GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Dr. Christopher Kunz (christopherkunz@chaos.social)

  1. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Wednesday, 07-Oct-2026 17:13:02 JST Dr. Christopher Kunz Dr. Christopher Kunz

    OK, this is an innovative directory traversal vuln:
    GET /download/resources/jira.webresources:color-picker-popup/images/..::..::..::..::..::WEB-INF::web.xml HTTP/1.1

    This is from CVE-2026-21589, https://labs.watchtowr.com/you-wont-hear-about-these-even-in-myths-atlassian-jira-confluence-and-more-pre-auth-arbitrary-file-read-cve-2026-21589/

    The "::" gets replaced with "/" by some weird sanitation method, read more about it in the writeup.

    Tagging @nynbinary for humorous memeing.

    In conversation about 3 days ago from chaos.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: storage.ghost.io
      You Won’t Hear About These, Even In Myths (Atlassian Jira, Confluence (and more) Pre-Auth Arbitrary File Read CVE-2026-21589)
      from @chudyPB
      Welcome back to yet another episode of "security was taken seriously". Being who we are (and constantly being exposed to what we see…), we recognize we have been doomed to eternal damnation as we keep on watching security best practices crumble behind “secure by design” public statements. And in the
  2. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Tuesday, 06-Oct-2026 20:53:20 JST Dr. Christopher Kunz Dr. Christopher Kunz

    Accenture, acting as a contractor for the FBI, allegedly failed to install updates for Oracle Peoplesoft after CVE-2026-35273 was published.

    This was a "Missing Authentication for Critical Function" vulnerability and scored 9.8. If this didn't raise any flags, the CISA KEV listing should have. It was an n-day at release.

    But no, interestingly enough the FBI is exempt from BOD 26-04 and wasn't even obliged to update?!

    Man, if not even federal agencies fix their vulns, this is all pointless.

    In conversation about 3 days ago from chaos.social permalink
  3. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Sunday, 19-Jul-2026 07:46:35 JST Dr. Christopher Kunz Dr. Christopher Kunz

    As it turns out, Aldi-Nord in Germany is offering mini air coolers (you know, like in this article: https://heise.de/-11346708) from tomorrow. Retail price: 12.99 EUR. Essentially the same device is marketed with aggressive ads for prices between 59.99 and 69.99 EUR (prices vary randomly) by shady businesses.
    This exact model is available on Alibaba for around 4.50 EUR (minimum order of 5,000) - so Aldi's still turning a profit, but not ripping customers off.
    I might even get one.

    In conversation about 3 months ago from chaos.social permalink

    Attachments


    1. https://assets.chaos.social/media_attachments/files/116/885/335/941/610/800/original/b5b80ed03f2695a9.png

  4. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Sunday, 19-Jul-2026 07:46:32 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • ¯\_(ツ)_/¯

    @psy Too late. I plan to review it though, so it's not a futile private purchase.

    In conversation about 3 months ago from chaos.social permalink
  5. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Sunday, 19-Jul-2026 07:46:29 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • ¯\_(ツ)_/¯

    @psy Thanks for the advice! However, I'm feeling like you're missing a little bit of context here. I'm investigating these china-made mini coolers for an article. They are sold with a massive ad campaign as "better than AC", and I'm looking into the specifics of the campaign.
    This is my first article about the topic: https://heise.de/-11346708

    In conversation about 3 months ago from chaos.social permalink

    Attachments


  6. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 16-Jul-2026 23:50:01 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Kevin Beaumont
    • Will Dormann

    @wdormann @GossiTheDog Is this a typical approach for these kinds of fixes?

    In conversation about 3 months ago from chaos.social permalink
  7. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 16-Jul-2026 19:30:19 JST Dr. Christopher Kunz Dr. Christopher Kunz
    • Kevin Beaumont

    @GossiTheDog Who are all those people?

