Dev Miscellaneous – Telegram
Dev Miscellaneous
342 subscribers
884 photos
6 videos
5 files
917 links
A channel where you can find developer tips, tools, APIs, resources, memes and interesting contents.

Join our comments chat for more.

Comments chat (friendly :D)
https://news.1rj.ru/str/+r_fUfa1bx1g0MGRk
Download Telegram
Peculiar Self-References

Here is a tiny Python example that creates a self-referential list and demonstrates the self-reference.

https://susam.in/blog/peculiar-self-references.html

@DevMisc
#python #internals #learn
What's a CA anyway? Explaining the chain of trust that secures the Web

Are Certificate Authorities just a hoax to steal your money?

https://blog.nocturn9x.space/whats-a-ca-anyway-explaining-the-chain-of-trust-that-secures-the-web

@DevMisc [#Original ❤️]
#security #web #learn
Code execution as root via AT commands on the Quectel EG25-G modem

Do you remember the guy who got into his PinePhone modem via ADB and hosted his blog on it? He also found an RCE in it.

https://nns.ee/blog/2021/04/03/modem-rce.html

@DevMisc
#security #bugbounty #telephony
🧵 TIL the assumption that string length does not change when upper-cased is false!

https://chaos.social/@movonw/107316601658567746

@DevMisc
#extra
The Rust CUDA Project

An ecosystem of libraries and tools for writing and executing extremely fast GPU code fully in Rust.

https://github.com/RDambrosio016/Rust-CUDA

@DevMisc
#rust #gpu
Flatpak (and Snap) are not the future

Flatpak calls itself "the future of application distribution". I am not a fan. I’m going to outline here some of the technical, security and usability problems with Flatpak and others.

https://ludocode.com/blog/flatpak-is-not-the-future

@DevMisc
#store
Why IndexedDB is slow and what to use instead

https://rxdb.info/slow-indexeddb.html

@DevMisc
#performance #web
SSRF in Google worth $164 674

Yes, that's an insane bounty amount. The exploit happens on Google Cloud Computing, and finding it requires a ton of perseverance.

https://youtu.be/g-JgA1hvJzA

@DevMisc
#security #bugbounty #google
25 nooby Python habits you need to ditch

These nooby Python habits give away your inexperience in Python. Improve your code and your prestige just a bit by ditching those habits and doing things the Pythonic way.

https://youtu.be/qUeud6DvOWI

@DevMisc
#python #learn
Fun with Red Star OS

Red Star OS is a North Korean Linux distribution, with development first starting in 1998 at the Korea Computer Center (KCC). Prior to its release, computers in North Korea typically used Red Hat Linux and Windows XP.

https://sizeofcat.ru/post/fun-with-redstar-os/

@DevMisc
#extra
Recording myself finding an SSRF in Google

A full video recording all the process from finding an SSRF in Google Cloud, stealing the auth token, and bypassing the fix 2 times ($10 000)

https://youtu.be/UyemBjyQ4qA

@DevMisc
#security #bugbounty #google
Open .NET

Open-source fork of .NET

https://github.com/open-dotnet

@DevMisc
#extra
Windows 10 RCE

Code execution vulnerability on Windows 10 via IE11/Edge Legacy and MS Teams, triggered by an argument injection in the Windows 10/11 default handler for ms-officecmd: URIs

https://positive.security/blog/ms-officecmd-rce

@DevMisc
#windows #microsoft #security #bugbounty