will happen in the near future.

LLM performance will degrade for sure, but I don't think it will restore trust in traditional search or otherwise move ppl away from assistants once they became dependent.

Btw. my post was less about your work, and more about e.g. GitHub where content is no longer properly searchable either via web search or their internal search :)
1
0
0
repeated

Want to learn more about Chrome exploitation?

In our latest article, we break down two critical Android GPU driver vulnerabilities that enabled Chrome sandbox escape from a compromised renderer and were used in full device exploit chains. Read the full technical analysis here: https://ssd-disclosure.com/chrome-gpu-sandbox-escape-via-qualcomm-adreno-and-arm-mali-gpu-drivers/

0
2
0
I just realized that my cyclomatic complexity calculator breaks with PyGhidra so I pushed some fixes:

https://github.com/v-p-b/rabbithole

#Ghidra #ReverseEngineering
0
0
2
repeated

I found this Veratasium documentary on the xz Jia Tan backdoor adventure quite good and surprisingly detailed:

https://www.youtube.com/watch?v=aoag03mSuXQ

9
6
0
repeated

This is really a "WTF how could they ever think this is a good idea?" kind of vulnerability. Usually the kind of stuff you get from shady, incompetent startups, but this is Google...
https://trufflesecurity.com/blog/google-api-keys-werent-secrets-but-then-gemini-changed-the-rules

3
13
0
Edited yesterday
The package of my toothpaste says "95% Natural Origin".

5% of my toothpaste is supernatural :O
0
0
4
In the Future All Food Will Be Cooked in a Microwave, and if You Can’t Deal With That Then You Need to Get Out of the Kitchen

https://www.colincornaby.me/2025/08/in-the-future-all-food-will-be-cooked-in-a-microwave-and-if-you-cant-deal-with-that-then-you-need-to-get-out-of-the-kitchen/
1
3
3
Show older