  • バイロン・モレノ - Wikipedia

    バイロン・アルデマ・モレノ・ルアレス(Byron Aldemar Moreno Ruales, 1969年11月23日 - )はエクアドルの首都キト出身の元サッカー審判員。 かつては国際サッカー連盟(FIFA)の国際審判員として活躍していたが、2002 FIFAワールドカップ以後にもエクアドルで疑惑のジャッジを続けたためFIFAから資格停止処分を受け、33歳の若さで審判業から引退した[1]。 経歴[編集] 主審として2002 FIFAワールドカップに参加(当時32歳)。6月18日の韓国対イタリア戦を裁いた。この試合中、トッティに2枚のイエローカードを出して退場処分とし、延長戦ではイタリアのゴールをオフサイドと判定した。このふたつの判定はのちにFIFA公式ライセンスを取得した会社が発行したDVDである「FIFA FEVER」において「世紀の10大誤審(ワールドカップの10大誤審)」の6位と7

    • Node.js — January 2021 Security Releases

      (Update 4-Jan-2021) Security releases available Updates are now available for v10,x, v12.x, v14.x and v15.x Node.js release lines for the following issues. In addition to the vulnerabilities listed below, these releases also include an update to npm in order to resolve an issue that was reported against npm by security scanners even though it was not vulnerable. use-after-free in TLSWrap (High) (C

      • Smugglers are sawing through new sections of Trump’s border wall

        SAN DIEGO — Smuggling gangs in Mexico have repeatedly sawed through new sections of President Trump’s border wall in recent months by using commercially available power tools, opening gaps large enough for people and drug loads to pass through, according to U.S. agents and officials with knowledge of the damage. The breaches have been made using a popular cordless household tool known as a recipro

        • Ai Weiwei accepts teaching job in Germany

          The leading Chinese dissident artist Ai Weiwei has accepted a teaching post at a Berlin university, a month after he was released from detention. But it is uncertain whether the Chinese authorities will allow him to leave because he remains under tight surveillance. Ai, who has endured what he described as "extreme conditions" and an 81-day detention in his home country, said on Thursday he was ha

          • How I Chained 4 vulnerabilities on GitHub Enterprise, From SSRF Execution Chain to RCE!

            How I Chained 4 vulnerabilities on GitHub Enterprise, From SSRF Execution Chain to RCE! Hi, it’s been a long time since my last blog post. In the past few months, I spent lots of time preparing for the talk of Black Hat USA 2017 and DEF CON 25. Being a Black Hat and DEFCON speaker is part of my life goal ever. This is also my first English talk in such formal conferences. It's really a memorable e

            • Varnish HTTP Cache — Varnish HTTP Cache

              Varnish HTTP Cache¶ I’m new here, please explain this Varnish thing What is happening¶ 2024-03-18 - Varnish 7.5.0 is released¶ Our bi-annual “fresh” release is here: Varnish Cache 7.5.0 The 7.3 series is no longer supported in any capacity. 2024-03-18 - Varnish HTTP/2 Broke Window Attack¶ All Varnish Cache releases with HTTP/2 support suffer a vulnerability in the HTTP/2 protocol. Please see VSV00

              • Sunday Assembly Pdx

                Based on projections from marketplace analysts, a few with the ideal investment decision possibilities for the future 10 years may possibly include things like gold, silver, and meals. These projections replicate the rising financial uncertainty getting commonplace in many regions of the globe. Read more now on what is a benefit of investing in precious metals? Food stuff as an Investment All a fe

                • 2022-09-29のJS: TypeScript 4.9 Beta、workerd(Cloudflare Workers runtime)、Web Almanac 2022

                  JSer.info #611 - TypeScript 4.9 betaがリリースされました。 Announcing TypeScript 4.9 Beta - TypeScript 型キャストはせずに型の一致をチェックできるsatisfies演算子の追加、in演算子での型の絞り込みの改善、== NaNをコンパイルエラーに変更などが行われています。 satisfies演算子については次の記事が詳しいです。 Typescript’s new ‘satisfies’ operator | by Cefn Hoile | Aug, 2022 | Medium また、--watchでのファイル監視のデフォルトをuseFsEventsに変更、exportsフィールドのtypeVersionsの優先度を修正なども含まれています。 Cloudflare Workersのruntimeであるworkerd

