Do It by Code
54 subscribers
713 photos
100 videos
15 files
1.24K links
We uhhhhh... do things by coding them.
Download Telegram
.sh dig @ch.at "hello, who are you?" TXT +short
Do It by Code
.sh dig @ch.at "hello, who are you?" TXT +short
ExitCode: 0
"Hello! I\226\128\153m an AI language model created by OpenAI. How can I assist you today?"
Btw there is a theory about LLMs becoming "lazy" when they are given instructions (e.g. system prompt) of a weekend's datetime (e.g. imagine you are passing it current datetime via its system prompt and today is a weekend, Sunday for example)
1
1
Torrent download tracker

https://iknowwhatyoudownload.com/

(idk how accurate it is tho. it's definitely not "accurate" if you are using a VPN, because it's gonna show what other people who are using the same vpn as you have downloaded. which is kinda cool in its place)
This media is not supported in your browser
VIEW IN TELEGRAM
Prompt:
a raw walk POV video in the nature. there is a lake, it's raining, it's evening, there is a wet bench.

Model: Google Veo 3 Fast
7
CVE-2025-20281: Cisco ISE - Remote Code Execution

Cisco ISE and Cisco ISE-PIC contain a remote code execution caused by insufficient validation of user-supplied input in a specific API, letting unauthenticated remote attackers execute arbitrary code as root, exploit requires crafted API request.


- PoC

#cve
CVE-2025-55188: 7-Zip: Arbitrary file write on extraction, may lead
to code execution

Affected versions: 7-Zip prior to 25.01

Extracting a maliciously-crafted archive with 7-Zip prior to 25.01 allows for arbitrary file write, which may lead to arbitrary code execution.

The conditions necessary for this vulnerability to be exploited are:
1. User is on Linux
2. 7-Zip version prior to 25.01
3. User is extracting an archive of an archive format for which 7-Zip
supports symbolic links (e.g. .zip, .tar, .7z, .rar, etc...)

This attack may also be done on Windows, but additional conditions are necessary. On Windows, the 7-Zip extraction process must have the capability to create symbolic links (e.g. extract with Administrator privileges, Windows is in Developer Mode, etc...).

- patch
- nvd (the low score is a mistake btw, they will fix it)

#cve
Do It by Code
CVE-2025-55188: 7-Zip: Arbitrary file write on extraction, may lead to code execution Affected versions: 7-Zip prior to 25.01 Extracting a maliciously-crafted archive with 7-Zip prior to 25.01 allows for arbitrary file write, which may lead to arbitrary…
winrar also had a path traversal vulnerability btw (I was too lazy to post it here tho)

winrar's release date: April 22, 1995
7zip's release date: July 18, 1999

I'm speechless

btw there is still no PoC out for 7zip's vulnerability (as far as I know)
Do It by Code
source
had to share this ahahaha
1
Forwarded from rA9
what is this now...