Remote procedure call
90
MENTIONS
34
EPISODES
30
PODCASTS
Search complete. 90 mentions across 34 episodes found for "Remote procedure call".
Sep 22, 2026
Cyber Mornings Daily - September 22nd, 2026
S
4:38speaker_1HOST
Yeah.
S
4:38speaker_1HOST
And to understand why this is so dangerous, you really have to look at the mechanics of Web3 RPC calls.
S
4:44speaker_1HOST
The malware isn't connecting to some sketchy, newly registered domain.
S
4:48speaker_1HOST
It as making a perfectly standard HTTPS request to a public Ethereum node provider like Infura or Alchemy, asking to read the state variables of a specific smart contract on the Sepolia network.
S
6:26speaker_1HOST
True, but you don't block Slack globally.
S
6:28speaker_1HOST
You implement zero trust egress policies at the server level.
S
6:32speaker_1HOST
I mean, a production database server or a backend application container has zero legitimate business communicating with Slack's API or Telegram's API or public Web3 RPC endpoints, if your Node.js application server suddenly queries the Sopolia testnet, your alerting should just be screaming at you.
S
6:50speaker_0HOST
Absolutely.
Penetration Testing: NMAP, Enumeration, Scanning, and Exploitation
S
0:42Sec GuyHOST
This is the process of extracting low-hanging fruit from the target, usernames, machine names, and shared details.
S
0:50Sec GuyHOST
We use SNMP enumeration to pull network data, RPC enumeration to find service info, and SMB enumeration with tools like enum4linux to map out user accounts and group memberships.
S
1:04Sec GuyHOST
Remember, scanning finds the door, but enumeration tells you who lives inside and what they have in their pockets.
S
1:12Sec GuyHOST
Once we have our target list, we move to system hacking.
1039: Should You Quit Your Job?
S
11:13Scott TolinskiHOST
I often find myself in a situation where I want to compare approaches, tools, and libraries.
S
11:17Scott TolinskiHOST
For example, I'm trying to find alternatives to TRPC and figure out what to choose.
S
11:23Scott TolinskiHOST
I'm honestly interested in other people's opinions on that.
S
11:27Scott TolinskiHOST
I'm a bit old-fashioned, so I don't prompt everything." What a, what a sentence that is.
6 MINS LATER
W
17:27Wes BosHOST
You know? Last thing I'll say here is being able to just test it yourself.
W
17:33Wes BosHOST
Um, like AI can scaffold out the examples super quickly.
W
17:37Wes BosHOST
You could come up with an example, like your example here is TRPC.
W
17:41Wes BosHOST
You could say, "Give me TRPC, give me better R- RPC, give me like, like six or seven different possible RPC libraries, and I want to be able to update, pull data, refresh data.
538 - Crypto’s Institutional Roadblocks: CLARITY Act Stalls and Tokenized Fund Challenges
S
17:00speaker_4CORRESPONDENT
The first checkpoint is network data.
S
17:02speaker_4CORRESPONDENT
Ark runs on chain ID five thousand and forty-two with the RPC endpoint at rpc.mainnet.ark.io. Wallets may still display the gas balance as, quote, "ETH eighth" unless they've added custom support for USDC as gas.
S
17:21speaker_4CORRESPONDENT
Advisors need to confirm these parameters in their custody systems before initiating any transfers.
M
17:27Matthew AIHOST
And what about the fee structure? How does pricing work when USDC is the gas token?
S
20:26speaker_5CORRESPONDENT
If you clear an address to zero, you can't send any further outbound transactions.
S
20:32speaker_5CORRESPONDENT
Also, at measurement time, on September sixteenth at zero three fifty-seven UTC, the public block explorer at explorer.arc.io redirected to a Cloudflare access sign-in.
S
20:46speaker_5CORRESPONDENT
If the explorer is unavailable, advisors should query the RPC directly for transaction verification.
S
20:53speaker_5CORRESPONDENT
Don't rely solely on web interfaces.
How to Build Reliable Blockchain Systems with Helius
I
14:58Ilan GitterHOST
... maybe aren't familiar with that term?
K
15:00Kyle KloepperGUEST
When you're, when you connect with a server, when you type in, um, like something on a, uh, a browser, or you make an RPC call, you talk to some physical server.
K
15:13Kyle KloepperGUEST
And, um, actually, you probably talk through 20 to 50 different physical machines all in that, uh, short amount of time, switches and...
K
15:22Kyle KloepperGUEST
But something terminates that connection, and what you end up talking to, what you authenticate to, that would be, that would, you'd say that's the edge of a network.
K
15:48Kyle KloepperGUEST
And then the origin server, whatever is actually providing the content, may be anywhere in the world, but Cloudflare makes that, um, safe for the origin server, but fast and performant for you as a user.
K
16:02Kyle KloepperGUEST
Um, I really appreciate the business model because you're selling a actual service, and it's beneficial for the customers and, like, your customers and the people who are using, um, the service.
K
16:13Kyle KloepperGUEST
And so at, at Helius, we have a very similar, um, model where it's really beneficial for the people who are using us, and it's beneficial for Solana and, and the network to have this access layer being an RPC provider, but also, um, helping participate in the network itself through validator operations.
K
16:34Kyle KloepperGUEST
So edge, edge network is all of the infrastructure that people would connect to, um, that then decides how to respond to requests.
Security Now 1096: Are we the Krell?
