infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

#Ghidra 11.2 released

Documentation links with HTML preview (generated links point to raw repo contents):

https://github.com/NationalSecurityAgency/ghidra/releases/tag/Ghidra_11.2_build

this post | permalink
[RSS] Insecurity through Censorship: Vulnerabilities Caused by The Great Firewall

https://www.assetnote.io/resources/research/insecurity-through-censorship-vulnerabilities-caused-by-the-great-firewall
this post | permalink
[RSS] Exploiting Exchange PowerShell After ProxyNotShell: Part 4 - No Argument Constructor

https://www.thezdi.com/blog/2024/9/25/exploiting-exchange-powershell-after-proxynotshell-part-4-no-argument-constructor
this post | permalink
[RSS] Analysis of CVE-2024-21310 Pool Overflow Windows Cloud Filter Driver

https://gabrieldurdiak.github.io/clfd/
this post | permalink
@karl No worries, I think compiling The Ways a Bug Can Die would be an interesting, non-trivial project by itself!
this post | permalink
@karl Note that you just mentioned at least another way (deletion) a vuln can "disappear" :) There are probably many others (e.g. OS restricts API required for exploitation)...
this post | permalink
@lrt_writes @amalia12 I'm on this picture and I don't like it
this post | permalink
@osxreverser Would something like https://github.com/maaslalani/nap help?
this post | permalink
[RSS] Fuzzing confused dependencies with Depfuzzer

https://www.synacktiv.com/en/publications/fuzzing-confused-dependencies-with-depfuzzer
this post | permalink
[RSS] A vulnerability in the Nortek Linear eMerge E3 allows remote unauthenticated attackers to cause the device to execute arbitrary commands

https://ssd-disclosure.com/ssd-advisory-nortek-linear-emerge-e3-pre-auth-rce/

No CVE for this one?
this post | permalink
Next Page