One of the most spectacularly clever weird machines:

https://projectzero.google/2021/12/a-deep-dive-into-nso-zero-click.html

β€œJBIG2 doesn't have scripting capabilities, but when combined with a vulnerability, it does have the ability to emulate circuits of arbitrary logic gates operating on arbitrary memory. So why not just use that to build your own computer architecture and script that!? That's exactly what this exploit does. Using over 70,000 segment commands defining logical bit operations, they define a small computer architecture with features such as registers and a full 64-bit adder and comparator which they use to search memory and perform arithmetic operations. It's not as fast as Javascript, but it's fundamentally computationally equivalent.”

Semi-related:

https://www.cs.dartmouth.edu/~sergey/wm/

Gotta wonder if there are old copies of Xpdf still in use somewhere sensitive, too.

#FORCEDENTRY

A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution

Posted by Ian Beer & Samuel Groß of Google Project Zero We want to thank Citizen Lab ...

Octoclops

Forced Entry Β· Uncertain Future Β· Song Β· 1989

Spotify
Anaconda

Forced Entry Β· Uncertain Future Β· Song Β· 1989

Spotify
Administration Officials Believe Order Lets Immigration Agents Enter Homes Without Warrants

It remains unclear whether the Trump administration will apply the law in this way. But such an interpretation, experts say, would infringe on basic civil liberties.

The New York Times
Kaleidoscope Of Pain

Forced Entry Β· Uncertain Future Β· Song Β· 1989

Spotify
Making sense of PDF structures in the wild at scale (Tim Allison, NASA-JPL)

YouTube

Hard hitting, old skool boom bap on this latest banger from Leicester's JVF Clique. Forced Entry brings a heavy almost live sounding beat together with strong UK wordplay. MCs Nipper and Chief Vernacular alongside producer Pappa Doc bring a proper throw back to that real classic Hip Hop.

#ChiefVernacular #ForcedEntry #JVFClique #nipper #PappaDoc

https://www.britishhiphop.co.uk/downloads/video/jvf-clique-forced-entry-video.html

JVF Clique - Forced Entry [Video]

Hard hitting, old skool boom bap on this latest banger from Leicester's JVF Clique. Forced Entry brings a heavy almost live sounding beat together with strong UK wordplay.

iPhone Pegasus "Zeroclick" Exploits & UK Online Safety Bill Passed

PeerTube

#HappyB|irthday to #NancyAllen, the American film / television actor, born in New York #OnThisDay in 1950. A murdered hitchhiker in #ForcedEntry (1975) and an unrepentant bully in #Carrie (1976), she would go on to play appealing heroines for Brian De Palma in #DressedToKill (1980) and #BlowOut (1981), alongside Lewis in Paul Verhoeven's #RoboCop (1987).

#BornOnThisDay #BOTD #OTD

This is phenomenal. And scary. TL;DR: Israel's dodgy NSO Group created a Turing-complete computer to run inside the bitstream of an image compressed with JBIG2, hidden inside a PDF, disguised as a GIF and automatically parsed by unwitting iPhones upon receipt of the message. No need to open it!

https://www.pcmag.com/news/google-project-zero-goes-deep-on-forcedentry-exploit-used-by-nso-group

#Malware #ForcedEntry #NSOGroup

Google Project Zero Goes Deep on FORCEDENTRY Exploit Used by NSO Group

Google Project Zero publishes a technical breakdown of the exploit used by NSO Group to infect target iPhones.

PCMAG