Rairii :win3_progman: :win3:
rairii.labyrinth.zone.ap.brid.gy
Rairii :win3_progman: :win3:
@rairii.labyrinth.zone.ap.brid.gy
Reversing (malware and otherwise); appsec and websec; embedded security; exploit dev; software preservationist; knows how not to use cryptography […]

[bridged from https://labyrinth.zone/users/Rairii on the fediverse by https://fed.brid.gy/ ]
I tried to upload to macintosh garden but it failed for some reason, so I uploaded it to IA instead: https://archive.org/details/powerbook5_2.factory.tools
PowerBook5,2 factory tools partition : Apple : Free Download, Borrow, and Streaming : Internet Archive
This is a zip of an HFS partition found at the end of my PowerBook5,2's hard drive and that survived 20 years without being overwritten.It contains various...
archive.org
February 5, 2026 at 8:03 PM
Reposted by Rairii :win3_progman: :win3:
Interestingly, @GossiTheDog was pretty on top of this in December weeks before Notepad++ formally disclosed. I agree with the assessment that, while Notepad++’s update situation was a little shaky, fundamentally it wasn’t gross negligence on their part but attracting powerful attention. (The […]
Original post on infosec.exchange
infosec.exchange
February 2, 2026 at 4:06 PM
@winload_exe fun fact: MS ported MFC 4.0 to classic mac os (m68k+ppc)
January 30, 2026 at 5:57 PM
@mothcompute the name change happened with 7.6, because of the powerpc mac clones
January 29, 2026 at 3:32 PM
looking further in the files that have plaintext available, and metadata of crypted files, seems this is related to a security audit on this TPM, commissioned from Thales, at a cost of 375,000 EUR
January 28, 2026 at 5:11 PM
@sodiboo version resources on windows
January 27, 2026 at 3:25 PM
update: veneer was tested. it starts to execute but raises an exception a few instructions in (on the first memory write). oddly enough, the exception is an alignment exception.
January 25, 2026 at 5:55 PM
"Final source code to Thales"

lol
January 24, 2026 at 9:49 PM
lol, another plaintext file is what looks like the src for the firmware signer for this TPM, with three ECC private keys hardcoded (two are commented out)

there's also the code for the firmware flasher on the device side, and binary for the util that talks to that code, with identical hardcoded […]
Original post on labyrinth.zone
labyrinth.zone
January 24, 2026 at 9:07 PM
@jernej__s @hp @Migueldeicaza i don't like automatic bitlocker personally, there have been several cases of actual data loss even with the recovery key escrowing...
January 24, 2026 at 11:20 AM