                  • European migrant crisis: Shipwrecks 'kill up to 700 migrants'

                    Up to 700 migrants are feared drowned in a series of shipwrecks off the coast of Libya in the last few days, the UN refugee agency says. The boats sank south of Italy on Wednesday, Thursday and Friday as the migrants tried to reach Europe in unseaworthy vessels. Spring weather has led to a surge of people attempting the perilous crossing from Africa to Europe. It is now a key migration route since

                    • Project Gutenberg

                      Authors: A B C D E F G H I J K L M N O P Q R S T U V W X Y Z other Titles: A B C D E F G H I J K L M N O P Q R S T U V W X Y Z other Languages with more than 50 books: Chinese Danish Dutch English Esperanto Finnish French German Greek Hungarian Italian Latin Portuguese Spanish Swedish Tagalog Languages with up to 50 books: Afrikaans Aleut Arabic Arapaho Bodo Breton Bulgarian Caló Catalan Cebuano C

                      • Buy Steroids Online USA - Guide to Buying Steroids Online

                        • 石油タンカー・サーンチーの衝突事故 - Wikipedia

                          石油タンカー・サンチの衝突事故(せきゆタンカー・サンチのしょうとつじこ)は、2018年1月6日に東シナ海の上海沖で発生した海上事故[1]。ペルシア湾から韓国へ向かうパナマ船籍の石油タンカー(サンチ号)と香港船籍の貨物船(CFクリスタル号)が長江河口沖300km地点で衝突。衝突後に炎上した石油タンカーは、その後約一週間にわたり油を流出させながら南東方向へ炎上漂流を続けた後、沖縄の北東300km地点で沈没した。上海沖タンカー追突事故または東シナ海タンカー追突事故とも通称される。 概要[編集] サンチ号は、パナマ船籍、イラン政府所有の石油タンカーである。ペルシア湾から韓国へ、136,000トンの天然ガス・コンデンセートで満積になった状態で航行中、長江河口から東へ 160海里 (300 km) の地点で、香港船籍の貨物船、CFクリスタル号(中国名は長峰水晶号)と衝突した。サンチ号は衝突直後に出火し

                          • HTTP Request Smuggling

                            Delivering software and services at the speed the market demands requires teams to iterate and experiment rapidly. They must deploy new versions frequently, driven by feedback and data. The most successful cloud development teams adopt modern DevSecOps culture and practices, embrace cloud-native architectures, and assemble toolchains from best-in-class tools to unleash their productivity.

                            • Project Gutenberg Canada / Projet Gutenberg Canada

                              BREAKING NEWS! The Tr*mp-Trudeau twenty-year copyright extensions breach Canada's legal obligations to other countries and to its citizens, and must be cancelled ASAP. Dr Mark Akrigg of Project Gutenberg Canada explains. 3 JUNE 2024: Tr*mp is now a convicted felon, 34 times over. It's time to cleanse Canada's copyright laws of his filthy extensions. Let's get our public domain back! Why should Can

                              • Tony Abbott urges Europe to adopt Australian policies in refugee crisis

                                Former Australian prime minister Tony Abbott has called on Europe to take on Australia’s border security policies or risk “catastrophic error” and urged Western nations to “stand up for ourselves”. In his first major speech since being forced out, Abbott said Europe should close its borders to migrants. “The Australian experience proves that the only way to dissuade people seeking to come from afa

                                • バグバウンティにおける Critical な脆弱性報告の事例まとめ - blog of morioka12

                                  1. 始めに こんにちは、morioka12 です。 本稿では、バグバウンティで実際に報告されている危険度が Critical (致命的)な Web アプリケーションの脆弱性について事例をもとに紹介します。 1. 始めに 免責事項 想定読者 Critical な脆弱性 CVSS 2. Critical な脆弱性報告の事例 XSS (Cross-site Scripting) SQL Injection Command Injection SSRF (Server Side Request Forgery) Path Traversal Code Injection XXE (XML External Entitie) Insecure Deserialization Improper Access Control IDOR (Insecure Direct Object Reference

