HNHacker News
TopNewBestAskShowJobs

muricula

1,114 karma · joined March 31, 2014

https://github.com/iankronquist
submissionscomments
muricula··on Despite the hype, iPhone security no match for NSO spyware (2021)
Surprisingly enough there are other consumer grade devices where one company controls the entire stack and deliver similar security -- game consoles. xbox os and ios have different designs but make similar security promises.
muricula··on McMinn County Bans “Maus”, Pulitzer Prize Winning Holocaust Book
I feel like publicly owned statues serve a very different purpose than school library books. The former are usually forms of veneration, the others are for education.
muricula··on We used C++20 to eliminate a class of runtime bugs
MSRC is pushing rust internally: https://msrc-blog.microsoft.com/2019/11/07/using-rust-in-win...
muricula··on Norton is installing a Cryptocurrency miner called Norton Crypto (NCrypt.exe)
These days you need to have your kernel driver signed by Microsoft or edit your boot config options to put the machine in an insecure state mostly useful for testing. To get it signed you need to pass a basic test suite which MS provides (and can be gamed). https://docs.microsoft.com/en-us/windows-hardware/drivers/in...
muricula··on Norton is installing a Cryptocurrency miner called Norton Crypto (NCrypt.exe)
Microsoft isn't slower at fixing security vulnerabilities than other OS vendors. It turns out identifying and fixing issues in a piece of software as large as an OS is hard. Access to system features is not restricted by licensing, although I believe there is some source code which is licensed to AV vendors. Independent companies do write their own AVs without interacting with MS much at all besides some fairly basic driver signing processes which anyone who writes a kernel driver these days has to go through. MS does not have unique business reasons for shipping insecure code, and ships an OS which is as secure as they come these days in the form of the xbox. I used to work for an AV vendor and then the MS security team but now work for another OS vendor.
muricula··on The CIA and the Media (1977)
The WaPo isn't owned by Amazon, the WaPo is owned by Bezos, who also happens to own Amazon. So I don't think an FTC breakup would really work at all.
muricula··on This shouldn't have happened: A vulnerability postmortem
Zeroing out freed memory in no way prevents UAFs. Consider what happens if the memory which was freed was recycled for a new allocation? Maybe an example will help make it clearer? This is in pseudo-C++.

    struct AttackerChosenColor {
        size_t foreground_color;
        size_t background_color;
    };
    struct Array {
        size_t length;
        size_t *items;
    };

    int main() {
    // A program creates an array, uses it, frees it, but accidentally forgets that it's been freed and keeps using it anyway. Mistakes happen. This sort of thing happens all of the time in large programs.
    struct Array *array = new Array();
    ...
    free(array); // Imagine the allocation is zeroed here like you said. The array length is 0 and the pointer to the first item is 0.
    ...
    struct AttackerChosenColor *attacker = new AttackerChosenColor();
    // The allocator can reuse the memory previously used for array and return it to the attacker. Getting this to happen reliably is sometimes tricky, but it can be done.

    // The attacker chooses the foreground color. They choose a color value which is also the value of SIZE_T_MAX.
    // The foreground_color *overlaps\* with the array's length, so when we change the foreground color we also change the array's size.
attacker->foreground_color = SIZE_T_MAX; // The background_color overlaps with the array's size, so when we change the background color we also change the array's start. // The attacker chooses the background color. They choose a color value which is 0. attacker->background_color = 0;

    // Now say the attacker is able to reuse the dangling/stale pointer.
    // Say that they can write a value which they want to wherever they want in the array. This is 
    // Like you suggested it was zeroed when it was freed, but now it's been recycled as a color pair and filled in with values of the attacker's choosing.
    // Now the attacker can write whatever value they want wherever they want in memory. They can change return addresses, stack values, secret cookies, whatever they need to change to take control of the program. They win.
    if (attacker_chosen_index < array->length) {
         array->items[attacker_chosen_index] = attacker_chosen_value;
    }
    }
muricula··on Mozilla publishes position paper on the EU Digital Identity Framework
This sort of thing is actually somewhere I think Mozilla can make a difference. As a major browser, they are listened to when they lobby standards bodies and political bodies about the web and internet security, and very often they are listened to.

I agree Firefox could be better, but time spent on effective lobbying which will help all browsers is well spent.

muricula··on Leaded gas was a known poison the day it was invented (2016)
Of that 50%, many have negative wealth due to eg credit card debt, many have zero wealth because they're poor, and many have all of their wealth tied up in houses or cars. It's probably not ignorance so much as lack of savings to invest.
muricula··on Apple banned a pay equity Slack channel
You have to learn what your skills are worth by asking others.

