the grugq's newsletter

Subscribe
Archives
June 3, 2024

June 3, 2024

June 3, 2024

We are happy to share our slides for TyphoonCon 2024 and the exploit code for v8ctf. We hope this will be helpful for those who study browser exploits :)https://t.co/8EB1PuhgcMhttps://t.co/QVHICXM58T

— INSU YUN (@insu_yun) June 2, 2024


Stealing everything you’ve ever typed or viewed on your own Windows PC is now possible with two lines of code — inside the Copilot+ Recall disaster.

FAQ with me from questions online. https://t.co/Jq8BUJef24

— Kevin Beaumont (@GossiTheDog) May 31, 2024

I mention in this piece that Snowflake need to go back and rework authentication. This is why: https://t.co/OBMz5EfUZE

— Kevin Beaumont (@GossiTheDog) June 3, 2024


1/5 of all CVEs published in May were Linux Kernel CVEs.

This would be useful data except for the fact that the Linux Kernel team are now the only people allowed to issue CVEs for the Linux Kernel and they issue one for every bugfix, even if there is no related security… https://t.co/eCc56kuI5q

— Tib3rius (@0xTib3rius) June 2, 2024


New from 404 Media: we’ve obtained an internal Google database detailing thousands of privacy/security incidents. Everything from Street View collecting license plate data, to childrens’ voices being recorded. Most not previously reportedhttps://t.co/ZwjjErX2np pic.twitter.com/pHZ1hbeMKf

— Joseph Cox (@josephfcox) June 3, 2024


#Hacking Millions of #Modems (and Investigating Who Hacked My Modem)

// by @samwcyo https://t.co/J55E0bj7Ym

— raptor@infosec.exchange (@0xdea) June 3, 2024


Another entry in a long-running series where Nicholas Carlini breaks ML defenses published at top security conferences with as little effort as possible (in this case a one line bugfix in the eval) pic.twitter.com/fvDJBdxM7u

— Brendan Dolan-Gavitt (@moyix) June 2, 2024

Nevertheless, they persisted pic.twitter.com/zWepMnPIqQ

— Brendan Dolan-Gavitt (@moyix) June 3, 2024

Previously: breaking a defense by asking ChatGPT, and then having ChatGPT write the paper pic.twitter.com/SszuOkhexh

— Brendan Dolan-Gavitt (@moyix) June 2, 2024


This article title could have been written on any day since about 2005 https://t.co/NehXMG70Rx

— Luke Stephens (hakluke) (@hakluke) June 3, 2024


Well known troll on breachforums 'thekilob' was arrested in Rome today.

He was found with two 3D printed guns as well as videos of executions and CP on his computer. He is a self proclaimed Neo-Nazi.

What a sick individual.https://t.co/fpeWBHk4A0
src: emo - t[.]me/explain

— vxdb (@vxdb) June 2, 2024


https://x.com/mg/status/1797461630437241318

Thread by @MG on Thread Reader App – Thread Reader App

@MG: I like to read replies to posts like this just to remind myself how misinformed the general public is about “USB-C” So here is a thread looking at a few of them… 🧵1 First, USB-C is a...


Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X