infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

[RSS] Dell BIOS Passwords: Weak XOR Encryption Allows Recovery from SPI Flash (CVE-2026-40639)

https://www.mdsec.co.uk/2026/07/dell-bios-passwords-weak-xor-encryption-allows-recovery-from-spi-flash-cve-2026-40639/
this post | permalink
[RSS] Research: Hacking-adjacent Incident from 1966

https://jericho.blog/2026/07/27/research-hacking-adjacent-incident-from-1966/
this post | permalink
@cryptax This sounds like blaming the messenger. If the research is valid, rejecting it won't shield you from the consequences in the long run. I'd rather see this as a call to action for improving automation and scalability of analysis.
this post | permalink
[RSS] Random Windows Things Part 1: PreviousMode MitigationRandom Windows Things Part 1: PreviousMode Mitigation

https://windows-internals.com/random-windows-things-part-1-previousmode-mitigation/
this post | permalink
[RSS] Random Windows Things Part 2: Unexpected Clipboard Data BehaviorRandom Windows Things Part 2: Unexpected Clipboard Data Behavior

https://windows-internals.com/random-windows-things-part-2-unexpected-clipboard-data-behavior/
this post | permalink
Apple MIE exploitation challenge

https://blog.calif.io/p/apple-mie-exploitation-challenge

"In this blog, we'll share the details of the two vulnerabilities behind our [MIE bypassing] exploit"
this post | permalink
[RSS] From Virtual Share to Physical Shell: Leveraging Windows' Inconsistent Access Control for LPE

https://blog.exodusintel.com/2026/07/27/from-virtual-share-to-physical-shell-leveraging-windows-inconsistent-access-control-for-lpe/
this post | permalink
Helpful reddit is helpful

What is "HH" on ThinkPad logo?

https://www.reddit.com/r/thinkpad/comments/o0j9qt/what_is_hh_on_thinkpad_logo_t480s/

#thinkpad
this post | permalink
[RSS] 33 Vulnerabilities in cJSON

https://joshua.hu/cjson-json-parser-cve-vulnerabilities
this post | permalink
@wdormann What *is* their job though? Incentives are pervese and blurring risk is in many cases the most cost-effective for everyone. If shits hit the fan, they can blame $country or AI (or both).

Somewhat related: who would've predicted that ClickFix will become an actual ItW vector that needs to be mitigated?!
this post | permalink
Next Page