Chris Frohoff
@frohoff.org
building things, breaking things, building things that break things. ysoserial night janitor. journeyman ctf plumber. he/him
Imported my previous posts from twitter. App should show a small indicator to note that it isn't new
November 26, 2024 at 4:17 AM
Imported my previous posts from twitter. App should show a small indicator to note that it isn't new
summary of how apps tended to mitigate a reported deserialization vulnerability
November 22, 2024 at 7:36 AM
summary of how apps tended to mitigate a reported deserialization vulnerability
summary of how gadgets tended to be introduced into a library
November 22, 2024 at 7:36 AM
summary of how gadgets tended to be introduced into a library
I don't always do work on weekends, but when I do...
November 22, 2024 at 7:35 AM
I don't always do work on weekends, but when I do...
For anyone who didn't finish the Deathball challenge series at @LayerOneCTF and was curious, here's the map of our pseudo-randomly generated network REPL container labyrinth:
November 22, 2024 at 7:35 AM
For anyone who didn't finish the Deathball challenge series at @LayerOneCTF and was curious, here's the map of our pseudo-randomly generated network REPL container labyrinth:
How it began. How it's going
November 22, 2024 at 7:35 AM
How it began. How it's going
Open sourced the Star Trek LCARS theme for @ctfdio 2.x that we used for the 2019 @layer_one and @toorcon CTFs. Live long and CTF! https://github.com/frohoff/ctfd-trektheme
November 22, 2024 at 7:35 AM
Open sourced the Star Trek LCARS theme for @ctfdio 2.x that we used for the 2019 @layer_one and @toorcon CTFs. Live long and CTF! https://github.com/frohoff/ctfd-trektheme
No, I don't know why my computer is so slow. Why do you ask?
November 22, 2024 at 7:34 AM
No, I don't know why my computer is so slow. Why do you ask?
There's something uniquely hilarious (and somewhat dystopian) about people frustratingly trying to issue voice commands to their devices.
November 22, 2024 at 7:33 AM
There's something uniquely hilarious (and somewhat dystopian) about people frustratingly trying to issue voice commands to their devices.
Exhibit B: My teenage son accidentally calls me while struggling to get his Google Home to play white noise, leaving me a gem of a transcribed voicemail.
November 22, 2024 at 7:32 AM
Exhibit B: My teenage son accidentally calls me while struggling to get his Google Home to play white noise, leaving me a gem of a transcribed voicemail.
I would like to propose product vendor evaluation via the Vendordome
November 22, 2024 at 7:30 AM
I would like to propose product vendor evaluation via the Vendordome
[*] Starting the payload handler...
[*] Sending vote selections
[*] Voting completed
[*] Sending vote selections
[*] Voting completed
November 22, 2024 at 7:29 AM
[*] Starting the payload handler...
[*] Sending vote selections
[*] Voting completed
[*] Sending vote selections
[*] Voting completed
Haven't been to @defcon in a few years and hadn't been planning to go this year, but a good friend talked me into it and out of my anxiety and here I am less than 24 hours later
November 22, 2024 at 7:27 AM
Haven't been to @defcon in a few years and hadn't been planning to go this year, but a good friend talked me into it and out of my anxiety and here I am less than 24 hours later
I get back from a long weekend away and there's *still* no Drupal PoC exploit?! What gives?
November 22, 2024 at 7:25 AM
I get back from a long weekend away and there's *still* no Drupal PoC exploit?! What gives?
Sweet, WebLogic #javadeser exploits made an appearance in most recent Mr. Robot episode (#BewareSpoilers)
November 22, 2024 at 7:25 AM
Sweet, WebLogic #javadeser exploits made an appearance in most recent Mr. Robot episode (#BewareSpoilers)
findings section of most infosec reports:
November 22, 2024 at 7:23 AM
findings section of most infosec reports:
Looking forward to watching @gebl throw down some infosec history at @owaspsd
November 22, 2024 at 7:22 AM
Looking forward to watching @gebl throw down some infosec history at @owaspsd
Seen on @NASAJPL tour: Climate Science critical enough to Spacecraft Dev to colocate in same building. #sciencematters
November 22, 2024 at 7:22 AM
Seen on @NASAJPL tour: Climate Science critical enough to Spacecraft Dev to colocate in same building. #sciencematters
When you re-test that supposedly "fixed" vulnerability in a vendor product for the 4th time and it's still there
November 22, 2024 at 7:22 AM
When you re-test that supposedly "fixed" vulnerability in a vendor product for the 4th time and it's still there