infosex.exchange <3

You are probably looking for the infosec.exchange Mastodon instance

This host is mostly for my random stuff, and in little part acts like a well-intentioned placeholder for the typosquatted domain.

Discoverability and Archiving

Currently I'm using this host for saving the items from my own feeds to the Wayback Machine and provide in-links for search engines. I hate that I have to do this, but the non-sense ideology of Mastodon pretty much ruined the search feature for Fediverse as a whole, and this wasn't changed by the fact that they owned their mistake and implemented search eventually.

Yes, I (or anyone else) could do similar things with other peoples published feeds, regardless of the tantrum. No, you can't defederate this, because the process doesn't rely on an instance.

Gluttony Section for Search Engines

@freddy IME calendar protocols are multiple dumpster fires, so they probably want to reduce customer frustration by allowing only implementations with known quirks.
this post | permalink
@britpunk80
this post | permalink
@raptor
this post | permalink
Evernote RCE: From PDF.js font-injection to All-platform Electron exposed ipcRenderer with listened BrokerBridge Remote-Code Execution

https://0reg.dev/blog/evernote-rce
this post | permalink
[RSS] Looking for vulnerabilities in Strapi (CVE-2024-34065)

http://blog.quarkslab.com/looking-for-vulnerabilities-in-strapi-cve-2024-34065.html
this post | permalink
[RSS] Securing Developer Tools: Unpatched Code Vulnerabilities in Gogs (1/2)

https://www.sonarsource.com/blog/securing-developer-tools-unpatched-code-vulnerabilities-in-gogs-1
this post | permalink
[RSS] Chaining Three Bugs to Access All Your ServiceNow Data

https://www.assetnote.io/resources/research/chaining-three-bugs-to-access-all-your-servicenow-data
this post | permalink
https://www.youtube.com/watch?v=1wtds66crIU
this post | permalink
"organize the world's information and make it universally accessible and useful"

I try hard to maintain an up-to-date copy of Ghidra's documentation so people (incl. myself) can find things like:

https://scrapco.de/ghidra_docs/javadoc/ghidra/framework/model/AbstractDomainObjectListenerBuilder.EachBuilder.html

Notably, I have to spend considerable amount of time in different SEO consoles, because today serving useful, unique content is not enough to pass the bar of most search engines.

To be clear: #AdTech is the cause of this, and I'll be happy to drink the tears of everyone who will fall with it when the bubble finally pops.
this post | permalink
[RSS] Time-based ORM leak attacks

https://www.elttam.com/blog/plorming-your-primsa-orm/
this post | permalink
Next Page