Show newer

@LunaFoxgirlVT i'm so freaking happy you put all this into words.

its so much unseen effort, and everyone expects it from you so you can't stop even when you really really need or want to, masking is hard and social interaction is confusing and abstract. :/

Did you know? I curate a gallery of procedural artworks by various demosceners — each piece was rendered by an executable program no larger than 4096 bytes:

executable.graphics/

me on my way to the misinformation spreading competition only to find out that they've given me the wrong address

I made a new Mastodon bot, called "I Hope This Email Finds You.” Twice a day it proposes a novel way to conclude that sentence. (It uses phrases from Google Books that include the phrase “finds you.”) I've been having fun reading these, so I turned it into a bot because you, too, might have fun reading them. botsin.space/@thisemailfindsyo

I hope this email finds you under a balcony and kisses you in the shadows until there's nothing left of you but sparkling fairy dust, and in your weakened state, you ask if she wants to hang out next weekend, and her face clouds and she goes, “Ohhh."

this post will find you. you better be well while it does so. there is no escape.

What’s wrong babe? You’ve hardly created any shareholder value today

Aerospace chocolatiers prepare a Ferrero Rocher for launch into low earth orbit it

StrataVision was the 3D modeling and rendering package used to produce graphics of the original Myst. They are so proud of this that even right now if you get the latest version of it ("Strata Design 3D SE", free on Steam,) it comes with a bunch of Myst assets in its library:

This is apparently a re-captcha issue. google is turning the screws on firefox users, refusing to verify captchas unless you use their chrome browser, which includes anti-features to let google track you across the web. I should have known. Fuck google so hard.

Show thread

Incredible research at BlackHat Asia today by Tong Liu and team from the Institute of Information Engineering, Chinese Academy of Sciences (在iie.ac.cn 的电子邮件经过验证)

A dozen+ RCEs on popular LLM framework libraries like LangChain and LlamaIndex - used in lots of chat-assisted apps including GitHub. These guys got a reverse shell in two prompts, and even managed to exploit SetUID for full root on the underlying VM!

A PSA since there's some confusion on this...

There is no vulnerability in Gorilla Sessions.

The vulnerability is in Palo Alto's internal SessDiskStore, which looks similar to FilesystemStore. Early analysis came to the mistaken conclusion that the vulnerable path was in FilesystemStore, but it's not. FilesystemStore authenticates the Session.ID with securecookie, SessDiskStore does not.

Show older
Computer Fairies

Computer Fairies is a Mastodon instance that aims to be as queer, friendly and furry as possible. We welcome all kinds of computer fairies!