floyd aka floyd_ch

@floyd@chaos.social
385 Followers
370 Following
820 Posts
born, had lunch, now hacking.
Co-Founder @pentagrid (Buchs SG - CH, Berlin - DE) with @nitram2342
Active at defcon-switzerland.org/(BoT Chur/Sargans)
and cybersecurity.li (Vaduz)
About: http://floyd.ch/?page_id=2
Abouthttps://www.floyd.ch/?page_id=2
Companyhttps://www.pentagrid.ch/en/blog/
Meet mehttps://www.beerontuesday.ch/?page_id=19
CTFhttps://cybersecurity.li/

Sent a pull request to Audacity fixing a crash bug I'd been running into frequently. The cause was an out-of-bounds memmove. Classic C++ areas.

Anyway I got a fucking copilot review on my PR which left two comments, both completely wrong, one of which suggesting I reintroduce the out of bounds memory access. I'm furious!

Had to update the software of my electric car because certain public charging stations didn't work... but apparently the software is now a little too good. The charging station didn't want any money and I charged for free...
At least now I know Software development for public electric charging stations have a Scrum approach 😆
We once tried to buy a house for our family here but we were outbid by a lady that just finished her High School (Gymnasium)... which would still be fine, but the house is empty for 2 years now, grass is growing, neighbours started to park the cars so that the entrance is blocked... so this seems pretty accurate:
https://chaos.social/@leonido/114731543080564821
Leonido (@leonido@chaos.social)

Attached: 1 video Hier das Video direkt ohne Umweg zu TikTok:

chaos.social
Hier das Video direkt ohne Umweg zu TikTok:
Wow. Die beste Werbung für die republikanische Partei, die wir je gesehen haben.
Kein Wunder, dass der Tagesanzeiger das nicht publiziert...
If you have to publish a justification for holding your conference in the USA, despite the concerns of potential attendees from other countries, you should stop claiming you're running an international conference.

"Galileo is lovely EU infrastructure, a shining light of digital autonomy, but the communication about the service continues to be terrible. Three weeks ago a notification was issued announcing a possible Galileo disruption 5 days from then, “due to testing”, with no detail at all."

https://berthub.eu/articles/posts/galileos-testing-communications/

Galileo's Testing Communications - Bert Hubert's writings

When Galileo (the European satellite navigation system) was proposed there was a lot of criticism. “We already have the US GPS”, and we’d always be able to rely on our historical partner to take care of us. The US very much also said this. Yet, the EU persevered and now we have an independent worldwide navigation capability. And given recent developments, I think we can be well pleased that we don’t have to rely on the US, China or Russia for this vital need!

Bert Hubert's writings

Translated a classic German meme for you.

Applicable to just about any situation nowadays. 🤷

Mateusz Jurczyk from GP0 has been been writing a blog series on the implementation details of the Windows Registry, and there's a truly monumental amount of work on show here.

this one post alone is 24,000 words long, and covers a huge range of security issues discovered across the registry attack surface.

practically mandatory reading if you're doing Windows appsec assessments. really incredible stuff.

https://googleprojectzero.blogspot.com/2025/05/the-windows-registry-adventure-7-attack-surface.html

The Windows Registry Adventure #7: Attack surface analysis

Posted by Mateusz Jurczyk, Google Project Zero In the first three blog posts of this series, I sought to outline what the Windows Regi...