We just dropped 3 more challenges for today, we don't plan to release more for today. More to come tomorrow at 9am! #BSidesSF #CTF
Check out our Chrome Extension challenge, "moa-station", at ctf.bsidessf.net.
26.04.2025 02:53 β π 3 π 2 π¬ 0 π 0
You are in for a punny time until launch!
Join us at ctf.bsidessf.net/register, the #BSidesSF #CTF kicks off at 4:00pm PDT tomorrow!
25.04.2025 03:52 β π 4 π 4 π¬ 0 π 0
What's in the cards for this year? Join us next week at ctf.bsidessf.net and find out! #CTF #BSidesSF
19.04.2025 02:45 β π 5 π 2 π¬ 0 π 2
This shitpost may be a little too niche, but it's how the scraping struggle be these days (turn video audio on).
26.03.2025 17:07 β π 1 π 0 π¬ 0 π 0
YouTube video by DEFCONConference
DEF CON 32 - Secret Life of Rogue Device: Lost IT Assets on the Public Marketplace - Matthew Bryant
Looks like DEF CON talks are up on YouTube! If you want to see a fun talk on crawling online markets for the spicy silicon, check mine out here: youtu.be/QgeEHdAmJDg
20.10.2024 05:03 β π 2 π 0 π¬ 0 π 0
I'm watching some folks reverse engineer the xz backdoor, sharing some *preliminary* analysis with permission.
The hooked RSA_public_decrypt verifies a signature on the server's host key by a fixed Ed448 key, and then passes a payload to system().
It's RCE, not auth bypass, and gated/unreplayable.
30.03.2024 17:13 β π 692 π 278 π¬ 7 π 15
01.07.2023 07:51 β π 0 π 0 π¬ 0 π 0
my immediate reaction to this site
22.06.2023 05:23 β π 9 π 1 π¬ 1 π 0
This year's BSidesSF CTF from Friday, April 25 4:00pm PDT to Sunday, April 27 4:00pm PDT.
Contributors: @matir.bsky.social, @iagox86.bsky.social, @ninjacorgi.bsky.social, @dpendolino.bsky.social, Symmetric, Anshc
Security at Lightspark. Formerly Snap Security, Google Chrome Security, UC Berkeley Grad Student, Sun Microsystems Software Engineer
metromoxie @ Twitter
Security, Privacy, Trust & Safety, and Fraud Engineering at your favorite and least favorite consumer tech companies
Tommy's Holiday Camp is a former dialup BBS (now telnet) online since 1987. Retrocomputing & counterculture; sex, weed, and video games. https://vintage.thcbbs.com
Web security fiddler. Bug bounty bastard. Sometimes I cut shapes.
https://fed.brid.gy/bsky/zemn.me teaching computers to kiss @openai
Always pondering startups, ML, Rust, Python, and 3D printing.
Independent ML researcher consulting on LMs + data.
Previously: Salesforce Research, MetaMind, CommonCrawl, Harvard. π¦πΊ in SF. He/him.
Personal blog: https://state.smerity.com
Principal Security Architect at Microsoft. Formerly at Google and Amazon.
Open-source tool maker/hacker. Author of gron, anew, and a dozen dinky security tools. He/him. Tools: http://github.com/tomnomnom
@TomNomNom on the other site
π₯· British hacker and coder
π© Black Hat EU review board
π Ex-Tβsla security engineering
β¨ Space and language nerd
π Neurodivergent. Poly. He/him.
π οΈ https://github.com/bitquark
Hacker, coder, climber, runner, triathlete.
Always learning.
Co-flounder of SteelCon
Dr, apparently. Lecturer & Hacker exbugcrowd. #BugBounty hunter & #infosec YouTuber. Research: API sec, #MLsec, #offsec data+hacking. she/her.
australia's only hacker
https://mango.pdf.zone