Posts

Shell command execution vulnerability in Subl, a third-party Sublime Text URL handler

Advisory regarding an URL parsing vulnerability in a third-party developer integration for Sublime Text, and announcement of a replacement.

Apple ID password rant

In which I express dissatisfaction about the outcomes of poorly considered security interactions.

Privilege escalation

A story from my dim & distant past in which I was (legitimately) asked to compromise a server and gain root access.