Marsh Ray

@marshray@infosec.exchange
366 Followers
742 Following
2.9K Posts
Mostly computer and technical stuff. Radical listener. Tries to be a good person.
#Rust #UA
Githubhttps://github.com/marshray
Bluesky@marshray.bsky.social
Discordmarshray
Emailmarshray & live ! c0m
Twitchhttps://www.twitch.tv/marsh_ray
TypeStatic, strict

I’ll spell it out for you guys - CBP provides open free WiFi in the immigration line at the airport where the typical person with no mobile service is on a visa.

This is a very different consideration now in the era of wiping phones than three years ago.

CONTRIBUTOR POLICY

In order to filter out unwanted autogenerated issues, every issue text must contain:

- one profanity,
- one US or Chinese politician’s name, and
- one article of pornography

The items do not need to be related, but any issue missing any of these items will be automatically closed.

Temporal quantifiers
NOT EVEN ONCE

Public service announcement.

(Created by https://bsky.app/profile/campfireharve.st )

If anyone tells you that a string (like a command-line argument) contains a list of smaller strings with a specific separator character in between them, immediately ask "In that case, what happens if the separator character needs to appear in one of the list items?" Instant knee-jerk reflex.

There's more than one good answer. Like "you can escape the separator with this other character" (in which case you know what question #2 is). Or "here is a specific reason why it _can't possibly_ be necessary to put the separator in a list item" (maybe list items are something like numbers or C identifiers which already have a restricted character set).

But if they just say it doesn't seem _likely_, or worse still, demand you justify why you need to, run a mile from whatever software is under discussion.

The Apple Watch has a closed down ecosystem, only compatible with the iPhone. @trusted_device reverse engineered its interfaces and opened it up for compatibility with Android! ✨ WatchWitch ✨ allows you using your Apple Watch ⌚ on Android devices, interpreting your health data, answering messages on the Watch and more.

Demo video: https://www.youtube.com/watch?v=dHz8NHMhtLY
Read the full paper: https://arxiv.org/abs/2507.07210

The Apple Watch uses IPSec over Bluetooth?!?! That’s mildly horrifying but also a certain level of genius

https://arxiv.org/pdf/2507.07210

Today was the day I finally invested in learning systemd.

Have to say, it looks pretty nice. A lot is right about it.

https://systemd.io/

System and Service Manager

Just realizing that the https://botsin.space domain has been memorialized last week.

#BotsInSpace #fediverse

botsin.space

×

The Apple Watch has a closed down ecosystem, only compatible with the iPhone. @trusted_device reverse engineered its interfaces and opened it up for compatibility with Android! ✨ WatchWitch ✨ allows you using your Apple Watch ⌚ on Android devices, interpreting your health data, answering messages on the Watch and more.

Demo video: https://www.youtube.com/watch?v=dHz8NHMhtLY
Read the full paper: https://arxiv.org/abs/2507.07210

@jiska @trusted_device Oh wow, that is an impressive amount of complexity in a wristwatch! I would never have expected to find IPSEC over Bluetooth in a device like this, although I can kind of understand why they went this route. The custom handshake protocol extensions look sketchy af though.
@jiska @trusted_device It's pretty sad that they don't open up their overall generally decent cryptographic designs more. Without you putting years of work into this, nobody outside apple would have ever known about any of this. They are essentially hiding a major advantage their stuff has over their competitors' devices.
@jiska @trusted_device this is cool as fuck!!!!!
@jiska @trusted_device Impressive but for which reason? If you own an android device, buy one of the plenty and good android compatible watches.
@andreclaassen @jiska @trusted_device i presume the same reason that asahi exists: so that people can use apple hardware in their preferred ecosystem
@andreclaassen @jiska @trusted_device
One less thing you purchased a license to use from apple that holds you back in their ecosystem, if you decide to switch.
@jiska @trusted_device
Wouldn't buy a wearable anyway, but way to go busting that pesky apple bite software !
@jiska This is crazy. Next step is support by @gadgetbridge? 🤪 ;-)
@trusted_device
@jiska @trusted_device
Oh? Can it be used to open it for Linux too?
And are you sure it has no snitched ble Crypto snitch internet access leak to Apple?