<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[#copyfail]]></title><description><![CDATA[<p><a href="https://mastodon.social/tags/copyfail" rel="tag">#<span>copyfail</span></a></p><p>just to chime in on the copyfail thing, while, yes, it is a very big deal, the prerequisite is that you have a shell on the box you wish to exploit. </p><p>so keep that in mind when doing risk register stuff. </p><p>attackers will aim for shit like jumpboxes, shared hosting environments, multi-tennancy environments, and places they can get a shell, then move laterally to get you. </p><p>shops doing yolo devops are gonna get targeted, and I wouldnt be surprised to see openclaw malicious skills too</p>]]></description><link>https://board.circlewithadot.net/topic/e0eb5c5b-2f06-4c15-8649-44f57b555667/copyfail</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 05:06:28 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/e0eb5c5b-2f06-4c15-8649-44f57b555667.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 29 Apr 2026 23:13:26 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 16:21:37 GMT]]></title><description><![CDATA[<p><span><a href="/user/nyanbinary%40infosec.exchange">@<span>nyanbinary</span></a></span> its like our brains are touching again <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f604.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--smile" style="height:23px;width:auto;vertical-align:middle" title=":D" alt="😄" /></p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116494571755605065</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116494571755605065</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 16:21:37 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 07:20:03 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social" rel="nofollow noopener">@<span>Viss</span></a></span> yip, thats pretty much the summary I shit out this morning for the folx that will have to talk to management - patch is a must but due to our environments nature this isnt a "all hands on deck" thing, especially as most of the distros we use havent pushed versions yet afaik <img class="not-responsive emoji" src="https://media.infosec.exchange/infosec.exchange/custom_emojis/images/000/170/666/original/8524fc523c29052b.png" title=":blobcatupsidedown:" /></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/nyanbinary/statuses/116492442208613266</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/nyanbinary/statuses/116492442208613266</guid><dc:creator><![CDATA[nyanbinary@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 07:20:03 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:52:18 GMT]]></title><description><![CDATA[<p><span><a href="/user/fritzadalis%40infosec.exchange">@<span>FritzAdalis</span></a></span> if theres a way to inject a command or run code, yep</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491389384361503</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491389384361503</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:52:18 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:50:46 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> <br />So you mean that Internet-facing Debian 8 box they refuse to turn off is fucked?</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/FritzAdalis/statuses/116491383361241315</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/FritzAdalis/statuses/116491383361241315</guid><dc:creator><![CDATA[fritzadalis@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:50:46 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:35:31 GMT]]></title><description><![CDATA[<p><span><a href="/user/bhhaskin%40social.bitsofsimplicity.com">@<span>bhhaskin</span></a></span> ot may have shit so old it predates this bug, but also most ot is weird custom bullshit and not the linux kernel, which is largely already a massive problem for ot</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491323416243313</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491323416243313</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:35:31 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:31:36 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> what do you think, about a billion dollars in OT tonight?</p><p>(Just kidding, IT doesn't get OT)</p>]]></description><link>https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491308038788637</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491308038788637</guid><dc:creator><![CDATA[bhhaskin@social.bitsofsimplicity.com]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:31:36 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:29:49 GMT]]></title><description><![CDATA[<p><span><a href="/user/bhhaskin%40social.bitsofsimplicity.com">@<span>bhhaskin</span></a></span> oh im 100% sure theres some absolute shithouse madness going on behind the scenes somewhere.</p><p>theres probably also a teeeeenyy tiny subset of folks whove been sitting on this bug for ten years who are now super fuckin pissed its burned</p><p>and if any of them can see this, my condolences and hat tip me somewhere incase vault7 ever happens again. nerds love it when they get quiet shoutouts like that.