Toots for AlesandroOrtiz@infosec.exchange account

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-21 at 08:25

What a fucking dark day in and around the United States.

Queer and transgender people deserve better. Immigrants deserve better. People in all U.S. territories deserve better. Local and global communities affected by climate change deserve better. People in Latin America deserve better. We all deserve better.

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-09 at 02:49

My heart goes out to people in Los Angeles and surrounding areas. The scenes from the past couple of days have been absolutely heartbreaking. Please stay safe. πŸ’”

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-05 at 22:45

πŸ‡΅πŸ‡·πŸ° La Mudanza en repeat hoy y en rotaciΓ³n heavy pa' todo el aΓ±o: https://youtu.be/lqX1S9mFHbU

🎢 Aquí mataron gente por sacar la bandera

Por eso es que ahora yo la llevo donde quiera

Si maΓ±ana muero... En la caja la bandera azul clarito

De aquΓ­ nadie me saca, de aquΓ­ yo no me muevo

Dile que esta es mi casa donde naciΓ³ mi abuelo

Yo soy de P fuckin' R πŸ‡΅πŸ‡·πŸ‡΅πŸ‡·πŸ‡΅πŸ‡· 🎡

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-01 at 05:09

πŸŽ‰πŸŽŠ Happy New Year, New York and U.S. East Coast! πŸŽŠπŸŽ‰

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-01 at 04:08

A mis padres en Morovis (casi Corozal) les llegΓ³ la luz a las 11:40 PM. Β‘Buen regalo de aΓ±o nuevo!

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2025-01-01 at 04:06

πŸŽ‰πŸŽŠπŸ‡΅πŸ‡· Β‘Feliz AΓ±o Nuevo, Puerto Rico! πŸ‡΅πŸ‡·πŸŽŠπŸŽ‰

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-12-28 at 05:12

This year I also won 2nd prize at Google bugSWAT/0x0g in Las Vegas, hacking on Gemini and Cloud stuff (mostly the Gemini VS Code/Code OSS integrations). Thank you Google VRP!

=> View attached media

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-12-28 at 02:16

πŸŽ‰πŸ₯³πŸŽŠ Many congrats to all the fellow researchers! Was an honor meeting so many of you at MΓ‘laga and Vegas earlier this year!

πŸŽ‰ So happy to be at 16 in rankings this year. Thank you Chrome VRP!

https://crbug.com/386306231

=> View attached media

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-12-05 at 19:34

Hope everyone in northern California and Oregon stay safe. ❀️

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-12-04 at 23:53

Neat blog post on how to use CodeQL on Chromium codebase: https://bughunters.google.com/blog/5085111480877056/finding-bugs-in-chrome-with-codeql

Includes CodeQL databases generated by Chromium team + some existing queries.

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-22 at 04:18

βœ… Used a browser security feature to reliably exploit a browser vulnerability

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-21 at 14:56

@oliverdunk πŸ‘‹πŸ» In latest blog post, "Allow 1?" should probably be "Allow once"

https://developer.chrome.com/blog/new-extensions-menu-testing#:~:text=extensions%20page.%20Clicking%20%22-,Allow%201%3F,-%22%20within%20the%20toolbar

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-20 at 22:17

Good news: I learned how to bisect Chromium variations for a separate bug I found, which also initially only repro'd on official builds (because of field tests). And did so on Android, which is even more of a pain. Took me 2 days of painful work to finish bisect.

Bad news: The bug bisected to a commit of almost 2 years ago for a very complex thing so I still don't really know the root cause within $complexThing.

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-14 at 20:20

I still feel extreme dread for what will happen starting in a couple of months in the U.S. It won't necessarily all come at once, but the next 4 years (or more) will be harrowing for most people I know and myself. We've seen some of it over the past few years with regressions on abortion and trans rights.

And I feel so helpless to do anything substantial.

I'm in New York City, one of a handful of places where I'm probably the safest. And I'm still afraid for myself and everyone I know here. I'm so much more afraid for everyone in less safe areas.

I'm not ready for this. I don't want my trans friends to die. I don't want my undocumented friends and family to be ripped apart from their life-long homes. I don't want my husband to die at the hands of racist/homophobic idiots or the government. I don't want my family in Puerto Rico to suffer more, physically and emotionally.

I don't want people to normalize hate. But here we are.

I feel so helpless.

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-06 at 20:40

If you or someone you know are having thoughts of self-harm or are in crisis: You are not alone.

In the U.S.: Text or call 988.

LGBTQ+ lifeline: https://www.thetrevorproject.org/

Trans lifeline: https://translifeline.org/

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-11-06 at 06:47

fuck 😒

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-10-29 at 23:34

Related: Anyone know how to bisect official Chrome builds without being a Googler?

Best I've figured out is to use older portableapps installers, but that only works up to a certain point (usually 20 major versions, ~M110 as of today).

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-10-29 at 23:29

So @ndevtk found a Chrome issue that only repros on branded builds, not on Chromium, and not on Microsoft Edge. The vuln and repro have nothing to do with Google-specific features.

If there's one person who will find weird stuff in Chrome, it's bound to be @ndevtk :)

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-10-26 at 23:35

Oh, I'm going to have lots of fun finding vulnerabilities in this.

https://www.theverge.com/2024/10/26/24280431/google-project-jarvis-ai-system-computer-using-agent

=> More informations about this toot | View the thread

Written by Alesandro Ortiz πŸ‡΅πŸ‡·πŸ³οΈβ€πŸŒˆ on 2024-10-16 at 09:36

I'm in MΓ‘laga, Spain for Google #bugSWAT / #Escal8, if someone happens to be in the area and wants to say hi. :)

=> More informations about this toot | View the thread

=> This profile with reblog | Go to AlesandroOrtiz@infosec.exchange account

Proxy Information
Original URL
gemini://mastogem.picasoft.net/profile/109299355806699712
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
379.217931 milliseconds
Gemini-to-HTML Time
4.560908 milliseconds

This content has been proxied by September (ba2dc).