unix-ninja
banner
unix-ninja.bsky.social
unix-ninja
@unix-ninja.bsky.social
Team Hashcat + Hacking stuff + Running Information Security in FinTech + I like chess + Cracking Passwords + Making music
Pinned
"There is nothing more deceptive than an obvious fact."
~Sherlock Holmes
daily #chess
December 2, 2025 at 3:37 PM
daily #chess
November 30, 2025 at 5:52 PM
Reposted by unix-ninja
a game to learn (or teach) how to use standard commands in a Unix or Linux shell. GameShell is available in English, French and Italian.

github.com/phyver/GameS...
GitHub - phyver/GameShell: a game to learn (or teach) how to use standard commands in a Unix shell
a game to learn (or teach) how to use standard commands in a Unix shell - phyver/GameShell
github.com
November 27, 2025 at 4:49 AM
daily #chess
November 27, 2025 at 3:16 PM
daily #chess
November 25, 2025 at 1:34 PM
daily #chess
November 24, 2025 at 12:31 PM
daily #chess
November 23, 2025 at 1:26 PM
Reposted by unix-ninja
since the "google is now training gemini on your email contents" thing keeps bumping around here: it's _not happening_. I say this not to defend google but because I know a lot of people that have broken their filtering and made their lives much more annoying from sheer misinformation.
The malwarebytes Google opting-your-emails-into-ai-training thing is not true. The post is based on one bad tweet.

I know anti-tech lamenting is a Bluesky core principle, but please use the same judgement you would for any other clickbait.

www.theverge.com/news/826902/...
Google denies ‘misleading’ reports of Gmail using your emails to train AI
Google says “we do not use your Gmail content for training our Gemini AI model.”
www.theverge.com
November 22, 2025 at 9:30 PM
daily #chess
November 22, 2025 at 7:43 PM
Reposted by unix-ninja
We now have a (draft) @metasploit-r7.bsky.social exploit module for the recent Fortinet FortiWeb vulns, chaining CVE-2025-64446 (auth bypass) + CVE-2025-58034 (command injection) to achieve unauthenticated RCE with root privileges: github.com/rapid7/metas...
November 21, 2025 at 1:29 PM
daily #chess
November 21, 2025 at 1:45 PM
daily #chess
November 20, 2025 at 12:22 PM
#daily chess
November 19, 2025 at 2:11 PM
Reposted by unix-ninja
Google released a critical update for Chrome (versions 142.0.7444.175 for Windows/Linux and 142.0.7444.176 for Mac) to address a zero-day vulnerability, CVE-2025-13223, actively exploited in the wild. This type confusion bug in the V8 engine could allow remote code execution.
Chrome Type Confusion Zero-Day Vulnerability Actively Exploited in the Wild
cybersecuritynews.com
November 18, 2025 at 12:02 PM
daily #chess
November 18, 2025 at 12:13 PM
daily #chess
November 17, 2025 at 12:55 PM
daily #chess
November 16, 2025 at 6:12 PM
Some very fun research 🙂

“Fun-reliable side-channels for cross-container communication” on Linux.

simonwillison.net/2025/Nov/12/...
Fun-reliable side-channels for cross-container communication
Here's a very clever hack for communicating between different processes running in different containers on the same machine. It's based on clever abuse of POSIX advisory locks which allow a …
simonwillison.net
November 15, 2025 at 1:42 PM
daily #chess
November 15, 2025 at 1:40 PM
daily #chess
November 14, 2025 at 3:53 PM
daily #chess
November 13, 2025 at 1:04 PM
daily #chess
November 11, 2025 at 1:36 PM
daily #chess
November 10, 2025 at 5:43 PM
daily #chess
November 9, 2025 at 3:54 PM