|
aaron
@
arinerron
Portland, OR
|
|
18. Infosec, backend web/software dev, web/pwn chals with CTF team redpwn, bug bounty hunting, Arch Linux (btw), ham radio.
|
|
|
2.078
Tweetovi
|
176
Pratim
|
421
Osobe koje vas prate
|
| Tweetovi |
|
aaron
@arinerron
|
11 h |
|
nevermind, i read that as "no, mitigations were turned off" not "all protections were enabled"
|
||
|
|
||
|
aaron
@arinerron
|
11 h |
|
were all protections disabled, including nx, aslr, pie, etc?
|
||
|
|
||
|
aaron
@arinerron
|
14 h |
|
how did you leak libc / another shared lib offset? 🤔
|
||
|
|
||
|
aaron
@arinerron
|
18 h |
|
semi-blind sqli through an object ID url parameter. A common theme I see in AT&T's PHP applications.
|
||
|
|
||
|
aaron
@arinerron
|
20 h |
|
|
||
|
|
||
|
aaron
@arinerron
|
5. velj |
|
I'm back! and, website redesign time: arinerron.com
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
I've though about that, yeah, and even just if your parents are busy. Tbh you could make a case that it's discriminatory because parents who work multiple jobs because they *need* the money may legitimately not have time to fill out the form before deadlines.
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
nice, which uni?
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
For example, RPI says that "both the CSS Profile and FAFSA are required for need-based aid consideration" admissions.rpi.edu/aid
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
<strike>if im ever in a ton of debt remind me there's always a way out</strike> haha jk i would never do that ofc
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
Why do some colleges require both though?
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
~~also the CSS Profile gives hard vulnerable vibes, I'm a bit nervous to give it info~~
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
Have you found out the difference between the CSS Profile and FAFSA? The information seems redundant, why do some schools require both?
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
macos not arch :thonk:
|
||
|
|
||
| aaron proslijedio/la je tweet | ||
|
The Best Linux Blog In the Unixverse
@nixcraft
|
29. sij |
|
Finally. It is official now. Wireguard is now in Linus' Linux kernel tree. No more OpenVPN ;)
lists.zx2c4.com/pipermail/wire…
|
||
|
|
||
|
aaron
@arinerron
|
29. sij |
|
senior in hs. but next year, computer engineering (as a path to getting into hwsec)
|
||
|
|
||
|
aaron
@arinerron
|
28. sij |
|
.@0xdade and @dualcoremusic collab when?
|
||
|
|
||
|
aaron
@arinerron
|
28. sij |
|
lol, but tbf Caddy isn't even on the table, and it's not because Zerodium's loaded with 0days. The same reason could be explain nginx's lower payout
|
||
|
|
||
| aaron proslijedio/la je tweet | ||
|
Topher Timzen
@TTimzen
|
28. sij |
|
People ask me why I still use Apache and I consult the Zerodium payout table. 500k for Apache vs 200k for nginx. My threat modem is how much 0 day is worth on a platform. pic.twitter.com/nFaXYJhExw
|
||
|
|
||
|
aaron
@arinerron
|
28. sij |
|
>must not contain space
>must be <18 chars
ok, my password is H4$h_your_PWs!
|
||
|
|
||