Hey @ChickfilA, since Aug. 13th, 2023, I've had a subdomain takeover on your cfahome domain @ https://t.co/0DynlotFIK
I've previously tried on multiple occasions to reach out to someone at CFA about this via multiple means, w/ no response from anyone.
#chickfila#vulnerability
How did we ever allow Discord become the acceptable standard
This absolute inconsistent piece of bloated garbage software can't remember configurations or randomly changes them and the solution is just to restart
We used to be a society that wrote decent software
Kart"LAN"Pwn (CVE-2024-45200 pending)
Stack-based buffer overflow in Mario Kart 8 Deluxe up to v3.0.1 via incorrect usage of the "Pia" P2P networking library. If chained with an info leak, can lead to usermode remote code execution.
#vulnerability#MK8D
https://t.co/571NUZpIy2
@Laughing_Mantis@jitlua@vxunderground Here's the reality of the situation. What Wave is doing to block Roblox's internal functions is fundamentally flawed, there is a "way" to do it without any ways to bypass the protections but I obviously wont be disclosing it anywhere that Wave developers can learn from.
@vxunderground The idea that the uneducated young lads running exploit scripts are expected to monitor all the traffic occurring and make sure it is okay to execute is incredibly flawed and stupid. They're looking for generic game script "hubs" to cheat with and those are all obfuscated too.
@vxunderground Continuing on from the last reply, these are bad because the Roblox cheat scripts get resources from web servers to run Luau and they are incredibly difficult to diagnose and in general even prevent unless you're on the C++ side.
@BLOX Howdy, yeah there's are a few people who requested this in Latte.
I'm not the type of guy to stick malware in this, I think uninstalling Wave was funny enough.
I was thinking about changing their wallpaper in round 2 though, I'm just unsure if that's crossing a line, thoughts?
Explanation: This is a Wave RCE vulnerability that gets used to warn people about cheating. There is no malware involved and cheaters get their cheat uninstalled via a "malicious" snippet they themselves ran.