Posts
2940
Following
697
Followers
1539
"I'm interested in all kinds of astronomy."
#LazyWeb What is the minimum possible offset of the entry point of a PE executable inside the file?

* summoning @Ange *
1
0
1
repeated
repeated

New aardwolf version 0.2.12 is out on Github and pip.
The frame decoder now has less imports and supports pyo3 with abi3 to keep it working on "all" python versions. This has the effect that 3.12 and above is now supported on Windows as well.
https://github.com/skelsec/aardwolf/releases/tag/0.2.12

1
1
0
repeated

The full webinar recording is out. 🔴
Watch time travel debugging in action: https://youtu.be/tEzumvwjUzo

0
2
0
Edited 7 months ago
- There is no point using single letter identifiers in modern programming languages, make your names descriptive!
- `pe_mofs_to_fofs_ex`

(not sure which meme template would fit this one)
0
0
0
repeated
implied violence against computers
Show content

going to take some weapons to the datacenter any day now

1
1
0
"Use TeleMessage, use Tor"
0
0
1
repeated
it's so fucking excruciating to watch everyone slowly get lobotomized by a dumb pile of linear algebra that burns forests to lie
0
9
0
[RSS] What are we on? A survey on substance use among cybersecurity professionals.

https://forms.gle/GdfVJDPnZHVz1jY67

On Google Forms of course /o\
0
0
2
repeated

How was it like to attend the exclusive event? How did a Unix even qualify in the first place? How can you become one of the MVRs?

Our technical director @raptor answers these and other questions in his latest article:

https://security.humanativaspa.it/my-zero-day-quest-bluehat-podcast

0
3
0
repeated

Happy birthday to Wolfenstein 3D, released on this day, 33 years ago on 5th May 1992!

0
11
0
repeated

The tech industry is a teenage industry. Rebelling against what it sees as old and uncool while desperately following fads and fashions as it tries to fit in with what everyone else is doing.

2
4
0
repeated
Edited 7 months ago

If you've ever struggled with trait/typeclass compiler errors, or if you're interested in better user interfaces for compiler diagnostics, check out our upcoming PLDI paper: "An Interactive Debugger for Rust Trait Errors"

Rust famously has good error messages. But we found that with the right interface, people become ~3x faster at identifying the root cause of a trait error. See our blog post, including a live demo in your browser:

https://cel.cs.brown.edu/blog/an-interactive-debugger-for-rust-trait-errors

1
5
0
repeated

“I started a spreadsheet, which is what middle-class professionals do when faced with systemic problems — we quantify things, as if converting human suffering into Excel cells might render it more manageable.” Via @gvwilson.

https://www.huffpost.com/entry/utah-school-lunch-debt-relief-free-student-meals_n_681258fbe4b03207b5ba49fa/amp

4
12
0
repeated
Edited 7 months ago

did you know that GDB includes a bytecode compiler? specifically, it has a private [edit: it's documented] bytecode format used between it and the GDB server, which the latter uses to implement conditional breakpoints with complex expressions and tracepoints

every time it hits a breakpoint/tracepoint it evaluates the bytecode, which has jumps and can read arbitrary target memory, and decides whether it really was hit or not

5
5
0
repeated
repeated

ICYMI: “Every TWINSCAN EUV ships with ~45 million lines of code […] Bugfixes and features start out as *word documents* sent to a series of review boards…”
https://alecmuffett.com/article/113264

1
1
1
repeated

: a critical security vulnerability discovered in a widely-used web-based system administration tool, allowing authenticated attackers to escalate privileges to root level and execute code.
Caused by CRLF injection: CVE-2025-2774 (CVSS 8.8)
👇
https://cybersecuritynews.com/webmin-vulnerability-escalate-privileges/

1
4
0
repeated

Project Zero Bot

New Project Zero issue:

Firefox: JavaScript can run during XSLTProcessor transform, leading to use-after-free

https://project-zero.issues.chromium.org/issues/389079450

CVE-2025-3028
0
1
1
Show older