Preferences

ejpir
Joined 19 karma

  1. we only see 20% of what happens in the shadow, but yah, I guess its better than 100%
  2. I'v updated the code, try it now with server-realistic.js:

    1. npm start 2. npm run exploit

  3. I'm trying that, nextjs is a little different because it uses a Proxy object before it passes through, which blocks the rce.

    I'm debugging it currently, maybe I'm not on the right path after all.

  4. I'm fumbled around a bit and got it working, but not entirely sure if this is how it really works: have a look at https://github.com/ejpir/CVE-2025-55182-poc
  5. thought the same, how on earth did they think this looks like a smooth presentation. Almost like he doesn't believe what he's saying
  6. got a link to it?:)
  7. but they haven't, the article says the "private" community still has exploits and apple patches them. The public, like the dev, for some reason, don't anymore.
  8. anyone notice the /vibe option in claude code, pointing to www.thewayofcode.com?

This user hasn’t submitted anything.

Keyboard Shortcuts

Story Lists

j
Next story
k
Previous story
Shift+j
Last story
Shift+k
First story
o Enter
Go to story URL
c
Go to comments
u
Go to author

Navigation

Shift+t
Go to top stories
Shift+n
Go to new stories
Shift+b
Go to best stories
Shift+a
Go to Ask HN
Shift+s
Go to Show HN

Miscellaneous

?
Show this modal