"Improper input validation of octal strings in Python 3.8.0 thru v3.10 stdlib ipaddress allows unauthenticated remote attackers to perform indeterminate SSRF, RFI, and LFI attacks on many programs that rely on Python stdlib ipaddress."

So it seems that "not upgrading docker right away" is paid feature on Windows and Mac 🤔


Here's the video of today's call with the European Commission, including my talk on "Networked Communities as Essential Infrastructure"!

"Exploiting vulnerabilities in Cellebrite UFED and Physical Analyzer from an app's perspective"

"we learned that someone had gained unauthorized access to our Bash Uploader script and modified it without our permission."

