User's banner
Avatar

udunadan

udunadan@infosec.pub
Joined
82 posts • 9 comments

An open-eyed man falling into the well of weird warring state machines. I mostly speak on (offensive) cybersecurity issues.

https://twitter.com/udunadan

https://infosec.exchange/@udunadan

Direct message

Absolutely no problem, happy if you liked it!

permalink
report
parent
reply

The issue had been made public only on July 25. The point of sharing the bug isn’t notifying users to patch their browsers but to inform browser vulnerability researchers of a valuable data point.

permalink
report
parent
reply

It was an ITW 0-day at the moment of reporting and has probably retained the issue header from back then which I had copied.

permalink
report
parent
reply

Popped up on my Twitter feed somewhere

permalink
report
parent
reply

The content is really bounded by tech stuff, but I guess that’s due to migration being important for tech-savvy users. It is true that appending “reddit” to search queries and following the results is still inevitable (but hey, libreddit and teddit still work). But vibe is completely different, very organic, very active, I like it a lot. I think there is a lot of potential in this feeling of authentic communication. Let’s hope it grows.

Lemmy is much better replacement for Reddit than Mastodon is for Twitter.

permalink
report
reply

Well, the malicious actors can setup their own instances as well and exploit the inherent trust between the participants by design. P2P sold as security property in the scenario where participants are unknown and multiple in numbers is misconception. It does not square well with basic security mindfulness, and shouldn’t be taken as improvement in that regard.

I think that federation and all this stuff is not about improving security, it is a form of grassroots communication based on certain principles. If you need security, you use other tools, and treat these things as public, hostile spaces.

permalink
report
reply