Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Sirened
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
31.
▲
by
Sirened
4y ago
I don't know, I've heard so many stories of people that, after 90+ years, are just bored of life. It's unimaginable to me now but I've only been an adult for a small fraction of the time they've been and so maybe yo
32.
▲
by
Sirened
4y ago
On macOS you can do this using just the stock OS. It's under keyboard settings. You can also do this on iOS, it's awesome if you have a physical keyboard and like to use vim on your iPad
33.
▲
by
Sirened
4y ago
Would this change though if they were out of reach of the apple App Store? The "ask app not to track" feature is a component of the OS. The only difference is then that Facebook would be allowed to violate the user's consent
34.
▲
by
Sirened
4y ago
You would hope but to a large extent SMMUs are still not meaningfully deployed in consumer smartphones. Even when they do exist, the bounding enforced upon them are so expansive that it's essentially pointless. For example, one device
35.
▲
by
Sirened
4y ago
I don't believe these mitigations are fixable, they are based on a fundamental misunderstanding of how people actually write exploits and what attackers are capable of. The issue is that it is extremely hard to try and limit what an at
36.
▲
by
Sirened
4y ago
Fine, you've nerd sniped me. I'll write a blogpost defeating both mitigations next week :)
37.
▲
by
Sirened
4y ago
The question we have to ask ourselves is whether OpenBSDs mitigations are taking away enough attack surface (or in this case, exploitation tools) to make it worth the engineering and user cost. I'd argue that things like msyscall and m
38.
▲
by
Sirened
4y ago
So just ROP to the syscall you want in libc. Instead of targeting the syscall instruction, directly call mmap. System call randomization is a feature designed to discourage legitimate software from hardcoding syscall numbers. It is not me
39.
▲
by
Sirened
4y ago
If you've managed to map shellcode at all, you necessarily already know where a valid syscall instruction is since otherwise you would not have been able to trigger the mmap syscall to map the shellcode. In any event, mapping shellco
40.
▲
by
Sirened
4y ago
I believe I should have couched that statement with a "for most everyone else" :) The PPL is a strong mitigation, I agree, but it is definitely one that is really only supported through their ability to ship custom hardware. Pulli
41.
▲
by
Sirened
4y ago
>One of those marks executable memory that is empowered to call into the kernel; on OpenBSD systems, only the C library is given that capability. That will prevent hostile code loaded elsewhere from making direct system calls; protecting
42.
▲
by
Sirened
4y ago
While yes, you can saturate a 1GB link using the Pi 4, the 4x A72 core complex is not going to be blisteringly fast no matter how you slice it. If you're trying to stream encrypt with AES, you're going to be limited to at best h
43.
▲
by
Sirened
4y ago
Yeah I was similarly unimpressed with their methodology. Like...a single pie chart listing the results of top sorted by physical memory would have provided meaningful insight both as to why Alpine supposedly uses less memory as well as how
44.
▲
by
Sirened
4y ago
What is the common vector? Who is the common adversary even? I suspect governments compromise more accounts with warrants than hackers ever do with stolen creds
45.
▲
by
Sirened
4y ago
It's not surfaced in the UI but, as far as I recall, the information does actually reach the device already. Here's a paper [1] which dives into the cryptography used in iMessage (at least whatever was used at time of publication)
46.
▲
by
Sirened
4y ago
har har :) It's an ergonomics thing, not a "can't" issue. There is a reason I called out Swift in particular—their "unsafe" APIs are so horrid to use that they make you regret doing unsafe things in the first p
47.
▲
by
Sirened
4y ago
>You can't write any code at all in Python or Java without relying on unsafe operations. Both of them have their runtimes written in C/C++. This isn't a meaningful distinction, in the end. Hardware is unsafe too. Real prod
48.
▲
by
Sirened
4y ago
I think what they're saying is that C compilers don't care about aliasing here because it's not actually bounds checking the pointers , it's just a numeric comparison between two random arguments. It's much easier
49.
▲
by
Sirened
4y ago
writing exploits, for example, is an utter pain in today's safe languages :) C is unmatched in the sheer ease of manipulating raw bytes with some light structuring on top for convenience. I've tried writing exploits in Swift a ha
50.
▲
by
Sirened
4y ago
APVI is Android Partner Vulnerabilities Initiative. It's a working group (?) that deals with security issues of third party vendors
51.
▲
by
Sirened
4y ago
Yes but actually no. While they may be able to install a bogus update, unless they also compromised the keys for verified boot the system won't boot if they change anything interesting as AVB has a hardware root of trust (typically).
52.
▲
by
Sirened
4y ago
it's a thin wrapper around qemu, for those interested
53.
▲
by
Sirened
4y ago
Hardware is fun! It's never too late :)
54.
▲
by
Sirened
4y ago
Notably, almost every other Arm A series processor which supported PAC also was susceptible to the same attack [1], the issue is just that actually buying such processors is nigh impossible (up until this year it was actually impossible
55.
▲
by
Sirened
4y ago
> People who join terrorist organisations are usually ones that do not have many other options As the saying goes, one man's terrorist is another's freedom fighter. Being an engineer doesn't make you apolitical or free of
56.
▲
by
Sirened
4y ago
iOS uses memory compression but not swap. iOS devices actually have special CPU instructions to speed up compression of up to page size increments specifically to aid in this model [1] [1] https://github.com/apple-oss-distri
57.
▲
by
Sirened
4y ago
https://layoffs.fyi puts it at ~40k
58.
▲
by
Sirened
4y ago
Assuming most of these people are in the bay and even if everyone was in one county, none of the elections would have even flipped (except for districts which are already tiny such that 13k would dwarf the entire voting population). Trying
59.
▲
by
Sirened
4y ago
Trying to spring the GPL on people because they dare to try and understand how their wifi card works is not, in my opinion, a reasonable nor appropriate use of copy-left. Copyright is for derived works, not technical knowledge (i.e. specifi
60.
▲
by
Sirened
4y ago
This reminds me of the time that, after having publishing my first ever piece of professional work, a competing academic privately threatened and later actually did put out a series of tweets calling me a liar and a fraud. He was wrong, of
More ›