nyan
nyanbinary@infosec.exchange
<p>Little goblin with catears.</p><p>Unfinished projects, complaining about computers, reinventing the wheel (badly), has not fully read any docs since 2015. Certified cognitohazard.</p><p>Proud bot parent to many failsons:<br /><span class="h-card" translate="no"><a href="https://infosec.exchange/@enojifier_bot" class="u-url mention">@<span>enojifier_bot</span></a></span> <br /><span class="h-card" translate="no"><a href="https://infosec.exchange/@dreizehnzwoelf_bot" class="u-url mention">@<span>dreizehnzwoelf_bot</span></a></span><br />Infosec related: <a href="https://infosec.exchange/collections/116931760660109009" target="_blank" rel="nofollow noopener" translate="no"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/collections/1</span><span class="invisi
Posts
-
View post
@cR0w@infosec.exchange motherf....
-
View post
Hey, so, do you ever wonder how many HR system AD integrations for user provisioning have an escalation path to domain admin?
-
View post
Too many unread emails? Quit, new job, problem solved.
-
View post
I guess it's time to rewrite Citrix in Rust? :3
-
View post
tlp red? You should see a doctor about that
-
View post
Get thrunted :blobcattriumph:
-
View post
: The world if companies boycotted products that gate low-to-no-cost security features behind higher tiers.
-
View post
central-european-levels-of-spicy take: I do actually think credentials should have a defined lifetime limit & (in a somewhat professional context) this should be enforced. This applies to the full spectrum of machine to human credentials, with potentially the exception of specific machine credentials with strong technical & process controls & with appropriate frequencies to each credential type. Don't read this as me wanting to return to the days of "30 day password rotatio...
-
View post
RE: https://infosec.exchange/@hardcoded_bot/117320936425415642 OwO whats this
-
View post
@christopherkunz@chaos.social hm, kinda needs to be one image/video to fit the template, I guess classical "image + impact font" does the trick?
-
View post
I need some input: how much do you use the "&" in natural language as a stand-in for "and" (not programming languages)?
-
View post
40k admech army but painted in MS colours
-
View post
Fuck, I need to make a decision tomorrow
-
View post
There was a time on the internet where everyone knew what the correct response to "hello there" was and I miss that time
-
View post
The S in Linux stands for security.
-
View post
Based on something @cR0w@infosec.exchange mentioned I wanted to know: Are there CVE records are out there with E:[UP] but that are eitw? Well, yes. One or two. Or three: https://www.cve.org/CVERecord?id=CVE-2026-68820https://www.cve.org/CVERecord?id=CVE-2026-55040https://www.cve.org/CVERecord?id=CVE-2026-50522https://www.cve.org/CVERecord?id=CVE-2026-45659https://www.cve.org/CVERecord?id=CVE-2026-41091https://www.cve.org/CVERecord?id=CVE-2026-33824https://www.cve.org/CVERecord?id=CVE-2026-2152...
-
View post
Not sure if its already part of the usual honeypot/canary toolkits but building some AD CS based canary (e.g. tailored to ESC1) should be pretty simple, shouldnt it? Like, set up a vulnerable template, prevent actual use (not sure if possible with default AD CS tooling, but definitely possible with TameMyCerts or something like it), nuke on use?
-
View post
Lol, lmao, CDU (the default right wing party in Germany) might have just scored <5% in a state election, thus missing the threshold for getting seats in that states parliament. Mind you, this isnt actually good news, given the far right extremist AfD skyrocketed to 38%/first place in that election. But you know. Lol.
-
View post
...hardcoded credentials cve bot :blobcatthinking2:
-
View post
Do you think the USAF would sell me a F-117 if I asked nicely?
-
View post
This is very specifically not a callout post but the fact that we are discussing the unprompted invasion of a country by a global superpower in the effect it has on some the storage policies of cloud customers is fucking bonkers.
-
View post
So whats the highest I can fly a tethered balloon without getting into trouble with the authorities, whats the maximum feasible wire length for 3.3v/5v DC power, and how much does a meshtastic node weight?
-
View post
Upper management will never take responsibility. Therefor upper management must never make a management decision.
-
View post
@Viss@mastodon.social what if I dont want them? :neobot_pleading:
-
View post
pfff, big deal, I have been writing projects with 0-1 users that are fully unmaintainable, and based on third party knowledge and guesswork for years!
-
View post
Am I just extremely eepy or am I sick? :neobot_woozy:
-
View post
https://ctlogs.dev/cert/0000000f039bd7430cb346dd1c541f61d0f8314c dolbyfirmware-prov.zoomgov.mil ... ywhat?
-
View post
i should get tattoos. how does one visualize aes in a tattoo-suitable form :thinking_cirno:
-
View post
Linux, or as I have come to calling it, Electron+Linux
-
View post
https://db.gcve.eu/vuln/cve-2026-81953 Microsoft Excel Remote Code Execution Vulnerability looks inside Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.