infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@mainframed767 outstanding move!
this post | permalink
@doyensec nice ride, congrats!
this post | permalink
@adamshostack see, data is literally the new oil
this post | permalink
[RSS] Can chatbots craft correct code?

https://blog.trailofbits.com/2025/12/19/can-chatbots-craft-correct-code/

"The difference between compilers and LLMs isn’t just about control or abstraction. It’s about semantic guarantees. And as I’ll argue, that difference has profound implications for the security and correctness of software."
this post | permalink
The state of advanced research:

IBM's X-Force blog has a chatbot, but can't correctly render static images:

https://www.ibm.com/think/x-force/patch-tuesday-exploit-wednesday-pwning-windows-ancillary-function-driver-winsock

(could you kick some butt @chompie1337 ? )
this post | permalink
Business idea: an LLM chat connected with OnlyFans, where you can see the server. When the LLM makes shit up, you can pay extra and watch as a person dressed in latex does unspeakable things to the machine until it breaks.

#bdsm
this post | permalink
#CodeQL 2.23.7 and 2.23.8 add security queries for #Go and #Rust

https://github.blog/changelog/2025-12-18-codeql-2-23-7-and-2-23-8-add-security-queries-for-go-and-rust/
this post | permalink
@timb_machine as/400 forensics :O
this post | permalink
[RSS] Inside PostHog: How SSRF, a ClickHouse SQL Escaping 0day, and Default PostgreSQL Credentials Formed an RCE Chain (ZDI-25-099, ZDI-25-097, ZDI-25-096)

https://mdisec.com/inside-posthog-how-ssrf-a-clickhouse-sql-escaping-0day-and-default-postgresql-credentials-formed-an-rce-chain-zdi-25-099-zdi-25-097-zdi-25-096/
this post | permalink
[RSS] Local Privilege Escalation (CVE-2025-34352) in JumpCloud Agent

https://xmcyber.com/blog/jumpshot-xm-cyber-uncovers-critical-local-privilege-escalation-cve-2025-34352-in-jumpcloud-agent/
this post | permalink
Next Page