Plus récents
syncop a partagé
syncop a partagé

Just did a bug fix release of ssldump (version 1.6) which fixes an annoying bug with ports not being recorded in the pcap output. Thanks to all the contributors.

#opensource #tls #ssl #ssldump

:link: github.com/adulau/ssldump/

syncop a partagé

#Ransomware attacks on schools can have some unexpected consequences. For example, here's a snippet of an email I received after an incident involving a small, rural district.

syncop a partagé

The #malvertising campaigns via Google Ads are not just about software downloads and scams. They also include phishing for popular password managers such as 1Password.

The differences are so subtle, most people will fall for it.

Real URL:
https://my[.]1password.com/signin
Phishing URL:
https://my1pasword[.]com/signin

syncop a partagé
syncop a partagé

This is a summary of the most important highlights in r2-5.8.2, compared to 5.8.0:

* Add support for micromips (m4k)
* Add sourceline support from DWARF5 and Plan9
* Run any command to replace N bytes inside the disasm with the Cr command
* All the bugs reported by linux and bsd distros are now fixed, rpm packages are now tested and built in the CI, debian packages are now built with fakeroot
* Better error messages when missing basic tools, specially on Termux
* Added support for scripting in Pascal, assembly
* Fixed regressions in the GDB register mapping
* Huge optimization that mainly affects r2dec (80s -> 20s)
* Improved ESIL for arm64, v850
* Support multiple core plugins in pure quickjs, updated r2papi with integrated esil decompilation
* Updated support for Typescript
* Implemented TIRE algorithm in the search api, with much faster scans
* Added support for GNU/Poke
* Support two column and colors in r2slides
* Bug fixes and performance improvements in many places.

There are two CVEs for 5.8.0 related to ansi escape injection and a null deref, nothing really critical. but @pancake found and fixed a couple of UAFs so we encourage and recommend everyone to update!

syncop a partagé
I wrote a blog post giving an introduction to the PNG file format, aimed at anyone who wants to generate or parse their own PNGs (or who just wants to know how it works!)

https://www.da.vidbuchanan.co.uk/blog/hello-png.html

Encore plus de bots sur Twitter qu'auparavant. More bots on than ever before. Elon, how many results for « Запрос с неба, хорошего урожая и продолжал работать в пахотном » ? Combien d'occurrences pour cette phrase ? 🤔​

syncop a partagé

IVRE v0.9.19 has just been released! See below for the main changes

🧠 Comment expliquez-vous ceci ?

✓ 192.168.1.69 = 192.168.1.069
✕ 192.168.1.10 ≠ 192.168.1.010

🤹 Cette adresse IP est valide mais « étrange », pourquoi ?

  • 𝟷.𝟹.𝟹.𝟽
syncop a partagé

@harris Yes! Reflections off of a lot of things, including coffee pots, mugs, spoons, plastic coke bottles, and things like that.

Check out:

  • "Computer Monitors around a Corner" (Backes, Duermuth, and Unruh, S&P 2008)
  • "Tempest in a Teapot: Compromising ReflectionsRevisited" (S&P 2009)

A few fun examples from those papers:

syncop a partagé

Hey #OSINT, Carrot2 (search.carrot2.org) organizes your search results into topics. With an instant overview of what's available, you will quickly find what you're looking for. No more rummaging search results to find what you need

#infosec #tools

syncop a partagé
syncop a partagé

A #ransomware gang sent an email directly to students stating, “Additionally all of your SSN and Medical records will be put for sale, for every hacker to gain access and use your data in whatever illegal activity they want."

nbcnews.com/tech/security/rans

  • Victimisation

« Quand on est touché, on se sent vite pestiféré »

Porter ce commentaire dans les médias frôle l'indécence. Il n'y a que des victimes. Point barre.

syncop a partagé

It’s pretty insane what someone can do with Chinese PCB assembly, a steady hand and some resin. A full working computer in a sloped 2x2 LEGO brick.

youtu.be/6wBrOV2FJM8

syncop a partagé

Tails 5.8 is out, and it is the most important release of #Tails in years.

It includes both major redesign of existing features, important usability improvements, and hardened security.
tails.boum.org/news/version_5.

syncop a partagé
Plus anciens
nanao

Comme le soleil, les machines ne se couchent jamais.