Sabitlenmiş Tweet
Mark Steward
3.8K posts

Mark Steward
@marksteward
Computers & science, security & theatre. Fan of classics, @londonhackspace, and #beer.
London Katılım Ocak 2009
3.5K Takip Edilen1K Takipçiler

@AntoniaRForster I don't have the brainpower to work out how the plugin does its magic, but once you have a workflow it's probably easy to automate calling that for lots of objects
English

@marksteward I'll give this a try, thank you! There are, sadly, hundreds of trees and hundreds of thousands of leaves (which are also made the same way, don't ask why)!
English

Is anyone experienced with Python in Blender and can I pick your brains tomorrow? More specifically:- I have a group of objects with identical meshes, but different scales and orientations. I want to link their object data (so I can cut their mesh in an identical way without having to do it one by one) but WITHOUT losing their original orientation or scale.
I've bodged together a script that sort of works, by using the normals to figure out and "remember" the unique orientation of each object and re-set each object's rotation correctly, but it acts weird with some edge cases, so I could benefit from the guidance of a more Blender/Python experienced person 😅
English

@AntoniaRForster Assuming there aren't that many trees, you could use the Mesh Align Plus plugin. Pick a source mesh, duplicate linked (Alt+D), then Start Align Planes, click a different mesh and Align to Active. Then do the same with Match Edge Scale.
English

Here's a drawing of the problem 😅
Assuming the trees are an identical image, but different rotation & scale, how do I link them so I can cut away the transparent part of each, without altering their individual rotation/scale (without doing it one by one)?
Or maybe there's another way... Is there a way to just cut meshes based on transparency (but not leave loads of complex geometry behind)?

English

@hackerfantastic @patrickwardle Yeah, I saw the two hashes but there's been little else, and like surely there should be dozens of samples by now?
English

@marksteward @patrickwardle No, there are files that are completely zero-filled. The contents can vary, there are numerous samples of the same .sys file having different contents. None of it is signed, no integrity checking, hard to argue accidental error really. Posted 2 seperate hashes of samples shared.
English

I don't do Windows but here are some (initial) details about why the CrowdStrike's CSAgent.sys crashed
Faulting inst: mov r9d, [r8]
R8: unmapped address
...taken from an array of pointers (held in RAX), index RDX (0x14 * 0x8) holds the invalid memory address
@_JohnHammond


English

@hackerfantastic @patrickwardle For these samples, they all start with the same byte header. Are these all post-revert perhaps?
English

@patrickwardle Hey friend, the .sys file written to the disk is different on hosts as it contains random memory contents - whilst some files are empty, others contain data. The crash would be different depending on the "32" file contents, it would definitely segfault eventually as invalid file.
English

@patrickwardle Aha thanks! So none of these "channel update" .sys files are drivers, only CSAgent.sys is. So the claims that they don't load as drivers are unsurprising, and presumably the error could be deep in whatever custom format this is.
English

Sharing a .zip with:
▫️A few versions of CSAgent.sys (+idb)
▫️Various C-....sys files (including the latest that I believe contains the "fix"?)
I don't have any Windows systems/VMs, so hopefully ya'll can keep digging 🥰
drive.google.com/file/d/1OVIWLD…
#SharingIsCaring
English

@AntigoneJournal @rogueclassicist "From this ghastly list of assaults, we may conclude that it was a standard accusation levelled at kings, tyrants and rich celebrities" I'm sorry what?
English

"If it weren't for this damaged piece of papyrus, we could easily stick to the image of Nero as a dangerous wife-murderer. This possibility remains, but new finds help us to reconsider history in a new light." Did Nero (also) make Poppaea Sabina a goddess?
antigonejournal.com/2021/08/poppae…
English

@marxculture This could well be involved in the server going offline, but it doesn't tie in with the August 2021 date of initial access.
English

