January 5, 2023
-
When all websites related to the Danish army went down last month, it took them 4 hours to realize they were under DDoS attack and 11 hours to stop it. As I point out to DR, that's not great...
@ciaranmartinoxf
@thegrugq @DRMoltke
-
-
A GPT3 module for Ghidra
https://medium.com/tenable-techblog/g-3po-a-protocol-droid-for-ghidra-4b46fa72f1ff
-
"A ransomware attack on the Guardian has hobbled the London-based news-organization’s basic operations, shutting down everything from its office wifi to the tills in the staff canteen. The company’s offices will remain closed until at least Jan 23"
-
-
-
Looks super interesting 👀
Prototype Pollution in Python
Real world example looks very interesting here. Pollution causes COMSPEC being added on subprocess.os.environ, which eventually executes arbitrary command.
blog.abdulrah33m.com/prototype-poll…
-
I think @PeterShor1 is right here - the Paper isn't obviously wrong, but there are a number of caveats. 🧵⤵️
ft.com/content/b15680…
I think the critique from @PeterShor1 that the researchers haven't calculated run time is a valid criticism. Yes, it (may) work on sub-linear resources. But factoring also 'works' on CPUs - it just might work slightly to very better here... And the time question is the real one!
-
-
Stories about how chatGPT will kill Google are a bit silly.
Google have the best full stack LLM team and infra with custom chips (PaLM, LaMBDA, Chinchilla, MUM, TPUs etc)
Nobody can bet them on innovation, cost or go to market.
Institutional inertia is only limiting factor.
-
Interesting article by @Denis_Skvortcov
Hooking System Calls in #Windows 11 22H2 like #Avast #Antivirus. #Research, analysis and bypass
-
The OSS-Fuzz and FuzzBench team is helping to run the SBFT'23 fuzzing competition this year!
sbft23.github.io/tools/fuzzing
Please submit an entry if you're interested in participating! Entries for expressing interest close on Jan 13.
-