                                  • Cryptome Nuclear Power Plants and WMD Series

                                    Cryptome Nuclear Power Plants and WMD Series 2016-1597.zip MoD Nuclear Convoy Incidents via The Ferret September 18, 2016 (7MB) 2016-1275.pdf DoD Nuclear Weapons Personnel Reliability April 30, 2016 2016-1226.pdf CIA on Proliferation of Nuclear Weapons 1974 April 9, 2016 2016-1189.htm Doel Nuclear Power Station, Belgium March 26, 2016 2016-1188.htm Tihange Nuclear Power Station, Belgium March 26,

                                    • Waitress — waitress 2.1.2 documentation

                                      Bugfix¶ When expose_tracebacks is enabled waitress would fail to properly encode unicode thereby causing another error during error handling. See https://github.com/Pylons/waitress/pull/378 Header length checking had a calculation that was done incorrectly when the data was received across multple socket reads. This calculation has been corrected, and no longer will Waitress send back a 413 Reques

                                      • スター・ウォーズの鉄人!/スクリプト

                                        エピソード IV / 新たなる希望 Episode IV: A New Hope ホーム | スクリプト | EP I | EP II | EP III | EP IV | EP V | EP VI | 一番下へ Episode IV A NEW HOPE It is a period of civil war. Rebel spaceships, striking from a hidden base, have won their first victory against the evil Galactic Empire. During the battle, Rebel spies managed to steal secret plans to the Empire's ultimate weapon, the DEATH STAR, an armored space stati

                                        • Pakistani generals 'helped sell nuclear secrets'

                                          The story of the world's worst case of nuclear smuggling took a new twist on Thursday when documents surfaced appearing to implicate two former Pakistani generals in the sale of uranium enrichment technology to North Korea in return for millions of dollars in cash and jewels handed over in a canvas bag and cardboard boxes of fruit. The source of the documents is AQ Khan, who confessed in 2004 to s

                                          • GitHub - blaCCkHatHacEEkr/PENTESTING-BIBLE: articles

                                            -1- 3 Ways Extract Password Hashes from NTDS.dit: https://www.hackingarticles.in/3-ways-extract-password-hashes-from-ntds-dit -2- 3 ways to Capture HTTP Password in Network PC: https://www.hackingarticles.in/3-ways-to-capture-http-password-in-network-pc/ -3- 3 Ways to Crack Wifi using Pyrit,oclHashcat and Cowpatty: www.hackingarticles.in/3-ways-crack-wifi-using-pyrit-oclhashcat-cowpatty/ -4-BugBou

                                            • The Bad Guys Are Winning

                                              The future of democracy may well be decided in a drab office building on the outskirts of Vilnius, alongside a highway crammed with impatient drivers heading out of town. I met Sviatlana Tsikhanouskaya there this spring, in a room that held a conference table, a whiteboard, and not much else. Her team—more than a dozen young journalists, bloggers, vloggers, and activists—was in the process of chan

                                              • Webアプリケーションを守るApacheモジュール「ModSecurity」

                                                Hello, ModSecurity! - 実際に動作させてみよう ModSecurityはApacheのモジュールとして動作する。設定はhttpd.confをはじめとしたApacheのコンフィグファイル上でおこなう。Portsからインストールすると、Apacheのコンフィグファイルを格納するディレクトリに関連するファイル(ModSecurity Core Rules)がひととおり生成される。デプロイされるディレクトリとファイルは次のとおり。 Includes/mod_security2.conf Includes/mod_security2/CHANGELOG Includes/mod_security2/LICENSE Includes/mod_security2/README Includes/mod_security2/modsecurity_crs_10_config.conf

                                                • Libya is united in popular revolution – please don't intervene | Muhammad min Libya

                                                  That tall, handsome, funny, witty, intellectual young man is no more. No longer will he answer my phone calls. Time will stand still on his Facebook account for ever. An hour before he was shot, I called Ahmed. He sounded at his best. He told me that he was in Green Square in the heart of Tripoli, and that we were free. Then bad telephone connections meant I couldn't reach him again for two whole

                                                    Libya is united in popular revolution – please don't intervene | Muhammad min Libya
                                                  • Israel drops leaflets over Gaza warning of 'escalation' in violence

                                                    The leaflet said Israel was about to begin a "new phase in the war on terror". It said Israel will "escalate" an operation that already has killed more than 800 Palestinians. Israel launched the offensive two weeks ago to halt years of Palestinian rocket attacks. The army says the operation is directed only at the ruling Hamas militant group but Palestinian officials claim roughly half of the casu

