Barre Dijkstra

124 Followers
249 Following
198 Posts
work is #dev, random stuff involving code and helping people/teams/mgmt, also teaching #offsec, DIVDnl researcher and doing some random #offsec at clients. #HTB NL meetup organiser. #CTF/#RE hobbyist. Dutch and old (9600bd to BBS's was a thing in my youth, work cleared 25yr mark)
birdsite@barredijkstra
bsky@salp
pronounshe/him

@kloenk @navi Back when 128 kB was the limit for argv+envp, Google was hitting it too because they passed all the configuration for their whole software stack on the command line as --long-option=value switches.

Their solution? Compress the command line. So every binary started by ungzipping argv[1] and parsing it to get the configuration.

The person explaining this to me saw my horrified face, and said with the perfect Hide The Pain Harold smile: "a series of individually completely rational and reasonable decisions led to this." and I have been thinking a lot about it since.

We @DianaInitiative are 50k (~a bit more) short of breaking even for the year. Would LOVE 3 recording sponsors - your logo on our videos posted to youtube!

Scroll to the bottom of the page we made example email templates to ask your employer - www.dianainitiative.org/sponsor

And we of course always welcome donations www.dianainitiative.org/donate

dear #appsec people, I'm curious how you deal with 3rd party dependencies. do you use a scanner that reports cves? manual audits? have external audits done?
and any difference in dealing with opensource and closed source libs?

and if you audit, how do you determine scope of which part to audit? you can determine the library code used, but that might change 1 commit later.

This petition is incredibly important.

Not only for EU citizens, but for everyone worldwide. If this proposal passes, it could have *devastating* consequences for all of us.

For your future self,
For your children,
For the next generations,
Sign it please 💚

https://www.eff.org/deeplinks/2023/03/sign-petition-and-tell-eu-legislators-dont-scan-us

#Privacy #E2EE #RootForE2EE #TinyPrivacyTip

Sign The Petition And Tell EU Legislators: Don’t Scan Us

The European Parliament is debating a proposal that, if it passes, could be disastrous for privacy worldwide. Every message, photo, or hosted file could be scanned, with the results sent to government agencies. We don’t need “bugs in our pockets.” A private and secure internet should be built with...

Electronic Frontier Foundation
Have you ever experienced an #API security nightmare? Have bots taken over? Did someone come a knockin' who shouldn't have? 😱 Share your story below! #cybersecurity #appsec
Even #firefox agrees that #threads might be questionable in terms of privacy... This is just standard firefox with tracking protection turned on.

It's probably obvious to most of you, but a big difference between the commercial social media platforms and the fediverse is that as those commercial platform grow, they get additional revenue from ads, from selling personal information, and otherwise monetizing their users. While that is turning out to not actually pay the bills for them, in the fediverse, just about every instance is run by volunteers and funded by donations or out of the volunteers' pockets. It's a labor of love and a hope for a better future. When traffic grows, we need to expand our capacity.

That is why I am asking, if you are able, please consider donating to the instance you on to help keep the fediverse ecosystem going. Typically the /about web page will have details on how to donate.

Note: I am well aware that many of you are not in a financial position to donate - and that is OK. We are here to serve you as well. Donations are completely optional.

Fighting one of my cats on who gets to read @Azeria 's blue fox book first.
she didn't find out that it opened from the other side before giving up.
This brings the score in this household to cats 99999 - humans 1
time to relax and read 😊
I'm not the biggest fan of consumerism and a 24/7 economy, but I'm also a huge hypocrite sometimes and am looking forward to starting reading the book this evening 😅

I should make a big sign reading "it has been X days since Foone started reverse engineering a new thing", and wire it up to my Ghidras.

Today it got up to 1 days! then I reset it again