Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
reginaldo
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
61.
▲
by
reginaldo
11y ago
Almost. It's casting exec to a pointer to a function that "returns" void and takes no arguments and then calling the function. Search for "C right-left rule" (without quotes) to see some hints on how to read complex
62.
▲
by
reginaldo
12y ago
Google, Facebook, and now over 70 companies do grant tacit permission for anyone to test their systems, and will pay the researchers for a disclosure, as long as they follow the program rules , which are usually quite reasonable. I'm
63.
▲
by
reginaldo
12y ago
In 2011 I wrote an emulator for the LatticeMico32 processor [1]. After it was written, I decided to play the chaos monkey game and change some instructions, like reversing "less than" and "greater than", just for kicks.
64.
▲
by
reginaldo
13y ago
Your comment did it. I've been avoiding it, since I know I won't stop until I either finish all the levels or give up after spending too many hours, but I finally decided to give it a try. And it is amazing. As an emulator author
65.
▲
by
reginaldo
13y ago
The 10 years before those 2 days helped a lot too...
66.
▲
by
reginaldo
13y ago
You're actually pretty close.
67.
▲
by
reginaldo
13y ago
Fixing XXEs in Java is not a trivial thing to do. The best reference I know comes from Apache shindig [1], and you do have to make all those BUILDER_FACTORY.setAttribute calls, otherwise you block general external entities but allow paramet
68.
▲
by
reginaldo
13y ago
I quoted that as a joke. I'm too familiar with bug bounties to ever expect one million dollars as reward for a bug. Let's hope people don't take it seriously. Lesson learned: since I'm not a native speaker, I shouldn
69.
▲
by
reginaldo
13y ago
Well, I originally found the OpenID bug in 2012, but hadn't noticed Facebook was vulnerable until very recently. After I found their OpenID endpoint, the hardest part was getting them to make me a Yadis discover request. Then I had to
70.
▲
by
reginaldo
13y ago
I don't know if you read it, but I sent you an email about this same bug (when I originally found it in Drupal) in 2012. Didn't know FB was vulnerable back then. By the way, I learned a lot from you here on HN. So let me take this
71.
▲
by
reginaldo
13y ago
Well, it's already disclosed, but I really wanted to know how much people would think this kind of bug is worth.
72.
▲
by
reginaldo
13y ago
Hi HN, I'm the one who found the bug. My writeup is at http://www.ubercomp.com/posts/2014-01-16_facebook_remote_cod... . I'd be glad to answer any questions. I won't disclose the amount for now because I
73.
▲
by
reginaldo
13y ago
Hi. I'm the one who found the bug. Facebook's side of this story is at https://www.facebook.com/BugBounty
74.
▲
How I found a Remote Code Execution bug affecting Facebook's servers
(ubercomp.com)
158 points
by
reginaldo
13y ago
|
58 comments
75.
▲
by
reginaldo
13y ago
The last stripe CTF literally changed my life. I've always been interested in security but didn't have the confidence and honestly thought I didn't have it takes to be successful in the field. I decided to try the CTF anyway
76.
▲
by
reginaldo
13y ago
Most Google services accept and honor a "hl" URL parameter. So it would be http://www.google.com/about/company/history/?hl=en for English, and hl=nl for Dutch (not that you want it). No cookie clean
77.
▲
by
reginaldo
13y ago
Not just Xerox, btw... My HP printer/scanner does the same. After reading that post I started paying attention and eventually saw the effect a few times. I just wonder how many copies with the wrong numbers I've produced so far...
78.
▲
by
reginaldo
13y ago
Here are some references to get you started: http://www.volokh.com/2012/01/02/the-original-and-traditiona... http://en.wikipedia.org/wiki/Citizens_United_v._Federal_Elec... (Relevant par
79.
▲
by
reginaldo
13y ago
Wow... My father is a civil lawyer and deals with inventories regularly, but I don't think he's ever gotten a case so contrived. And I fully agree that having to prove the debt exceeds the assets is a major annoyance. Anything tha
80.
▲
by
reginaldo
13y ago
This analysis is wrong. One inherits the debts, but only up to the value of the assets inherited. See Art. 1.792 Art. 1.792. O herdeiro não responde por encargos superiores às forças da herança; incumbe-lhe, porém, a prova do excesso, salvo
81.
▲
Confluence Security Advisory 2013-08-05 (Critical - Remote Code Execution)
(confluence.atlassian.com)
2 points
by
reginaldo
13y ago
|
0 comments
82.
▲
by
reginaldo
13y ago
>He basically did what Weeve did, except Weeve is in confinement now. Hopefully not for long... https://news.ycombinator.com/item?id=6093468 Don't get me wrong, I don't agree with what he did, but the whole cas
83.
▲
by
reginaldo
13y ago
What about when someone uses their old email address as the password recovery email for the new email address? I agree with Silhouette in that I hope they follow through with this... It will surely be fun to watch, and also people will
84.
▲
by
reginaldo
13y ago
I thought it was quite good, comparing tho most company statements I see. They even used the word apologize . Most companies do not use such wording as it might imply admission of guilt. That's why you see regret instead of apologi
85.
▲
by
reginaldo
14y ago
I believe the issue was related to the fact that the user running Jenkins was a full passwordless sudo user . Maybe the attacker used the groovy console too...
86.
▲
by
reginaldo
14y ago
I don't know if you're doing this, but I think it's a bad idea to leave Jenkins publicly accessible. Indeed, IMHO, it's a bad idea to leave stuff that should not be accessible by the general public publicly accessible. Especially things tha
87.
▲
by
reginaldo
14y ago
It would be nice if they did so, but I don't think companies should be obligated to pay for bug reports from researchers that have no association whatsoever with them. Those that pay seem to get more reports, both in numbers and in quality,
88.
▲
by
reginaldo
14y ago
I'm not an american, but I'm a spare-time security researcher, hoping to make a career out of this in the future. The last few cases reported here on HN give me the impression that if you stumble upon a vulnerability (which, by the looks of
89.
▲
by
reginaldo
14y ago
Oh no. I'm not saying it would be easier without exceptions. I'm just saying that the current status of our programming tools makes writing safe code very hard, and exceptions are one more thing you have to think about. I use them a lot...
90.
▲
by
reginaldo
14y ago
Writing exception safe code is hard No it’s not. Be sure to clean up anything that could need cleaning up in a finally block. This is like saying... be sure to never copy more bytes than the buffer capacity . Easier said than done. Writi
More ›