Posts
3718
Following
724
Followers
1598
"I'm interested in all kinds of astronomy."
repeated

got a fun reply yesterday that was like "yeah I can't believe people are taking such a lax approach to verifying the behaviour of software especially if they use LLMs. we never would have done this when I worked at <well known arms manufacturer>"

0
1
0
Edited 14 days ago
Managed to set up cross-platform #Rust development environment with @zed using Windows as a remote host. Some tips:

* You have to let Zed proxy through the Windows firewall (I just disabled it as usual, since this is a lab network)
* The default cmd.exe shell doesn't seem to work with remote tasks (I suspect character escaping error), you have to explicitly set powershell.exe

I was initially concerned about usual Windows SSH shenanigans, but surprisingly my config (with jumphost and an agent) worked flawlessly from Linux.

h/t @raptor for the tip!
1
1
3
repeated

Frida 17.8.0 dropped with frida-strace syscall tracing on Android & iOS, no jailbreak required 🙌 https://github.com/frida/frida/releases/tag/17.8.2

0
2
0
repeated

A very detailed tutorial from "Joaquin Pinillos"

Walk x86-64 page tables by hand in qemu and gdb. Decompose a virtual address, follow cr3 through all levels of physical memory, and extract a flag from raw bytes.

https://github.com/jazho76/page_table_walk

0
4
0
repeated
Battlefield: Budapest - An Unprecedented Russian Operation to Influence the Hungarian Elections

https://eurazsiaijegyzetek.substack.com/p/battlefield-budapest-an-unprecedented
1
6
4
repeated

RegPwn was a Windows 0-day that we were using for LPE in our Red Team for a year (discovered by Filip D. In January 2025). Unfortunately it got fixed 🥲

Good bye RegPwn 🫡

https://www.mdsec.co.uk/2026/03/rip-regpwn/

0
6
1
repeated
repeated

RegPwn - Windows LPE vulnerability (now fixed) https://www.mdsec.co.uk/2026/03/rip-regpwn/

0
3
0
This timeline is truly amazing:

There is an ongoing case in front of the #EU Curia to test #copyright laws vs LLMs:

https://infocuria.curia.europa.eu/tabs/document?source=document&text=&docid=301042&pageIndex=0&doclang=en&mode=doc&dir=&occ=first&cid=489283

This would be pretty boring, BUT the case is based on a story of this guy who became a singer celebrity in the '90s in #Hungary, then a few years ago he gave an interview sky-high on cocaine talking about the awesome dolphins in lake Balaton:

https://www.youtube.com/watch?v=kxkiM635LMk

(there are no dolphins in Balaton)

Being the self-promotion genius he is, he actually kept on promoting the deployment of dolphins to Balaton, and (copyrighted) reports of this activity are now part of the court case! Naturally, he also wrote a song about the topic:

https://www.youtube.com/watch?v=mUJXhAjZQ7A

#Kozsó
0
1
5
AI is the Best Thing to Happen to Art

https://geohot.github.io/blog/jekyll/update/2026/02/19/ai-art.html

(See also: photography vs painting)
0
0
1
repeated

"AI is giving attackers a huge advantage!"

"Yes, it is. It's amazing how quickly it has destroyed dev, sec, ops, management, company missions and priorities, regulations, information literacy, and civil society, making everyone more vulnerable."

10
13
1
Edited 16 days ago
"I traced $2 billion in nonprofit grants and 45 states of lobbying records to figure out who's behind the age verification bills."

https://web.archive.org/web/20260313090844/https://www.reddit.com/r/linux/comments/1rshc1f/i_traced_2_billion_in_nonprofit_grants_and_45/

https://github.com/upper-up/meta-lobbying-and-other-findings

Spoiler: It's Meta.
0
1
1
repeated

Kagi's Small Web just got a big upgrade! Introducing browser extensions, mobile apps and categories:

https://blog.kagi.com/small-web-updates

3
3
0
repeated

RE: https://hachyderm.io/@pheonix/116221805295722939

only exists for two reasons:

- Money
- Info gathering on everyone for reason 1

3
8
0
repeated

Wrote down everything I wish I knew earlier about Python supply chain security. Hash pinning, pip-audit, SBOMs, trusted publishing — the whole thing. Enjoy 🐍🔒https://bernat.tech/posts/securing-python-supply-chain/

4
8
0
repeated

What we get upset about. Cartoon for Dutch newspaper Trouw: https://www.trouw.nl/cartoons/tjeerd-royaards~bcb45712/

3
22
0
repeated

"There are, of course, an infinity of variations to that single routine."

A new page of my comic Ekphrasis, which you can read for free at https://ekphrasiscomic.neocities.org/.

1
4
1
Remote Pre-Auth Buffer Overflow in GNU Inetutils telnetd (LINEMODE SLC)

https://seclists.org/oss-sec/2026/q1/300

#NoCVE yet?
0
2
0
[RSS] Archive of classic reverse engineering tutorials (Armadillo, ASProtect, Themida, SoftICE era)

https://github.com/Show0ne/archivo-syxe05-snat
0
0
0
Show older