the grugq's newsletter

Subscribe
Archives
September 15, 2023

September 15, 2023

September 15, 2023

One thing I have learnt over the last years is that - while I am technically pretty solid - I am surprisingly good at *product*. It's a strange thing to realize as a pretty technical mathematician.

This thread describes what I consider "common-sense product design", because ...

— Halvar Flake (@halvarflake) September 13, 2023

Last week I open sourced an example supply chain attack that bypasses most supply chain controls used today. Consider a build plugin that backdoors everything built with it: https://t.co/Y9KB92jjSY

— Jeremy Long (@ctxt) August 15, 2023

When tackling the "All we need is STEM!" attitude, my response: Developing the vaccine was the STEM problem; distribution & getting shots in arms was the Social Science problem; getting people to trust it & combatting misinformation was the Humanities problem--which did we fail?

— Ada Palmer (@Ada_Palmer) September 13, 2023

Tutorials | Rayanfam Blog

We write about Windows Internals, Hypervisors, Linux, and Networks.


A former NBA player dies young, and AI writes this headline:

"Brandon Hunter useless at 42"

And check that prose:

"Former NBA participant Brandon Hunter who beforehand performed for the Boston Celtics and Orlando Magic, has handed away on the age of 42." https://t.co/xEvVVHo9DP pic.twitter.com/EiKlZEhluS

— Joshua Benton (@jbenton) September 14, 2023

Altoona Tribune, Pennsylvania, October 15, 1938 pic.twitter.com/MSForNzKQN

— Yesterday's Print (@yesterdaysprint) September 14, 2023

Phineas Fisher, Hacktivism, and Magic Tricks -- a brief look back at the hacking techniques and lasting impact of Phineas Fisher. https://t.co/G4lyOTA41h

— Ben Hawkes (@benhawkes) September 14, 2023

Me writing open source software: Haha fuck yeah!!! Yes!!

Me maintaining open source software without compensation for all perpetuity whilst people yell at me for not doing whatever it is they want: Well this fucking sucks. What the fuck.

— isis osiris agora lovecruft (they/them) (@isislovecruft) August 14, 2023

Windows 11 ‘ThemeBleed’ RCE bug gets proof-of-concept exploit - @billtoulashttps://t.co/jtmTfIAgjI

— BleepingComputer (@BleepinComputer) September 14, 2023

i’m learning about battery mating rituals pic.twitter.com/FuWw8UPloJ

— @elizas.website (@mycoliza) September 15, 2023

oh you’re into thinking about the roman empire, that’s cool. it's good that you keep things simple. i’ve been getting into some of the achaemenid empires, you probably haven’t heard of them

— Seva (@SevaUT) September 14, 2023

The ALPHV ransomware group has posted a long message about MGM Resorts on their leak site. pic.twitter.com/ufBuuOpOaG

— @mikko (@mikko) September 14, 2023

Thank you to the ALPHV ransomware group administrative staff for correcting their blog post and correcting the misattribution to us.

We wholeheartedly appreciate. pic.twitter.com/u5MLX7qJkZ

— vx-underground (@vxunderground) September 15, 2023

love that there are 2 guys named homer that almost everyone on earth knows about

— vanoreo (@vanoreo_) September 14, 2023

👀 pic.twitter.com/48ybw9Nobe

— Marc Slaughter 🌻 (@MarcSlaughter) September 14, 2023

Excited to share my hardest research about UAC 🤯

"Bypassing UAC with SSPI Datagram Contexts" 🔥

Enjoy the read! 👇https://t.co/cHhBeJmXQS

— Antonio Cocomazzi (@splinter_code) September 14, 2023

Nice, btw you can also force NTLM network auth by passing a SEC_WINNT_AUTH_IDENTITY to AcquireCredentialsHandle with just your username and domain with no password without needing to do the datagram trick :)

— James Forshaw (@tiraniddo) September 15, 2023

ChatGPT is getting scary good… 😬 pic.twitter.com/v2LLNguMqH

— Jules Suzdaltsev (@jules_su) September 13, 2023

Please spare a thought for this poor rubricator...

Copy of @kbrbe INC B 1.651 (RP)
STCV-record: https://t.co/cFjYqmgeoK#rarebooks #bookhistory pic.twitter.com/zdNNDfU57h

— STCV. Bibliography of the Hand Press Book (@STCVbe) September 14, 2023

We have a similarly irritated reader in a copy of Livy (#Venice, 1470), who annotated his ink blot: 'I stupidly made this blot on the first of December 1482.' @theULSpecColl Inc.1.B.3.1b[1330.2]. https://t.co/Ct0IsjLWf0 pic.twitter.com/FRhwWcvi5N

— Cambridge UL Special Collections (@theULSpecColl) September 14, 2023

Me: "Your baby looks just like you."
-"Thank you!"
Me: "Funny you took that as a compliment but ok."

— Marl (@Marlebean) September 2, 2019

Start by disabling iMessage, FaceTime and then enable Lockdown mode. Reboot daily. This takes care of 90% of the things out there. pic.twitter.com/iZ52VuWctQ

— Costin Raiu (@craiu) September 14, 2023

According to @MadaMasr, the phone of an aspiring presidential candidate in Egypt was targeted with Predator. Analysis by @citizenlab found Ahmed Tantawi was targeted “in the period between May and September 2023.” https://t.co/6j4dsq9Pud

— Runa Sandvik (@runasand) September 15, 2023

The Internet is just a DARPA experiment that got way out of hand

— x0rz (@x0rz) September 10, 2021

I am never deleting this app pic.twitter.com/nygbR2Yi7n

— Alex Cohen (@anothercohen) September 15, 2023

Telecommunications as a whole, which also encompasses The Internet, is in a constant state of failure and just in time fixes and functionally all modern communication would collapse if about 50 people, most of which are furries, decided to turn their pager off for a day. https://t.co/k1UqOv5kpd

— Ẑ͚͔͍̻̤̟ä̶̼̗̟͔́̿̾̓n̬͙̫̿͑͊̈̚d̡̰̭̞͖̟̖̟ͬ̚ê̺͖̂ͩ̀̉ͣrͪ̓ (@mmsword) November 28, 2019

Please quote this tweet with a thing that everyone in your field knows and nobody in your industry talks about because it would lead to general chaos.

— barren field of sunflower seeds 🇺🇦 🌻 (@mykola) November 24, 2019

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X