Posts
4425
Following
738
Followers
1652
"I'm interested in all kinds of astronomy."
repeated

We don't eat our own dog food because frankly it tastes like shit

https://finance.yahoo.com/technology/ai/articles/google-ai-team-tells-job-222929935.html

2
6
0
repeated

Inspirational Skeletor💀

1
12
1
[RSS] Bypassing Android Hardware Attestation from the Analyst's Chair

http://blog.quarkslab.com/bypassing-android-hardware-attestation.html
0
1
0
repeated
Today the solution for the Halting Problem is: It does not halt.

#fml
0
0
3
repeated
repeated

Mark Wyner Won’t Comply vm

Discovered while doing ethnographic research for a public library district. I was touring one of their branches when this caught my attention.

It’s genius. Smartest solution I’ve seen for this common problem.

Librarians could save the world if we’d let them. 😉

4
6
0
repeated

PEOPLE/ARNOLD1.GIF

0
1
0
Any recommendations for books on #DistributedComputing?

I'm primariy looking for a best-practices kind of thing to recognize potential problems early and avoid reinventing wheels.

#Bookstodon #FediBooks
1
3
0
Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)

https://www.rapid7.com/blog/post/ra-microsoft-sharepoint-jwt-token-authentication-bypass-cve-2026-55040/
0
0
2
repeated
repeated

New video: Compiled V8 JavaScript for reversers 🎥

➡️ V8 compilation pipeline
➡️ bytecode caching
➡️ how bytenode abuses caching for protection

https://www.youtube.com/watch?v=YSSCMSMcpeM

0
3
0
repeated

Richard Scarry already summarized everything there is to know about cyber security, about 50 years ago.

2
33
1
repeated

RE: https://fosstodon.org/@frehi/117077677106911268

paging all nerds who run their own mailserveres

1
4
0
repeated

Rogue vSphere server that captures credentials from Veeam Backup & Replication https://github.com/mattmillen15/VeeamThief

1
1
0
repeated

CVE-2025-7771 — ThrottleStop.sys Arbitrary Physical Memory R/W https://github.com/enessakircolak/CVE-2025-7771

0
2
0
repeated

ETW for Security Research: Providers, Sessions, and Detection Engineering https://idov31.github.io/posts/inside-etw-with-etwsuite

0
2
0
repeated

What the…??? I mean, leaking a signing key to a private GitHub repository is clearly better than leaking it to a public one. But still, I remember a blog post from something like two decades ago about how Mozilla was using hardware tokens for signing, so that the signing keys could not possibly leak. That probably pre-dated their Linux package repositories, so either the concept wasn’t used consistently after that or at some point performance became more important than protecting key material (Mozilla’s infrastructure is producing lots of builds).

https://blog.mozilla.org/security/2026/08/10/updated-gpg-key-for-signing-firefox-and-thunderbird-releases/

1
2
0
Show older