the grugq's newsletter

Subscribe
Archives
September 10, 2025

September 10, 2025

September 10, 2025

wow... great finds. good writeup, worth a read! :) and if you've ever been to burgerking drivethru, AI is analyzing your convos ;D https://t.co/5KPuLFMml8

— zseano (@zseano) September 7, 2025

Forcing Quirks Mode with PHP Warnings + CSS Exfiltration without Network Requestshttps://t.co/E2GkB7I5Mj

Published author writeup for pure-leak in ASIS CTF Quals 2025! pic.twitter.com/8uYZjW3ENt

— Ark (@arkark_) September 8, 2025

Signal >> Blog >> Introducing Signal Secure Backups

In the past, if you broke or lost your phone, your Signal message history was gone. This has been a challenge for people whose most important conversations happen on Signal. Think family photos, sweet messages, important documents, or anything else you don’t want to lose forever. This explains wh...


🔺iPhone models announced today include Memory Integrity Enforcement, the culmination of an unprecedented design and engineering effort that we believe represents the most significant upgrade to memory safety in the history of consumer operating systems. https://t.co/ule9gaXzc1

— Ivan Krstić (@radian) September 9, 2025

Blog - Memory Integrity Enforcement: A complete vision for memory safety in Apple devices - Apple Security Research

Memory Integrity Enforcement (MIE) is the culmination of an unprecedented design and engineering effort spanning half a decade that combines the unique strengths of Apple silicon hardware with our advanced operating system security to provide industry-first, always-on memory safety protection across our devices — without compromising our best-in-class device performance. We believe Memory Integrity Enforcement represents the most significant upgrade to memory safety in the history of consumer op...


One of the myths I try to bust with my work is this idea that OWA drones will all be shot down easily in practice. In fact, factors like surprise, mass, the route they take to the target, and air defense friction can all mean that drones often get through. https://t.co/edjjt36mzl

— Marcel Plichta (@plichta_marcel) September 10, 2025

Russia continues to operate in the "Liminal zone" with actions both below and above the attribution threshold. Each ambiguous action they perform helps them slowly raise the response threshold allowing them to perform more damaging actions without a strong response. pic.twitter.com/g9Gyzw8rpE

— Oliver Alexander (@OAlexanderDK) September 10, 2025

All visible evidence suggests that the drones that entered Polish airspace were the smaller Gerbera drones.

This is further evidence that it was an intentional provocation to test NATO readiness and response as part of their ongoing hybrid warfare campaign. pic.twitter.com/TxTu53ve6n

— Oliver Alexander (@OAlexanderDK) September 10, 2025

This is more than a careless, navigation error from the Russians. At least a dozen drones appear to have crossed into Poland. It would be better described as ‘probing’ - in case NATO establishes bases in eastern Poland to support a future presence in Ukraine. https://t.co/gcjwlgbGYU

— Mick Ryan, AM (@WarintheFuture) September 10, 2025

Turkey invoked Article IV three times over Syrian air and artillery attacks. These included one incident in which a Turkish jet was shot down and another in which Syrian and Russian planes killed 33 Turkish soldiers in Idlib. Poland invoked it in 2014 after Russia’s first… https://t.co/5KIE9T21Mt

— Michael Weiss (@michaeldweiss) September 10, 2025

The biggest Russian military channels are celebrating Russian drone strikes on Poland. pic.twitter.com/eWIJlJuPhm

— SPRAVDI — Stratcom Centre (@StratcomCentre) September 10, 2025

Interesting patch from @Google showing the effects of Intel security mitigations on the gather assembly language instruction.

A huge performance decrease as a result. pic.twitter.com/dCu9nxAMf2

— FFmpeg (@FFmpeg) September 9, 2025
Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X