infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

Looking for guides about reducing the power consumption of old Linux laptops (power mgmt primarily, vacuum cleaning is on the list).

(guess this falls under #permacomputing?)
this post | permalink
Sky’s the Limit – Quick Analysis and Exploitation of a Chrome ipcz TOCTOU Vulnerability

https://binarygecko.com/skys-the-limit-quick-analysis-and-exploitation-of-a-chrome-ipcz-toctou-vulnerability/

Geckos are blogging 🦎 👀

CVE-2023-2934
this post | permalink
Streaming vulnerabilities from Windows Kernel - Proxying to Kernel - Part I

https://devco.re/blog/2024/08/23/streaming-vulnerabilities-from-windows-kernel-proxying-to-kernel-part1-en/?ref=blog.exploits.club
this post | permalink
@justicerage
this post | permalink
Why in the everliving fuck does #Go's URL.Host include the port while Port() is a freaking method that returns a string?!
this post | permalink
@screaminggoat Saw that but didn't have the time to look into it. Thanks for the heads up anyway!
this post | permalink
@raptor twitter @HaifeiLi
this post | permalink
CVE-2024-5274 (Chrome V8 0day) official ticket with analysis and PoC

https://issues.chromium.org/issues/341663589
this post | permalink
Autonomously Uncovering and Fixing a Hidden Vulnerability in SQLite3 with an LLM-Based System

https://team-atlanta.github.io/blog/post-asc-sqlite/
this post | permalink
Galaxy brain of @haifeili :
"Instead the vendor (you believe it's recklessly) asking you to provide more info, you ask them to provide their testing env & steps first. You want me to make a screen recording? Show your recording first."
this post | permalink
Next Page