This is a wild #rust toolchain bug:
Can only repro when the call to gettid is in a library crate, and only when it has a certain name, and only when not using -C target-feature=-crt-static, only when using LTO. Crate names alphabetically ≥ std fail (including std itself)
github.com/rust-lang/ru...
Posts by wtfismyip
So I left a window with whatismyip.com open for 20 minutes. The result: 183 MB transferred, 525 MB uncompressed. What. The. Fuck.
New version of #Asterisk fixes a remote crash (and maybe RCE!) in STIR/SHAKEN header parsing: CVE-2025-49832
github.com/asterisk/ast...
#CVE #appsec #CyberSecurity #VOIP
Anyone have recommendations for a #DNS provider?
Welp, #Cloudns has told me my DNS requests have past fair usage, but they won't tell me how many requests it takes to exceed fair use. #DNS
A painting of a bird next to the words "motherfucker you do not want to hear my actual opinion"
wtfismyip.com looks a lot now like it did in 2013 (courtesy of archive.org): web.archive.org/web/20130603...
Great read and a potentially good use case for LLMs - web fuzzing: www.invicti.com/blog/securit...
#appsec #CyberSecurity
Hi new accounts!
You can self-verify here if you have a domain name!
You will see in my handle that it doesn’t have “bsky” in it.
bsky.social/about/blog/4...
Trivy 0.52.1 running on age v1.1.1
> Total: 31 (UNKNOWN: 2, LOW: 0, MEDIUM: 13, HIGH: 14, CRITICAL: 2)
govulncheck v1.1.2
> No vulnerabilities found.
govulncheck is correct. All the vulns reported by the other thing are provably false positives.
Please use govulncheck.