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491300981505366</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491300981505366</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:29:49 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:23:57 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> I am betting some state sponsored agencies are not very happy tonight. Same with sys admins and IT departments everywhere lol</p>]]></description><link>https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491277917229304</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491277917229304</guid><dc:creator><![CDATA[bhhaskin@social.bitsofsimplicity.com]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:23:57 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:20:31 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social" rel="nofollow noreferrer noopener">@<span>Viss</span></a></span> you don’t need to depmod</p>]]></description><link>https://board.circlewithadot.net/post/https://toot.mirbsd.org/users/mirabilos/statuses/01KQE3052TP9H2J5RQ9BA3NVCE</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://toot.mirbsd.org/users/mirabilos/statuses/01KQE3052TP9H2J5RQ9BA3NVCE</guid><dc:creator><![CDATA[mirabilos@toot.mirbsd.org]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:20:31 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:13:43 GMT]]></title><description><![CDATA[<p><span><a href="/user/paul_ipv6%40infosec.exchange">@<span>paul_ipv6</span></a></span> <span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> i am eager to see godaddy catch fire sometime in the near future</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491237669359442</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491237669359442</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:13:43 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:13:15 GMT]]></title><description><![CDATA[<p><span><a href="/user/bhhaskin%40social.bitsofsimplicity.com">@<span>bhhaskin</span></a></span> yeah now you can shell the host its on, theeeeeeeen its a party</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491235847972341</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491235847972341</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:13:15 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:12:51 GMT]]></title><description><![CDATA[<p><span><a href="/user/onyxraven%40hachyderm.io">@<span>onyxraven</span></a></span> there are so many angles on this thing</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491234250656301</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116491234250656301</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:12:51 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 02:00:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> or be ready for supply chain exploits doing this to dependencies or typosquats. Then pushing that into containers. That’s the path I’m concerned about</p>]]></description><link>https://board.circlewithadot.net/post/https://hachyderm.io/users/onyxraven/statuses/116491186061551429</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://hachyderm.io/users/onyxraven/statuses/116491186061551429</guid><dc:creator><![CDATA[onyxraven@hachyderm.io]]></dc:creator><pubDate>Thu, 30 Apr 2026 02:00:35 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 01:27:51 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> just think of all the WordPress sites with RCE there where pretty useless up until now.</p>]]></description><link>https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491057303486001</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://social.bitsofsimplicity.com/users/bhhaskin/statuses/116491057303486001</guid><dc:creator><![CDATA[bhhaskin@social.bitsofsimplicity.com]]></dc:creator><pubDate>Thu, 30 Apr 2026 01:27:51 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 01:00:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> <span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> </p><p>*what*? perimeter and middleware boxen as platforms to exploite? surely not. they are *security* devices, so they must be more secure!</p><p>*choke* *gasp* *cough*</p><p>ok. couldn't get that all out with a straight face...</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f37f.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--popcorn" style="height:23px;width:auto;vertical-align:middle" title="🍿" alt="🍿" /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f37f.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--popcorn" style="height:23px;width:auto;vertical-align:middle" title="🍿" alt="🍿" /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f37f.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--popcorn" style="height:23px;width:auto;vertical-align:middle" title="🍿" alt="🍿" /></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/paul_ipv6/statuses/116490950112319597</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/paul_ipv6/statuses/116490950112319597</guid><dc:creator><![CDATA[paul_ipv6@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 01:00:35 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 00:13:38 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social" rel="nofollow noopener">@<span>Viss</span></a></span> <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/rootwyrm%40weird.autos" rel="nofollow noopener">@<span>rootwyrm</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> and I'm tired of pretending its not</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/da_667/statuses/116490765470167381</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/da_667/statuses/116490765470167381</guid><dc:creator><![CDATA[da_667@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 00:13:38 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 00:07:50 GMT]]></title><description><![CDATA[<p><span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> yes</p>

