alexm_py's profile picture. I am a security weirdo - soulless villain - I believe in the rhythm - howlin' forever - pineapple slut - dog person - he/him

Alex McGeorge

@alexm_py

I am a security weirdo - soulless villain - I believe in the rhythm - howlin' forever - pineapple slut - dog person - he/him

Pinned

*screams into an Ethernet cable*


Alex McGeorge reposted

seasoned New Yorker telling you how to get to the airport


Alex McGeorge reposted

I met the person who runs riseup.net yesterday. They provide OpSec for the activists community. We salute them. ✌️❤️ Thank you for being there and helping so many to rise and protest against injustice.


Alex McGeorge reposted

The detailed version of our #WorstFit attack is available now! 🔥 Check it out! 👉 blog.orange.tw/posts/2025-01-… cc: @_splitline_

Our talk at #BHEU is done! Hope you all enjoyed it. 😉 A detailed blog is on the way, but in the meantime, check out the pre-alpha website worst.fit for early access and the slides! Huge thanks to @BlackHatEvents and my awesome co-presenter @_splitline_! 🐈‍



This is seems interesting potentially wide impact

CVE-2024-40896 In libxml2 2.11 before 2.11.9, 2.12 before 2.12.9, and 2.13 before 2.13.3, the SAX parser can produce events for external entities even if custom SAX handlers try to … cve.org/CVERecord?id=C…



Alex McGeorge reposted

I've just released Eclipse, a PoC of what I call Activation Context Hijack. This technique redirects any application to load an arbitray DLL, allowing to inject code into any trusted process. More info available on Github. github.com/Kudaes/Eclipse


Alex McGeorge reposted

"Matt Gaetz is a private citizen. Congress should not investigate a private citizen." - Mike Johnson "It doesn't matter that Hunter Biden is a private citizen. The American people deserve to know. Congress needs to investigate to the fullest extent possible." - Mike Johnson


Took the time to vote today, I encourage others to do so as well


Alex McGeorge reposted

We are deeply saddened to hear of the passing of producer, songwriter, composer and arranger Quincy Jones. As a master inventor of musical hybrids, he has shuffled pop, soul, hip-hop, jazz, classical, African and Brazilian music into many dazzling fusions, traversing virtually…

thejazzestate's tweet image. We are deeply saddened to hear of the passing of producer, songwriter, composer and arranger Quincy Jones.

As a master inventor of musical hybrids, he has shuffled pop, soul, hip-hop, jazz, classical, African and Brazilian music into many dazzling fusions, traversing virtually…

Alex McGeorge reposted

FACT CHECK: Debunking weather modification claims. No one creates or steers hurricanes; the technology does not exist. Details: noaa.gov/news/fact-chec… @NWS @NOAAResearch

NOAA's tweet image. FACT CHECK: Debunking weather modification claims.

No one creates or steers hurricanes; the technology does not exist.

Details: noaa.gov/news/fact-chec…

@NWS @NOAAResearch

Alex McGeorge reposted

2¹³⁶²⁷⁹⁸⁴¹−1, discovered today, is the largest known prime. It's a Mersenne prime (2ᵖ-1), which are easier to find. It took nearly 6 years for the GIMPS software to find it after the previous largest known prime. It was also the first Mersenne prime found using GPUs.

fermatslibrary's tweet image. 2¹³⁶²⁷⁹⁸⁴¹−1, discovered today, is the largest known prime. It's a Mersenne prime (2ᵖ-1), which are easier to find.

It took nearly 6 years for the GIMPS software to find it after the previous largest known prime. It was also the first Mersenne prime found using GPUs.

Alex McGeorge reposted

The most underrated basic bug-class and skill to have, if your job relates to poking/securing web applications. This becomes even more important when multiple stacks are combined.


Alex McGeorge reposted

Remember CVE-2024-4577, the PHP-CGI RCE bypass? Actually, the Best-Fit 'feature' also impacts non-CJK codepages such as locales in the Americas, Western Europe, Oceania, and more! @_splitline_ and I will share these cool findings at @BlackHatEvents! 🔥 Let's make argument…

orange_8361's tweet image. Remember CVE-2024-4577, the PHP-CGI RCE bypass? Actually, the Best-Fit 'feature' also impacts non-CJK codepages such as locales in the Americas, Western Europe, Oceania, and more! @_splitline_ and I will share these cool findings at @BlackHatEvents! 🔥

Let's make argument…

RIP Maggie Smith, she was one of my favorite dames


Alex McGeorge reposted

Attacking UNIX Systems via CUPS, Part I evilsocket.net/2024/09/26/Att…


Man, I really really love the PvE mode of @tarkov it’s still incredibly punishing but more bearable


Alex McGeorge reposted

While dusting off some old stuff, I came across some old logs and sample. Here's some live PCAP files from back in July 2010 when I was watching some Stuxnet implants across Iran, living their last days of life. Probably first ever public traffic samples? github.com/Hamid-K/stalks…


Smoking cigars with leather men of a certain age is one of my favorite things


Hooray, I hit 2000 in puzzles on @chesscom I’m still rubbish online and otb but some success feels good


Loading...

Something went wrong.


Something went wrong.