GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange), page 2

  1. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Saturday, 01-Mar-2025 05:51:50 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    I've been working in cybersecurity for over 25 years. Here are my key insights.

    In conversation about 4 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/082/823/981/453/443/original/5fdaf85c267ab415.png

    2. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/082/824/433/127/130/original/2d0a92c27955977f.png

    3. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/082/824/995/408/847/original/9393ada9578366f2.png

    4. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/082/825/428/137/423/original/7287de2aa935b406.png
  2. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Friday, 28-Feb-2025 10:27:45 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Look, "never" is relative

    In conversation about 4 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/078/785/559/795/025/original/82086c3d42ce2d23.png
  3. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Thursday, 13-Feb-2025 15:57:14 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    The thing about social media is that it's easy to get a lot of followers if you post enough memes, but the engagement is stretched so thin that it no longer means anything.

    Here's my Twitter example: 37k followers → 2.5k "views" → 26 clicks (0.07%).

    You get more out of mailing a couple of friends.

    In conversation about 5 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/995/083/670/453/310/original/bd393d5e0becfda7.png

    2. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/995/084/030/563/958/original/bc1897da96ecb66b.png
  4. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Thursday, 13-Feb-2025 08:57:28 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Your privacy is very important to us. This is why we're sharing your data with our 278 advertising partners, and our partners' 4,728 partners, and their partners' 87,392 partners, UNDER THE FOLLOWING TERMS

    In conversation about 5 months ago from infosec.exchange permalink
  5. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 12-Feb-2025 11:18:02 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Sir, I'm afraid your house is not wired for the latest Nvidia card

    In conversation about 5 months ago from infosec.exchange permalink
  6. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Friday, 07-Feb-2025 06:16:06 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    I keep coming across all these "pseudocode" examples on Wikipedia and in academic papers, and what I don't understand is why the authors can't just learn a real programming language

    In conversation about 5 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/958/671/600/699/602/original/38d28d36c6634062.png
  7. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Friday, 07-Feb-2025 06:16:05 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:
    in reply to
    • Alex Gantman

    @againsthimself To prevent bit rot, we made sure that our code doesn't compile from day 1

    In conversation about 5 months ago from gnusocial.jp permalink
  8. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Thursday, 30-Jan-2025 00:14:02 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    OpenAI: how dare others take our... um... copyrighted stuff without asking to make their own LLM

    In conversation about 5 months ago from infosec.exchange permalink
  9. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Saturday, 25-Jan-2025 16:42:11 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    C IS LEGAL AGAIN

    In conversation about 5 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/887/416/259/016/167/original/4ae52ca2fc101ee3.png
  10. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Thursday, 23-Jan-2025 04:17:51 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    One of the most common software engineering mistakes is the desire to build general-purpose platforms. You want to try your hand at game development, so you get sucked into building an engine to accommodate all your future ideas. You imagine the rest of the world using it, too.

    In reality, writing the actual game is the hard part. Success is far more likely if you try doing that in the most expedient way and generalize later. As for the rest of the world, they usually look up to winners. A game engine on Github with no successful titles to its name is unlikely to get any views, let alone usage.

    If you're determined to build a platform, there are three ways to win. One is to be the first to enter a new domain. Another is to spend *a lot* more time on community-building than on code. The last approach is to get corporate backing, so that you get a big "captive" audience with vested interest in your success.

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.hitmedia.in
      Under Construction
  11. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 22-Jan-2025 14:13:45 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Back in early 2023, I posted the code & hardware plans for a modernized clone of Sokoban, an obscure but *really* fun logic-puzzle game from the 1980s. Unlike most of the other "retro nostalgia" pieces, the game holds its own today.

    https://lcamtuf.coredump.cx/sir-box-a-lot/

    I handed it out to a bunch of friends. Few have heard of the game before; just as few could put it down once they started.