                                                    • Palestine papers reveal MI6 drew up plan for crackdown on Hamas

                                                      British intelligence helped draw up a secret plan for a wide-ranging crackdown on the Islamist movement Hamas which became a security blueprint for the Palestinian Authority, leaked documents reveal. The plan asked for the internment of leaders and activists, the closure of radio stations and the replacement of imams in mosques. The disclosure of the British plan, drawn up by the intelligence serv

                                                      • Nation

                                                        ILLEGAL IMMIGRATION More than 500 foreign nationals have been arrested this year attempting to enter the western U.S. by sea–a new trend in human smuggling, officials say. Tiny boats leave Mexico at night and drop their cargo on mainland and offshore-island beaches as far north as Ventura County, California, 200 miles from the border. HOUSING The New Teardowns Banks have a new foreclosure fix: bul

                                                        • 45 days of hell: Father thrown in jail during desperate search for his kids

                                                          The father of two has not seen his children since May last year. Photo/ AP An Australian father thrown in jail during a desperate search for his missing children in Japan says he was tortured, threatened and told he was "subhuman" during his incarceration. Freelance sports journalist Scott McIntyre spent 45 hellish days behind bars — including a stint at a notorious detention centre where death ro

                                                          • HTTP Request Smuggling を理解する - Qiita

                                                            Transfer-Encoding: chunked 送信するデータを、chunk(塊)毎に16進数でバイト数を記す。 最後に0のみからなる行と空行を示してレスポンスを返す。(改行はバイト数に含まれない) POSTパラメータの改行 以下のように改行してもパラメータxの値と見なされる。 これからは、下図のネットワーク構成をもとに話を進めていきます HTTP Request Smuggling(HRS)とは フロントエンドサーバとバックエンドサーバでリクエストの終端の解釈が異なる場合に発生する脆弱性 CL.TE vulnerabilities 例えば、フロントエンドがContent-Length(以下CL)のみに対応していて、バックエンドがTransfer-Encoding(以下TE)にのみ対応していた場合のリクエストの処理の流れを見ていく。 まず、CLに対応しているフロントエンドがConte

                                                            • Migrant crisis: New routes sought amid impasse in Balkans

                                                              As borders close, many migrants have opted for informal routes through fields to try to continue their journeys - here near in the Serbian town of Sid, near the border with Croatia Migrants stranded in Croatia have been making renewed efforts to head north despite moves by Slovenia and Hungary to hold them back. Slovenian police used pepper spray on Friday night to disperse a group trying to cross

                                                              • Varnish HTTP Cache — Varnish HTTP Cache

                                                                Varnish HTTP Cache¶ I’m new here, please explain this Varnish thing What is happening¶ 2024-03-18 - Varnish 7.5.0 is released¶ Our bi-annual “fresh” release is here: Varnish Cache 7.5.0 The 7.3 series is no longer supported in any capacity. 2024-03-18 - Varnish HTTP/2 Broke Window Attack¶ All Varnish Cache releases with HTTP/2 support suffer a vulnerability in the HTTP/2 protocol. Please see VSV00

                                                                • Iran tested advanced nuclear warhead design – secret report

                                                                  The UN's nuclear watchdog has asked Iran to explain evidence suggesting that Iranian scientists have experimented with an advanced nuclear warhead design, the Guardian has learned. The very existence of the technology, known as a "two-point implosion" device, is officially secret in both the US and Britain, but according to previously unpublished documentation in a dossier compiled by the Internat

                                                                  • North Korea Uncovered – (Google Earth) « North Korean Economy Watch

                                                                    Notice: Although some time has passed since version 18 was published, the project grows each day.  In due time this information will be made public by 38 North at the US-Korea Institute at Johns Hopkins University. See also the DPRK Digital Atlas. Click on the screen shots above for larger images This Google Earth project offers an extensive mapping of North Korea’s economic, cultural, political,

                                                                    • Varnish HTTP Cache — Varnish HTTP Cache

                                                                      Varnish HTTP Cache¶ I’m new here, please explain this Varnish thing What is happening¶ 2023-09-20 - Varnish 7.4.1 is released¶ Varnish 7.4.1 has been released and can be found here: Varnish Cache 7.4.1 This maintenance release fixes a bug preventing protected headers to be read from several subroutines. 2023-09-15 - Varnish 7.4.0 is released¶ Our bi-annual “fresh” release is here: Varnish Cache 7.