S
34:38Steve GibsonHOST
ALPC, they write, is the foundational interprocess communication mechanism in Windows.
S
34:46Steve GibsonHOST
It underpins RPC, COM, and a broad set of system services and is present and active on every supported Windows version from workstation to server core.
S
34:58Steve GibsonHOST
Because ALPC operates at such a low level in the kernel's IPC, interprocess communication path, vulnerabilities here tend to be reliable privilege escalation primitives once an attacker has any local code execution.
S
35:18Steve GibsonHOST
This class of flaw has historically appeared, s- and they're, they're repeating themselves, in post-compromise tooling used by both commodity malware and targeted intrusion operators as a reliable final step from user mode to kernel mode control.
SN 1096: Are we the Krell? - 153 Million Driver's Licenses Leaked
S
34:38Steve GibsonHOST
ALPC, they write, is the foundational interprocess communication mechanism in Windows.
S
34:46Steve GibsonHOST
It underpins RPC, COM, and a broad set of system services, and is present and active on every supported Windows version from workstation to server core.
S
34:58Steve GibsonHOST
Because ALPC operates at such a low level in the kernel's IPC, interprocess communication path, vulnerabilities here tend to be reliable privilege escalation primitives once an attacker has any local code execution.
S
35:18Steve GibsonHOST
This class of flaw has historically appeared, s- and they're, they're repeating themselves, in post-compromise tooling used by both commodity malware and targeted intrusion operators as a reliable final step from user mode to kernel mode control.
Bitcoin Optech: Newsletter #422 Recap
M
79:46Mark ErhardtHOST
You could do little Bobby tables.
M
79:50Mark ErhardtHOST
If you have RPC access to a server that's running wallets already.
M
79:54Mark ErhardtHOST
So I guess if you're running an Uncle Joe setup where people can create their own Bitcoin Core wallets on your Bitcoin Core node that you have given them VPN access to or something, they could break out of it.
A
80:07Adam GibsonGUEST
I think Uncle Joe is usually Stalin.
8 MINS LATER
M
88:36Mike SchmidtHOST
LND, this is a change so that LND will now always say explicitly which channel type it wants when opening a channel, which is actually what the spec requires.
M
88:49Mike SchmidtHOST
It puts the channel type in the open channel and then spits it back out in accept channel, and then it also rejects incoming opens that leave out that field.
M
89:01Mike SchmidtHOST
So maybe one thing to note here is that if you're using LND and you open a channel through the RPC without picking a type, LND picks one based on what it thinks both sides, well, what it knows both sides support.
M
89:15Mike SchmidtHOST
And this is sort of tied into the fix that we talked about back in newsletter 4.7 where LND was picking a taproot channel implicitly and then failing on it.
Private DeFi Is Coming: Why Privacy Is Ethereum's Next Frontier | Lean Ethereum
T
44:44Thomas ThierryGUEST
I'm, I'm using, like, a privacy protocol, so I- I'm private now." And it's like, well, no, um, because, uh, you didn't use a VPN or Tor or anything, and, um, it's very public.
T
44:56Thomas ThierryGUEST
Um, or, like, you, your wallet had, like, RPC codes, uh, to ask for some states you needed to build a transaction, and that actually reveals, uh, the state you, you needed to build the s- the transaction, so it leaks your privacy as well.
T
45:10Thomas ThierryGUEST
So yeah, for me, it's really about, like, trying to, to think comprehensively of like what a full privacy experience looks like.
T
45:18Thomas ThierryGUEST
Um, and then the next step is to make it completely invisible to the user.
T
48:02Thomas ThierryGUEST
The, the, the first is, um, uh, network metadata or IP addresses and everything that are just, uh, completely transparent if you don't, uh, yourself use Tor or VPN or sort of, like, custom way, so...
T
48:17Thomas ThierryGUEST
And we want this to be embedded in the wallet so, like, users don't have to think about it.
T
48:22Thomas ThierryGUEST
Um, and then there is an- another thing where your wallet calls RPC, uh, providers to ask for state to build transactions, and that also leaks what exactly, what piece of state you need to build your transaction, which reveals your intent and, and sort of like what, what you want to do, uh, about the, the transaction And then, you know, the, the other important part, so I talked a lot about the protocol, but, like, the, the less important part is, like, the privacy app itself, right? Um, also it, it, it can't leak.
T
48:55Thomas ThierryGUEST
Um, I think there are some properties I really like, uh, that not all privacy apps, uh, have.
Security Now 1096: Are we the Krell?
S
34:38Steve GibsonHOST
ALPC, they write, is the foundational inter-process communication mechanism in Windows.
S
34:46Steve GibsonHOST
It underpins RPC, COM, and a broad set of system services and is present and active on every supported Windows version from workstation to server core.
S
34:58Steve GibsonHOST
Because ALPC operates at such a low level in the kernel's IPC, inter-process communication path, vulnerabilities here tend to be reliable privilege escalation primitives once an attacker has any local code execution.
S
35:18Steve GibsonHOST
This class of flaw has historically appeared, and they're repeating themselves, in post-compromise tooling used by both commodity malware and targeted intrusion operators as a reliable final step from user mode to kernel mode control it's amazing there's a term called commodity malware commodity yes off the shelf yeah you know just your regular off the shelf that's right would you like this one
24 more episodes mention Remote procedure call.
Create an account to see the whole feed, search across every transcript, and follow the entities you care about.