@Rairii@haqueers.com
@Rairii@haqueers.com avatar

Rairii

@Rairii@haqueers.com

Reversing (malware and otherwise); appsec and websec; embedded security; exploit dev; software preservationist; knows how not to use cryptography.

Currently finding bugs in Windows bootloaders.

You may also know me from capcom.sys.

#nobot

This profile is from a federated server and may be incomplete. Browse more on the original instance.

EeveeEuphoria, to random
@EeveeEuphoria@translunar.academy avatar

since the first post i saw on this was private, i get to Steal It

🦀 e3 is dead 🦀

ralsei, to random
@ralsei@mastodon.nu avatar

LINUX 6.6.6 IS OUT‼️

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

deleted_by_author

  • Loading...
  • pikesley, to RaspberryPi
    @pikesley@mastodon.me.uk avatar

    Happy " Proudly Announced That They Hired A , Then Told Those Of Us Who Asked Questions To Fuck Off" Day, to those who celebrate

    mjg59, (edited ) to random
    @mjg59@nondeterministic.computer avatar

    I'm not going to get into the rights or wrongs of Apple blocking Beeper Mini, other than to say that if this was driven by a desire to ensure the privacy and security of Apple users, that implies that there was a privacy and security hole in iMessage up until now

    retr0id, to random
    @retr0id@retr0.id avatar

    I'd just like to interject for a moment. What you’re referring to as The World Wide Web, is in fact, Chromium, or as I’ve recently taken to calling it, Google Chrome.

    mjg59, to random
    @mjg59@nondeterministic.computer avatar

    I can guarantee that the image parsing code was just as bad in BIOS as it is in UEFI but that broadly didn't matter since there was nothing to authenticate the BIOS in the first place and there was no secure boot, so the problem isn't so much UEFI being worse than BIOS, it's that code got copied from BIOS into UEFI and then security boundaries were introduced without auditing everything that could contravene them

    mcc, (edited ) to random
    @mcc@mastodon.social avatar

    No four words strike fear in my heart like these

    henryk,
    @henryk@chaos.social avatar
    ipg, to random
    @ipg@wetdry.world avatar

    Disable the security feature. It will not reduce the security of your device.

    maia, to random
    @maia@crimew.gay avatar

    just found an In The Wild big business authentication implementation with a hardcoded constant called BACKDOOR, the value of which can be used as a password with any account on any login screen including on the admin portal

    sectorwireneue, to random

    Wet-Dry World as a Bulletin Board System (BBS).
    @esm What do you think?

    tomo, to random
    @tomo@fedi.azumanga.gay avatar
    ipg, to random
    @ipg@wetdry.world avatar

    Fellas, if a program:

    • drops a driver file into a random folder delivered by a server
    • heavily obfuscates code
    • prevents kernel crash dumping
    • runs remote code from a server at runtime
      that's not malware, that's an anti-cheat code protection solution
    brunnen153, to random

    Times are rough, this casino in Vegas uses unlicenced Windows on their parking ticket machines

    chirpbirb, to Steamdeck
    @chirpbirb@meow.social avatar
    slips, to random

    if I had a nickel for every time in the past 3 years a popular brand/person decided to create it's own social media and then inadvertently violated the AGPL by just forking mastodon and not releasing their changes, i'd have two nickels. which isn't a lot, but it's weird that it happened twice

    rail, to random

    PSA to mastodon.social users

    Seriously consider changing instances

    No, I will not tell you that you absolutely have to or whatever like that, this is not the "mastodon.social sucks and you absolutely should not use it" kind of post

    But you might like:

    • Actually usable local feed of smaller, topic-specific/themed instance
    • Smoother experience and better federation (mastodon.social seems to be notoriously bad at caching content before you follow someone, even if the other instance is already federated)
    • Supporting decentralized & diverse nature of Fedi which guarantees its long-term survival
    • Having your mod team being some friendly silly goobers that you can easily contact, talk to, and thank for their thankless job (on smaller instances it usually also means much faster mod team's response to reports)
    lanodan, to random
    @lanodan@queer.hacktivis.me avatar

    https://www.engadget.com/self-proclaimed-gay-furry-hackers-breach-nuclear-lab-152034192.html?guccounter=2

    > Self-proclaimed 'gay furry hackers' breach nuclear lab
    > They demanded research into creating IRL catgirls.