<div class="row mt-3"><div class="col-12 mt-3"><div class="ratio ratio-16x9">
<video controls width="460" height="426">
<source src="https://files.mastodon.social/media_attachments/files/116/490/742/570/350/667/original/276e5df5d248a99a.mp4" type="video/mp4"></source>
</video>
</div></div></div>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490742721227820</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490742721227820</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 00:07:50 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 00:05:28 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social" rel="nofollow noopener">@<span>Viss</span></a></span> <span><a href="/user/rootwyrm%40weird.autos" rel="nofollow noopener">@<span>rootwyrm</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> <em>you think it's funny? joker quote</em></p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116490733417534751</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/cR0w/statuses/116490733417534751</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 00:05:28 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Thu, 30 Apr 2026 00:01:04 GMT]]></title><description><![CDATA[<p><span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> its amusing that "firewall appliances" are going to have more surfaces exposed to exploit this thing than linux boxes</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490716095810843</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490716095810843</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 00:01:04 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Wed, 29 Apr 2026 23:55:46 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span> well yeah, I thought that was kinda obvious when I said basically anything that uses the crypto API could be exploited and www:www still has access to ../../../bin/bash</p>]]></description><link>https://board.circlewithadot.net/post/https://weird.autos/users/rootwyrm/statuses/116490695213074411</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://weird.autos/users/rootwyrm/statuses/116490695213074411</guid><dc:creator><![CDATA[rootwyrm@weird.autos]]></dc:creator><pubDate>Wed, 29 Apr 2026 23:55:46 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Wed, 29 Apr 2026 23:53:08 GMT]]></title><description><![CDATA[<p><span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> the nation states are 100% gonna go for those edge cases tho. and its gonna hit shit like fortinets and ciscos and panw and ... hey <span><a href="/user/cr0w%40infosec.exchange">@<span>cR0w</span></a></span> and <span><a href="/user/da_667%40infosec.exchange">@<span>da_667</span></a></span> and <span><a href="/user/reverseics%40infosec.exchange">@<span>reverseics</span></a></span>  get in here, we're back to ../ again!</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490684904485066</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490684904485066</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Wed, 29 Apr 2026 23:53:08 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Wed, 29 Apr 2026 23:52:02 GMT]]></title><description><![CDATA[<p><span><a href="/user/rootwyrm%40weird.autos">@<span>rootwyrm</span></a></span> im sure youre right, and that there will be edge cases where some one-off webhosted thinger or weirdo node app bullshit or custom binary doodad will have some path to trigger this thing - but the most commonly exploited scenario based on what ive seen the last few years in consulting land is gonna be shops with very lax security, shared accounts, injectable automated processing, ci/cd pipelines, and llm craps</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490680557642721</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/Viss/statuses/116490680557642721</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Wed, 29 Apr 2026 23:52:02 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Wed, 29 Apr 2026 23:51:26 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> I keep saying at work "it should be considered production the second it's on the network", but it gets shot down because of ... existing PROCESSES.  The easy, human, tribal knowledge shit that we could fix with the snap of our fingers and a couple meetings.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.clitheroe.ca/users/scott/statuses/116490678201881939</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.clitheroe.ca/users/scott/statuses/116490678201881939</guid><dc:creator><![CDATA[scott@mastodon.clitheroe.ca]]></dc:creator><pubDate>Wed, 29 Apr 2026 23:51:26 GMT</pubDate></item><item><title><![CDATA[Reply to #copyfail on Wed, 29 Apr 2026 23:47:53 GMT]]></title><description><![CDATA[<p><span><a href="/user/viss%40mastodon.social">@<span>Viss</span></a></span> so, yeah, about that?</p><p>You actually 100% do not need a shell to exploit. Maybe to gain root, but not necessarily.</p><p>You just need something that calls the crypto API in a way that creates a scatterlist with the broken function.</p><p>Which can be done by literally any program in userland.</p><p>If anyone needs me, I'm going to be chugging bottles of hemlock and strychnine and bleach.</p>]]></description><link>https://board.circlewithadot.net/post/https://weird.autos/users/rootwyrm/statuses/116490664222474224</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://weird.autos/users/rootwyrm/statuses/116490664222474224</guid><dc:creator><![CDATA[rootwyrm@weird.autos]]></dc:creator><pubDate>Wed, 29 Apr 2026 23:47:53 GMT</pubDate></item></channel></rss>