Bram Bonné

@BramBonne
135 Followers
296 Following
274 Posts
Music-loving computer person from Belgium. Android security & privacy in Switzerland.
Websitehttps://brambonne.com
GitHubhttps://github.com/brambonne
LinkedInhttp://be.linkedin.com/in/brambonne
SoundCloudhttps://soundcloud.com/BramBonne
@fugueish
Fun fact: in Flemish (a variant of Dutch), we use "gij" as the most informal form. Historically (and, still today in the Dutch spoken in the Netherlands), that would be the exact same form as "thou". https://en.wiktionary.org/wiki/gij
gij - Wiktionary, the free dictionary

Wiktionary
What, burn ancient plankton? You know the sun just hands out this stuff for free, right?
Quantum frontiers may be closer than they appear

An overview of how Google is accelerating its timeline for post-quantum cryptography migration.

Google

seeing another round of "don't favorite posts on fedi"

folks it is a kind and lovely thing to favorite someone's post and anyone who tells you not to be kind and lovely has told you something about themself

it's true that it doesn't particulary increase the distribution of your post but the idea that we're all here to get things distributed as far as possible is pretty weird

#RFC9849: TLS Encrypted Client Hello was published 2026-03-03. Now lets make servers and clients use it to improve #privacy for everyone.

https://datatracker.ietf.org/doc/rfc9849/

RFC 9849: TLS Encrypted Client Hello

This document describes a mechanism in Transport Layer Security (TLS) for encrypting a message under a server public key.

IETF Datatracker
Honing: het ultieme bijgerecht
When someone says „Scientists do not want you to know“ you can dismiss everything from there on. Scientists want you to know. They are desperate that you know. They can’t shut up about what they found out and want you to know.

🤦Oh, it’s the Snowden revelations all over again.

They are claiming that AI-powered mass surveillance is a good thing but mass **domestic** surveillance isn’t

https://www.anthropic.com/news/statement-department-of-war

ssh is an obscure but widely-deployed command. It stands for Secure Snake Home and was made in the 90s to securely play snake online

I made a massively multiplayer backend for it with support for thousands of concurrent snake players

ssh snakes.run to join!

We found that Wi-Fi client isolation can often be bypassed. This allows an attacker who can connect to a network, either as a malicious insider or by connecting to a co-located open network, to attack others.

NDSS'26 paper: https://www.ndss-symposium.org/wp-content/uploads/2026-f1282-paper.pdf
GitHub: https://github.com/vanhoefm/airsnitch

High-level article on the work by Dan Goodin: https://arstechnica.com/security/2026/02/new-airsnitch-attack-breaks-wi-fi-encryption-in-homes-offices-and-enterprises/ I'd say we bypass Wi-Fi encryption though, in the sense that we can bypass client isolation. We don't break Wi-Fi authentication or encryption. Crypto is often bypassed instead of broken. And we bypass it ;) If you don't rely on client/network isolation, you are safe: we can't just break any Wi-Fi network.