RE//verse 2026 CFP is open! Want to be apart of the lineup? Submit your talk: https://sessionize.com/reverse-2026
Still looking for a winter con to attend? RE//verse returns to Florida in March! You don't want to miss out. Get your tickets here: https://shop.binary.ninja/collections/re-verse-admissions-requires-sales-tax/products/re-verse-2026-admission
Since #Microsoft does not care, and the grace period is over, here is the Hardened Runtime bypass they introduced through .NET MAUI on #macOS. All applications built with it are vulnerable. The #vulnerability has existed probably since 2019.
https://afine.com/breaking-hardened-runtime-the-0-day-microsoft-delivered-to-macos/
As the person that founded the most high profile Black instance in the fedi and still develops safety tools for this environment, there is still a lot of resistance in the fedi in accepting how massively it failed Black and Brown internet folks.
I don’t mind the technical discussions between ATProtocol and Activity Pub because they both have stuff to learn from each other, but the fedi damaged reputation isn’t due to technical concerns.
The fedi has a *terrible* reputation to the point people are choosing a corporate option they know is bad over a free one.
Folks really need to think about what that means.
I regularly talk to folks who left the fedi and they *consistently* say the bigoted harassment they faced on the fedi is the *worst they’ve experienced* online. These aren’t people that are unfamiliar with how digital communities work. These are veteran digital citizens that are accustomed to bad faith engagement on the web.
Fortunately, the rise of Blacksky and other independent installs are rendering Bluesky irrelevant as it continues to enshitify, but the fedi needs to accept its utter failure in regards to safety and moderation is a central reason why we are talking about Bluesky at all.
I do believe it’s possible for the fedi to still be a major player in social media.
But it has to be real about why many people believe Bluesky is the lesser evil.
I am a @mwl fan, and have been for a long time, so I cannot but recommend backing his 2nd edition of Networking for Systems Administrators:
Let's get the new generation of "cloud natives" civilised with an understanding of systems and networking!
I'm happy to share that LIEF 0.17.0 is out: https://lief.re/blog/2025-09-14-lief-0-17-0/
one of the worst ever "comprehensive security audits" ...
History students are often disappointed when they learn why the AI take-over failed. They were defeated by human resistance, which was kept alive by libraries and old paper books, and a surprising machine ally.
Books had not been replaced, because even the mightiest AI could not make printers work.
Fascinating article by @kimzetter about the 2013 Mandiant APT 1 report that revealed the identities of the Chinese PLA threat actors behind the attacks. Q&A with the main report's architect reveals behind-the-scenes details. It's a great read! https://www.zetter-zeroday.com/how-the-infamous-apt-1-report-exposing-chinas-pla-hackers-came-to-be/?ref=zero-day-newsletter
Wrote a trigger for CVE-2025-38494/5 (an integer underflow in the HID subsystem) that leaks 64 KB of OOB memory over USB.
Still works on Pixels and Ubuntus (but the bug is fixed in stable kernels).
https://github.com/xairy/kernel-exploits/tree/master/CVE-2025-38494
"this thing is super junk"
- Quote from the team exploit mines 2025-09-09T15:37:00Z
Proton enabled the two accounts of the authors again (after 3+ weeks and ignoring appeal and email to legal). The authors did not violate any ToS. No spam/malware was sent. No hacking. Just 6 emails to warn South Korea about a breach (not by them). Our reply and offer to Proton: