User's banner
Avatar

neatchee

neatchee@urusai.social
Joined
1 posts • 8 comments

I run the toxicity-free, happy home for otaku, https://urusai.social
If you’re into anime, manga, games, light novels, etc, and want to see more weeb stuff on your TL, signups are open!

Sr. Game Security Analyst @ PlayStation, ex-Bungie #GameSecIsNotInfoSec

Gamer, former esports commentator, Kingdom Hearts fanboy

Opinions are *definitely* my own

[ he/him ]

Direct message

@TootSweet@lemmy.world because it’s specifically software that is about opening and processing arbitrary payloads.

permalink
report
parent
reply

@thatdosbox@mstdn.ca @screaminggoat@infosec.exchange I encourage you to check out UnigetUI as a frontend for Winget, Microsoft’s not-very-well-known package manager

permalink
report
parent
reply

@thovaiso@urusai.social @screaminggoat@infosec.exchange I’m a big Winget proponent (and chocolatey before that) and have UnigetUI running on all my windows machines for managing Winget, pip, nuget, and PowerShell packages/scripts

permalink
report
parent
reply

@nazokiyoubinbou@urusai.social supply chain attacks are the favorite these days :/

permalink
report
parent
reply

@devans143@phpc.social CVE indicates 24.08 was the patched version

permalink
report
parent
reply

@arichtman@eigenmagic.net nah, this is the one from last month, but since 7z doesn’t self-update I figure I’d do my part in getting people to grab the latest version

permalink
report
parent
reply

@screaminggoat heh yeah, that was supposedly utilizing this CVE which is what led me to it.

I would normally hold off on posting something this old but 7z has no self update mechanism so people tend to run old versions :/

permalink
report
parent
reply

@screaminggoat @arichtman ah interesting. I’ll update the link to point at the actual CVE

permalink
report
parent
reply