idle
idlewog.bsky.social
idle
@idlewog.bsky.social
Doing stuff in #cybersec i suppose ... #CTF 1dl3 for mushd00m
Reposted by idle
January 2, 2026 at 12:34 AM
Reposted by idle
Had a ton of fun with Flagvent this year, and finished all 25 challenges! So many quirky interesting things. My favorite challenge was the hardware leet challenge. And I got to author two easy challenges as well.

0xdf.gitlab.io/flagvent2025...

Happy New Year!
Flagvent 2025 - Easy
FV25.01
0xdf.gitlab.io
January 1, 2026 at 1:04 AM
Reposted by idle
Yesterday evening someone leaked PlaySation 5 ROM keys online. Emulation nerds are going schizo because this could mean we have PlayStation 5 emulation technology, ability to run non-PlayStation 5 games, etc.

tl;dr Sony executives on New Years eve
December 31, 2025 at 6:11 PM
Reposted by idle
Interesting talk.
Thank you for that and the Signal app.

media.ccc.de/v/39c3-ai-ag...
AI Agent, AI Spy
Agentic AI is the catch-all term for AI-enabled systems that propose to complete more or less complex tasks on their own, without stoppin...
media.ccc.de
December 30, 2025 at 7:51 PM
Reposted by idle
Et une nouvelle cheatsheet, une !

Celle-ci, je vous l'ai concoctée avec amour pour utiliser gdb
( et openOCD, les vrais savent ... )

github.com/Rancunefr/ch...
Release Version 0.1 · Rancunefr/cheatsheet_gdb
First Release
github.com
December 28, 2025 at 8:34 PM
Reposted by idle
Tunnelto : un outil CLI Open Source écrit en Rust pour exposer un serveur local via une URL publique.

Une alternative plus simple et auto-hébergeable à Ngrok.

👉 Le projet : github.com/agrinman/...
👉 En savoir plus : https://tunnelto.dev/
December 28, 2025 at 7:51 PM
Reposted by idle
At the gpg.fail talk and omg #39c3

You can just put a \0 in the Hash: header and then newlines and inject text in a cleartext message.

Won’t even blame PGP here. C is unsafe at any speed.

gpg has not fixed it yet.
December 27, 2025 at 4:31 PM
Reposted by idle
Ah Saturday morning! What a great time to...

...write a 1-page article for Paged Out! zine!

Deadline is 4th Jan - just a week away.

CFP: pagedout.institute?page=cfp.php
Paged Out!
Deeply technical zine. And it's free.
pagedout.institute
December 27, 2025 at 8:49 AM
Reposted by idle
The Christmas gift we needed! don't lie.

Show HN: Ez FFmpeg – Video editing in plain English npmjs.com/package/ezff from Hacker News via #[email protected] / gcu.info/gruik/
npmjs.com
December 27, 2025 at 8:59 AM
Reposted by idle
Reposted by idle
I recently refreshed my article on analog-to-digital and digital-to-analog conversions. Did you know that there are many different ways to convert analog voltages to bits and bytes, and that some of the methods are quite... unhinged?

Check it out: lcamtuf.coredump.cx/blog/convers...
DACs and ADCs, or there and back again
A look at how digital-to-analog and analog-to-digital converters work - from resistor ladders to delta-sigma modulation.
lcamtuf.coredump.cx
December 23, 2025 at 4:50 PM
Reposted by idle
`netstat` on Unix, macOS, and BSD (now replaced by `ss` on Linux) is a standard command for viewing and debugging network connections. There is a newer, more modern tool called snitch, written in Go lang, designed to inspect network connections on Linux and Unix with a cleaner and easy to use TUI
December 23, 2025 at 11:52 AM
Reposted by idle
m... mais alors... wiki.minix3.org/doku.php?id=...

