Attacking PowerShell Clixml Deserialization

attacking-powershell-clixml-deserialization

I submitted my research on March 18th, 2024 to Microsoft Security Response Center (MSRC). MSRC closed the case as “fixed” on July 22nd and a month later my research was publicly acknowledged. However, it is still possible to perform this attack and therefore organizations need to take propriate precautions to mitigate the risks. We will […]

How Chainalysis Made Their Way into Popular Monero Wallets

how-chainalysis-made-their-way-into-popular-monero-wallets

Written by: İrem Kuyucu, Laurynas Četyrkinas A now-deleted and actively censored training video from Chainalysis — a blockchain analysis company — revealed Monero RPC logs, seemingly from a popular public Monero “node” called node.moneroworld.com. Many wallets like Cake Wallet and Monerujo include it in their list of default public nodes. In this post we will […]

Sucks.. In a Good Way

sucks.-in-a-good-way

No more tweezers for me! Robin Reiter from Robins Tools was kind enough to send me Pixel Pump – and it’s great! You can get one for yourself here. The Pixel Pump It came really well packaged. Well packaged up And what’s really nice is that there is no plastic in the packaging, it’s all […]

Aliens and the Enlightenment

aliens-and-the-enlightenment

For millennia everybody knew that human beings enjoy a privileged, unique position at the centre of the universe. That self-confidence began to crack after Nicolaus Copernicus suggested that the Earth goes round the Sun and an exciting but frightening possibility emerged: could life exist on other planets? For the French astronomer Jérôme Lalande it was […]

Remote Book Scanning with 1DollarScan and Optimizing Scanned PDFs

remote-book-scanning-with-1dollarscan-and-optimizing-scanned-pdfs

Using The Service Last month, I got interested in a textbook recommended by an online open course I happened to find. However, it’s quite old and not easily available for international shipping. Plus, since it’s in the “reader” format meant to be read non-sequentially and piecemeal, carrying it in its 600-page physical form seems to […]

LinkedIn blocked due Meshtastic video in private chat

linkedin-blocked-due-meshtastic-video-in-private-chat

{{ message }} 👍 1 reacted with thumbs up emoji 👎 1 reacted with thumbs down emoji 😄 1 reacted with laugh emoji 🎉 1 reacted with hooray emoji 😕 1 reacted with confused emoji ❤️ 1 reacted with heart emoji 🚀 1 reacted with rocket emoji 👀 1 reacted with eyes emoji You can’t […]

What Firefox trains are we in?

what-firefox-trains-are-we-in?

What Firefox trains are we in? Firefox 131 ships on October 1 (in 15 days) Next merge day: September 30 Dates are expressed in the UTC timezone

Nothing: Simply Do Nothing

nothing:-simply-do-nothing

Greetings, Stranger. Ease your mind.Settle into silence.And simply do nothing. You’ve been idle for 000 seconds. Nothing—a timer that tracks your intentional choice to do… nothing. No goals to chase, no notifications clamoring for your attention, no pressure to fill the silence with productivity. It simply exists, quietly counting each second you allow to pass. […]