Sabitlenmiş Tweet
15.3K posts

@AstrianZheng
Mirror of my Mas account.
应许之地 Katılım Haziran 2009
677 Takip Edilen239 Takipçiler
[email protected] retweetledi

❗️🚨 Microsoft Edge keeps every saved password in process memory as cleartext from the moment it launches. Microsoft's responsed when reported: "by design."
All of them. Including credentials for sites you won't open this session.
Researcher @L1v1ng0ffTh3L4N tested every major Chromium browser. Edge is the only one that behaves this way.
Chrome decrypts credentials on demand, and App-Bound Encryption locks the keys to an authenticated Chrome process so other processes can't reuse them.
In Chrome, plaintext surfaces only during autofill or when a password is viewed, making memory scraping far less useful.
What makes this extra weird is that Edge still demands re-authentication before revealing those passwords in its Password Manager UI, while the same browser process already holds every one of them in plaintext.
In shared environments, this turns into a credential harvest. On a terminal server, an attacker with admin rights can read the memory of every logged-on user process. In the published PoC video, a compromised admin account lifts stored credentials from two other logged-on (and even disconnected) users with Edge running.
Microsoft's official response when notified: "by design."
The finding was disclosed April 29 at BigBiteOfTech by PaloAltoNtwks Norway, alongside a small educational tool that lets anyone verify the cleartext storage for themselves.


English

@LeaskH 我是等了大概几个小时,传说小米内部有一个 GitHub 用户名 list,如果你的项目撞到了这个 list 就会秒过
中文
[email protected] retweetledi
[email protected] retweetledi
[email protected] retweetledi

#DoNotFreeDurov until Telegram makes E2EE chat as default option, at least one-to-one DM
English
[email protected] retweetledi

Switshot 2 public beta has been released to everyone for free. Detail: forum.switshot.app/t/switshot-2-p…
English
[email protected] retweetledi
[email protected] retweetledi

The first-generation Switshot is now available at a 70% discount for seven days only. Don’t miss out! Purchase the Switshot for just $0.99 now and enjoy a free upgrade to Switshot 2!
* Prices/rates may vary.
➡️ apps.apple.com/us/app/switsho…

English
[email protected] retweetledi

🚀 Switshot 2 early access is live! 🎮
🌟 Modern UI
🌟 Nintendo Switch & Steam Deck support
🌟 Auto-categorize screenshots
🌟 Star & custom tag
Join now: switshot.app
*Steam Deck companion app coming soon




English
[email protected] retweetledi

FINAL FANTASY XIV: Dawntrail Benchmark sqex.to/ffxiv_bench_eu #FFXIV Score: 8587 3840x2160 High (Desktop) DX11 DLSS AMD Ryzen 5 5500 NVIDIA GeForce RTX 3060
English
[email protected] retweetledi

[email protected] retweetledi

Journalist Cheng Lei is returning to her role as a news presenter, joining Sky News Australia just two months after her release from a Chinese prison. Listen to Cheng Lei: bit.ly/3teUT6P

English
[email protected] retweetledi
















