Posts
2457
Following
660
Followers
1484
"I'm interested in all kinds of astronomy."
repeated

So, this is a funny thread about a gag Tom Lehrer left in an old NSA internal publications, and itโ€™s funny, but I have to tell you that I find the idea of sixty year old math papers staying classified is somehow alarming.

https://bsky.app/profile/opalescentopal.bsky.social/post/3luxxx27nos23

1
4
0
[RSS] Modern (Kernel) Low Fragmentation Heap Exploitation

https://r0keb.github.io/posts/Modern-(Kernel)-Low-Fragmentation-Heap-Exploitation/
0
2
3
[RSS] Getting a Shell on the LAU-G150-C Optical Network Terminal

https://spaceraccoon.dev/getting-shell-lau-g150-c-optical-network-terminal/
0
0
1
[RSS] Getting a Shell on the LAU-G150-C Optical Network Terminal

https://spaceraccoon.dev/getting-shell-lau-g150-c-optical-network-terminal/
0
3
4
repeated

bert hubert ๐Ÿ‡บ๐Ÿ‡ฆ๐Ÿ‡ช๐Ÿ‡บ๐Ÿ‡บ๐Ÿ‡ฆ

Alarming as it is, the article below is still not alarming enough! Microsoft France here claims they've never seen a CLOUD ACT request for French government data. Perhaps true. However, under the FISA section 702 & EO 12333, Microsoft is still mandated to deliver such data to the NSA, and Europeans will never learn of that request. US spies do not need to ask Europeans for permission to spy on European governments! https://www.theregister.com/2025/07/25/microsoft_admits_it_cannot_guarantee/

2
4
0
repeated

The European union is developing an age verification app for EU citizens which relies on Google for verifying the integrity of the app.

This means users who run a custom ROM (e.g , ) won't access some EU resources.

Read the complete explanation on Reddit: https://www.reddit.com/r/BuyFromEU/s/yO3njXfX1x

0
3
0
repeated

Foone๐Ÿณ๏ธโ€โšง๏ธ

Edited 1 month ago

Neat game glitch explanation: Why signed integers lead to flirting with dogs

https://www.youtube.com/watch?v=ADenqrgMUgA

0
4
0
repeated

Part of the job as a cybersecurity professional is in fact arguing to purge and not log information about your customers.

Data is not oil. It's risk.

14
10
0
repeated
[RSS] CVE-2025-20281: Cisco ISE API Unauthenticated Remote Code Execution Vulnerability

https://www.thezdi.com/blog/2025/7/24/cve-2025-20281-cisco-ise-api-unauthenticated-remote-code-execution-vulnerability
0
0
2
repeated

You know those non-vulnerabilities that companies get forced to fix for compliance reasons? I've found a full bypass for a common patch strategy. I'm half-tempted to keep it secret for the greater good ๐Ÿ˜‚

2
5
1
repeated

At DistrictCon's inaugural Junkyard competition, we achieved full remote execution on two popular home network devices: a Netgear WGR614v9 router and BitDefender Box V1 security appliance.

Our exploitation techniques included chaining four buffer overflow vulnerabilities with authentication bypass on the router, plus a novel "bashsledding" ROP technique that sprays shell commands into NVRAM for reliable code execution.

Read the blog: https://blog.trailofbits.com/2025/07/25/exploiting-zero-days-in-abandoned-hardware/

0
4
0
repeated
repeated
today's interesting website: running https on port 3, just so the URL has :3 in it

https://silliest.website:3/
1
12
2
[RSS] New Binary Ninja release: 5.1 Helion

https://binary.ninja/2025/07/24/5.1-helion.html
0
1
2
[RSS] exploits.club Weekly Newsletter 80 - ITW Windows Bugs, Deterministic iOS Exploits, Pwn2Own Firefox Vulns, and More

https://blog.exploits.club/exploits-club-weekly-newsletter-80-itw-windows-bugs-deterministic-ios-exploits-pwn2own-firefox-vulns-and-more/
0
0
1
[RSS] Micropatches Released for Windows Disk Cleanup Tool Elevation of Privilege Vulnerability (CVE-2025-21420)

https://blog.0patch.com/2025/07/micropatches-for-windows-disk-cleanup.html
0
1
2
repeated
Show older