Mbahal
Mbahal
@mbahal.bsky.social
Reposted by Mbahal
AppSec Ezine - 606th edition #AppSec #Security 🤖

pathonproject.com/zb/?eaf34249...
AppSec Ezine
pathonproject.com
October 4, 2025 at 5:07 AM
Reposted by Mbahal
Going to PIVOTcon? Register for Jennifer Kolde’s workshop! ⬇️
⁉️Do we organise workshops for #PIVOTcon25 participants who arrive early on Day 0? We do‼️
We have 3 #workshops available for free but seats are limited.
Check your mail 📩( + spam folder) and register today for any of the below fantastic workshops!

#ThreatIntel #CTI 1/5
a cartoon of homer simpson and bart simpson sitting on a couch with the words `` join us in the workshop ''
ALT: a cartoon of homer simpson and bart simpson sitting on a couch with the words `` join us in the workshop ''
media.tenor.com
April 11, 2025 at 1:48 PM
Reposted by Mbahal
1K stars 🌟! facet-reflect was recently rewritten from scratch and all deserializers are now deny(unsafe_code)

github.com/facet-rs/facet
April 15, 2025 at 7:21 AM
Reposted by Mbahal
And AZ CTF comes to a close! Congrats to the winners! And, of course, everyone can now tackle the chals on #pwncollege at: pwn.college/az-ctf-2...
April 6, 2025 at 12:07 AM
Reposted by Mbahal
Researchers have found a way to turn off a webcam LED while in use.
This is why it was so important during the #microbit design to ensure the mic🎙 LED was wired to its power instead of GPIO. It’s crucial to teach the next gen about privacy & security (or their absence) in the tech they use every day
November 29, 2024 at 6:47 PM
Reposted by Mbahal
sounds like some good stuff is happening with #cpp 26. congrats to @thephd.dev for getting embed in.

im personally skeptical of contracts (that includes #rustlang btw) but that's been going on even maybe longer than embed was. them landing is a huge deal
February 15, 2025 at 5:29 PM
Reposted by Mbahal
Lorenzo Stoakes' book about The Linux Memory Manager is now available for pre-order from No Starch! nostarch.com/linux-memory...

I've had a chance to check out an earlier draft and was impressed by just how thorough it is. Check it out if you're into that!
The Linux Memory Manager
This exhaustive guide to the Linux memory subsystem is the first major resource since 2004 to cover key concepts and essential techniques for developers.
nostarch.com
February 15, 2025 at 10:03 PM
Reposted by Mbahal
"When can a trait be implemented without touching `#[doc(hidden)]` items?"

Simple question, extremely complex answer! Most intense 2000 lines I've written in a long time!

Still needs cleanup & refactoring, but it's passing tests!
github.com/obi1kenobi/t...
January 31, 2025 at 12:36 AM
Reposted by Mbahal
Doom running from the same file on Dos, Windows and Chrome PDF!
github.com/angea/doom-p...
GitHub - angea/doom-poly: A PDF, PE and EXE polyglot executable running Doom
A PDF, PE and EXE polyglot executable running Doom - angea/doom-poly
github.com
January 31, 2025 at 7:13 AM
Reposted by Mbahal
Bernard is working on a durable executions workflow engine similar to Temporal / Inngest, but for #Rustlang
This is a really nice demonstration of how the idea of code “time traveling” complements durable execution!
I made a time travel debugger for Rust workflows. You can read more about it and check out the demo video at flawless.dev/replay
Flawless Replay
Time travelling debugger for Rust workflows.
flawless.dev
December 10, 2024 at 9:13 AM
Reposted by Mbahal
An absolute privilege to be in the audience at the live recording of the Risky Business podcast earlier today!

@patrick.risky.biz ran a really cool chat on all things China, cyber and beyond with the Founding Director of CISA (now-bigwig at SentinelOne), @thekrebscycle.bsky.social.
December 5, 2024 at 4:18 AM
Reposted by Mbahal
Accelerated Rust Windows Memory Dump Analysis (ISBN-13: 978-1912636891) is now available in PDF format with and without recording and additional materials: www.patterndiagnostics.com/accelerated-...
December 5, 2024 at 8:29 AM
Reposted by Mbahal
New episode of DISCARDED where we sit down with the 🐐 Mark Kelly, our lead China analyst, to talk all things China APT! Tune in wherever you get your podcasts. 🔮

Web: www.proofpoint.com/us/podcasts/...

Apple: podcasts.apple.com/us/podcast/d...

