Recent bookmarks

how to gain code execution on millions of people and hundreds of popular apps - eva's site

A security researcher discovered vulnerabilities in ToDesktop's build pipeline that could enable malicious code deployment to major tech applications like Cursor, Linear, and Notion Calendar. Through Firebase exploration and CLI analysis, they found ways to hijack the deployment pipeline and access sensitive credentials, potentially affecting millions of users in tech environments.

GitHub - arjpar/WebShield: A new wide-spectrum content blocker for Safari designed to be performant, efficient, and effective.

WebShield is a Safari-focused content blocker, similar to uBlock Origin, currently in beta for macOS 14+, iOS 17+, and visionOS 1.3+. The project operates on a user-supported funding model, maintaining independence from ad companies while offering core functionality free to all users, with additional perks available through WebShield+ contributions.

3,200% CPU Utilization

An in-depth analysis of a critical Java performance issue where unprotected concurrent TreeMap modifications led to 3,200% CPU utilization. The investigation revealed how thread interleaving can create infinite loops in red-black trees, with experiments across multiple programming languages demonstrating similar vulnerabilities.

Starlink poised to take over $2.4 billion contract to overhaul air traffic control communication

SpaceX's Starlink is positioned to take over a $2.4 billion FAA contract from Verizon for overhauling air traffic control communications. A SpaceX-led team within the FAA is recommending the contract transfer, raising concerns about favoritism and conflicts of interest given Elon Musk's involvement in government efficiency initiatives. Musk claims Verizon's system is failing and offers Starlink terminals at no cost to taxpayers.

Write to Escape Your Default Setting - kupajo

Writing acts as a powerful tool for structuring thoughts and expanding mental capacity beyond the limitations of our minds' default 'perpetual approximation mode'. The process of writing forces clarity, reveals blind spots, and helps uncover deeper understanding that mental rehearsal alone cannot achieve. By writing down recurring thoughts and questioning our beliefs, we can clear mental clutter and gain surprising insights about ourselves.

Violence alters human genes for generations, researchers discover

Groundbreaking research reveals that trauma from violence can leave genetic imprints that pass through generations, as demonstrated in Syrian families affected by civil conflicts. The study found 14 distinct genomic modifications in grandchildren of Hama massacre survivors, providing the first human evidence of transgenerational stress transmission. These findings suggest violence-induced epigenetic changes may influence health outcomes and explain intergenerational cycles of trauma.

Fast and Private Web Browser

Waterfox is a privacy-focused web browser offering built-in tracking protection, container tabs, and private browsing features by default. The browser prioritizes user privacy by not collecting telemetry data while providing easy migration from other browsers and maintaining high performance standards.

Boris Spassky: 1937–2025

Boris Spassky, former World Chess Champion who passed away recently, left an indelible mark on chess history through his remarkable career and gentlemanly demeanor. The article shares personal memories of friendship between the author and Spassky, highlighting their encounters from the late 1970s until his later years in Moscow. A new chess training software version 18 is introduced with enhanced capabilities including playing style analysis and access to billions of games.

Cloudflare’s 2024 Transparency Reports - now live with new data and a new format

Cloudflare has released its 2024 Transparency Reports with expanded content and a new format, influenced by EU's Digital Services Act requirements. The reports are now divided into two sections covering Legal Requests for Information and Abuse Processes, featuring new data points and machine-readable formats. The company maintains its decade-long commitment to transparency while adapting to regulatory changes and service growth.

WASM Wayland Web (WWW)

A critique of the current web browser ecosystem discusses how complex web standards create barriers for new browser engines, suggesting a simplified WASM-based alternative. The proposed solution advocates for a browser that runs WASM blobs without HTML, JavaScript, or CSS, potentially enabling more innovation and diversity in browser development.