Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
chrisrohlf
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
1.
▲
by
chrisrohlf
3y ago
The Murray Hill campus may have been where the bulk of the innovation happened but the former Holmdel site is the architectural gem of the two. Thankfully it was preserved and is now functional and used as ‘Bell Works’.
2.
▲
by
chrisrohlf
3y ago
Sure. I'm just not sure why their existence depends on cheating the remaining tax payers out of tens of millions of dollars every year.
3.
▲
by
chrisrohlf
3y ago
> These are landowners who farm as a tax dodge This is exactly what it is here in NJ. They’re called ‘fake farmers’ here, and a quick google search will show you they cost the state tens of millions in lost tax revenue per year. Its all
4.
▲
by
chrisrohlf
4y ago
Most people have no idea this exists or any of the historic events and scientific achievements that happened at these locations or in the near by area such as the Horn Antenna or Radio Astronomy at the old Bell Labs site in Holmdel.
5.
▲
by
chrisrohlf
4y ago
I used to work at this location when it was an active military base. The Army Signal corps made movies there long before Netflix. As a local resident its nice to see some reinvestment in the base a full 12~ years since BRAC was finalized an
6.
▲
by
chrisrohlf
4y ago
Reducing the likelihood of side channels through transparency is a worthy endeavor. But for RISC-V, adoption of Control Flow Integrity (CFI) and memory tagging capabilities will have far greater security impact for the vast majority of user
7.
▲
by
chrisrohlf
4y ago
I asked this same question not long ago and the CEO of a well known company in this same research area reached out and recommended Veritas Genomics https://veritasgenetics.com/mygenome/ I’ve yet to finish the order pro
8.
▲
by
chrisrohlf
5y ago
Thank you Tom. It’s a really exciting area of research.
9.
▲
by
chrisrohlf
5y ago
No it will still catch it if you access the 42nd byte with a read, but not if you write to any other byte first. Thats just a limitation of page faults and the information provided by userfaultfd.
10.
▲
by
chrisrohlf
5y ago
Correct, this technique works on a page by page basis. It's the only way to do it with userfaultfd as the technique relies entirely on the first page fault being a read and not a write. Im working on a feature that returns an allocatio
11.
▲
by
chrisrohlf
5y ago
I've gotten this feedback before. It's probably time to change it from #414141
12.
▲
by
chrisrohlf
7y ago
IsoAlloc author here. Thanks for reading the post and linking to the security properties. I plan to expand on those in an additional post and how I implemented them. You're right that Electric Fence takes a different approach and is mo
13.
▲
by
chrisrohlf
8y ago
When in doubt just assume Mark Dowd found it first http://taossa.com/index.php/2007/01/03/attacking-delete-and-... (dead link) but see here too http://www.blackhat.com/presentations/
14.
▲
by
chrisrohlf
8y ago
I used to teach a training on the subject (all the course material is now free at https://github.com/struct/mms ). I had a section on ‘where to look’ for vulnerabilities. I started this section off with a scenario: “You
15.
▲
by
chrisrohlf
10y ago
Sure. First name dot last name at gmail
16.
▲
by
chrisrohlf
10y ago
I built and sold (acquihired) a small successful security consultancy from 2011-2014. My experience is seen through the lens of security consulting. I should really write all this down in a longer form but heres the important take aways in
17.
▲
by
chrisrohlf
10y ago
Yahoo Paranoids are hiring for all sorts of security positions in Sunnyvale, San Francisco, and NYC. Lots of very interesting and challenging work (plus great perks). Lots of room for junior people too. My team is looking for people with vu
18.
▲
by
chrisrohlf
11y ago
This was %100 Johns work.
19.
▲
by
chrisrohlf
11y ago
I am the author of this code. If you're interested in getting started with it right away then check out Eucalyptus: https://github.com/yahoo/rtrace/tree/master/Eucalyptus I wrote Eucalyptus as the p
20.
▲
by
chrisrohlf
12y ago
Heres Chris Leary's patch for Firefox. A bit dated at this point though https://bugzilla.mozilla.org/show_bug.cgi?id=677272
21.
▲
by
chrisrohlf
12y ago
Nearly every browser engine has or had patches at one time to accomplish this. Its a call to mprotect/VirtualProtect after writing native code to memory. Theres a performance hit to JIT engines that update emitted code often due to dyn
22.
▲
by
chrisrohlf
12y ago
> Passwords at Project Euler are strongly encrypted using a one-way hash This does not instill confidence. Hashes are not encryption. Furthermore there is an enormous difference between "we store your password as a single round of M
23.
▲
by
chrisrohlf
12y ago
20+ years of insecure code resulting in remote code execution vulnerabilities, lack of authentication and integrity, authorization bypasses and more. Yet a simple out-of-bounds read becomes the straw that breaks the camels back. Don't
24.
▲
by
chrisrohlf
12y ago
This depends on a couple of different things. The most important of which is "at what stage of development is the application? (i.e. how mature and well tested is this code)". Software Development Life Cycle (SDLC) processes are g
25.
▲
by
chrisrohlf
12y ago
NaCl is not exactly a stepping stone to the renderer. NaCl modules live outside the renderer process in a much tighter sandbox that uses control flow integrity and software fault isolation. Gaining code execution within the NaCl sandbox (ea
26.
▲
by
chrisrohlf
12y ago
Yes, exactly this. Many large programs have custom allocators for performance and most of them are simple primitives built on top of chunked up pages returned by mmap/VirtualAlloc. The examples of this are all over. This obsession with
27.
▲
by
chrisrohlf
12y ago
Im not sure why this misunderstanding of the code continues to persist. It is not a custom malloc. It is a custom API for reusing chunks of a specific size previously returned by malloc.
28.
▲
by
chrisrohlf
12y ago
"or try to mmap each region to a well-known start address (and fail if it cannot obtain that address)." Optimizations aside, beware this approach. ASLR is one of your two best friends (the other is DEP). When you purposely circumv
29.
▲
by
chrisrohlf
12y ago
In my experience, bug bounties are most effective when targeted at a specific component of an application. You get less of a gold rush mentality for simple issues that existing toolsets (such as fuzzers) can find.
30.
▲
by
chrisrohlf
12y ago
It is frustrating that the confusion around heartbleed and the OpenSSL free lists persists: http://blog.leafsr.com/2014/04/11/my-heart-is-ok-but-my-eyes...
More ›