@Skunnyk

243 Followers
479 Following
1.3K Posts
SRE - #Xfce developer - I'm root.
Websitehttps://blog.alteroot.org/about/

In today's episode of "Can It Run Doom": DNS fucking TXT records.

Some absolute madlad (cough Adam Rice cough) compressed the entire shareware DOOM WAD, split it into around 1,964 chunks, shoved them into Cloudflare TXT records, and wrote a PowerShell script that reassembles and runs the whole goddamn game from DNS queries alone. Nothing touches disk. The DLLs are in DNS. THE FUCKING DLLS ARE IN DNS.

RFC 1035 was written in 1987. Those engineers are spinning in their graves fast enough to generate municipal power.

Bonus: this is a fully functional globally-distributed covert data exfil channel that your NGFW will never fucking see if you're not doing deep DNS inspection. Sleep well.

blog: https://blog.rice.is/post/doom-over-dns/

repo: https://github.com/resumex/doom-over-dns

Also lmao @ every blue team that has never once looked at their DNS query volume. How's that DLP policy working out for you.

It was always DNS.

#infosec #dns #doom #itisalwaysdns

"The USA will only allow routers manufactured in the country for consumers from now on. However, such models do not exist."

https://www.heise.de/en/news/USA-bans-all-new-routers-for-consumers-11222049.html

The land of the fr--

USA bans all new routers for consumers

The USA will only allow routers manufactured in the country for consumers from now on. However, such models do not exist.

heise online
Widely used Trivy scanner compromised in ongoing supply-chain attack
Admins: Sorry to say, but it's likely a rotate-your-secrets kind of weekend.
https://arstechnica.com/security/2026/03/widely-used-trivy-scanner-compromised-in-ongoing-supply-chain-attack/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social
CrackArmor: Multiple vulnerabilities in #AppArmor "Bypassing Ubuntu's user-namespace restrictions
AppArmor + Sudo + Postfix = root
Kernel vulnerabilities". https://seclists.org/oss-sec/2026/q1/303 #infosec #qualys
oss-sec: Re: Multiple vulnerabilities in AppArmor

PSA: Did you know that it’s **unsafe** to put code diffs into your commit messages?

Like https://github.com/i3/i3/pull/6564 for example

Such diffs will be applied by patch(1) (also git-am(1)) as part of the code change!

This is how a sleep(1) made it into i3 4.25-2 in Debian unstable.

Vouch : un système de gestion de la confiance pour les projets Open Source, développé par Mitchell Hashimoto, le fondateur de Hashicorp.

https://github.com/mitchellh/vouch

Here’s my original blog with threat hunting suggestions: https://doublepulsar.com/small-numbers-of-notepad-users-reporting-security-woes-371d7a3fd2d9

Of note - the cyber industry entirely slept through it. A cartoon porg with #GAYINT threat intelligence had to blow it up.

Small numbers of Notepad++ users reporting security woes

Auto updates are fun.

Medium
Your apt update process is broken this morning ? Check https://michael-prokop.at/blog/2026/01/31/apt-sha-1-keys-2026-02-01/ ! sha1 apt keys are rejected on debian 13+ since 2026-02-01!
mikas blog » Blog Archive » apt, SHA-1 keys + 2026-02-01

Today we announce Amutable and our mission to deliver determinism and verifiable integrity to Linux systems.

Amutable is founded in Berlin by @blixtra, @brauner and @pid_eins.

Read the announcement: https://amutable.com/blog/introducing-amutable

Amutable

Amutable: A New Secure Foundation

Xfwl4 - The roadmap for a Xfce Wayland Compositor

"We, the Xfce team are excited to share some great news!

After careful consideration, we’ve decided on a meaningful way to use the generous donations from our community: funding longtime Xfce core developer Brian Tarricone to create xfwl4, a brand-new Wayland compositor for Xfce.

This initiative will utilize a significant portion of the project’s donated funds, but we believe it’s an important investment in Xfce’s future.

The goal is, that xfwl4 will offer the same functionality and behavior as xfwm4 does, or as much as possible considering the differences between X11 and Wayland. Using xfwl4 should feel just like using xfwm4 on X11. We even plan to reuse the existing xfwm4 configuration dialogs and xfconf settings to ensure a seamless transition.

Xfwl4 will not be based on the existing xfwm4 code. Instead, it will be written from scratch in rust, using smithay building blocks."

https://alexxcons.github.io/blogpost_15.html

#Xfce #Wayland #Linux #Rust

Alexxcon's Software Development Blog