the grugq's newsletter

Subscribe
Archives
May 21, 2025

May 21, 2025

May 21, 2025

My keynote at @offensive_con 2025, "How Offensive Security Made Me Better at Defense":

Video: https://t.co/WM9GuW19cZ

Slides: https://t.co/LtfEV0L6e7

— Dino A. Dai Zovi (@dinodaizovi) May 20, 2025


New: UAE is trying to recruit Pentagon workers displaced by DOGE to move to Abu Dhabi to work on AI for UAE military. A UAE brig general met last month with two former staffers of Defense Digital Service and tried to recruit them and their entire DDS team https://t.co/PcZxCb6xFb

— Kim Zetter (@KimZetter) May 20, 2025


Back in 2023, the assessment of the pre-authentication vulnerability in SSH was that it wasn't exploitable on Linux.

For my OffensiveCon 2025 keynote, I wrote enough of an exploit to show, with the right heap groom and stabilization, it's likely exploitable. Then I tried to have… https://t.co/3dgce1qGCp

— Perri Adams (@perribus) May 20, 2025


#OffensiveCon25 videos are now up!https://t.co/aRzmXS7iPA

— offensivecon (@offensive_con) May 20, 2025


Google Go libraries are a model example of cryptography implemented the right way. The codebase was designed and built with security and testing as a priority. The library will also undergo FIPS certification to become a validated cryptography module. https://t.co/oUISFeHC5p

— Trail of Bits (@trailofbits) May 20, 2025


That 5 minute meeting you scheduled? That’s actually called “context switching” and it can take a developer 3-5 years to regain their full focus. Please be more mindful next time https://t.co/TULRLu2tVG

— gabe (@allgarbled) May 20, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:
X