randomir
randomir
@randomir.bsky.social
Reposted by randomir
Researchers have found two new vulnerabilities in React Server Components while attempting to exploit the patches last week.

These are new issues, separate from the critical CVE last week. The patch for React2Shell remains effective for the Remote Code Execution exploit.
December 11, 2025 at 8:51 PM
Reposted by randomir
Shodan's $5 membership sale is live. Go go go!

account.shodan.io
account.shodan.io
August 16, 2025 at 5:40 PM
Reposted by randomir
May 17, 2025 at 5:30 PM
Reposted by randomir
OpenAI is furious that DeepSeek might have stolen all of the data OpenAI stole from all of us

www.404media.co/openai-furio...
OpenAI Furious DeepSeek Might Have Stolen All the Data OpenAI Stole From Us
OpenAI shocked that an AI company would train on someone else's data without permission or compensation.
www.404media.co
January 29, 2025 at 2:56 PM
Reposted by randomir
(someone used a carefully crafted branch name to inject a crypto miner into a popular Python package: github.com/ultralytics/...)
Discrepancy between what's in GitHub and what's been published to PyPI for v8.3.41 · Issue #18027 · ultralytics/ultralytics
Bug Code in the published wheel 8.3.41 is not what's in GitHub and appears to invoke mining. Users of ultralytics who install 8.3.41 will unknowingly execute an xmrig miner. Examining the file util...
github.com
December 6, 2024 at 3:28 AM
Heck yeah! 😎
Hello world! We’re excited to announce the ALPHA preview of Proxmox Datacenter Manager! 🥳
This is an early-stage version of our software, giving you a first impression 👀 at what we’ve been working on and a chance to collaborate 📝. See all details forum.proxmox.com/threads/prox...
December 19, 2024 at 6:18 PM
Reposted by randomir
New: Cellebrite is being used as doorway to install malware. Amnesty finds multiple cases where police used Cellebrite to unlock phone; cops then used that access to infect with spyware which takes screenshots, turns on mic, etc, give phone back to target. In Serbia www.404media.co/cellebrite-u...
December 16, 2024 at 1:05 PM
Reposted by randomir
For that long, including as a hidden dependency. Good grief.

Write-up: checkmarx.com/blog/dozens-...
December 14, 2024 at 12:36 AM
Reposted by randomir
Firesky
Watch every Bluesky post in real-time – filter the firehose
firesky.tv
November 24, 2024 at 4:58 AM
Reposted by randomir
**This Website is Hosted on Bluesky**

This weekend I found myself digging through the AT Protocol specifications and the Bluesky Personal Data Server (PDS) implementation. In doing so, I discovered that I could setup a website that is fully hosted on Bluesky.

danielmangum.com/posts/this-w...
November 24, 2024 at 8:40 PM
Reposted by randomir
Interesting technical blog from Cloudflare on the cable cuts in northern Europe.

Tl:dr some good news for a change: cable resilience is something we’re quite well provided for in Europe. You have to cut quite a few cables in most places before users notice

blog.cloudflare.com/resilient-in...
Resilient Internet connectivity in Europe mitigates impact from multiple cable cuts
Two recent cable cuts that occurred in the Baltic Sea resulted in little-to-no observable impact to the affected countries, in large part because of the significant redundancy and resilience of Intern...
blog.cloudflare.com
November 23, 2024 at 9:16 PM