infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@Natasha_Jay I really like Andorra's concept of Transportation via Electric Boogie!
this post | permalink
[RSS] Advisory X41-2026-004: dm-verity can be bypassed in Debian live-boot

https://x41-dsec.de/lab/advisories/x41-2026-004-debian-live-boot/
this post | permalink
[RSS] ZTE SmartHome Account Takeover: Password Reset Without Verification Code. 4 CVEs, 100K+ Android Downloads - CVE-2026-86553

https://minanagehsalalma.github.io/zte-smartlife-app-pwned/
this post | permalink
#Ghidra 12.1.4 is out, changes:

https://github.com/NationalSecurityAgency/ghidra/blob/Ghidra_12.1.4_build/Ghidra/Configurations/Public_Release/src/global/docs/ChangeHistory.md
this post | permalink
@hajovonta Welcome to Eastern-Europe! :)
this post | permalink
"The Golden Rule of AI: Don’t use AI to save yourself time by wasting someone else’s."

https://fs.blog/brain-food/september-20-2026/
this post | permalink
@hajovonta There is this part in a novel where the local party leader spills the ballots of opposing candidates to his own ballot box, saying something along the lines of "Once again, the people chose wisely". Then places a handful back to the opponents boxes saying "However, there are still some reactionary elements to take care of." :)
this post | permalink
"HEIF Heist is Hacktron's name for a class of remote attack paths targeting services that decode attacker-controlled HEIF, HEIC, or AVIF images"

https://heif-heist.com/

Cool finding, but these issues have been around for ages. It's embarassing for all the affected large corps that they didn't care to invest in testing their dependencies and proper sanboxing.
this post | permalink
Seems like AI companies are not that easygoing when they are on the wrong end of hacking :P

https://threadreaderapp.com/thread/2101252692635004997.html
this post | permalink
@kaoudis 100%! I recently read that even some of our most respected writers were huge fans of the cheap entertainment stories of the era. Max Martin would have given Beethoven ear worms too (if he could hear it).
this post | permalink
Next Page