valentinbreiz

699 posts

valentinbreiz banner
valentinbreiz

valentinbreiz

@valentinbreiz

open source enthusiast • osdev - infosec @CustomProtocol CosmosOS

France Katılım Mart 2013
632 Takip Edilen832 Takipçiler
valentinbreiz retweetledi
Fonsi Loaiza
Fonsi Loaiza@FonsiLoaiza·
Hoy ha aparecido esta estatua de Bansky en Londres que simboliza la ceguera y deriva ultraderechista a un paso del abismo.
Español
793
5K
15.8K
299.8K
valentinbreiz retweetledi
TheWizWiki
TheWizWiki@TheWizWiki·
Nintendo Switch corriendo en mi PS5 es una locura lo fluido que va 😂 Ahora si es funcional, no como PS4...
Español
109
341
4.8K
724K
valentinbreiz retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🚨 BREAKING: An AI found a Linux kernel zero-day that roots every distribution since 2017. The exploit fits in 732 bytes of Python. Patch your kernel ASAP. The vulnerability is CVE-2026-31431, nicknamed "Copy Fail," disclosed today by Theori. It has been sitting quietly in the Linux kernel for nine years. Most Linux privilege-escalation bugs are picky. They need a precise timing window (a "race"), or specific kernel addresses leaked from somewhere, or careful tuning per distribution. Copy Fail needs none of that. It is a straight-line logic mistake that works on the first try, every time, on every mainstream Linux box. The attacker just needs a normal user account on the machine. From there, the script asks the kernel to do some encryption work, abuses how that work is wired up, and ends up writing 4 bytes into a memory area called the "page cache" (Linux's high-speed copy of files in RAM). Those 4 bytes can be aimed at any program the system trusts, like /usr/bin/su, the shortcut to becoming root. Result: the next time anyone runs that program, it lets the attacker in as root. What should worry most: the corruption never touches the file on disk. It only exists in Linux's in-memory copy of that file. If you imaged the hard drive afterwards, the on-disk file would match the official package hash exactly. Reboot the machine, or just put it under memory pressure (any normal system load that needs the RAM), and the cached copy reloads fresh from disk. Containers do not help either. The page cache is shared across the whole host, so a process inside a container can use this bug to compromise the underlying server and reach into other tenants. The original sin was a 2017 "in-place optimization" in a kernel crypto module called algif_aead. It was meant to make encryption slightly faster. The change broke a critical safety assumption, and nobody noticed for nine years. That bug then rode every kernel update from 2017 to today. This vulnerability affects the following: 🔴 Shared servers (dev boxes, jump hosts, build servers): any user becomes root 🔴 Kubernetes and container clusters: one compromised pod escapes to the host 🔴 CI runners (GitHub Actions, GitLab, Jenkins): a malicious pull request becomes root on the runner 🔴 Cloud platforms running user code (notebooks, agent sandboxes, serverless functions): a tenant becomes host root Timeline: 🔴 March 23, 2026: reported to the Linux kernel security team 🔴 April 1: patch committed to mainline (commit a664bf3d603d) 🔴 April 22: CVE assigned 🔴 April 29: public disclosure Mitigation: update your kernel to a build that includes mainline commit a664bf3d603d. If you cannot patch immediately, turn off the vulnerable module: echo "install algif_aead /bin/false" > /etc/modprobe.d/disable-algif.conf rmmod algif_aead 2>/dev/null || true For environments that run untrusted code (containers, sandboxes, CI runners), block access to the kernel's AF_ALG crypto interface entirely, even after patching. Almost nothing legitimate needs it, and blocking it shuts the door on this whole class of bug...
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
232
2.7K
11.7K
2.4M
valentinbreiz retweetledi
Andy Nguyen
Andy Nguyen@theflow0·
ps5-linux has been released! You can now turn your PS5 Phat console on 3.xx and 4.xx FWs into a fully functional Linux PC gaming device! github.com/ps5-linux/ps5-…
Andy Nguyen tweet media
English
118
724
5.6K
330.5K
valentinbreiz retweetledi
Rackham l'éternel
Rackham l'éternel@RackhamLeVrai·
La France doit s'inspirer de la Chine. On doit nationaliser TOUS les secteurs clés de l'économie, investir massivement dans le nucléaire, l'IA, la robotisation, le ferroviaire. Et on doit planifier ces investissements sur 50 ans. Y en a marre du court-termisme capitaliste.
