GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Jason Parker (he/they) (north@xn--8r9a.com), page 2

  1. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Tuesday, 07-May-2024 22:57:05 JST Jason Parker (he/they) Jason Parker (he/they)

    I'm looking to borrow (it's $200 and I'm not buying it) a copy of an extremely niche book from a law school library for a week or so. It's called "Cybersecurity and the Courthouse: Safeguarding the Judicial Process".

    It should be very useful for all of my recent #cybersecurity work in that area (see https://github.com/qwell/disclosures/).

    If you, dear reader, have access to such things, I'd like to have a chat to see what we can figure out.

    Boosts highly appreciated.

    #infosec #law #library

    In conversation about a year ago from xn--8r9a.com permalink

    Attachments


    1. Invalid filename.
  2. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Tuesday, 30-Apr-2024 21:50:31 JST Jason Parker (he/they) Jason Parker (he/they)
    • BeAware

    @BeAware This tab is up all day every day, front and center. I may be a little ashamed to admit that. I read everything that hits the Home timeline, and on my other account, as much of the #fedifirehose as I can. It's a problem.

    In conversation about a year ago from xn--8r9a.com permalink
  3. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Tuesday, 30-Apr-2024 21:47:56 JST Jason Parker (he/they) Jason Parker (he/they)
    • BeAware

    @BeAware I see everything. 😜

    In conversation about a year ago from xn--8r9a.com permalink
  4. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Tuesday, 30-Apr-2024 21:41:41 JST Jason Parker (he/they) Jason Parker (he/they)
    • BeAware

    @BeAware Do other people not do that due diligence before boosting?

    In conversation about a year ago from xn--8r9a.com permalink
  5. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Thursday, 04-Apr-2024 00:03:19 JST Jason Parker (he/they) Jason Parker (he/they)

    Do you create #fediverse platforms?

    Do you have any interest in testing your #IDN (Internationalized Domain Name) support?

    If so, hit me up, I've got some really evil ones I can create subdomains on.

    In conversation about a year ago from xn--8r9a.com permalink
  6. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Sunday, 10-Mar-2024 23:50:52 JST Jason Parker (he/they) Jason Parker (he/they)
    in reply to
    • iced depresso

    @icedquinn The reason for filing something with the SEC is because of potential impact to shareholders.

    In conversation Sunday, 10-Mar-2024 23:50:52 JST from xn--8r9a.com permalink
  7. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Sunday, 10-Mar-2024 14:02:20 JST Jason Parker (he/they) Jason Parker (he/they)

    I have a few #infosec questions...

    1) Under what circumstances are SEC filings required when a company is notified of a vulnerability?

    2) What are the consequences of lying about the severity in such a report?

    Asking for a friend. Who is me. In Minecraft.

    In conversation Sunday, 10-Mar-2024 14:02:20 JST from xn--8r9a.com permalink
  8. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Tuesday, 05-Mar-2024 04:28:21 JST Jason Parker (he/they) Jason Parker (he/they)

    Yuzu shuts down amid Nintendo lawsuit.

    In conversation Tuesday, 05-Mar-2024 04:28:21 JST from xn--8r9a.com permalink

    Attachments


    1. https://xn--8r9a.com/system/media_attachments/files/112/039/051/957/945/213/original/086cce48fb69e673.png
  9. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Friday, 08-Dec-2023 03:57:37 JST Jason Parker (he/they) Jason Parker (he/they)
    in reply to
    • iced depresso

    @icedquinn 🤷

    I'm pretty torn on it, ethically, because of the stuff that can be obtained. Ultimately though, I think it would be better to publish one, since it should force them to actually fix it. I'm clearing it with some people first, but I'm thinking I'm going to do that later today or tomorrow.

    In conversation Friday, 08-Dec-2023 03:57:37 JST from xn--8r9a.com permalink
  10. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Friday, 08-Dec-2023 03:26:44 JST Jason Parker (he/they) Jason Parker (he/they)

    It's now been one week and one of the court platforms in my recent disclosure[1] is still vulnerable to the issue that was reported to them by multiple state agencies over two months ago. They have not responded to my emails.

    At what point does it become appropriate to publish a PoC? There's some Really Bad Shit™️ that can be obtained, so it's a tough position to be in.

    [1] https://github.com/qwell/disorder-in-the-court

    In conversation Friday, 08-Dec-2023 03:26:44 JST from xn--8r9a.com permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: emails.at
      Der Domainname emails.at steht zum Verkauf.
      Sichern Sie sich jetzt Ihre Wunschdomain! ✓ Sichere Zahlungsabwicklung ✓ Kompetentes Serviceteam ✓ Treuhändische Abwicklung
    2. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      GitHub - qwell/disorder-in-the-court: Court platform vulnerability disclosure(s).
      Court platform vulnerability disclosure(s). Contribute to qwell/disorder-in-the-court development by creating an account on GitHub.
  11. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Wednesday, 06-Dec-2023 15:04:41 JST Jason Parker (he/they) Jason Parker (he/they)

    I, a high school dropout, am doing a Q&A at Stanford tomorrow. That's still blowing my mind a bit.

    In conversation Wednesday, 06-Dec-2023 15:04:41 JST from xn--8r9a.com permalink
  12. Embed this notice
    Jason Parker (he/they) (north@xn--8r9a.com)'s status on Saturday, 26-Nov-2022 08:11:20 JST Jason Parker (he/they) Jason Parker (he/they)
    • Jason Parker (he/they)
    • Jason Parker (he/they)

    Hi Fediverse!

    I'm just testing a punycode domain instance. You may safely ignore this message (I would be interested in seeing a screenshot of what this message looks like on the feed though, if some kind soul felt so obliged).

    Link 1: https://ꩰ.com
    Link 2: https://ꩰ.com/@north
    Link 3: https://xn--8r9a.com
    Link 4: https://xn--8r9a.com/@north

    User 1: @north
    User 2: @north@ꩰ.com
    User 3: @north
    User 4: @north@fosstodon.org

    In conversation Saturday, 26-Nov-2022 08:11:20 JST from xn--8r9a.com permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: xn--8r9a.com
      ꩰ
      Punycode testing, mostly.



  • After

User actions

    Jason Parker (he/they)

    Jason Parker (he/they)

    infosec researcher | independent #journalist | #software #developer | #telephony #engineer | #opensource contributorISC² Certified in Cybersecurity (CC)The foremost expert on court #cybersecurity vulnerabilities? https://govtech.cchttps://en.wikipedia.org/wiki/JasonParker(security_researcher)#IDN/#Punycode testing.https://ဪ.comhttps://ㆲ.comhttps://የ.comhttps://ގ.comhttps://ჷ.comhttps://ꩳ.com *https://ꩰ.com *https://ྌ.com *https://ㆴ.comhttps://ۦ.comhttps://ۦ.wshttps://ӿ.social *https://ⴭ.ws/(* = Mastodon bug)

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          39344
          Member since
          25 Nov 2022
          Notices
          32
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.