Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
samuirai
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
Node.js Hacking Challenge – get access to the private area
(smrrd.de)
3 points
by
samuirai
11y ago
|
0 comments
2.
▲
by
samuirai
11y ago
Funny that you mention "storage vendors". In Germany we have to pay a fee as compensation on storage like USB sticks, because it is potentially used to store copyright material. It's outrageous. http://www.geek.com
3.
▲
by
samuirai
11y ago
The usenix paper you linked is from the langsec people
4.
▲
Bing displays ads with faked URLs that redirect to AdWare bundled Installers
(twitter.com)
6 points
by
samuirai
11y ago
|
0 comments
5.
▲
by
samuirai
12y ago
> Several hours later, Google star vulnerability researcher Tavis Ormandy tweets(!) an embarrassing drive-by RCE in Aviator. This bug was reported many months ago (though at that point it wasn't clear that it was actually a RCE). se
6.
▲
About the Critical Security Issue in the Aviator Browser
(github.com)
17 points
by
samuirai
12y ago
|
4 comments
7.
▲
Cyber Security Challenge for students and young talents in Germany
(cscg.de)
1 points
by
samuirai
12y ago
|
0 comments
8.
▲
by
samuirai
12y ago
Am I stupid or is this guy calling a XSS "Arbitrary Code Execution"? It also seems to be a self-xss (a XSS on his account profile, which only he can see). How can you write so much text and be unclear about what you are doing? No
9.
▲
Apache Wicket's encrypted URLs don't protect from CSRF
(smrrd.de)
26 points
by
samuirai
12y ago
|
7 comments
10.
▲
Criticism about Ashar Javed's BlackHat EU Talk: Revisiting XSS Sanitization
(smrrd.de)
1 points
by
samuirai
12y ago
|
0 comments
11.
▲
by
samuirai
12y ago
Imo it's a very good thing that they have to spend a lot of time researching. Along the way they will see and learn many different things and in the end provides experience. Thus I agree with _almosnow.
12.
▲
CrossedCaptcha
(smrrd.de)
2 points
by
samuirai
12y ago
|
0 comments
13.
▲
by
samuirai
12y ago
> I don't really know if it will be useful in the future. But it's already fun to look over code...
14.
▲
by
samuirai
12y ago
That it's so interesting. A lot of people said that to me. But to me it felt more natural to highlight old code. Probably because I had this bias in the back of my mind that old code could be bad code.
15.
▲
by
samuirai
12y ago
I didn't want to make it look that way. The color indication is without any judgment. It's just interesting how code evolved over time. In fact you should reverse the color gradient or use different colours, so you can read code h
16.
▲
Code Archeology – Lines of code by age
(smrrd.de)
47 points
by
samuirai
12y ago
|
19 comments
17.
▲
by
samuirai
12y ago
related: Great thoughts about "WHAT ACCESSIBILITY HAS TO DO WITH SECURITY" by Anna Shubina: https://www.youtube.com/watch?v=6phwEoiqLTM
18.
▲
Script defeats minteye CAPTCHA - with Google's speech2text API
(hackaday.com)
1 points
by
samuirai
14y ago
|
0 comments
19.
▲
Captcha cracking without skill - minteye
(gist.github.com)
2 points
by
samuirai
14y ago
|
0 comments
20.
▲
Yuilop understands sarcasm.
(twitter.com)
3 points
by
samuirai
14y ago
|
2 comments
21.
▲
by
samuirai
14y ago
can you show me an example. Because I can't think of one.
22.
▲
by
samuirai
14y ago
Still don't get it
23.
▲
by
samuirai
14y ago
I feel a bit observed and I don't know whether I should feel fear or joy... I'm confused.
24.
▲
by
samuirai
14y ago
I thought about using OCR - just to over-engineer it. But I wanted to show how the characters are perfectly aligned and how clear the font is. I would like to understand, what he thought, why this Captcha is so special.
25.
▲
G-WAN Captcha Decode
(gist.github.com)
80 points
by
samuirai
14y ago
|
50 comments