Posts
2359
Following
513
Followers
1232
A drunken debugger

Heretek of Silent Signal
repeated
repeated

Rairii (bootloader unlocked, MSR_LE set)

so with the recent news i’ll ask again

does anybody have a uefi firmware image that includes kaspersky antivirus for uefi?

2
6
0
repeated

“For this you keep a lab notebook. Everything gets written down, formally, so that you know at all times where you are, where you've been, where you're going and where you want to get. In scientific work and electronics technology this is necessary because otherwise the problems get so complex you get lost in them and confused and forget what you know and what you don't know and have to give up.”

- Robert Pirsig, Zen and the Art of Motorcycle Maintenance

1
2
0
OK, so US is *really* pissed at Kaspersky.

On a related account I wonder if this talk is available anywhere online?

https://x.com/i0n1c/status/959475238106001408
1
0
0
repeated

Lorenzo Franceschi-Bicchierai

NEW: The U.S. government has sanctioned 12 executives and senior leaders of Russian cybersecurity giant Kaspersky.

Notably, Eugene Kaspersky and company itself are not on the sanctions list.

These sanctions come a day after the U.S. government banned the sale of Kaspersky software in the United States.

https://techcrunch.com/2024/06/21/u-s-government-sanctions-kaspersky-executives/

1
6
0
[RSS] Analysis of CVE-2024-25065: Apache OFBiz Security bypass

https://blog.securelayer7.net/security-bypass-in-apache-ofbiz
0
1
3
repeated
Edited 3 months ago

+++ COMMERCIAL BREAK +++

🎶 "Sometimes you wanna go
Where everybody knows your name
And they're always glad you came
You wanna be where you can see (ah-ah)
Our troubles are all the same (ah-ah)
You wanna be where everybody knows your name ..." 🎶

RC-BOX BBS - the world's first and (currently) only based bulletin board system on this planet. Open 24/7!

Running CP/M 2.2 and (forked and highly customized 4.1), connected to the modern world via a and a 9600 serial line.

RC-BOX BBS - we are looking forward to your visit!

0
4
0
repeated

Has reliance on SSO left orgs with a single point of exploitation? Our latest research by Francesco Lacerenza explores various IdP compromise scenarios as well as how to harden and detect attacks in Teleport installations.

https://blog.doyensec.com/2024/06/20/compromised-idp.html

0
1
0
repeated
repeated

I feel like the Internet Archive debate hits differently in countries like the US and UK, and countries like Hungary.

I do tons of academic research. The volumes needed to keep up with academia often run $100+ each. And unless I order them from overseas (delivery $30-50 each) there is no access to them. Several don't have a copy *on the entire continent* (few Hungarian libraries do international loan but it takes large amounts of money and months.)

I imagine many countries are even worse off.

1
4
0
[RSS] CVE-2024-27815 Writeup - A Buffer Overflow in the XNU Kernel

https://jprx.io/cve-2024-27815/
0
0
1
repeated
Edited 3 months ago

Popular opinion seems to be that and are "fighting/competing."

Sure we have our differences in philosophies and design, but it's way more akin to siblings having small spats. But in the end we are siblings in family and I like GNOME folks a lot. And if anyone attacks my siblings, I'm there to defend them.

We can and we should work together as much as possible, not just GNOME or KDE but all other DE's too like and to be the best computing experience possible.

It's not perfect and it's never gonna be because perfection is unattainable, but perfect is also enemy of good.

Let's keep doing our best. Together.

Edit: happy pride! And trans rights are human rights.

2
8
1
repeated

Lorenzo Franceschi-Bicchierai

NEW: U.S. government bans sale of Kaspersky software in the country — both consumers and businesses — due to security and privacy risks from Russian government.

“First of its kind” sales ban starts on July 20. After Sept. 29 Kaspersky can't send updates to U.S. customers.

“Russia has shown it has the capacity, and even more than that, the intent to exploit Russian companies like Kaspersky to collect and weaponize the personal information of Americans. And that’s why we are compelled to take the action that we’re taking today,” U.S. Commerce Secretary Gina Raimondo said in a call with reporters.

https://techcrunch.com/2024/06/20/us-bans-kaspersky-software-security-risk-russia/

3
5
0
I came to the conclusion that success in music in 2024 means that YTs superhuman AI plays exactly 2 tracks of yours ad infinitum
0
0
0
repeated

Can LLMs find vulns? Here’s what Project Zero found

https://googleprojectzero.blogspot.com/2024/06/project-naptime.html

3
8
0
[RSS] A Case Study About Exploiting the Flexibility of Email Addresses For OS Command Injection

https://modzero.com/en/blog/beyond_the_at_symbol/
0
0
0
[RSS] The time smart quotes prevented the entire Office division from committing code

https://devblogs.microsoft.com/oldnewthing/20240618-00/?p=109910
0
0
2
repeated

Interested in decompiler design? You'll love our latest blog post! https://binary.ninja/2024/06/19/restructuring-the-decompiler.html

Not interested? You'll still love the massive improvements the latest update brings to control flow recovery! Simpler conditionals, flatter code depth, more accurate transformations, easier to read and understand. Everything is better.

0
5
0
repeated
Show older