infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@FenTiger @hrefna I think it's more about the side you won't debug. A typical dev won't debug a compiler or a CPU. They will debug their team's code.
this post | permalink
SoK: Prudent Evaluation Practices for #Fuzzing

https://arxiv.org/pdf/2405.10220

#frombsky
this post | permalink

Here’s how stupid me got his bot banned from Bsky:

  • I accidentally commited a debug raise that caused my script to exit with error
  • The systemd unit running the script was configured with Restart=always, because I usually just copy these configs :P
  • Turns out, systemd restarts services really fast on failed status

On the plus side Bsky’s API errors are pretty informative about what went wrong and when the ban will be lifted. Unfortunately because of that stupid raise I lost the logs of why the first failures (before the ban) happened :/

Moral?

this post | permalink
How to develop n-day chrome exploit for electron applications

https://github.com/p3rr0x/Blog/tree/main/Electron%20N-Day%20exploit

#frombsky
this post | permalink
God I hate wchar_t ...
this post | permalink
@pancake I don't even know what to buy like this!
this post | permalink
"Eclipse is a PoC that performs Activation Context hijack to load and run an arbitrary DLL in any desired process."

https://github.com/Kudaes/Eclipse

#frombsky
this post | permalink
[RSS] Trying to Exploit My Old Android Device, take 1

https://pwner.gg/blog/Android%27s-CVE-2020-0238
this post | permalink
[RSS] Introduction to Fuzzing Android Native Components

https://blog.convisoappsec.com/en/introduction-to-fuzzing-android-native-components/
this post | permalink
[RSS] Micropatches for "LNK Stomping" Windows Mark of the Web Security Feature Bypass (CVE-2024-38217)

https://blog.0patch.com/2024/11/micropatches-for-lnk-stomping-windows.html
this post | permalink
Next Page