1.5K Followers
447 Following
663 Posts
【DΞCOMPILΞ NΣVΞR】
Connectivity & Baseband Security
@aflplusplus @enoflag @google
(opinions my own)
bskyhttps://bsky.app/profile/dmnk.bsky.social
DΞCOMPILΞNΣVΞR
jmpAAAAAAAA
Segmentation fault(core dumped)
Everyone deserves the sort of privacy that end-to-end encryption offers for their conversations, and we’re happy to see Google and Apple recognized that with this release. https://www.eff.org/deeplinks/2026/05/victory-end-end-encrypted-rcs-comes-apple-and-android-chats
Victory! End-to-End Encrypted RCS Comes to Apple and Android Chats

With the support of end-to-end encryption for RCS messages, Apple and Google have taken the steps to Encrypt it Already!

Electronic Frontier Foundation

Blah! My middle mouse button doesn't paste a former selection anymore. I read that someone was on a crusade to remove it, because of feely-feels that it's oh so confusing. Did they win?

How do I get the thing back?

Oh, and fuck you whoever did that!

edit: Okay, only fuck you half as much. At least you didn't rip it out completely. A plain setting in gnome-settings would've been nice though. That would be LeSs CoNfuSinG!

gsettings set org.gnome.desktop.interface gtk-enable-primary-paste true

Yes it runs (free)doom

Big changes to Android and Chrome VRP:

- focus on high-impact, reproducible bugs with low/no reward for lower impact
- big prizes for full chains with some annual limits
- PoCs required

It’s the end of an era, but the start of a new one.

https://bughunters.google.com/blog/evolving-the-android-chrome-vrps-for-the-ai-era

Blog: Evolving the Android & Chrome VRPs for the AI Era

We are announcing changes to the Chrome & Android Vulnerability Reward Programs (VRP) which take effect immediately and are focused on adjusting our reward amounts and bonuses to reflect the types of reports and bug categories that provide the most value to security today.

dmnk (@dmnk.bsky.social)

AI is cooking to hard https://bughunters.google.com/blog/evolving-the-android-chrome-vrps-for-the-ai-era

Bluesky Social
@rtyler
Can we start using green for deleted code?
ah, nothing like a heap of refreshing slop to start the day

Multiple official SAP npm packages were compromised in what is believed to be a TeamPCP supply-chain attack to steal credentials and authentication tokens from developers' systems.

https://www.bleepingcomputer.com/news/security/official-sap-npm-packages-compromised-to-steal-credentials/

Official SAP npm packages compromised to steal credentials

Multiple official SAP npm packages were compromised in what is believed to be a TeamPCP supply-chain attack to steal credentials and authentication tokens from developers' systems.

BleepingComputer
Q: Bugs/Contributions? I haven't even read the ported code, so there's no way in hell I'll take PRs on it. With supply chain attacks running wild, it's just too dangerous. I've settled on accepting contributions of prompting/workflow PRs and port misbehavior bug reports.
Q: Brainrot? I wrote no code for this project. It's awesome to harness the power of this emerging tech, but I *liked* writing code. Now, it occupies a similar conceptual space as gardening (a mental health supporting hobby) and is equally hard to prioritize. A bit of a bummer.