Posts by joshbressers@infosec.exchange
 (DIR) Post #B46Hn1BcCYqtdu4d8q by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne I think I'll wait for X13
       
 (DIR) Post #B5ZXfI6cgtbiS5QgFs by joshbressers@infosec.exchange
       1 likes, 0 repeats
       
       The year is 2050. The Onion is the only news company leftThey have been printing true stories for over ten years, but everyone thinks it's still parody
       
 (DIR) Post #B5rP1XoHa8SQmofL5U by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @Viss @wdormann every AI vulnerability company wants to find something juicy, and have no idea how to coordinate the findings
       
 (DIR) Post #B5ul5sDoPjvViTxLjE by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @gregkh @wdormann @Viss This post got into my head. I think you're right, the days of coordination are overSo I wrote it downhttps://opensourcesecurity.io/2026/05-vulnerability-economics/
       
 (DIR) Post #B6EiHq5jkKmLsqOLVg by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne @ireneista bUt tHeRe iZ nO gRaViTy iN sPaCE!!!!!!!!
       
 (DIR) Post #B6RvKeYaudzPRC2aMC by joshbressers@infosec.exchange
       0 likes, 1 repeats
       
       I had a chat with @eighthave about @fdroidorg on #OpenSourceSecurity We cover how it works, the security angles for running an app store, and talk about some of the changes that are coming for Android that will make F-Droid's job a lot harderI learned a ton from Hans, it's a great discussionhttps://opensourcesecurity.io/2026/2026-05-fdroid-hans-steiner/
       
 (DIR) Post #B6lcp2tZSCwZ0La1bM by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne "Exploitation scenario: An attacker creates a ..."It would be funny it wasn't so sad
       
 (DIR) Post #B8RWQfUx9wlMQ2vsKu by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne For sure, that's a obvious hand waive to start the showUntil a bunch of 0days start to show up :)
       
 (DIR) Post #B8buQHQhgFKi3AN91M by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne CPE sucks rocks. I would allow other identifiers like PURL also
       
 (DIR) Post #B8byH2zyMiEEVFipfM by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne Ahhh, I didn't know it could already do PURLs, very nice!Adding CPE certainly wouldn't hurt. and there are things CPE can identify PURL can'tI still hate them though :)
       
 (DIR) Post #B8frVlqFzgYJz4N25Q by joshbressers@infosec.exchange
       0 likes, 0 repeats
       
       @ariadne this all reeks of Thatcher’s “there is no alternative” which is code for “shut up and let me destroy society “