infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@zak I recently contemplated that this is essentially the same behavior as repeatedly prompting the slop machine. (the cmdline has the luxury of ctrl+r)
this post | permalink
@zolutal Thanks, that's a quite common problem (template designers rarely know about RSS these days), I'll add /feed to the list of paths I have to try manually...
this post | permalink
In a world where proper keyword #search is excommunicated and engines refuse to index content based on arbitrary criteria, grep.app at least allows us to find and look at the source code:

https://grep.app/
this post | permalink
From Winslop release notes: "I do not own or operate winslop[.]com and I'm not affiliated with whoever registered it.
Even if it currently redirects to this GitHub repo, a third-party domain can be changed at any time (phishing, fake releases, malware links)."

https://github.com/builtbybel/Winslop/discussions/22

#phishing #malware
this post | permalink
@grumpasaurus @jerry very small rocks!
this post | permalink
@zolutal Could you please add RSS/Atom to your blog?
this post | permalink
libpng CVE-2026-25646: Heap buffer overflow in `png_set_quantize`

https://github.com/pnggroup/libpng/security/advisories/GHSA-g8hp-mq4h-rqm3
this post | permalink
Pillow CVE 2021-25289: Fix OOB write with invalid tile extents

https://pillow.readthedocs.io/en/stable/releasenotes/12.1.1.html
this post | permalink
Check Point Harmony Local Privilege Escalation (CVE-2025-9142)

https://blog.amberwolf.com/blog/2026/january/advisory---check-point-harmony-local-privilege-escalation-cve-2025-9142/

/via @badsectorlabs
this post | permalink
@gsuberland @invoxiplaygames.uk Calling this RCE is at least consistent with MS's own taxonomy (see previous Office vulns). CVSS UI:R is also a meaningful datapoint for those parsing their feed.
this post | permalink
Next Page