    Okay… which one of you is this?

    mjdxp, to random

    well, no, but actually, yes

    venthewolf, to random

    Hey, stop!

    Are you using an adblocker?

    If not, install one NOW!

    whitequark, to random
    @whitequark@mastodon.social avatar

    ever wanted to find out which microcontroller are you reverse-engineering the firmware for when you don't have the actual device in your hand?

    https://asciinema.org/a/EMMyogcUhZ0aMtp3BsD5TAQ1z

    winload_exe, to random
    @winload_exe@wetdry.world avatar

    I have talked about this earlier, but I wanted to consolidate my thoughts into a single post:

    I genuinely have a very big soft spot for Win8. It's as if someone tried to take care of a new plushie, but ended up accidentally screwing it all up in the end.

    MS' Windows division did so much right with it but so much wrong at the same time, it actually makes me incredibly sad that it flopped so hard. I really liked the touch controls it offered and the way its interactivity played a key role in guiding the user on where they should go. Feedback on buttons, an intuitive Control Panel interface, an all-around full-screen interactive Start screen, you-know-what. It really blended everything so well, a huge step-up from the largely static Windows user interface found in 7 and older, created this sort of wonderful little bit of responsive eye-candy. It really shines in late development builds (circa 805x-early 806x, 832x-842x; loved the overall looks of the UI and the Aero visual style there, wished it stayed) and in the RTM releases.

    I just wish all of this effort did not go to waste with the diverse amount of mistakes made internally, such as problematic design and security decisions:

    • the lack of a proper development foundation for WinRT and Win32 applications to use, poor quality of ARMv7 SDKs (doesn't even include libraries for core NT components like GDI32, for crying out loud!)
    • you could only publish WinRT AppXs onto the Windows Store;
    • overly-restrictive Secure Boot code signing restrictions imposed both on a hardware and software level: one of the main reasons the Surface RT just died very quickly and is now being sold in masses for dirt cheap;
    • no proper onboarding experience compounded by the Start button/left-hand Charms menu removal, which would've been incredibly useful for a desktop users, and;
    • a myriad more mistakes I can't get off my tongue.

    ARMv7 NT had its chance to take off and that opportunity got blown completely because of those actions.

    ipg, to random
    @ipg@wetdry.world avatar

    >Microsoft refuses to sign vulnerable third-party code for secure boot
    >Microsoft signs Windows bootloaders
    which is it? :troll:​

    cooper, to random
    @cooper@ottr.uk avatar

    Stare into the abyss and the abyss awoooos back

    Rusty, to google
    @Rusty@cubhub.social avatar

    I was shocked about Apple supporting RCS until I saw the little addendum about it not supporting any of the extensions Google put on top of the spec. The fact that Google didn't get the GSMA to adopt E2EE, read receipts, message reactions, etc is a pretty massive blunder.

    It's obvious why Apple would be willing to adopt it. They can still make it a far worse experience without having the potential legal issues in the EU. So, Apple is adding the ability to add higher quality media. That's it. Yay.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • thenastyranch
  • rosin
  • GTA5RPClips
  • osvaldo12
  • love
  • Youngstown
  • slotface
  • khanakhh
  • everett
  • kavyap
  • mdbf
  • DreamBathrooms
  • ngwrru68w68
  • megavids
  • magazineikmin
  • InstantRegret
  • normalnudes
  • tacticalgear
  • cubers
  • ethstaker
  • modclub
  • cisconetworking
  • Durango
  • provamag3
  • tester
  • Leos
  • JUstTest
  • All magazines