Posts
3804
Following
723
Followers
1598
"I'm interested in all kinds of astronomy."
@me no it just seems that since Linux package managers overwrite its binaries Firefox refuses to open new tabs until it is restarted which is quite frustrating when you are in the middle of something (esp. if you are also in private mode so your tabs/sessions can't be restored).

recommendation is to use Mozilla's distribution+update mechanism to keep the browser up-to-date.
0
0
0
repeated

Keep these monstrosities off our roads 🙅‍♂️

"US carmakers have accused Brussels of keeping their largest pick-up trucks, including the Ford F-150, the Chevy Silverado and the Ram 1500, off European roads”

https://www.ft.com/content/3eb796fd-bcdb-4a9f-89b7-f7d5e692a3cd

https://www.carsized.com/en/cars/compare/renault-twingo-1998-3-door-hatchback-vs-ford-f-350-2016-4-door-pickup-crew-cab/

31
19
0
@floyd @evilpie I tried to avoid elaborating on "scale" because it refers to many things in this case, e.g.:

- How easily you can adapt to a new target (vs. AFL)
- How much power is available for the task (GPU acceleration)
- Number of bug classes you can (trivially) aim for (vs. fuzzing for logic bugs)
- etc.
0
0
1
repeated
Edited 2 days ago

📱 Summer intern wanted!

@exhel and I are looking for someone to help us reverse engineer Android apps this summer @ TU Graz.

→ 20 or 40hrs/week contract
→ Helpful background: Android, reversing, or messaging apps

Send a short motivation statement + CV to lena.heimberger@tugraz.at AND edona.fasllija@tugraz.at

Boosts appreciated! 🙏

0
2
0
repeated

you know that problem where it's actually in Google's best interests to sabotage their traditional search results to force everyone to use the AI results because then you never leave the site and direct prompt advertising becomes extremely valuable? yeah, it's like that for code, where it's actually in anthropic's best interests for all the code to be entirely unmaintainable and unsecurable except for with LLMs

5
10
0
repeated

In the 70s they could open Facebook by pressing the Meta key and there were Like and Dislike buttons right on the keyboard.

2
4
0
repeated

Here’s why it’s important to always use r2 from git. In r2land, we follow the law of full disclosure and fix any reported vulnerability within a 24h deadline, as stated in SECURITY.md https://blog.calif.io/p/mad-bugs-discovering-a-0-day-in-zero

0
3
0
repeated

It's so cool that anthropic is setting up a double-sided protection racket where it will profit from the massive token burn of attackers and defenders with a tool specifically designed to generate exploits and their only observable mitigation is a clientside system prompt that sternly warns the LLM to be good and not do malware
https://red.anthropic.com/2026/mythos-preview/

3
10
0
Spooler Alert: Remote Unauth'd RCE-to-root Chain in CUPS

https://heyitsas.im/posts/cups/

More LLM bugs: CVE-2026-34980 and CVE-2026-34990
0
2
2
repeated

To my security peeps: Was the introduction of widespread fuzzing similar to AI-based bug hunting now, or is this really a different beast?

1
4
0
@evilpie IMHO it's very similar, definitely larger scale though
1
0
4
repeated

Nope, no one from Anthropic Glasswing has been in touch.

4
4
0
[RSS] Milking the last drop of Intego - Time for Windows to get its LPE

http://blog.quarkslab.com/milking-the-last-drop-of-intego-time-for-windows-to-get-its-lpe.html
0
0
0
repeated
repeated

Systematically reviewing Python C extensions (575+ bugs found so far) and offering to analyze yours!

I’ve recently analyzed 44 C extensions for correctness and free-threading readiness. I'd love to run the analysis on your extension too.

If you want the deep dive into the methodology, the false positive rates, and what I've learned, I wrote a full post here: https://discuss.python.org/t/systematically-finding-bugs-in-python-c-extensions-575-confirmed-so-far/106875

But if you just want your C extension checked, reply below or DM me!

2
4
0
re: meta
Show content
@meowski again, if that is concerning to you, you are free to limit your posts visibility and vet your followers. otherwise, limiting search will not protect you.
1
0
0
re: meta
Show content
@meowski Nobody forces anyone to post embarrassing things on the public Internet. On the other hand many ppl post their thoughts on the public Internet so others can discover and interact with them.
1
0
1
re: meta
Show content
@lain @i @feld It's not only about journalists, I personally spend significant resources to preserve/dig up stuff as needed, all of which should be trivial if scraping wasn't a (really stupid) taboo. This also hurts the discoverability of posts&accounts.

I guess some would prefer hiding in their little bunkers with their chosen friends (and that's fine), but if we want to have an open social network it's probably the wrong strategy to design things around that concept.
1
0
3
re: meta
Show content
@i Yes, this is exactly the problem. I have accounts at multiple instances (pretty sure some have elastic), search is shit everywhere. We'd also need federated search which would require scraping, leading back to your comment...
0
0
0
Show older