@jonty @sam_cook @sophigarrett @JellybobUK @Alteralias @flangey @jarkman @pkqk @grajohnt @russss @mikechislett @devopstom @chipk0 @pikesley @tiffleek @haze_s1 @elsmorian @andyprice @DrJonWoodcock @diodenschein @sudoreboot @MoragHickman @IgnoredAmbience @JplusCplusM @prehensile @timrterrible @DRMacIver @thisisMaow @danhett @cr3 @acreature @jem_face twitter.com/IamHappyToast/…
QME

@sam_cook @sophigarrett @JellybobUK @Alteralias @flangey @jarkman @pkqk @grajohnt @russss @mikechislett @devopstom @chipk0 @pikesley @tiffleek @haze_s1 @elsmorian @andyprice @DrJonWoodcock @marksteward @diodenschein @sudoreboot @MoragHickman @IgnoredAmbience @JplusCplusM @prehensile @timrterrible @DRMacIver @thisisMaow @danhett @cr3 @acreature @jem_face twitter.com/thegallowboob/…
Rob@thegallowboob
Jabba the toad living his best life
QME

The SSH Agent vulnerability is an extremely good find and demonstration of combining multiple dubious behaviours into an exploit chain qualys.com/2023/07/19/cve…
English

@alexbloor The wild thing here is that the emergency services took what was presumably a good location and passed it on garbled

English

Specifically
m.facebook.com/story.php?stor…
English

Gonna take some real PR bullshit to weedle out of this one eh, @what3words?
And I quote “near enough to be believable but far enough away to potentially cause a delay”.
Well done Keswick Mountain Rescue for calling this out.
What3words is UNSUITABLE for emergency use.

English
Mark Steward retweetledi

@ChloeCondon Paging @marksteward to the musical theatre about software security aisle.
English

Look, it was only a matter of time before I made y'all listen to me sing about going to production in an animated/musical theatre format... 🎭🎶😅
youtu.be/NaR8WlLtPw0

YouTube
English

@jonty @sophigarrett @egelmex @russss @JellybobUK @mikechislett @flangey @Alteralias @grajohnt @devopstom @sam_cook @chipk0 @pikesley @tiffleek @haze_s1 @elsmorian @andyprice @DrJonWoodcock @diodenschein @jarkman @sudoreboot @MoragHickman @IgnoredAmbience @JplusCplusM @pkqk @prehensile @timrterrible @DRMacIver @thisisMaow @danhett @cr3 @acreature @jem_face Don't talk to me or my hat ever again
English

@sophigarrett @egelmex @russss @JellybobUK @mikechislett @flangey @Alteralias @grajohnt @devopstom @sam_cook @chipk0 @pikesley @tiffleek @haze_s1 @elsmorian @andyprice @DrJonWoodcock @marksteward @diodenschein @jarkman @sudoreboot @MoragHickman @IgnoredAmbience @JplusCplusM @pkqk @prehensile @timrterrible @DRMacIver @thisisMaow @danhett @cr3 @acreature @jem_face twitter.com/orcoastaquariu…
Oregon Coast Aquarium@orcoastaquarium
You can pick your friends, and you can pick your hats, and sometimes your friends are the hats. 📷: OCAq's CJ
QME

@BalloonArchives @OVNI66 We've been playing with HYSPLIT which strongly suggests ~20km altitudes for both this and the Costa Rica balloon. So even bigger, 40m+
English

@BalloonArchives @OVNI66 The moon's about 4.2 times the size of the balloon in that video. If I've got it right, that would make it ~30m diameter at 14km, which seems feasible.
English

@wgeary @CitiBikeNYC Yeah, it does feel like a "no thanks" value, but the effect is far higher than I'd expect, especially if CitiBike are asking for age. It also disappears entirely if you remove walk-ups #3ca0" target="_blank" rel="nofollow noopener">towardsdatascience.com/exploring-bike…
English

@marksteward @CitiBikeNYC Interesting- but only in the year 2019 would a 50 year old be born in 1969. If this was the case, it should be smoother than observed
English

The 69 Effect: users of any system will disproportionately input their birth year as 1969, skewing any analysis involving age & requiring data cleaning or imputation.
Exhibit A: @CitiBikeNYC ridership by Year of Birth

English



