infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@molly0xfff also, this reply captures the X vibe perfectly:
this post | permalink
This "analysis" by Wallarm - claiming active exploitation of CVE-2025-24813 Tomcat RCE - is wrong in multiple ways (maybe LLM slop?):

https://web.archive.org/web/20250314071219/https://lab.wallarm.com/one-put-request-to-own-tomcat-cve-2025-24813-rce-is-in-the-wild/

There is a PoC on GitHub too now - it improves my findings by directly invoking the session corresponding to the saved object so you don't have to wait for periodic refreshes:

https://github.com/iSee857/CVE-2025-24813-PoC/

This PoC will raise the EPSS score too.
this post | permalink
@molly0xfff Her query may also have non-linear complexity, 60k rows is nothing.
this post | permalink
now these were Computers:

https://www.youtube.com/watch?v=oLnvvOoWnzU
this post | permalink
@kagihq @mellow I also switched recently and was curious how kids passwords will be handled. I think the parent e-mail OTP is a great balance between security and usability, it seems you did think this through 👌
this post | permalink
@Some_Emo_Chick Wait, I literally heard this argument yesterday but sampled in an old EDM track o.O Will try to dig it up from history...
this post | permalink
Representing type lattices compactly

https://bernsteinbear.com/blog/lattice-bitset/

"The Cinder JIT compiler does some cool stuff with how they represent types so I’m going to share it with you here. "

("Cinder is Meta's internal performance-oriented production version of CPython.")

/via exploits.club
this post | permalink
Swedish Pirate Bay backer Carl Lundström dies in Slovenia plane crash

https://www.euronews.com/2025/03/12/swedish-pirate-bay-backer-carl-lundstrom-dies-in-slovenia-plane-crash
this post | permalink
@wdormann On a more serious note setting a hard deadline for publication can do wonders to the pipeline IME.
this post | permalink
@wdormann Just repost your original report to FD, if MSRC can't repro without a video I'm sure bad guys can get no value from it either.
this post | permalink
Next Page