🏫 MY COURSES Sign-up for my FREE 3-Day C Course: https://lowlevel.academy 🧙♂️ HACK YOUR CAREER Wanna learn to hack? Join my new CTF platform: https://stacksmash.io ⌨️ KEYBOARD Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard 🔥COME HANG OUT Check out my other stuff: https://lowlevel.tv
ADVERTISEMENT
We all tired boss
I love how the solution to bypass traditional protections is always 'just perform an unauthorized write into memory.' Why didn't I think of that?
it'll be a fun weekend for sysadmins everywhere
Brute forcing a decryption key just to turn an X into a nothing in /etc/passwd is the most galaxy brain way to avoid typing a password I have ever seen. Why use a front door when you can just rewrite the concept of doors in kernel memory? Also at this rate, the only way to secure a Linux server is to never turn it on. Even then, I am pretty sure someone will find a way to splice a socket into the power supply.
atp i am in the state of "i cant keep track of the issues so i don't have to worry about them "
Migrating to a Commodore 64. Peace out.
Thank you for not overdoing thumbnails for such type of content. Truly.
NSA must be fuming at all the "mistakes" being found in the Linux kernel by AI agents.
0:13 Another priv escalation exploit has hit the Linux kernel
Time to buy a farm
Imagine all the zero days waiting in windows because its all closed source, this only makes linux stronger
at this point just disable every kernel module youre not actively using
You will get charged extra to check those bags sir.
I love how daily there is a video about vulnerability. It never ends! haha
AI Jedi saying “there’s no root password” - and your kernel just believes it. Nice craft.
Meanwhile over in Windows land, Microsoft still hasn't patched the default WSL kernel for CopyFail. I'm pretty sure the kernel releases get built by Github Actions, so with everything going on over there we may never see the fix.
The reason why Dirty Frag is catching everyone flat-footed is because although the vulnerability was reported to the Linux kernel team in April 30, an "unrelated third party" broke the embargo for the reveal.
waiting for the Canvas/Instructure video to come out
On the bright side, the more bugs are fixed, the better / safer it gets :)
Tbh kinda excited all these vulns are being found because they have always been there we just... Found them now. Like yeah, sure, it's scary how easy it is for bad actors to build malware but you can't ever improve your security if you are never attacked ¯\_(ツ)_/¯