Sergey Bronnikov
Sergey Bronnikov boosted:
2023-03-01
Sergey Bronnikovsergeyb@bsd.network
2023-02-13

Another one fuzzing engine for Lua is afl-lua. It is an integration of AFL (American Fuzzy Lop) with Lua programming language.

github.com/ligurio/afl-lua

It is not feature-rich and effective as luzer (libfuzzer-based), but it is only initial version and I plan to make it sweet too.

#fuzzing #afl #lua #afl-lua

@aflplusplus

Sergey Bronnikovsergeyb@bsd.network
2023-02-13

Finally published a coverage-guided, native Lua fuzzing engine. I'll do some polishing before a first release, but it's ready for use now.

Some highlights: usage is quite similar to libfuzzer - define a fuzzing target and pass it to a function Fuzz, custom mutator can be defined as a Lua function, structure-aware inputs can be constructed using Fuzzing Data Provider (the same way as in libFuzzer). Moreover, added a code for building custom mutators in Lua for libFuzzer-based targets. Enjoy!

Would be nice to hear feedback!

github.com/ligurio/luzer

#fuzzing #luzer #libfuzzer #lua

Sergey Bronnikovsergeyb@bsd.network
2023-02-13

A huge list with applications that uses telemetry with instructions how to opt it out.

toptout.me/

Sergey Bronnikovsergeyb@bsd.network
2023-01-28

Anyone can help cppcheck by donating CPU (1 core or as many as you like). It is simple:

Download Cppcheck source code and run script.
The script will analyse debian source code and upload the results to a cppcheck server. This is needed both to improve Cppcheck and to detect regressions.

github.com/danmar/cppcheck#don

Sergey Bronnikov boosted:
Benjamin Dumke-von der Ehebalpha@social.balpha.de
2023-01-17

Might make a couple final tweaks, but I'm pretty happy with this.

I present you: "This is fine", a diorama built from a single piece of paper.

The scene from the "This is fine" meme, built as a diorama out of paper.The flat paper, before folding, from which the diorama was built.
Sergey Bronnikovsergeyb@bsd.network
2023-01-10

"In the context of auditing Pornhub we have identified two critical flaws in PHP’s garbage collection algorithm (c.f. How we broke PHP, hacked Pornhub and earned $20,000)."

evonide.com/breaking-phps-garb

Sergey Bronnikovsergeyb@bsd.network
2022-12-08

@mfowler @grrrck yet another way for digging into twitter archive with datasette - til.simonwillison.net/twitter/

Sergey Bronnikovsergeyb@bsd.network
2022-12-02

@VishnyaSweet I would recommend Orgzly (Android)

Sergey Bronnikovsergeyb@bsd.network
2022-04-28

Specification of TAP version 14 has been published testanything.org/tap-version-1 It's a popular format of software testing results.

Sergey Bronnikovsergeyb@bsd.network
2022-04-28

@florian Ah, got it.

Sergey Bronnikovsergeyb@bsd.network
2022-04-27

@florian seems you forgot about mandatory offsite backup :-/

Sergey Bronnikovsergeyb@bsd.network
2022-04-27

@qbit I'm using Orgzly on mobile phone, sync notes to laptop with Syncthing and occasionally edit notes on laptop using Vim without plugins for OrgMode support.

Sergey Bronnikov boosted:
Peter N. M. Hansteenpitrh
2022-04-27

If you cannot install the software you want on your own device – you don’t own it. 38 organizations demand the right to access and to reuse hardware fsfe.org/news/2022/news-202204, full letter to EU Legislators here fsfe.org/activities/upcyclinga

Sergey Bronnikovsergeyb@bsd.network
2022-03-16

@philvuchetich all points looks reasonable, thanks!

Sergey Bronnikovsergeyb@bsd.network
2022-03-16

"You can also join our chat channel using IRC (#briar on libera.chat or OFTC) or Matrix. " briarproject.org/get-involved/

Sergey Bronnikovsergeyb@bsd.network
2022-03-16

I'm a bit confused: developers of @briarapp uses Matrix and IRC for communication, not a Briar application itself. Could someone explain why? Is it due to some limitations of Briar or developers don't want dogfooding?

Sergey Bronnikovsergeyb@bsd.network
2020-05-23

@js @openbsdnow @kristapsdz I use Fossil SCM for my own small projects, because its self-contained infrastructure. Regarding tickets and wiki: functionality is enough for my own needs. Fossil SCM has CLI for tickets management, so you easily import and export tickets from/to Fossil SCM.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst