Posts
2528
Following
646
Followers
1460
"I'm interested in all kinds of astronomy."
repeated
repeated
the only thing worse than "WHY IS THIS BROKEN" is "WHY DOES THIS WORK"
0
3
0
repeated

Adobe introduces the One Click Stalin tool.

0
6
1
repeated

Ever wanted to feed the decompiled C code into source code analysis tools?
With rev.ng you can! 💪

We emits syntactically valid C code!

Here's a PoC did with Clang Static Analyzer. 😎

0
2
1
repeated
repeated
repeated

How does F5's Secure Vault, its "super-secure SSL-encrypted storage system" work? Response in this article by team member @myst404

https://offsec.almond.consulting/deep-diving-f5-secure-vault.html

0
2
0
repeated

🚨 New advisory was just published! 🚨

A vulnerability in the Linux kernel allows local attackers to escalate privileges on affected installations of Linux Kernel:
https://ssd-disclosure.com/ssd-advisory-linux-kernel-nft_validate_register_store-integer-overflow-privilege-escalation/

0
1
0
repeated
repeated
repeated

Distributed Denial of Secrets

NEW: Fox Spy (3.3 GB)

Eight years of data from the Brazilian surveillance company Fox Spy, also known as Celular 007.

The spyware allows users to monitor phone calls along with SMS, WhatsApp and Facebook messages. The company's surveillance software also allows users to remotely activate the microphone and camera on a phone, as well as to monitor the device's screen

Due to widespread presence of PII, the data is only being made available to journalists and researchers

https://ddosecrets.com/wiki/Fox_Spy

0
5
0
repeated

Just because you get access denied accessing a folder, it doesn't mean you can't get access. A quick look at bypassing the security on the WindowsApps folder. https://www.tiraniddo.dev/2024/06/working-your-way-around-acl.html. This was inspired by a specific toot from @detective :)

0
6
0
repeated

Many, many years ago, a new specification called "XML" emerged. After a bit, people realized it was kinda useful for some stuff.

Then, something happened.

MANAGERS!

I imagine many conversations between managers / developers somewhat like this:

M: "So, what is the nice thing with

D: "oh, it is a specification that simplifies stuff, since tools have a clean format to work with."

M: "So, what kinda specifications?"

D: "Oh, it can be more or less anything."

M: *starry eyed!* "an.. an... anything?"

I was teaching computer courses for companies at that point. Suddenly, my calendar was just packed with XML courses.

It is like very limited what you can teach, it is not really complex, so you talk surrounding technologies. But not...

"Our boss wants us to replace the SQL db with XML?"

"what?"

"We gonna use XML instead of MS SQL"

"... what?"

"He said XML can be used for anything..."

If you think companies with plans have actual plans, with a strategy make sense, please think of this story.

7
13
0
repeated

Wheeeeeeeeeeeeeeee. Bye bye NTLM.

3
8
1
repeated

SANS Internet Storm Center - SANS.edu - Go Sentinels!

A Wireshark Lua Dissector for Fixed Field Length Protocols https://i5c.us/d30976

0
2
0
repeated

PSA: feel free to shitpost as much as you want on Mastodon, there’s a fair chance it will get scraped and used to train AIs.

3
2
0
repeated

I’m making a new religion that turns libraries into religious institutions and our most holy practice is going to the library and reading books. On the weekend we all get together and read silently together at the library. Our holy leaders are our librarians as they are guides to knowledge.

This way it makes it significantly harder to defund libraries.
😈

0
7
1
repeated

Introduction to XDP, eBPF and AF_XDP has been released on media.ccc.de https://media.ccc.de/v/osmodevcon2024-204-introduction-to-xdp-ebpf-and-afxdp

0
3
0
repeated

Issue #4 is out - enjoy!
https://pagedout.institute/?page=issues.php

Please share and tell your friends!

0
5
0
repeated
Show older