Spotify: open.spotify.com/episode/2AtJ...
DISCARDED | Proofpoint | Proofpoint US
www.proofpoint.com
December 4, 2024 at 12:38 AM
Reposted by Mbahal
A common question nowadays: Which is better, diffusion or flow matching? 🤔

Our answer: They’re two sides of the same coin. We wrote a blog post to show how diffusion models and Gaussian flow matching are equivalent. That’s great: It means you can use them interchangeably.
December 2, 2024 at 6:45 PM
Reposted by Mbahal
Want to help build Binary Ninja this summer? Our 2025 summer internship application process is live!
Binary Ninja - internship-2025
Binary Ninja is a modern reverse engineering platform with a scriptable and extensible decompiler.
binary.ninja
December 2, 2024 at 7:13 PM
Reposted by Mbahal
I try to write technical blogs regularly on topics I’m interested in. Recently this has been a lot of reverse engineering, Bluetooth, and networking hacks. But there’s many other goodies too!

As I’m invested in this aspect of bsky succeeding, here’s a thread of my posts. Comments encouraged!
December 2, 2024 at 6:54 PM
Reposted by Mbahal
Rather than trying to do advent of code, I'm doing advent of papers!
jimmyhmiller.github.io/advent-of-pa...

Hopefully I can read and share some of weirder computer related papers.

First paper is Elephant 2000 by John McCarthy. Did you know he didn't just make lisp? Wonderful paper, worth a read.
Advent of Papers (2024)
jimmyhmiller.github.io
December 2, 2024 at 3:30 AM
Reposted by Mbahal
It's because of regulatory requirements. If you make a module that is certified, other products can use it without certifying theirs. Goes for Bluetooth, cellular, etc.
December 2, 2024 at 9:02 PM
Reposted by Mbahal
Apple’s Bluetooth audio has this years-long stupid bug in some cars, including mine. I finally get frustrated enough to fix it, and the fix works for you too!

remyhax.xyz/posts/ios-st...
iOS Audio Precedence: Stupid Problems, Stupid Solutions
In iOS if you are: Using Apple Maps for directions Playing Music Connected to a car over Bluetooth (not Apple CarPlay) …when you pause your music it will remain paused until the next direction is au...
remyhax.xyz
December 2, 2024 at 9:13 PM
Reposted by Mbahal
"Tim McNamara, a well-known Rust educator, author of Rust in Action (Manning), and a recipient of a Rust Foundation Fellowship in 2023, speaks with SE Radio host Gavin Henry about error handling in Rust."

se-radio.net/2024/11/se-r...
SE Radio 644: Tim McNamara on Error Handling in Rust – Software Engineering Radio
se-radio.net
December 3, 2024 at 6:58 AM
Reposted by Mbahal
If the NSA[1], GrapheneOS[2], and Apple[3] all believe that rebooting your mobile phone regularly is something that protects your data, you might consider automating it.

1. https://buff.ly/3xhyTtU
2. https://buff.ly/40OLdhw
3. https://buff.ly/3UIbQB0
November 12, 2024 at 1:02 AM
Reposted by Mbahal
When I'm not doing $WORK, I help the Hachyderm infrastructure team run hachyderm.io, a large Mastodon instance (55k users/11k MAU). Today, we published an analysis of our tech stack to prepare for access and resilience risks from the incoming US government.

community.hachyderm.io/blog/2024/11...
Ensuring Hachyderm's Future: Improving Safety & Resilience through Strategic Placement of Infrastructure
Updates about Hachyderm infrastructure and security plans, risk assessments, etc. for the new year.
community.hachyderm.io
November 30, 2024 at 8:11 PM
Reposted by Mbahal
My deep learning course at the University of Geneva is available on-line. 1000+ slides, ~20h of screen-casts. Full of examples in PyTorch.

fleuret.org/dlc/

And my "Little Book of Deep Learning" is available as a phone-formatted pdf (nearing 700k downloads!)

fleuret.org/lbdl/
November 26, 2024 at 6:15 AM
Reposted by Mbahal
Just added a boatload of new detection engineers who joined Bluesky this week. Make sure to check this starter pack out
I made a Detection Engineering starter pack, will be adding more as more folks jump over to bluesky! go.bsky.app/HenXJUR
November 24, 2024 at 11:53 PM
Reposted by Mbahal
Join us June 20-22 2025 for another excellent weekend of hardware, open source, art, machines, hacking, manufacturing and practical electronics.

Ticket sales and CFP open now

www.crowdsupply.com/teardown/por...
November 22, 2024 at 7:19 PM