infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

CVE-2024-9050: NetworkManager-libreswan IPSec VPN plugin local code execution

https://www.openwall.com/lists/oss-security/2024/10/25/1
this post | permalink
SEC Consult SA-20241024-0 :: Unauthenticated Path Traversal Vulnerability in Lawo AG - vsm LTC Time Sync (vTimeSync) (CVE-2024-6049)

https://seclists.org/fulldisclosure/2024/Oct/7
this post | permalink
[RSS] Bench Press: Leaking Text Nodes with CSS

https://blog.pspaul.de/posts/bench-press-leaking-text-nodes-with-css/
this post | permalink
@artemis I think the LLM part is only the symptom of general degradation of human writing skills: people find LLM's useful because they are struggling with writing in the first place and "AI checkers" are tuned based on the inputs of these very people.
this post | permalink
@azonenberg It seems like an interesting problem to quantify to the extra frontend development cost (and UX problems) of other frameworks...
this post | permalink
[RSS] It rather involved being on the other side of the airtight hatchway: Defeating ASLR after you've gained RCE via ROP

https://devblogs.microsoft.com/oldnewthing/20241024-00/?p=110417
this post | permalink
[RSS] Hacking CICS: 7 Ways to Defeat Mainframe Applications

https://www.netspi.com/blog/technical-blog/mainframe-penetration-testing/hacking-cics-applications/

#zos #mainframe #systemz
this post | permalink
[RSS] Tales from the Call-Gate: An SMM Supervisor Vulnerability

https://labs.ioactive.com/2024/10/tales-from-call-gate-smm-supervisor.html
this post | permalink
[RSS] Pluralistic: You should be using an RSS reader (16 Oct 2024)

https://pluralistic.net/2024/10/16/keep-it-really-simple-stupid/
this post | permalink
[RSS] LibRaw: Out of bounds write in LibRaw::pana_data

https://github.com/google/security-research/security/advisories/GHSA-3m8c-vvxw-r44w
this post | permalink
Next Page