“HKEY_CURRENT_USER. You will never find a more wretched hive of scum and villainy.”
Anybody knows how to demangle a string, not a symbol, in #Ghidra using Python?
been reminded of this several times this week and not in a nice way
Firefox now has Terms of Use! This'll go over like a lead balloon.
You give Mozilla all rights necessary to operate Firefox, including processing data as we describe in the Firefox Privacy Notice, as well as acting on your behalf to help you navigate the internet. When you upload or input information through Firefox, you hereby grant us a nonexclusive, royalty-free, worldwide license to use that information to help you navigate, experience, and interact with online content as you indicate with your use of Firefox.
I got another #NameThatWare for you all. This time, lets try something new.
Its quite hard to make a challenge that is both accessible and challenging at the same time. So now, I will post multiple pictures. The first in this post is the 'hard' level. If you are not an expert, look at the 2nd picture that will be behind a CW. There is also a 3rd picture for easy-mode.
As always, try to write down you observations and deductions behind a CW to not spoil it for others.
NEW: Hacked crypto exchange Bybit is offering $140 million in bounties to anyone who can help locate and freeze the stolen ethereum.
Bybit also disclosed preliminary results of investigations, which reveal hackers breached a developer’s device at a wallet platform Safe Wallet.
Wrapping up our COM hijacking series! 🎉
In the final part, we discuss a custom IPC protocol, use a registry write to gain SYSTEM privileges, and explore Denial of Service attacks on security products. 💥💻
Don't miss it! https://neodyme.io/en/blog/com_hijacking_4/
here is my problem today: how to get more readers onto Pivot To AI? https://pivot-to-ai.com
you know what the site is and what it does
typically ~1000 unique viewers a day, pretty stable
regular readers become patrons, but first I have to lure them in repeatedly - that's my pipeline
ideas welcome, including bad and hackneyed ones
Hackaday Europe 2025: Workshops and More Speakers
https://hackaday.com/2025/02/26/hackaday-europe-2025-workshops-and-more-speakers/
8 CVEs in X.Org X server and Xwayland https://www.openwall.com/lists/oss-security/2025/02/25/1
CVE-2025-26594: Use-after-free of the root cursor
CVE-2025-26595: Buffer overflow in XkbVModMaskText()
CVE-2025-26596: Heap overflow in XkbWriteKeySyms()
CVE-2025-26597: Buffer overflow in XkbChangeTypesOfKey()