the grugq's newsletter

Subscribe
Archives
September 21, 2023

September 21, 2023

September 21, 2023

Six fundamental beliefs that bias our view of the world:

1. My experience is a reasonable reference.
2. I make correct assessments of the world.
3. I am good.
4. My group is a reasonable reference.
5. My group is good.
6. People's attributes (not context) shape outcomes. https://t.co/nx3Ne3oVRB

— Steve Stewart-Williams (@SteveStuWill) September 19, 2023

New: this is crazy. The top Google image search result for "tank man" right now is an AI-generated "selfie" of the man. Shows that as AI content becomes more and more widespread, the platforms we use to surface content don’t have a good way to identify it https://t.co/vi2hxkH9Uh pic.twitter.com/6mfaUsdXbj

— Joseph Cox (@josephfcox) September 20, 2023

Found a job I want pic.twitter.com/jWh4lqy0R6

— Dead Pan Nick (@Contwixt) November 9, 2019

Um pic.twitter.com/E0bobTWdTJ

— Classical Studies Memes for Hellenistic Teens (@CSMFHT) September 20, 2023

This bug was found in 2018 in the home of an ex-IRA commander (Brian Keenan) in #Ireland who died in 2008. It was under the floorboards of an upstairs bedroom, mic hidden in the ceiling of the downstairs room. Allegedly, it was from the #MI5.

Source: https://t.co/ropkUf1G8x pic.twitter.com/xWJBZ94oVa

— Spy Collection (@SpyCollection1) September 21, 2023

This whole push is so funny to me. What if everyone moves to Perl, which is memory safe?

I mean the goal is to move ppl to using more secure frameworks and platforms, but a lot of them are proprietary and the ones that aren't (Ada!) have other issues in the market? https://t.co/t68tqRSxYC

— Dave Aitel (@daveaitel) September 20, 2023

It's very weird to tell everyone to go move to Java or C# when 1. Deserialization bugs are eating them alive, 2. They are owned by Oracle and Microsoft. Like, seriously, what is the plan? Is the Govt going to invest in open source C->Rust translation programs.

— Dave Aitel (@daveaitel) September 20, 2023

If you're programming a game where a boat moves through water, you might be tempted (as I would) to change the V-shape angle of the waves behind the boat based on how fast the boat was moving!

What if I told you that that V-shaped angle is always 19.47°, regardless of how fast… pic.twitter.com/QjGX6zeyXl

— pikuma (@pikuma) September 14, 2023

Included here as a service to anyone who uses slack and needs this:

If you're programming a game where a boat moves through water, you might be tempted (as I would) to change the V-shape angle of the waves behind the boat based on how fast the boat was moving!

What if I told you that that V-shaped angle is always 19.47°, regardless of how fast… pic.twitter.com/QjGX6zeyXl

— pikuma (@pikuma) September 14, 2023

That one didn't seem to work for me. I got it working with this:

localStorage.localConfig_v2 = localStorage.localConfig_v2.replace(/\"is_unified_user_client_enabled\":true/g, '\"is_unified_user_client_enabled\": false')

— Ryan Stortz (@withzombies) September 20, 2023

Follow up on the tiny camera from yesterday

https://www.ovt.com/products/ovm6948/

Photo of a Johannesburg, South Africa pigeon loft in the possession of the Boers, c. 1899. During the conflict, British media speculated that the Boers were using pigeons to send messages from behind enemy lines. (courtesy of The Strand) pic.twitter.com/gRiaX9lK4p

— Military Pigeons (@MilitaryPigeons) September 21, 2023

The concept of "zero trust" is often misunderstood, but it has to do with the level of confidence you should have in vendors selling you any solutions labeled this way.

— lcamtuf (@lcamtuf@infosec.exchange) (@lcamtuf) September 20, 2023

The US nuclear bomb factory 🏭 has electrical power problems today: https://t.co/SKK3r45zoM

— Bert Hubert 🇺🇦 (@bert_hu_bert) September 20, 2023

A nice guide on emmbedded systems security and TrustZone by @dim0x69
https://t.co/IVKWDz01tg#iot #embedded #trustzone #infosec #cybersecurity pic.twitter.com/ZDulYvhBEy

— 0xor0ne (@0xor0ne) September 20, 2023

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X