    In conversation about 3 months ago from chaos.social permalink
  8. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 09-Jul-2026 05:58:49 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • HistoPol (#HP) 🏴 🇺🇸 🏴

    @HistoPol Google wird diese Sorte von reCaptchas nutzen, um Website-Nutzern de facto Vorschriften zu machen, dass sie ein Mobilgerät und sogar welches sie zu besitzen haben: Ein unmodifiziertes Android oder IOS. Noch ist das nicht in der Form scharfgeschaltet, ich bin aber überzeugt: Das wird kommen. https://heise.de/-11288423

    In conversation about 3 months ago from chaos.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: heise.cloudimg.io
      Neues reCAPTCHA erschwert Google-freie Android-Nutzung
      from heise online
      Googles neues reCAPTCHA-System erfordert bei Android-Systemen Play-Dienste. Das könnte für google-freie Varianten zum Problem werden.
  9. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Wednesday, 08-Jul-2026 23:27:50 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • HistoPol (#HP) 🏴 🇺🇸 🏴

    @HistoPol Da kann man nichts empfehlen. Wer Captchas blockiert, muss ohne die durch Captchas abgesicherten Dienste auskommen. Allenfalls den Betreibern schreiben und freundlich bitten, andere Lösungen zu erwägen (z.B. PoW-Captchas wie Anubsi), kann helfen.

    In conversation about 3 months ago from chaos.social permalink
  10. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Wednesday, 08-Jul-2026 23:24:14 JST Dr. Christopher Kunz Dr. Christopher Kunz

    Ein weiterer Grund, warum man der Google-AI-Zusammenfassung kein Stück vertrauen darf: Sie befindet sich bei der Erkennung von Black Hat AIEO auf dem Stand, den SEO etwa im Jahr 2002 hatte. Exhibit A (2026, koloriert).

    Der angebliche Test ist natürlich Spam auf einer Domain, die sonst reichlich Potenzmittel und weiteren Kram "testet".

    Way to go, Google. Way to go. *slow clap*

    In conversation about 3 months ago from chaos.social permalink

    Attachments


    1. https://assets.chaos.social/media_attachments/files/116/883/184/853/911/306/original/70feb86e17d5c251.png
  11. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Wednesday, 08-Jul-2026 23:21:41 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to

    It should be noted that this CAPTCHA seems to work on GrapheneOS.

    In conversation about 3 months ago from chaos.social permalink
  12. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Wednesday, 08-Jul-2026 23:21:39 JST Dr. Christopher Kunz Dr. Christopher Kunz

    So it begins.

    In conversation about 3 months ago from chaos.social permalink

    Attachments


    1. https://assets.chaos.social/media_attachments/files/116/884/174/286/744/914/original/0c9f93851038efb1.png
  13. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Friday, 03-Jul-2026 16:31:18 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Soatok Dreamseeker

    @soatok Jeez that thread is a trainwreck. I feel genuinely compelled to have ChatGPT write me a three-paragraph summary. Feels like some kind of "flood the zone with shit" approach by certain list members...

    In conversation about 3 months ago from chaos.social permalink
  14. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 02-Jul-2026 01:13:18 JST Dr. Christopher Kunz Dr. Christopher Kunz

    Die Innenministerkonferenz will Indymedia komplett verbieten.

    Weil wir als Gesellschaft derzeit keine drängenderen Extremismus-Probleme haben.

    In 85 Seiten der Beschlusssammlung wird kein einziges Mal das Wort "rechtsextrem" erwähnt.

    Die haben im wahrsten Sinne des Wortes die Schüsse nicht gehört. https://www.innenministerkonferenz.de/IMK/DE/termine/to-beschluesse/2026-06-19_DOK/Freie_Beschl%C3%BCsse.pdf?__blob=publicationFile&v=1

    In conversation about 3 months ago from chaos.social permalink

    Attachments


  15. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Monday, 22-Jun-2026 21:29:58 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Ryan Castellucci (they/them) :nonbinary_flag:

    @ryanc Congratulations! You are now unwelcome in Las Vegas.

