Frida 16.5.0 adds native breakpoint and watchpoint APIs. There was some attempts to implement those in DWARF and #r2frida already, but having them in the stock SDK makes them way more comfortable to use and stable https://frida.re/news/2024/09/06/frida-16-5-0-released/ #frida
NSA's No Such Podcast: How We Found Bin Laden: The Basics of Foreign Signals Intelligence
Current and former senior NSA officials, who were involved in the search for Osama bin Laden after the September 11, 2001 terrorist attacks, describe NSA's role in the foreign signals intelligence to help find him. You can read the transcript as a 15 page PDF
Zig's Memcpy, CopyForwards and CopyBackwards
https://www.openmymind.net/Zigs-memcpy-copyForwards-and-copyBackwards/
Discussions: https://discu.eu/q/https://www.openmymind.net/Zigs-memcpy-copyForwards-and-copyBackwards/
My talk on Webkit's JIT compilation at Off-By-One con is up! https://www.youtube.com/watch?v=9rt9ErQKnf8
IDA Pro is moving to a subscription model on 30 Sep 2024.
NOW is the time to obtain or renew your perpetual (non-subscription) license.
IDA Pro 8.x will be the last non-subscription version.
Had to verify. And yes. Kernighan and Ritchie really did this. TIL :)
The Internet Archive lost its appeal in the Hachette case. What a huge, devastating loss for all of us.
I always wanted to have IDA's graph-overview for source-code.
So I created a small VS-Code extension to do that for me.
https://marketplace.visualstudio.com/items?itemName=tamir-bahar.function-graph-overview
It currently supports Go and C; adding more languages should be relatively straightforward.
This must be the ultimate #C64
Dual SID chips, tube amp, full mechanical keyboard.
Cisco security advisories includes a zero-day:
EDIT: What @BleepingComputer took away out of this is that CVE-2024-20439 is a backdoor admin account: Cisco warns of backdoor admin account in Smart Licensing Utility
#zeroday #cisco #patchtuesday #vulnerability #CVE_2024_20469 #cve #CVE_2024_20439
(indistinctly yelling at the computer)
this is a series expansion of a natural logarithm
‘Everything happens for a reason’ sounds less comforting when the reason is very fucking poor planning
We want your old GPUs that were destined to become e-waste.
We're repurposing outdated GPUs to tackle challenging computer security and program analysis problems. https://buff.ly/3XsbdgJ
In light of the Internet Archive losing its appeal to hachette, I just wanted to point out some websites you should avoid:
* https://annas-archive.li/
* https://downmagaz.net/
* https://ebook-hunter.org/
* https://forcoder.net/
* https://freemagazines.top/
* https://liber3.eth.limo/
If you were to download books from these websites, you might cut into hachette's more than three billion dollars of annual revenue. So make sure to avoid those websites and the following:
* https://libgen.is/
* https://oceanofpdf.com/
* https://pdfroom.com/
* https://pdfstop.com/
* https://pdfdrive.to/
* https://pdfmagazines.club/
* https://sci-hub.se/
* https://singlelogin.re/
* ... or any of the other sites listed at https://rentry.co/megathread-books
Fucking @buherator trying to kill me with this home made Palinka
⚡ Operator Fabric is an open source platform built by the LF Energy Foundation (https://lfenergy.org/) for use in electricity, water and other utility operations.
Last May we did a security audit sponsored by the Open Source Technology Improvement Fund (https://ostif.org) 🙏
Read a summary of our findings and find the full report here:
Ongoing slab hardening efforts
Recently, there have been multiple efforts to make the exploitation of slab memory corruptions harder.
🧵[1/5]
I started a couple of forest fires to heat my burrito and I'm surprised by the results! It was still frozen in the middle by the end of the experiment, so it's far from perfect, but I think forest fires have a lot of potential and will revolutionize the burrito heating industry!
I’ll reiterate what many others have said about the yubikey story - unless you’re the target of super sophisticated actors who do not want you to know they’ve stolen your yubikey*, this is a bit of a non-event and highlights the importance of keeping track of your yubikeys. Please don’t toss them, but do keep an eye out for further developments. Once an issue like this is identified, it attracts a lot of attention from many smart people and there may will be other findings in the future, but for now, yubikeys are good enough for most of us.
* I know there are a bunch of people convinced you’re being pursued by these advanced adversaries. I worry about you. For many reasons.