Posts
3165
Following
706
Followers
1559
"I'm interested in all kinds of astronomy."
repeated

With the Kagi for Libraries program, we'll offer free access to Kagi for public library patrons worldwide 📚

If your library is interested or you know a local public library that could benefit, encourage them to apply and help us expand this program:

https://kagi.com/libraries

2
3
0
repeated

It's a mild release from and a record-breaking release from . There's a single 0-day to deal with in WEBDAV and, as always, a few deployment challenges. @TheDustinChilds provides all the details at
https://www.zerodayinitiative.com/blog/2025/6/10/the-june-2025-security-update-review

0
2
0
Edited 7 months ago
[RSS] Getting started with Wirego

http://blog.quarkslab.com/getting-started-with-wirego.html

This looks extremely useful!
0
3
4
repeated
repeated

This was a fun one to discover!
SQL syntax can be ambiguous, and MySQL anticipated this a long time ago. Other SQL dialects stuck to the spec, leading to SQL injection when the right stars align:

@SonarResearch https://infosec.exchange/@SonarResearch/114659742648728633

0
5
0
[RSS] CVE-2025-47934 - Spoofing OpenPGP.js signature verification

https://codeanlabs.com/blog/research/cve-2025-47934-spoofing-openpgp-js-signatures/
0
0
1
repeated
[RSS] Strong Typing + Debug Information + Decompilation = Heap Analysis for C++

https://core-explorer.github.io/blog/c++/debugging/2025/06/09/snapshot-analysis-for-modern-c++.html
0
0
1
repeated

I've published my 8086 CPU Test suite for emulators.

It contains 646,000 single-step opcode executions with initial and final register and memory states.

https://github.com/SingleStepTests/8086

1
7
0
repeated
[RSS] Dubious security vulnerability: Tricking a program into running non-elevated

https://devblogs.microsoft.com/oldnewthing/20250609-00/?p=111258
0
0
2
repeated

This essay by @baldur on why individual experiments on the usefulness of "AI" (or similar stuff) don't teach us anything useful and might actually harm us is brilliant.

Go read it. Too many insights to pull a quote TBH: https://www.baldurbjarnason.com/2025/trusting-your-own-judgement-on-ai/

2
4
1
repeated

I asked the old punk
how we will get through this,
and he replied:
we will get through this
by taking care of each other.

So I told the old punk
that isn’t very specific,
and he replied:
taking care of each other
isn’t about doing something specific,
it’s about doing something.

0
7
1
[RSS] Bruteforcing the phone number of any Google user

https://brutecat.com/articles/leaking-google-phones
0
1
2
repeated

Michał "rysiek" Woźniak · 🇺🇦

Remarkable investigation into Telegram by IStories (in Russian):
https://www.istories.media/stories/2025/06/10/kak-telegram-svyazan-s-fsb/

English version by OCCRP:
http://www.occrp.org/en/investigation/telegram-the-fsb-and-the-man-in-the-middle

tl;dr:

👉 Telegram uses a single company with ties to the Russian FSB as their sole infrastructure provider, globally.

👉 Combined with a cleartext device identifier Telegram's protocol requires to be prepended to all encrypted messages, this allows for global surveillance of Telegram users.

I am quoted in this story.

7
21
1
repeated

We’ll trace what really happens inside Telegram when you send or receive a message. 📨

Learn how to capture clean execution traces for Time Travel Analysis, step by step. Register here: https://eshard.eventbrite.fr/ 👈

0
3
0
#music #influencing #youtube
Show content
chill mix with Japanese grandpa at a stationery shop

https://www.youtube.com/watch?v=pJ8EyNFg9Dk

IIRC this is the content YouTube was invented for
0
0
1
A Cult AI Computer’s Boom and Bust

https://www.youtube.com/watch?v=sV7C6Ezl35A

Asianometry about Lisp machines!
0
0
1
"Vibe coding has no place in Linux kernel maintenance. The vulnerability inserted into 5 LTS kernels at once apparently without any review is yet another instance of AUTOSEL fallout, here with the 'new' LLM-powered version."

Thread by @spendergrsec on Thread Reader App

https://threadreaderapp.com/thread/1932079435571671137.html
0
0
1
Show older