It doesn't make a difference if you're "at will" or factory line or whatever.

muricula··on New smb3 kernel server (ksmbd)
High performance doesn't have to mean being in the kernel.
muricula··on New smb3 kernel server (ksmbd)
Yup! And if an attacker hacks this module they can hijack the kernel. And it can probably be reached by anyone on the same network, or may even be exposed to the internet :|
muricula··on FSF-calls for white papers on philosophical and legal questions around Copilot
Is this constructive? I think it's reasonable to criticize an organization for its leaders, and question their actions accordingly. And he is on the board.
muricula··on About the security content of iOS 14.7.1 and iPadOS 14.7.1
Saar Amar, who works at MSRC, wrote a writeup & POC for what he says is the same bug: https://saaramar.github.io/IOMobileFrameBuffer_LPE_POC/ He says he found it independently.
muricula··on A Modest Proposal About Ransomware
This exists: https://en.wikipedia.org/wiki/Penetration_test
muricula··on Pulling GitHub into the Linux kernel process
The Linux Kernel development process is old-fashioned and there are lot of particular processes and conventions which make submitting a patch difficult. Also, if you use gmail with mutt to submit a patch, you have to change your email preferences to make gmail less secure[1]. It would be nice to have a friendlier way to contribute to the kernel, and a GitHub bridge seems like a good idea.

[1]: https://medium.com/@crhenr/submitting-your-first-patch-to-th...

muricula··on Ask HN: How to learn proper systems programming?
To add on, the windows internals books have exercises with the sysinternals tools. If sitting down and plowing through a doorstop of a book isn't your cup of tea, try picking a chapter or two which sound interesting, skimming them, and doing the exercises.
muricula··on The most copied StackOverflow snippet of all time is flawed (2019)
Basically lzcnt or leading zero count on x86: https://www.felixcloutier.com/x86/lzcnt
muricula··on 21st Century Baker's Tent
The spike in homelessness is already here, just not in your county. Some counties deliberately force out homeless folks and push them to neighboring cities, which may be the case where you live.

Seattle saw a 6% rise last year: https://apnews.com/article/seattle-washington-coronavirus-pa... The Tenderloin, SF saw a 285% rise(!) last year: https://abc7news.com/homeless-in-san-francisco-coronavirus-s...

muricula··on Cores that don’t count [pdf]
I'm not sure about that. I think it's just that the AES hardware was busted somehow and didn't actually perform the AES algorithm correctly. The intel AES hardware just deterministically performs the algorithm, so Intel can't just weaken the algorithm somehow, at least if you're not worrying about local side channels.
muricula··on Cores that don’t count [pdf]
The intel AES instructions work at a block level. You build the mode on top of the block level primitives intel gives you. https://en.wikipedia.org/wiki/AES_instruction_set
muricula··on Has the era of overzealous cleaning finally come to an end?
Buddy, that's not a vaccine.
muricula··on Speculating the entire x86-64 instruction set in seconds with one weird trick
Many years ago I worked with a greybeard AMD hardware designer. He told me that they commissioned a study about whether it made sense to ditch backwards compatibility, and realized that the parts of the CPU needed to support backwards compatibility they were willing to ditch contributed to less than 1% of die area, and of course were all already designed and battle tested.

Unfortunately I don't have a better source for this than an anecdote.

muricula··on “This destroys the RSA cryptosystem”
Dunno we have post quantum algorithms which don't rely on factoring prime numbers like RSA does, but it will be a lot of systems administration type work to make sure that nobody is using RSA keys anymore.
muricula··on “This destroys the RSA cryptosystem”
The website is being hugged to death, but archive.org has scraped the PDF: https://web.archive.org/web/20210302215033/https://eprint.ia...
muricula··on ReactOS Updates
Windows has not been in maintenance mode and Windows 10 is not the last version of Windows: https://www.theverge.com/2021/1/4/22212817/microsoft-windows...
muricula··on Rust Foundation: Hello, World
Here's my take: Collaborating in the open and communicating the results of discussions and the rationales for decisions to the wider community who wasn't present for the discussions has a high time cost. It seems the core rust team has put a lot of effort into making decisions in the open, which increases freedom to collaborate.
muricula··on Cracks are showing in Enterprise Open Source's foundations
Do you listen to National Public Radio in the US? They broadcast all of their content for free on FM radio, and then ask for donations a couple times a year. Does that feel manipulative to you? Genuine question, because to me that doesn't seem that different the developers holding out their hat after releasing an open source library.
muricula··on Heap-based buffer overflow in Sudo
Even if there were basic unit & regression tests, this bug might not have been caught. This bug should have gone through detailed security review and should probably also undergo fuzzing.
muricula··on Smashing the Stack for Fun and Profit (1996)
Google Project Zero has an excellent blog: https://googleprojectzero.blogspot.com/
← PreviousPage 4 of 10Next →