66 Followers
133 Following
3.2K Posts

iOS hacker, security researcher, 0day enthusiast.
Sometimes RE tools / jailbreak / write-up author.
And accidental maintainer of ever more things I didn't ask for.

Contact in English or German.
PGP: https://siguza.net/pgp.asc

webhttps://siguza.net
githubhttps://github.com/Siguza
thinkingoutside the box

Okay I'm gonna do another account migration, this time to escape the Zucc. If your follow gets left behind for some reason, find me at @siguza.

I realised my account was close to 3333 posts, so that's where I'm gonna leave it.

I really hope this is the last time I have to migrate. Next time I'll bite the bullet and start self-hosting.

PSA:
“if it was important, you would have remembered it.” And “if you cared, you would have remembered.“

Neither of these claims have any basis in reality. Importance, and caring have no correlation to whether a memory is formed.

These sentences only serve to gaslight people about a chemical, process that they cannot control.

Please spread this knowledge.

Please stop gaslighting people with memory issues.

The firmware update on Apple keyboards was for a security issue: https://support.apple.com/kb/HT214050
About the security content of Magic Keyboard Firmware Update 2.0.6

This document describes the security content of Magic Keyboard Firmware Update 2.0.6.

Apple Support
Thanks to another impulse purchase I now own the domain iohid.family.

For a long time, when I'd read a comic with Lex Luthor in it, and he'd be... I dunno, conspiring with a guy who's super power is that he is mediocre at riddles, and maybe Solomon Grundy or someone like that, in order to launch their army of poison turtles into Metropolis, I'd scoff and say, "it's unrealistic that the world's richest man would waste his time and money on something that's only going to showcase to the world how incompetent he is."

I owe DC comics an apology.

damn I miss the days that google search could actually find the things I was looking for
Proposal: copyright term length based on how much money you end up making off it (with term reducing as profit increases). This will solve precisely zero problems, but will make Hollywood accounting even more hilarious.

Announcing the Greenhouse Project - a new anti-censorship initiative from #DDoSecrets. By acting as a 'publisher of last resort' and ensuring the reporting and source files are preserved, the Greenhouse Project builds on DDoSecrets' previous efforts to reverse the chilling effects of censorship by creating a "warming effect". https://ddosecrets.org/wiki/Appin_Uncensored

After Reuters published an exposé about an Indian hacking firm, a temporary court order forced them to remove the reporting from their website. The article was subsequently removed from the Internet Archive, and other outlets began to censor their coverage as well, removing passages and entire articles. The original Reuters article has now been uncensored by Distributed Denial of Secrets, and is presented here along with the documentation: https://ddosecrets.com/wiki/Appin_Uncensored

Donate to DDoSecrets to keep leaks and publishing alive in 2024: https://donorbox.org/ddosecrets-five-years-later

Telling people that they shouldn't use `strcpy` because it is unsafe has at least 2 unintended consequences:
- They replaced `strcpy` calls with `strncpy` but forgot to null terminate the destination after (strlcpy)
- They think `strcmp` is _somehow_ unsafe (spoiler: only because of timing attacks), and proceed to replace `strcmp` calls with `strncmp` and now it only compares the prefix

Both of these suggest that _unsafe_ functions advice often covers up the much more complex underlying issue (PL design?).

"OpenAI says it’s “impossible” to create useful AI models without copyrighted material"

10 years ago three dudes from Sweden were hunted by FBI, Interpol and their own government for challenging copyright laws and seeking a fresh approach without ever profiting from it. 🏴‍☠️

Now venture capitalist-backed corporations will sell us our own copyrighted material at a premium. Working tirelessly to embed it in every product designed from now on so you will not be able to avoid it. 💰