    In conversation about 4 months ago from chaos.social permalink
  16. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Tuesday, 16-Jun-2026 23:42:36 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Kevin Beaumont

    @GossiTheDog Wait, the Zayo, like AS6461 (ex AboveNet) Zayo?

    In conversation about 4 months ago from chaos.social permalink
  17. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 11-Jun-2026 06:45:14 JST Dr. Christopher Kunz Dr. Christopher Kunz

    The simplest of all possible modifications to the original RoguePlanet.cpp (literally interchanging two letters in the source code) defeats the detection and re-enables the exploit in current, fully patched Windows 11 with Definition Update 1.453.20.0 installed.

    In conversation about 4 months ago from chaos.social permalink

    Attachments


    1. https://assets.chaos.social/media_attachments/files/116/724/716/653/225/168/original/120c686a318ba84b.png
  18. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 04-Jun-2026 23:54:14 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Will Dormann

    @wdormann https://github.com/0xABCD01/CVE-2026-41089/blob/main/poc.py#L234

    In conversation about 4 months ago from chaos.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      CVE-2026-41089/poc.py at main · 0xABCD01/CVE-2026-41089
      CVE-2026-41089 PoC — Netlogon CLDAP stack buffer overflow (CVSS 9.8 CRITICAL) - 0xABCD01/CVE-2026-41089
  19. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 04-Jun-2026 23:54:13 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Will Dormann

    @wdormann https://chaos.social/@christopherkunz/116676523296824499

    In conversation about 4 months ago from chaos.social permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      Dr. Christopher Kunz (@christopherkunz@chaos.social)
      from Dr. Christopher Kunz
      @FritzAdalis@infosec.exchange @cR0w@infosec.exchange It's a little more complicated (and I have no means to verify the purported PoC, but it looks legit-ish), but apparently you can crash LSASS by sending a CLDAP DC locator ping packet with the username being Ax130 or longer. Code execution seems possible (according to MSRC), but the PoC is just a DoS.
  20. Embed this notice
    Dr. Christopher Kunz (christopherkunz@chaos.social)'s status on Thursday, 04-Jun-2026 23:54:11 JST Dr. Christopher Kunz Dr. Christopher Kunz
    in reply to
    • Will Dormann

    @wdormann This writeup *seems* to make sense, were it not for the magic two letters in the TLD: https://aretiq.ai/research/vul260513-cve-2026-41089-microsoft-windows-netlogon-buildsamlogonresponse-stack-based-buffer-overflow-rce/

    In conversation about 4 months ago from chaos.social permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      CVE-2026-41089 — Microsoft Windows Netlogon BuildSamLogonResponse Stack-based Buffer Overflow RCE
      from Aretiq AI
      1. Overview A stack-based buffer overflow vulnerability exists in the Windows Netlogon service’s DC locator ping response handler. When a domain controller processes a CLDAP search request, it serializes response data including attacker-supplied and server-side strings into a fixed-size stack buffer without adequate bounds checking. An unauthenticated remote attacker can send a single crafted CLDAP packet to a domain controller’s UDP port 389, causing the Netlogon service to crash the LSASS process and force the domain controller to reboot. The exploitability depends on the target domain controller’s DNS naming configuration — domain controllers with longer DNS domain names and hostnames are vulnerable. Microsoft addressed this vulnerability in the May 2026 security update.
  • Before

User actions

    Dr. Christopher Kunz

    Dr. Christopher Kunz

    Security (web, infra, app) nerd, has accepted that VR will never be a mass market, writer @heise Security
All toots are IMHO & not my employer's opinion. PGP fingerprint: C882 8ED1 7DD1 9011 C088  EA50 5CFA 2EEB 397A CAC1

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          230467
          Member since
          8 Jan 2024
          Notices
          95
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.