Dave Wilburn 

1.4K Followers
645 Following
20.9K Posts
#infosec engineer, #mlsec machine learning, sailor, news junkie, #threatintel consumer, deep statist, #NAFO fella. All opinions are mine.

If you or someone you know has an account on mastodon.cloud, I would highly recommend migrating to a new server. Lots of instances are in the process of completely blocking mastodon.cloud which will sever all connections for people on mastodon.cloud. Mastodon.cloud is effectively abandoned, running very old and out of date software with minimal moderation resulting in a good deal of moderation work for those of us running other instances.

I am posting this in hopes that some people on mastodon.cloud see it and decide to take action.

Vercel confirms breach as hackers claim to be selling stolen data

ShinyHunters strikes again! Or did they? The company is known for developing Next.js, a widely used React framework, and for offering services such as serverless functions, edge computing, and CI/CD pipelines that enable developers to build, preview, and deploy applications. The company said a limited subset of customers was affected by a security breach Services not impacted “ShinyHunters” posted on BreachForums but threat actors linked to recent attacks attributed to the ShinyHunters extor...

IFIN
The Moscow Region Prosecutor's Office accidentally posted a list of proxies for bypassing Roskomnadzor's Telegram block, then deleted it within a minute. An amusing oopsie compounded by the fact that advertising censorship circumvention tools in Russia is illegal. https://t.me/ostorozhno_novosti/48667
Осторожно, новости

Прокуратура Московской области опубликовала список прокси для обхода блокировок Telegram. Как обнаружили «Осторожно, новости», сегодня вечером официальный аккаунт прокуратуры Московской области опубликовал сообщение со ссылками для подключения прокси — они помогают обходить блокировки РКН, из-за которых не работает Telegram. Пост удалили в ту же минуту. Вероятно, его по ошибке опубликовал один из сотрудников, у которого есть доступ к каналу. При этом реклама способов обхода блокировок в РФ запрещена.

Telegram
If you haven't grabbed a ticket for #BSidesCharm 2026, WHY NOT??? - go to https://www.eventbrite.com/e/bsidescharm-2026-tickets-1982620739001 - 1 ticket gets you in for BOTH days!

#Vercel customers: don't wait. Proactively rotate keys, passwords and environment variables ASAP.

https://vercel.com/kb/bulletin/vercel-april-2026-security-incident

Vercel April 2026 security incident | Vercel Knowledge Base

We’ve identified a security incident that involved unauthorized access to certain internal Vercel systems.

oh cloudflare is starting an email service.

wcpgw

if you thought spam/phishing was bad before, just wait.

also, it's designed for "agentic workflows", so you know it's going to ne a disaster.

Vercel April 2026 security incident | Vercel Knowledge Base

We’ve identified a security incident that involved unauthorized access to certain internal Vercel systems.

Does anyone have any experience of flatpack container buildings and also sticking #solar on top (and maybe down the sides) of one.

Can't use an actual craned in container because there is no practical way to get one in (narrow road and target several metres below road level)

Hey US citizens: now that your taxes are done, go check on your voter registration status. Make sure you are still registered, and that your information is correct.

Go here and select your state: https://www.nass.org/can-I-vote/voter-registration-status

#vote #voting #democracy #uspol

Voter Registration Status | NASS

NASS

📍 Details for the postmarketOS conference are up, as well as a call for proposals!

Details:
https://postmarketos.org/conference/

CfP (deadline is 2026-06-30):
https://pretalx.postmarketos.org/postmarketos-conference-2026/cfp

"We are looking forward to your entry! No matter your background, everyone is welcome to be part of our event.
Your submission can be a short talk (max. 20 mins including questions), long talk (max. 60 mins including questions), workshop, meetup or discussion round (90 mins, for other durations please contact us).

The audience will consist of:
- kernel hackers
- distribution developers
- desktop environment maintainers
- activists
- end users
and potentially more groups of people. If your submission targets at least one of these groups, it's probably a good one! Ideally, it would also be related to postmarketOS in some way, but that is not a hard requirement."

#postmarketos #linuxmobile

postmarketOS // The postmarketOS Conference

Aiming for a 10 year life-cycle for smartphones

postmarketOS