                                                                      • ダボス首脳陣、『ブレギジット』がEU破滅の予兆になるかも、とご心配 - 今日の覚書、集めてみました

                                                                        Davos leaders fear 'Brexit' may be deathknell for EU (ダボス首脳陣、『ブレギジット』がEU破滅の予兆になるかも、とご心配) By Ambrose Evans-Pritchard, International Business Editor, Davos Telegraph: 3:02PM GMT 21 Jan 2016 European politicans plead with Britons to vote "yes" and keep the union intact ヨーロッパの政治家が「YES」に投票して!EUを残して!と英国人に訴え。 Europe's leaders have issued a passionate plea for Britain to remain in the European Union, fear

                                                                        • 中国の8月パニックは誤報でした…財政危機もへたれてるし - 今日の覚書、集めてみました

                                                                          China's August scare is a false alarm as fiscal crunch fades (中国の8月パニックは誤報でした…財政危機もへたれてるし) By Ambrose Evans-Pritchard Telegraph: 8:35PM BST 18 Aug 2015 The recession in China has been and gone. The housing market is picking up as stimulus revives, putting off the day reckoning again 中国の不況がやって来て行っちゃいました。景気浮揚策復活で住宅市場は息を吹き返しつつありまして、またまた審判の日を先送り完了です。 The situation in China is desperate but not serious

                                                                          • txtcontent.html

                                                                            1 はじめに 昨年(1998)の秋、私は英検1級の1次に合格したものの、スピーチの準備もそこそこに2次試験に望み、惜しくも2点足らずで不合格となりました。その後密かに挑戦し続け、今回の秋(1999)にやっと、英検1級に挑戦し出して4回目で合格となりました。2次試験の準備のための参考書は、ピッタリとしたものは無く、謂わば手探りで始めるという状態が続きました。東京には、このための専門の学校もあることを後になって知りましたが、地方ではそうはいきません。このように、私が困ったことは皆さんも困っているだろうと考え、ここにその要点を披露することにしました。 このあいだ英語学習のウェブサイトを検索していたら、目指せ英検○○級という名前のサイトが多く見受けられました。英検に限らず目指せ○○というサイトも増えています。そこで、この名前を使い出したのは、私が最初であるとここに書く事にしました。元祖「目指せ英検

                                                                            • ZNet - War Crimes

                                                                              You must be logged in to use this feature. If you are not a member yet, sign up here for a free membership account Send article through e-mail printer friendly version Search Isn't It Time For A War Crimes Tribunal? January 22, 2009 By Robert Fisk Source: The Independent Robert Fisk's ZSpace Page Join ZSpace It's a wrap, a doddle, an Israeli ceasefire just in time for Barack Obama

                                                                              • 仕組まれた欧州難民危機

                                                                                2017年6月1日 田中 宇 5月下旬に行われたG7サミットの議長国だったイタリアが、開催地をイタリア最南部のシチリア島に定めた理由は、シチリア島がアフリカの対岸にあり、アフリカ(特に内戦中のリビア)からイタリアに多数の難民が渡航してくる「難民危機」を、G7共通の課題として強調する意図があった。リビアの海岸からイタリア南部へと、地中海を船で渡る経路は、トルコからギリシャへの経路が閉鎖された後、中東から欧州への最大の難民流入ルートだ。リビアからイタリアに押し寄せる難民数は、13年の4万人から、14年以降、毎年20万人前後に急増した。 (G7 leaders turn to discussion of Africa, with Italy desperate to stem migrant exodus across Mediterranean) 欧州だけでなく、G7の先進諸国の全体で、難民の

                                                                                • How I Chained 4 vulnerabilities on GitHub Enterprise, From SSRF Execution Chain to RCE!

                                                                                  How I Chained 4 vulnerabilities on GitHub Enterprise, From SSRF Execution Chain to RCE! Hi, it’s been a long time since my last blog post. In the past few months, I spent lots of time preparing for the talk of Black Hat USA 2017 and DEF CON 25. Being a Black Hat and DEFCON speaker is part of my life goal ever. This is also my first English talk in such formal conferences. It's really a memorable e

