Zenbleed: How the quest for CPU performance could put your passwords at risk - Parse this! "You need to turn on a special setting to stop the code you wrote to stop the... https://nakedsecurity.sophos.com/2023/07/26/zenbleed-how-the-quest-for-cpu-performance-could-put-your-passwords-at-risk/ #speculativeexecution #cve-2023-20593 #vulnerability #dataloss #zenbleed #ormandy #amd
Zenbleed: How the quest for CPU performance could put your passwords at risk

“You need to turn on a special setting to stop the code you wrote to stop the code you wrote to improve performance from reducing performance from reducing security.”

Naked Security
I know it's not the newest blog post — yet, it amazes me that there is still considerable interest in this text...
CD / #media #review#Rachmaninoff: #Piano #Concerto No.3, op.30 — #comparison of 5 recordings with #Rachmaninoff / #Ormandy (1940), #Ashkenazy / #Previn (1972), #Argerich / #Chailly (1982), #Kocsis / #deWaart (1983), #YujaWang / #Dudamel (2013), plus a cursory overview of around 40 additional recordings on YouTube
#rolfsmblog
https://www.rolf-musicblog.net/rachmaninov-piano-concerto-no-3-op-30/
Rachmaninoff: Piano Concerto No.3 in D minor, op.30

Rach 3 — CDs: Rachmaninoff, Ormandy (1940); Ashkenazy, Previn (1972); Argerich, Chailly (1982); Kocsis, de Waart (1983); Wang, Dudamel (2013)

Rolf's Music Blog
Zlib data compressor fixes 17-year-old security bug – patch, errr, now - This code is venerable! Sirely all the bugs must be out by now? https://nakedsecurity.sophos.com/2022/03/29/zlib-data-compressor-fixes-17-year-old-security-bug-patch-errr-now/ #cve-2018-25032 #vulnerability #deflate #ormandy #zlib
Zlib data compressor fixes 17-year-old security bug – patch, errr, now

This code is venerable! Sirely all the bugs must be out by now?

Naked Security
OpenSSL patches infinite-loop DoS bug in certificate verification - When it comes to writing loops in your code... never sit on the fence! https://nakedsecurity.sophos.com/2022/03/18/openssl-patches-infinite-loop-dos-bug-in-certificate-verification/ #vulnerability #cve-2022-0778 #cryptography #openssl #ormandy #dos
OpenSSL patches infinite-loop DoS bug in certificate verification

When it comes to writing loops in your code… never sit on the fence!

Naked Security
GnuPG crypto library can be pwned during decryption – patch now! - Many, if not most, Linux distros will be affected. Users of other operating systems should check f... https://nakedsecurity.sophos.com/2021/01/31/gnupg-crypto-library-can-be-pwned-during-decryption-patch-now/ #gnuprivacyguard #vulnerability #cryptography #exploit #ormandy #gnupg #gpg #rce
GnuPG crypto library can be pwned during decryption – patch now!

Many, if not most, Linux distros will be affected. Users of other operating systems should check for software that uses libgcrypt.

Naked Security
@bluebirch That's fair only when the source material is of high quality. No FLAC can give me crystal clear sound in Chopin's First Concerto played by #Gilels with #Ormandy and Philadelphia symphony. The quality of music is stunning, but the quality of the recording is rather poor.
Flaw in Popular #transmission BitTorrent Client Lets Hackers Control Your PC Remotely #hackers https://thehackernews.com/2018/01/bittorent-transmission-hacking.html #ormandy
Flaw in Popular Transmission BitTorrent Client Lets Hackers Control Your PC Remotely

A critical flaw in the widely used Transmission BitTorrent app allows hackers to remotely execute malicious code on and take control of users' computers.