Profile

User's avatar
npub1lcc6...lcye
npub1lcc6...lcye
HPE OneView CVE-2025-37164 worth paying attention to - Widely used enterprise management software - HPE added a REST command, executeCommand, which requires no authentication to execute commands. Obviously, this is dumb and now patched out - Being on OneView allows attacker to access VMware, 3PAR storage etc by design - Expect exploitation in the wild as it's so simple - The vulnerability (executeCommand) was introduced around 2020, feels like a vulndoor Shodan dork: product:"HPE OneView"
Arc Raiders continues to delight. It reminds me a lot of Fallout 76, which was designed to be an intense PvP Rust like experience. Instead, everybody was super nice. In Arc Raiders I just have match after solo match and meet other players who are super nice guys from Finland. It’s months in and I haven’t been killed once.