writing.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
A small, intentional community for poets, authors, and every kind of writer.

Administered by:

Server stats:

346
active users

#vulnhunting

0 posts0 participants0 posts today
Erik van Straten<p><span class="h-card" translate="no"><a href="https://dvd.chat/@vPurple" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>vPurple</span></a></span> : because I'm a security guy who wants to help others make the best of things (even if it regularly feels like pulling my hair out).</p><p>Most people will *not* install an alternative OS on their phone. </p><p>And I use main stream stuff to be able to tell big tech when things suck (unfortunately they're mostly deaf).</p><p>iCloud Keychain passkeys and passwords vulnerability: <a href="https://infosec.exchange/@ErikvanStraten/113947265572224222" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113947265572224222</span></a></p><p>Android passkeys vulns: <a href="https://infosec.exchange/@ErikvanStraten/113820358011090612" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113820358011090612</span></a> (after publishing <a href="https://seclists.org/fulldisclosure/2024/Feb/15" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">seclists.org/fulldisclosure/20</span><span class="invisible">24/Feb/15</span></a>).</p><p>OTOH Mozilla eventually fixed a bug in Firefox for iOS/iPadOS that I reported (under specific, non-exceptional, circumstances a padlock was shown while http was being used: <a href="https://infosec.exchange/@ErikvanStraten/113316652669640932" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113316652669640932</span></a>).</p><p><span class="h-card" translate="no"><a href="https://mastodon.social/@Tutanota" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Tutanota</span></a></span> </p><p><a href="https://infosec.exchange/tags/VulnHunting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VulnHunting</span></a> <a href="https://infosec.exchange/tags/PracticeWhatYouPreach" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PracticeWhatYouPreach</span></a> <a href="https://infosec.exchange/tags/Android" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Android</span></a> <a href="https://infosec.exchange/tags/iOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iOS</span></a> <a href="https://infosec.exchange/tags/iPadOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iPadOS</span></a> <a href="https://infosec.exchange/tags/Passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passkeys</span></a></p>