    Unfortunately, because Sokoban is not exactly Pong, Space Invaders, or Snake, the project never garnered much attention from strangers. And keeping the project alive proved to be a chore because of post-COVID shortages. The MCU I relied on soon went out of stock. I redesigned for another chip... only for the OLED vendor to tell me they're discontinuing the display b/c *they* can't find the chips.

    Anyway, I have a revised PCB and code for a new display ready to go, just need to test it IRL. And hey - have you considered a nice game of Sokoban?

    In conversation about 6 months ago from infosec.exchange permalink
  12. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Friday, 17-Jan-2025 23:31:23 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Investigating an "evil" RJ45 dongle: https://lcamtuf.substack.com/p/investigating-an-evil-rj45-dongle

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: substackcdn.com
      Investigating an "evil" RJ45 dongle
      from lcamtuf
      Reverse-engineering hardware can be difficult -- but sometimes, all you need is a comfy armchair and some Google Translate.
  13. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 15-Jan-2025 05:59:21 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Youngsters find it hard to believe, but before Apple introduced the first cell phone, you had to carry one of these bad boys with you if you wanted to stay in touch with friends

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/827/964/806/367/109/original/00789a88b83cb478.png
  14. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 15-Jan-2025 01:22:19 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Pundits: social media is an existential threat to the youth and to democracy itself

    Government: ok we're gonna take away TikTok

    Pundits: nooooooo I was using that

    In conversation about 6 months ago from infosec.exchange permalink
  15. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Saturday, 11-Jan-2025 03:45:10 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    C pro trick! Let's say you have code like this, and you want to comment out a block of code - let's say, lines 5 to 7 - with some nested comments. A pain, right?

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/805/498/362/537/300/original/162ca63660f3a178.png
  16. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Saturday, 11-Jan-2025 03:45:09 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:
    in reply to

    Well, not anymore -- not with my patented POWER COMMENT technique!

    godbolt.org/z/nEqhbhbse

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/805/499/130/746/289/original/ad2ae2ce3ead0cc0.png
  17. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Thursday, 09-Jan-2025 06:19:10 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    My new C programming book is slowly taking shape. If you want to learn along, let's start with the basics of control flow:

    http://godbolt.org/z/3GerY3zEc

    1/5

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/794/501/878/976/846/original/6849597ac62c2a84.png
  18. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 08-Jan-2025 15:38:19 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    I think this makes sense
    https://godbolt.org/z/3GerY3zEc

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/791/286/411/861/397/original/3d3dfaaae068faf2.png
    2. Domain not in remote thumbnail source whitelist: raw.githubusercontent.com
      Compiler Explorer - C (x86-64 gcc (trunk))
      from Matt Godbolt
      typedef int _(); int main() { puts("Welcome to my humble program."); _ main asm("_"); } int z() { puts("ANYTHING IS POSSIBLE AT ZOMBO.COM"); return 0; _ z asm("main"); }
  19. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Wednesday, 08-Jan-2025 07:23:26 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    Customer: I need a canary for my coal mine

    Security product vendor: you've come to the right place, we have a wide selection of stuffed birds

    In conversation about 6 months ago from infosec.exchange permalink
  20. Embed this notice
    lcamtuf :verified: :verified: :verified: (lcamtuf@infosec.exchange)'s status on Tuesday, 07-Jan-2025 13:20:49 JST lcamtuf :verified: :verified: :verified: lcamtuf :verified: :verified: :verified:

    One of my favorite things is asking LLMs "what's wrong with <this>" when nothing is wrong with <this>. Works with code, circuit schematics, and so on.

    You usually get a wall of *really* convincing text, and I imagine some poor student trying to make sense of this.

    In conversation about 6 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/785/058/659/376/956/original/718ae4921dbad0de.png

    2. https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/785/062/467/920/661/original/d0f317d25c2782e3.png
  • After
  • Before

User actions

    lcamtuf :verified: :verified: :verified:

    lcamtuf :verified: :verified: :verified:

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          80133
          Member since
          24 Dec 2022
          Notices
          101
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.