the grugq's newsletter

Subscribe
Archives
July 5, 2024

July 5, 2024

July 5, 2024

Estimating the air speed of an unladen swallow

https://style.org/unladenswallow/


pic.twitter.com/6CkrqbsAJt

— Alex Tabarrok 🛡️ (@ATabarrok) July 4, 2024


Apple removed from the Russian version of its app store four VPN services. These are Red Shield VPN, Le VPN, Proton VPN, NordVPN. These were removed due to requests from RosKomNadzor. I would ignore such requests. https://t.co/rSpDGwSNN0

— Stanimir Dobrev (@delfoo) July 4, 2024


One big lesson this year is that just because code has fuzzing coverage, doesn’t mean there are no bugs there.

Sometimes fuzzers lack the means to create meaningful, bug triggering, inputs.

— 那个饺子🥟(JJ) (@thatjiaozi) July 4, 2024


i know at least 10 people exactly like this pic.twitter.com/2Z3U0ga6qg

— pseudo 🇺🇦 (@pseudotheos) July 3, 2024


I've shared many talks from bpfconf'24 two weeks ago. You can now find the full list (with slides!) at https://t.co/9jeFAobvl7. pic.twitter.com/0BUp2LIlfz

— Paul Chaignon (@pchaigno) July 4, 2024


Smart. Those ticket codes are, as Clausewitz would say, Ticketmaster’s centre of gravity. One of them anyway. https://t.co/CuP6LtkFRJ

— thaddeus e. grugq thegrugq@infosec.exchange (@thegrugq) July 5, 2024


This is an old presentation which I remember from when it was first released. I recently tracked it down to reread it, and it holds up as a great way to think about data.

https://style.org/visualized/


Beginners intro to x64 Linux Binary Exploitation

Basic: https://t.co/J5gqMxaZmQ
Return into lib: https://t.co/Tqefc1Vqua
RoP Chains: https://t.co/JLsfCohD8L
Stack Canaries: https://t.co/287mspJzp3
ASLR: https://t.co/V0gKH3hubj

Great series by @Ch0pin#exploit #infosec pic.twitter.com/87dmcnJjUY

— 0xor0ne (@0xor0ne) July 5, 2024


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X