Français
226
244
2.5K
103.9K
valentinbreiz
valentinbreiz@valentinbreiz·
F-Droid, the open-source Android app store, calls Google's developer verification an "existential threat" to alternative app distribution. The EFF warns it creates a pathway to censorship. keepandroidopen.org #KeepAndroidOpen
English
0
0
0
150
valentinbreiz retweetledi
JP Aumasson
JP Aumasson@veorq·
I factored the number RSA1024-1 using my home-built QPU stack; alarming sign that RSA1024 will soon be broken. I'm choosing Full Disclosure, in the interest of transparency and Science advancement: gist.github.com/veorq/25bee6ef… Non-ZK proof that the correct RSA1024 was used: #RSA-1024" target="_blank" rel="nofollow noopener">en.wikipedia.org/w/index.php?ti… @yuvadm your move
English
128
329
2K
417.7K
valentinbreiz retweetledi
Echo Stretch
Echo Stretch@StretchEcho·
PS5 Linux
Echo Stretch tweet media
English
23
39
473
22.6K
valentinbreiz retweetledi
MrMario2011
MrMario2011@MrMario2011·
How to Jailbreak Your PS4 on Firmware 13.00 or Lower with Extended Storage - No System Wipe Needed! Watch Here: youtu.be/3SaBtElhYL8
YouTube video
YouTube
MrMario2011 tweet media
English
4
31
186
10.6K
GitHub Projects Community
GitHub Projects Community@GithubProjects·
| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| | Share your GitHub profile. | |_____________| \ (•◡•) / \ / —— | | |_ |_
English
924
42
1.4K
138K
valentinbreiz
valentinbreiz@valentinbreiz·
Another cool subject i'm rn into is making the best french hacking console blog living again!! ping @CustomProtocol ;)
English
0
0
0
44
valentinbreiz
valentinbreiz@valentinbreiz·
After years of studies and struggling I finally achieved getting a personal PS4! I think I can say i'm back in the console hacking scene eheh. Maybe first CVE??? Who knows 🤫
English
2
0
5
199
valentinbreiz retweetledi
Hyndrid
Hyndrid@CrippleBadbones·
Linux on PS5 install Window 11 on Vm 🤣🤣🤣🤣 P.S : It's not my pic !
Hyndrid tweet media
English
7
23
377
17.5K
valentinbreiz
valentinbreiz@valentinbreiz·
@ovh_support_fr @dsampaolo @olesovhcom C'est courtois une lettre de menace totalement offensive pour un impayé de quelques euros ??? Surtout que vous n'aviez même pas attendu un mois complet pour l'envoyer ! On voit vos méthodes le profit avant tout au détriment de vos services ou de votre fameuse courtoisie 😡
Français
1
0
0
769
OVHcloud Support FR
OVHcloud Support FR@ovh_support_fr·
@dsampaolo @olesovhcom Je vous invite à rester courtois dans vos échanges. Nous effectuons le maximum pour accompagner nos clients. Sans vos éléments d'identification, je vous invite à attendre une réponse de notre support par ticket. Celle-ci vous sera apportée dans les meilleurs délais. ^VirD
Français
6
0
7
133K
Didier Sampaolo
Didier Sampaolo@dsampaolo·
On a un client chez OVH, on galère pour activer son HTTPS. Après enquête, il se trouve que la page "DNS" affiche des IPs différentes dans les champs A, selon les filtres qu'on met ou pas. C'est lunaire.
Français
8
0
54
102.8K
valentinbreiz
valentinbreiz@valentinbreiz·
While a literal neonazi dead after assaulting antifas deserves a tribute in the french National Assembly
English
0
0
0
57
valentinbreiz retweetledi
Christophe Boutry
Christophe Boutry@Ced_haurus·
Faîtes-vous parti des heureux gagnants de la loterie Fuites de données France Titre ? 1 chance sur 5 de voir mes données dans la nature et Bingo pour moi ! @france_identite - @gouvernementFR on va demander des comptes 👌 avec les 12 millions d'autres.
Christophe Boutry tweet media
Français
37
76
283
19.5K
valentinbreiz retweetledi
Nathalie Arthaud
Nathalie Arthaud@n_arthaud·
Être crédible pour le grd patronat c'est ✔️reculer les retraites ✔️ garder un smic indigne ✔️ baisser les impôts des ultrariches ✔️ prdre l'argent des hôpitaux, educ... pour le lui donner ✔️ le laisser licencier et fermer les usines... Cette crédibilité, je la laisse à Bardella !
Les Echos@LesEchos

🗳️ Souhaitant asseoir sa crédibilité aux yeux des milieux économiques, le RN a infléchi son discours sur les entreprises. ➡️ trib.al/5ST5HFk

Français
20
166
369
6.3K
valentinbreiz retweetledi
Antoine Léaument 🇫🇷
Antoine Léaument 🇫🇷@ALeaument·
L'agence nationale des titres sécurisés (ANTS) a été piratée. 19 millions de personnes potentiellement concernées. La sûreté numérique est un enjeu MAJEUR. Dans le débat sur l'interdiction des réseaux sociaux aux moins de 15 ans, les insoumis avaient alerté sur ce sujet.
Français
98
1K
4.2K
94.4K