dumpywizard's profile picture.

Cecil Lin

@dumpywizard

Cecil Lin reposted

We implemented an exploit for RediShell (CVE-2025-49844). While doing so, we discovered that the publicly available PoC incorrectly uses loadstring to trigger the Redis UAF. Kudos to @wiz_io for the interesting findings!


Cecil Lin reposted

The @logseq merge of the feat/dB to master is done. Now hopefully the app can get back to where it belongs

ednico_'s tweet image. The @logseq merge of the feat/dB to master is done. 
Now hopefully the app can get back to where it belongs

Cecil Lin reposted

Gumroad 宣布不再招聘初级甚至是中级工程师了,用 AI 来完成编程任务。 而我还没能成功让 AI 在已有代码库上自主完成任意一个 feature 的开发 😂 我对 AI 编程的理解还是太落后了。

No longer hiring junior or even mid-level software engineers. Our tokens per codebase: Gumroad: 2M Flexile: 800K Helper: 500K Iffy: 200K Shortest: 100K Both Claude 3.5 Sonnet and o3-mini have context windows of 200K tokens, meaning they can now write 100% of our Iffy and…



Cecil Lin reposted

NanaZip 3.0 has been submitted to the Windows Store successfully. github.com/M2Team/NanaZip…


Cecil Lin reposted

🧵[1/9] Time to publish the solution to this challenge! The goal of this challenge was to find an XSS while avoiding it being blocked by the CSP sent by the PHP header() function. Let's dive into it!

This Friday, I'm presenting a novel technique as part of my talk "Secret web hacking knowledge - CTF authors hate these simple tricks". I've made a challenge about it, will you be able to pop an alert on pilv.ar ? The whole source code is in the screens below :)

pilvar222's tweet image. This Friday, I'm presenting a novel technique as part of my talk "Secret web hacking knowledge - CTF authors hate these simple tricks".
I've made a challenge about it, will you be able to pop an alert on pilv.ar ? The whole source code is in the screens below :)
pilvar222's tweet image. This Friday, I'm presenting a novel technique as part of my talk "Secret web hacking knowledge - CTF authors hate these simple tricks".
I've made a challenge about it, will you be able to pop an alert on pilv.ar ? The whole source code is in the screens below :)


Cecil Lin reposted

#Java #JDK22 #Java22 is released today! ✨🥳☕🚀✨ ⬛⬛⬛⬛⬛⬛⬛⬛⬛⬛⬛⬛ 100% See release notes for changes: jdk.java.net/22/release-not…


Cecil Lin reposted

Here is a 72-byte alphanum MD5 collision with 1-byte difference for fun: md5("TEXTCOLLBYfGiJUETHQ4hAcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak") = md5("TEXTCOLLBYfGiJUETHQ4hEcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak")


Cecil Lin reposted

Reqable reqable.com/en-US/ 的独立开发者对2023年的总结分享 v2ex.com/t/1004463 。 就看Reqable开发工作量和他这份坚持也要为他👍👍👍


United States Trends

Loading...

Something went wrong.


Something went wrong.