0 Followers
97 Following
90 Posts

Censorship may be a cat-and-mouse game, but our teams are staying ahead. If you want to hear more about our ongoing fight for online freedom, join us for our State of the Onion event on November 12 at 17:00 UTC. 📺

https://www.youtube.com/watch?v=fTDtUoauU74

State of the Onion 2025

YouTube

Them: Why not use Google Sheets or MS Excel as a Database?

Me: You are right. Go ahead and use it. Have a nice day.

^ You reach that stage in life where you just don't have any will or power left to fight stupidity. You know what? Forget the fight. It's about keeping my peace. There, I said it.
@socketwench isn’t 3 really just a special case of cache invalidation? 😂
Introduction to x64 Linux Binary Exploitation (Part 1)

This post is the first of a series of articles, where I will describe some basic x64 Linux Binary Exploitation techniques. Starting by disabling all the relative mitigation mechanisms like ASLR…

Medium

Cats Of Mastodon! We are the algorithm. If you see a cat, boost a cat!

#cats #cat #CatsOfMastodon #FediCats #FediFelines #algorithm #boost #CatNews

I guess the takeaway from the xz backdoor situation is:

If you’re an open-source project maintainer, and somebody starts getting on your case for not doing enough free work for them, you reply “big Jia Tan energy there” and then block them forever.

I accidentally found a security issue while benchmarking postgres changes.

If you run debian testing, unstable or some other more "bleeding edge" distribution, I strongly recommend upgrading ASAP.

https://www.openwall.com/lists/oss-security/2024/03/29/4

oss-security - backdoor in upstream xz/liblzma leading to ssh server compromise

🤯 The level of sophistication of the XZ attack is very impressive! I tried to make sense of the analysis in a single page (which was quite complicated)!

I hope it helps to make sense of the information out there. Please treat the information "as is" while the analysis progresses! 🧐 #infosec #xz