Viewing profile — 0x0
0x0
HN member- Joined
- Wed, Oct 27, 2010, 9:59 AM UTC
- HN karma
- 18,059
- Public activity
- 3,637 items
- HN profile
- View on Hacker News ↗
About 0x0
No profile information was provided.
Recent public activity
-
comment
Comment #48788511
I find it's a shame the article is absolutely littered with AI-isms, again, like another cool hack project the other day here on HN. It is incredibly jarring to read a line like "N…
-
comment
Comment #48773866
Shame the article is absolutely littered with AI-isms.
-
comment
Comment #48670123
I just wish Valve could add official macos-arm64 builds of the various hl2 games on Steam :-/
-
comment
Comment #47990175
Just recently noticed this got posted to deb-multimedia, although I think there is a typo in the package description.... https://www.deb-multimedia.org/dists/unstable/main/binary-a…
-
comment
Comment #47978702
Details here: https://eclecticlight.co/2023/09/25/postscripts-sudden-death...
-
comment
Comment #47977506
Such a shame that macOS lost all its built-in postscript support including Preview.app in recent versions :(
-
comment
Comment #47968993
I find it curious to call someone dropping a weaponized root exploit before major distros or even LTS kernel git branches have patches ready "good guys". This could have been handl…
-
comment
Comment #47967367
The disclosure doesn't appear very "full". Looks like this was slipped into mainline linux among dozens of other mostly-irrelevant "CVEs" with nobody highlighting the fact that it …
-
comment
Comment #47954341
Dropping a public exploit on github before distros have patches available isn't very cool, or is that just how veterans roll these days?
-
comment
Comment #47540481
Enumeration of the entire DNS space is not available in general, but it does appear that some TLDs offer complete zone files for legitimate research purposes, see for example https…
-
comment
Comment #47352689
The breakout engineering to exploit Dolphin has already happened, see for example: * https://dougallj.wordpress.com/2016/11/13/exploiting-dolphin... * https://gist.github.com/hthh/…
-
comment
Comment #47193781
> "they can't be provisioned by the website itself." It's funny, we used to have a html tag that would exactly that:
-
comment
Comment #46210387
They were great in the beginning, and then when you issued a few more certs than they liked you were asked to pony up some $$$, and then when you did that and actually "verified" w…
-
comment
Comment #46133003
Same here, and the worst part is the duplicates appear to reuse the same Message-id, which confuses macOS Mail.app to no end :-/
-
comment
Comment #46066288
It's actually a requirement by app store connect to use a modern sdk for uploading binaries, and modern sdk versions will often raise the minimum supported ios version, so this is …
-
comment
Comment #45744744
I'm sure there's lots of x86_64 specific code in the macOS userland that is much more than just a recompile - things like safari/javascriptcore JIT, various quartz composer core an…
-
comment
Comment #45743608
I'm guessing they don't want to maintain and build and test x86_64 versions of all the macos libraries like Appkit and UIKit (including large changes like liquid glass) when they a…
- story
-
comment
Comment #45031283
Surprised to see no patch available for watchOS, which can also receive images via iMessage. Not important enough to patch, or not vulnerable, or just not exploited in the wild yet…
-
comment
Comment #44378910
I was hoping this would work over ssh in a macOS Terminal.app, but last I tried it was inserting all kinds of weird characters into the edited text files. Windows ships an official…
-
comment
Comment #44139167
If linux kernel security really is so bad that google had to add a proof-of-work to introduce a 4 second race for 0day submissions, I'm surprised they're ok with still using the Li…
-
comment
Comment #44066644
> Safari only exist on Apple devices Webkit, at least, builds on a lot more platforms than you think. Take a look at https://build.webkit.org/#/builders I'm seeing at least three o…
- comment
- story
-
comment
Comment #43738755
So I guess you couldn't get certificates for any random (MX) domain, only for those where you can obtain an inbox / user account. Still really bad, especially for things like gmail…