Replies

This profile is from a federated server and may be incomplete. Browse more on the original instance.

Rairii, to random
@Rairii@haqueers.com avatar

i just found by a google search some old internal apple documentation about the OF ROM of the blue&white powermac G3

...it defines "MacOS-X" as: UNIX-based MacOS; think of it as "Mac OS NT".

it also mentions putting the macio MMIO physical address at 0x80800000 "to boot NT just in case" haha

it also mentions that OF's little endian mode "actually works in OF"

looking at the disassembly of the B&W's init code i have, it actually should work!

basically, when little-endian is set, after setting MSR[LE] it will set bit 5 (LE_MODE bit, turns on little endian) to PICR1, by using CONFIG_ADDR/CONFIG_DATA writes, and only uses every second instruction to do that (with each other instruction being a nop mainly) because of how MSR_LE works

in fact it seems the bootrom of every ppc mac after this has the exact same code, even those that use a different memory controller, no WONDER little-endian? is notorious for bricking lol

Rairii,
@Rairii@haqueers.com avatar

i think an error in that documentation is why the COFF with PE optional header loader stuck around, though:

it's described in the documentation as a PEF loader, the PPC classic mac os executable format!

ipg, to random
@ipg@wetdry.world avatar

at protocol is better than activitypub in a lot of important ways

Rairii,
@Rairii@haqueers.com avatar

@ipg it's also worse in other important ways

nano, to random

HAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHAHA

RE: https://fedi.nano.lgbt/objects/62df3fad-2831-40d8-bfe2-6e98b4a6bf12

Rairii,
@Rairii@haqueers.com avatar

@nano people remote reporting server admins is one of the funniest parts of fedi imo

SwiftOnSecurity, to random

If your vendor has security issues and your executives care they can like… demand a meeting. Which is so executive-coded it works.
We did this to a vendor recently and got a groveling layout of internal strategy.
To be Executive you gotta act Executive. Executive decisions. Bam.

Rairii,
@Rairii@haqueers.com avatar

@SwiftOnSecurity so in this emergency meeting, who was sus

yassie_j, to random
@yassie_j@labyrinth.zone avatar

On this day, ten years ago (2014) I wrote:

Here's the deal: Apple sucks. Samsung sucks. Google sucks. Nokia sucks. Microsoft sucks. All of them fucking suck. Just buy a damn phone/tablet and shut up about it.

My opinion still hasn't changed it seems.

Rairii,
@Rairii@haqueers.com avatar

@yassie_j who doesn't

Rairii, to random
@Rairii@haqueers.com avatar

decided to throw securebootai.dll (from latest germanium build) into IDA, was not disappointed

there's a list of systems where db/dbx updates aren't attempted, that being:

  • any (amd64) apple system (those with secure boot just hardcodes db/dbx, without the ability to update it, right?)
  • fujitsu FJNBB38
  • a big list of HP systems: 83D5, 83DA, 83DD, 83E7, 83E8, 83E9, 8401, 8460, 8461, 8462, 8463, 8464, 8584, 8589, 8617, 8618, 8619, 8620, 869B, 86A3, 86A5, 86A8, 870B, 870C, 870F, 8710, 8711, 8712, 8713, 8714, 8715, 8717, 8718, 8719, 871A, 871B, 871C, 8723, 8724, 8725, 872B, 872C, 872D, 872E, 8736, 874D, 874E, 874F, 8750, 8751, 8752, 8753, 8754, 8755, 8760, 876D, 8779, 877D, 8780, 8783, 87EC, 880F, 8810, 882C, 882D, 8830, 8835, 8836, 885C, 887E
  • and any HP system where its custom protection against performing db/dbx updates is enabled

also:

the file doesn't exist right now, but there's code (behind a registry(?) flag) to apply "dbxupdate2024.bin", and debug strings imply that would revoke the PCA 2011 cert entirely!(GetSecureBootUpdateFilePathPCA2011RevokeDBX)

i expected that to be done, but only on new systems, fun (given that it's behind a flag it may well happen only on new systems)

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl it's what all production windows binaries are (currently) signed by

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl they've created a new set of certs

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl well yes, that's what dbx is, to prevent old vulnerable binaries from running

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl lack of dbx space and the creation of new certs made me expect this would happen, at least for new systems

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl don't know yet.

Rairii,
@Rairii@haqueers.com avatar

@wolf480pl IF older systems get the cert revoked it should be able to be reverted in the uefi firmware setup, which has an option to revert db/dbx back to the default (in the uefi firmware)

da_667, to random

I don't even understand why the fuck windows update even has error codes when every single fucking one of them always has the same advice from microsoft: Delete SoftwareDistribution, run the troublshooter which never works, run dism /cleanupimage /restorehealth or use the windows 11 installer tool to do a clean install. Don't even bother giving me the error code.

Then you go to the event viewer for windows update logs and its like "the update failed to download" and you ponder the pros of lobotomy via soup spoon.

Rairii,
@Rairii@haqueers.com avatar

@da_667 you're searching in the wrong place

first you pass it to certutil /error
then you start throwing windows binaries into your favourite reversing tool

nano, to random

throwback to when i was like 7 and trying to make my own font by literally drawing the letters in mspaint in the same way the windows xp font viewer did and then naming the file with a .ttf extension and being confused when it didnt work

Rairii,
@Rairii@haqueers.com avatar

@nano jackdaws love my big sphinx of quartz

yassie_j, to random
@yassie_j@labyrinth.zone avatar

Hockey? What kind of Misskey fork is that?

Rairii,
@Rairii@haqueers.com avatar

@yassie_j one where instead of getting muted you get sin binned

yassie_j, to random
@yassie_j@labyrinth.zone avatar

Yubikey? Is that a new Missk–

Rairii,
@Rairii@haqueers.com avatar

@yassie_j unironically thought this when i saw a post cw'd "hockey" once

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • kavyap
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • tacticalgear
  • cubers
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • osvaldo12
  • ngwrru68w68
  • GTA5RPClips
  • provamag3
  • InstantRegret
  • everett
  • Durango
  • cisconetworking
  • khanakhh
  • ethstaker
  • tester
  • anitta
  • Leos
  • normalnudes
  • modclub
  • megavids
  • lostlight
  • All magazines