buherator
banner
buherator.bsky.social
buherator
@buherator.bsky.social
"I'm interested in all kinds of astronomy."

https://scrapco.de

Mostly cross-posting from Fediverse: @[email protected]
I'm writing this network thing and there are always problems that you only recognize during implementation - this is why it's so enlightening to implement stuff.

What I didn't expect is getting stuck because I can't write to a damn log file as root...


Original->
December 3, 2025 at 9:37 PM
December 3, 2025 at 6:56 PM
Critical Security Vulnerability in React Server Components


react.dev ->

CVE-2025-55182 CVSS 10.0


Original->
December 3, 2025 at 3:56 PM
WhatsApp Android: Contact gating bypass in groups, leading to interactionless media download


project-zero.issues.chromium.org ->


Original->
December 3, 2025 at 10:39 AM
[RSS] The Importance of Diverse Knowledge in Vulnerability Research - The Transferability of Knowledge


allelesecurity.com ->

/by @allelesecurity


Original->
December 2, 2025 at 7:21 PM
[RSS] K7 Antivirus: Named pipe abuse, registry manipulation and privilege escalation


blog.quarkslab.com ->


Original->
December 2, 2025 at 4:05 PM
I so hate when a bug is like "here's an $API that does a thing", then you invoke $API and it doesn't do the thing.

Now I start searching for a solution, and all I can find is "oh you should just call $API!"


Original->
December 2, 2025 at 3:30 PM
I had a particularly mind-numbing exchange with a chatbot today so decided to dedicate spare resources of one of my VPSs to #iocaine. I brought the domain online about an hour ago, and there are already dumb bots in the maze, continuously consuming my bandwidth and CPU.

/cc
1/2
November 30, 2025 at 6:20 PM
libmicrovmi - A cross-platform unified Virtual Machine Introspection API library


github.com ->


Original->
November 30, 2025 at 3:39 PM
It's 2025 and I tried to buy a book online:
- Had to register a new account
- Had to chat with a bot
- Had a card declined
- Fell back to rent instead of buy
- Got an OTP SMS
- Still can't download the book

I now have a pirated copy (took 2 clicks) and my refund is on the way.


Original->
November 30, 2025 at 9:18 AM
Thought experiments like this are why I love sci-fi:


www.youtube.com ->


Original->
November 29, 2025 at 9:26 PM
pwndbg bug yaay!


Original->
November 28, 2025 at 3:36 PM
I strongly believe that constraints spark creativity and art.

Now that I'm browsing $webapp I realize that modern web is born from the rejection of the constraints implied by the original design: URL's are independent of state, navigation is overridden to oblivion, etc.

Now I
1/2
November 27, 2025 at 7:05 PM
[RSS] Breaking the BeeStation: Inside Our Pwn2Own 2025 Exploit Journey


www.synacktiv.com ->


Original->
November 27, 2025 at 6:35 PM
Now that it's 2025, could someone quickly vibe code a working clipboard for X11?


Original->
November 27, 2025 at 3:35 PM
[RSS] Prepared Statements? Prepared to Be Vulnerable.


blog.mantrainfosec.com ->

#nodejs


Original->
November 27, 2025 at 6:13 AM
[RSS] Dell ControlVault, Lasso, GL.iNet vulnerabilities


blog.talosintelligence.com ->


Original->
November 27, 2025 at 6:13 AM
When giving #infosec advice it's easy to forget that the average person probably only knows about Uniform resource Locators and the Domain Name System.

And Public Key Infrastructure of course.


Original->
November 27, 2025 at 6:08 AM
TIL Burn in Noise and Ajja has a collab called...

Undefined Behavior :D


soundcloud.com ->


Original->
November 26, 2025 at 8:28 PM
Kid: "Yeah, that computer must have been old, it even had a CD-drive!"

#fml


Original->
November 26, 2025 at 7:28 PM
AdTech should hire the dev who implemented the tab mute button in #Firefox. This damn thing attracts my cursor like a rare-earth magnet!


kagi.com ->


Original->
November 26, 2025 at 6:20 PM
I just dug through a 9MB JSON to find a direct message I sent here, only to find the corresponding object link to be non-existent. Fortunately I had an accurate timestamp, that helped me dig up the message on the UI after about 5 minutes of constant scrolling.

All this because
1/2
November 26, 2025 at 5:12 PM
VSCode doesn't know the powers I possess!


Original->
November 26, 2025 at 2:37 PM
[RSS] BGGP6: REVIVING RDOFF PART 1


n0.lol ->


Original->
November 26, 2025 at 9:01 AM
Re: "AI chat is a better search experience than traditional search engines"

come-from.mad-scientist.club ->

Lately I have the impression that not only are search engines worse and websites contaminated with slop, but
1/2
November 25, 2025 at 9:30 PM