66 weeks in a row...whatchu know about it ๐ฐ THE vuln research newsletter out NOW
MCPGhidra from @lauriewired
@u1f383 talks DirtyCOW
Mitigations galore with @standa_t and @slowerzs
XSS -> RCE with @chudypb and @watchtowrcyber
+ Jobs and MORE ๐
Frida 16.7.0 is out w/ brand new APIs for observing the lifecycles of threads and modules, a profiler, multiple samplers for measuring cycles/time/etc., MemoryAccessMonitor providing access to thread ID and registers, and more ๐ https://frida.re/news/2025/03/13/frida-16-7-0-released/
#NotepadPlusPlus v8.7.9 released.
The author is totally my spirit animal.
#arm64 #windows #freeware
https://notepad-plus-plus.org/news/v879-we-are-with-ukraine/ https://notepad-plus-plus.org/news/v879-we-are-with-ukraine/
Edit: we is fedi-trending, guyzz! ๐ค
In 2020, I solved a gnarly reverse engineering challenge in PlaidCTF. Only 9 teams solved.
It's a huge pile of Typescript. Everything is named after a fish.
The catch? There's no code, only types. How do they perform computation using just the type system?
(Spoiler: Circuits!)
High level diff of iOS 18.4 vs. iOS 18.5 beta 1 ๐
https://github.com/blacktop/ipsw-diffs/blob/main/18_4_22E240__vs_18_5_22F5042g/README.md
We've been teasing it for a while, but the full features of Firmware Ninja are officially available on dev and will be in the 5.0 release later this month! Doing reverse engineering of embedded firmware? Check out how FWN can make your life better:
How can one engage in algorithmic sabotage to poison "AI" scrapers looking for images when one is running a static website? Thanks to @pengfold, I've implemented a quick and easy way for my own blog:
https://tzovar.as/algorithmic-sabotage-ii/
Also thanks to @rostro & @asrg for the pointers and discussion!
It's time to explain Thunderbird's relationship to Mozilla again.
Thunderbird is in its own legal entity - MZLA Technologies and is governed in part by a Community Council elected by and from our open source contributors.
Thunderbird is currently 100% donation-funded. We do not receive any money outside what our donors give us.
This is good for Thunderbird and makes us unique. Our whole structure only works to serve the interests of our users and contributor community.
70 DIY Synths on One Webpage
https://hackaday.com/2025/04/02/70-diy-synths-on-one-webpage/
Time Travel Analysis with a full-system android emulator gives you the full picture.
But if you're just looking at one part of an app, a lighter method can be enough.
Hereโs how we used Frida to do it: https://eshard.com/posts/frida-tracer-lightweight-time-travel-analysis
#mobilesecurity #android #androidsecurity #reverseengineering