TIL: There is a cursed color in the Kodak ProPhoto RGB color space which, when converted to sRGB using pre-August-2020-Security-Update Android's image conversion routines, causes an integer overflow and a crash due to a rounding error. Some dude accidentally created an image (flickr.com/photos/gaurav_agraw) which contains the cursed color on a single pixel. In 2020 if you set this image as your desktop on a Google or Samsung device, the device would brick & lose all onboard data youtube.com/watch?v=iXKvwPjCGn

There was an actual IRL SCP / machine basilisk in the world and it remained effective for almost a year

The most amazing part of the video is where the author is trying to figure out if the file was maliciously crafted so he recreates the image from scratch and accidentally kills his phone

This is making me think about making an "irl-basilisks" Github repo containing the Excessively Loud Sunset, Janet Jackson's "Rhythm Nation" and a copy of the EICAR test file. Probably a bad idea because sometime in 2026 I'd wind up including "entirely innocuous image that incorrectly trips neural network CSAM scanners" and then I'd get banned from Github mastodon.social/@miah@hachyder

@mcc I love this idea and I submit the string "+d,+6t,+vu8-", an erroneous UTF-7 string that Python used to happily convert to erroneous Unicode and even erroneous UTF-8.

Python 2 gist from 2014: gist.github.com/rspeer/7559750

@arborelia @mcc why on earth does python even have a utf7 decoder? May as well have utf-1 while it's at it. (Please tell me it doesn't have a utf1 decoder too)

@megmac @mcc thankfully no.

Though it does support ISO 2022, and as I understand it, the unsuccessful pitch for UTF-1 was "at least it's not ISO 2022"

Sign in to participate in the conversation
Computer Fairies

Computer Fairies is a Mastodon instance that aims to be as queer, friendly and furry as possible. We welcome all kinds of computer fairies!