Forwarded from Hacker News (yahnc_bot)
Stranger Strings: An exploitable flaw in SQLite https://blog.trailofbits.com/2022/10/25/sqlite-vulnerability-july-2022-library-api/
The Trail of Bits Blog
Stranger Strings: An exploitable flaw in SQLite
Trail of Bits is publicly disclosing CVE-2022-35737, which affects applications that use the SQLite library API. CVE-2022-35737 was introduced in SQLite version 1.0.12 (released on October 17, 2000) and fixed in release 3.39.2 (released on July 21, 2022).…
Forwarded from Fugoes In Mirror
Forwarded from Hacker News (yahnc_bot)
Ring0VBA – Getting Ring0 Using a Word Document https://disrel.com/posts/Ring0VBA-Getting-Ring0-Using-a-Goddamn-Word-Document/
Forwarded from 每日无数猫 (Pika喵 Makeinu)
每日无数猫
多康康猫猫图 可以提高生产力 论文:https://journals.plos.org/plosone/article?id=10.1371/journal.pone.0046362
其实原文是 Puppies and Kitties
Forwarded from Lobste.rs
Forwarded from Hacker News (yahnc_bot)
Multi-Kernel Drifting https://luqman.ca/blog/multi-kernel-drifting/
@luqman
Multi-Kernel Drifting
Using truss, dtrace & ctfconvert to figure out a faulty illumos kernel module.
Forwarded from Hacker News (yahnc_bot)
Build a passive radar with software-defined radio https://spectrum.ieee.org/passive-radar-with-sdr
IEEE Spectrum
Build a Passive Radar With Software-Defined Radio
Make a powerful radar using someone else’s transmitter
Forwarded from Hacker News (yahnc_bot)
Turbopack, the successor to Webpack https://vercel.com/blog/turbopack
Vercel
Turbopack: High-performance bundler for React & TypeScript - Vercel
Introducing Turbopack, the Rust-based successor to Webpack. A high-performance bundler for React Server Components and TypeScript codebases.
Forwarded from Hacker News (yahnc_bot)
Running Intel Binaries in Linux VMs with Rosetta https://developer.apple.com/documentation/virtualization/running_intel_binaries_in_linux_vms_with_rosetta
出两块儿(还有一块儿)(无了!)全新 4T 硬盘(叠瓦,DT02ABA400)
300不包邮,但是和北京市的群友可以现场交接+约饭?
京东价应该是 469,是两块儿都是京东换新的,还没有拆封
300不包邮,但是和北京市的群友可以现场交接+约饭?
京东价应该是 469,是两块儿都是京东换新的,还没有拆封
Forwarded from Solidot
披着羊皮的狼:利用流行乐扩散致命病原体
2022-10-27 18:48:00 by 金刚
UC Irvine 的三位研究人员在 arXiv 上发表了一篇预印本,描述了一种扩散致命病原体的新颖攻击。为了防止致命病原体泄露,生物实验室或传染病控制医院会要求使用名为负压室(Negative Pressure Room 或 简写 NPR)的设备,其内部维持负压,将微生物控制在 NPR 内部。实验室或医院会使用差压传感器(DPS)去监视和控制 NPR 的负压。研究人员报告,他们可以利用流行音乐在 DPS 中制造共振导致其读数超标,使其负压变成正压,导致潜在致命的病原体从 NPR 设备中泄露出来。研究人员在一个未具名的生物研究机构演示了他们的攻击。
#安全
2022-10-27 18:48:00 by 金刚
UC Irvine 的三位研究人员在 arXiv 上发表了一篇预印本,描述了一种扩散致命病原体的新颖攻击。为了防止致命病原体泄露,生物实验室或传染病控制医院会要求使用名为负压室(Negative Pressure Room 或 简写 NPR)的设备,其内部维持负压,将微生物控制在 NPR 内部。实验室或医院会使用差压传感器(DPS)去监视和控制 NPR 的负压。研究人员报告,他们可以利用流行音乐在 DPS 中制造共振导致其读数超标,使其负压变成正压,导致潜在致命的病原体从 NPR 设备中泄露出来。研究人员在一个未具名的生物研究机构演示了他们的攻击。
#安全