the grugq's newsletter

Archives
Subscribe
November 10, 2025

November 10, 2025

November 10, 2025

...and check out this bonkers pipeline of upcoming vulns from Google Project Zero's transparency report! Perhaps the DNG fun is just getting started 😁. DNG codec cruising for Epic Fail pwnie? h/t @_clem1 pic.twitter.com/P19nRNrkw6

— Bill Marczak (@billmarczak) November 7, 2025


Exploits for Unix variants with significant historical value and may still exist in specialized environments such as scientific computing facilities, ICS, and legacy envs. Coverage includes Cray UNICOS, SGI IRIX, Solaris, HP-UX, and SCO Unix systems. https://t.co/9CIR7y2RN2 pic.twitter.com/ne9lHH3Van

— hacker.house (@hackerfantastic) November 9, 2025


On Aug 4, two electronic surveillance alarms at Serbia’s Criminal Sanctions Enforcement Directorate went off at almost the same time — first at 00:43 and then at 00:54 — signaling that the electronic monitoring devices on 🇨🇳 Cui Guanghai and 🇬🇧 John Miller, two foreign nationals… https://t.co/he2H3jsoGV pic.twitter.com/C68nVlNG4u

— Byron Wan (@Byron_Wan) November 9, 2025


Reverse engineering tip

If you're not sure something is ransomware, run it as Admin on your computer

If your documents are no longer accessible and your wallpaper has changed, then it is probably ransomware

— vx-underground (@vxunderground) November 9, 2025


Exploiting the Lexmark PostScript Stack by @FidgetingBitshttps://t.co/5kHhXEIIIa pic.twitter.com/MMlGkkoYYX

— Alex Plaskett (@alexjplaskett) November 9, 2025


My Defcon talk on crypto money laundering and tracking the funds with AI agent reached 24k views on Youtube! 🤯https://t.co/W1Bm2ofmBT pic.twitter.com/C9bUXplYeF

— Thomas Roccia 🤘 (@fr0gger_) November 10, 2025


The social media hypothesis blames social media for the deterioration of teenagers’ mental health.

However, many randomized controlled trials (RCTs) show that encouraging heavy social media users to quit for a short time has only small effects on mental health in the short term.… pic.twitter.com/z9nJrCQb8b

— John B. Holbein (@JohnHolbein1) November 9, 2025

"Why Small Experimental Effects of Social Media Use Are Compatible With Large Real-World Effects"

cc: @JonHaidt https://t.co/AAiXXyCF31 pic.twitter.com/W4idgxudj0

— John B. Holbein (@JohnHolbein1) November 9, 2025


SignToolEx, a code-signing tool that enables the use of expired certificates for executable signing operations. https://t.co/XZenT5JtHC pic.twitter.com/OXelnC5osm

— hacker.house (@hackerfantastic) November 9, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:

Add a comment:

Share this email:
Share on Twitter Share on Hacker News Share via email Share on Mastodon Share on Bluesky
X