buherator
A drunken debugger
Posts
This site is nice, but suddenly I can't figure out what to buy. Do I need milk? How about NFTs?
👇 #openssl
@iamamoose@twitter.com If the fuzzers and other security tools didn't catch this, why didn't they and what can be improved?
Spending my Sunday figuring out how much more time Ruby's bundler (invoked without an r, obviously) needs to do nothing🤬
I don't see how this transaction would change anything and at this point I'm too afraid to ask
CVE-2020-3433 and CVE-2020-3153 are apparently still alive and well (neat bugs too!)
RT @BleepinComputer@twitter.com
Cisco warns admins to patch AnyConnect flaw exploited in attacks - @serghei@twitter.com
https://www.bleepingcomputer.com/news/security/cisco-warns-admins-to-patch-anyconnect-flaw-exploited-in-attacks/
ThinkPad keyboards used to be legendary, still using the one on my t410. This shit is from the 3rd island keyboard I had to install on my t460 @Lenovo@twitter.com
Still waiting for this to become a thing...
Is there a usable web search engine in 2021? Requirements:
- PageRank, no Artificial Insanity
- Results match all search words
I'm willing to pay for a subscription.
Configuring Supported TLS Groups in OpenSSL https://www.openssl.org/blog/blog/2022/10/21/tls-groups-configuration/ /cc @pfeifferszilard@twitter.com
Lucky me hit a VSCode bug:
https://github.com/microsoft/vscode/issues/124895
On the bright side this appears to be the same Chromium bug that is also biting my ass for years:
https://bugs.chromium.org/p/chromium/issues/detail?id=713746
😭
Oracle Critical Patch Update Advisory - October 2022 https://www.oracle.com/security-alerts/cpuoct2022.html
There was this project that focused to predict/score exploitation likelihood based on GitHub references to a CVE and such. Can someone help me find it?
Dear technical writers: if you document *what* should be set in order to achieve some result, don't forget to include *where* one should set the thing!
This would prevent a lot of screaming to innocent monitors...
EBCDIC is coming back in 2022 :)
I have a feeling @mdsec@twitter.com 's https://www.mdsec.co.uk/2021/09/nsa-meeting-proposal-for-proxyshell/ about @orange_8361@twitter.com & @NSAGov@twitter.com bugs might still be relevant for #ProxyNotShell - Can't we just bypass the @msftsecresponse@twitter.com rule `(?=.*autodiscover)(?=.*powershell)` by Request Encoding e.g. https://gist.github.com/irsdl/0f61ed38a4cc7a86b1b48180b6af15ba 🔮 https://twitter.com/wdormann/status/1578751627598888962
This week I drew UML, and created a class, where a struct would've been appropriate. Those years at university were not in vain 💪