😱
December 23, 2025 at 8:11 AM
Reposted by idle
What is MINIX? The most popular OS in the world, thanks to Intel
www.reddit.com/r/unix/s/8RH...
From the unix community on Reddit: What is MINIX? The most popular OS in the world, thanks to Intel.
Explore this post and more from the unix community
www.reddit.com
December 23, 2025 at 8:06 AM
Reposted by idle
Comme l'agile qui déqualifie les chefs de projets et les devs en remplaçant l'exercice strucuturant de la rédaction de cahier des charges et de doc, par du dansage de claquette.

Le problème du métier n'est pas technique mais managerial.

Dev, sysadmin, cdp c'est des métiers distincts et nécessaires
December 20, 2025 at 8:13 AM
Reposted by idle
Que penser de la DGSI qui rempile avec Palantir au moment même où l'entreprise américaine s'affiche comme le bras armé du trumpisme et forge une théorie de l'Etat qui vise à privatiser le régalien ? "La solution sera temporaire", jurait le patron du service, il y a... dix ans.
December 14, 2025 at 8:11 PM
Reposted by idle
I published an #IDA importer for the REShare #ReverseEngineering exchange format:


github.com ->

I also wrote up my development experiences, incl. tips for IDA's type info API:

REshare Ramblings - Bad Vibes with IDA
1/2
December 13, 2025 at 11:32 AM
Reposted by idle
BREAKING: New data from the United States Department of Labor suggests you're statistically more likely to find a job launching your resume into Ansky, a super massive blackhole located in SDSS J133519.91+072807.4, than submitting a resume to HR portals on the internet
December 12, 2025 at 4:58 PM
Reposted by idle
The wait is over! Phrack 72 40th Anniversary Edition is available now.

Order straight to your doorstep — the perfect gift for your fellow hacker, just in time for the holidays 🎄

No need to go to rely on the warez scene with scans anymore 😅

Order here: www.lulu.com/shop/phrack-...
December 13, 2025 at 9:34 AM
Reposted by idle
TFW the cookie expired, but the attack path didn’t. 😒

Andrew Gomez explains how BloodHound graph analysis and Azure Seamless SSO enabled pivoting into the cloud.

Read more: ghst.ly/3MwapV8
Azure Seamless SSO: When Cookie Theft Doesn’t Cut It - SpecterOps
The cookie crumbled when it expired, but the attack path didn’t. Learn how BloodHound graph analysis and Azure Seamless SSO enabled pivoting into the cloud.
ghst.ly
December 11, 2025 at 10:23 PM
Reposted by idle
The BloodHound Query Library, launched by @martinsohn.dk & @joeydreijer.bsky.social, democratizes tradecraft with a shared, searchable ecosystem. With 180+ Cypher queries & counting, the library is an increasingly valuable tool for the BloodHound community!

Browse ➡️ ghst.ly/bql_eoybsky
December 11, 2025 at 11:07 PM
Reposted by idle
Miod Vallat recently shared an OpenBSD story: ProPolice (the stack protector).

Amazing read. ☺️
The story of Propolice
Come to think of it, while old-timers will immediately recognize what the lyrics are referring to, the name ``Propolice'' has slowly fallen into oblivion, and I wouldn't be surprised if many people, nowadays, do not have a clue about this.
miod.online.fr
December 11, 2025 at 8:26 PM
Reposted by idle
Level up your #pentest skills in 2026 🚀

Join Synacktiv’s hands-on trainings: from Kubernetes & cloud hacks to web app attacks & AD intrusion.

More information & registration : www.synacktiv.com/en/offers/tr...

#cybersecurity
Trainings
Synacktiv
www.synacktiv.com
December 11, 2025 at 12:22 PM
Reposted by idle
Hoy !
Pas de stream ce soir... MAIS !
Release d'une petite série que j'ai pris plaisir à vivre, tourner, et réaliser sur le travail fait ave d'autres nombreux bénévoles pour Hack4Values (X) !

www.youtube.com/playlist?lis...
December 9, 2025 at 3:48 PM