Martin Schmiedecker

@Fr333k@infosec.exchange
839 Followers
2.2K Following
3.3K Posts
Automotive security by day, online privacy by night. Digital forensics & teaching it in between.
WebsiteSchmiedecker.net

Here's something I am very excited about: Photosynthesis! 🌱☀️

A proposal to have CAs run transparency logs and make X.509 certificates out of Merkle Tree inclusion proofs.

This is similar to how CT would have worked in an ideal world, and it solves the problem of PQC signature sizes in logs and handshakes.

https://mailarchive.ietf.org/arch/msg/tls/6jqhUVz58s4ZgsZ8HvuZftncT9A/

[TLS] Photosynthesis, an update to Merkle Tree Certificates

Search IETF mail list archives

Do you enjoy guzzling real-time TLS certificate allocations, but don't want to use a third-party service (crt.sh, CertStream, etc.)? Drink straight from the Certificate Transparency log firehose using ctail:

$ go run github.com/hdm/ctail@latest -f -m '^autodiscover\.'

https://github.com/hdm/ctail

„Wer ist eigentlich dieser @leyrer?“
-
„Ja der hält seit Jahren immer wieder (auch mehrere Vorträge) bei der #GPN.“
-
„Ne, sagt mir nichts.“
-
„Und verteilt da immer Manner Waffeln.“
-
„Ach so der. Ja, da war ich schon in ein paar Vorträgen.“

#gpn23

Ich weiß wo dein Haus wohnt - Grundlagen zu Bluetooth-Trackern

media.ccc.de
happy spacex blew up their entire texas launch facility day for those who celebrate
Jemand hat sich eine ausgelaufene Domain eines alten Bittorrent-Tracker geschnappt und mal 'nen opentracker laufen lassen. Ergebnis entspricht der Erwartung.

Aus eigener leidvoller Erfahrung von fehlgeleiteten Tracker-Anfragen auf den *WEB*-server des Projekts kann ich bestätigen, dass die Pflege der Listen in alle neuen Torrents eingestreuten Tracker in den Clients echt zu wünschen übrig lässt.

https://kianbradley.com/2025/06/15/resurrecting-a-dead-tracker.html
Resurrecting a dead torrent tracker and finding 3 million peers

So I was uh, downloading some linux isos, like usual. It was going slowly, so I opened up the Trackers tab in qBittorrent and saw the following:

Kian Bradley’s Blog
"Works on my machine", oil on canvas.
Unknown artist, 2025

"Politicians wanting to undermine encryption must understand that by doing so, they will weaken encryption for everyone. There is no way to build a “secure backdoor.” […] If a vulnerability exists, the question is when it will be found. If a master key is created, the question is when it will be stolen."

https://tuta.com/blog/opinion-signalgate

#Security #E2EE #Signalgate

Signalgate 2.0 proves it - there’s no such thing as a “Backdoor for the Good Guys Only” | Tuta

Sensitives data fell into the hands of criminals because US officials were using a non-encryption version of the popular chat app Signal.

Tuta

INC Ransom listed Academic Urology and Urogynecology of Arizona. That's a sensitive target that I expect people won't want leaked.

Pun not intended but I'm leaving it.

#ransomware

×
IEEE 802.11ac to RFC 1149 Gateway
@Error Endlich mal ein guter Einsatz fuer den ubi-muell - Eierwaermer!
@Error this one took me a moment 😀
@Error i wonder if this counts as hardware gore lol
@Error now I understand what "ac" in 802.11ac *really* stands for!

@Error
This filled me with joy this evening.

Absolute perfection.

@Error mit Sektorenkopplung (Wärme zur Beheizung des Wohnobjektes)

@Error

*recherchiert RFC 1149*

😂

@Error Those eggs will hatch on no time at all with no help from the pigeons at all 🥳
@bieberium @Error 802.3at powered incubator
@Error those APs do run hot, I can't blame them for nesting there.
IP over Avian Carriers - Wikipedia

@Error does that make the pigdy a gatekeeper?
@Error WPS 🪶 Watching Pigeons Sleep
@Error it would be interesting to see the complete system. The illustration appears to lack some RFC1149-mandated parts
@Error I assume it's a carrier pigeon.
@Error Must be up to RFC 6214 with that amount of stuff going on
@Error Introducing Ubiquiti Avian™!
@apzpins @Error @TundraWolf I thought it was their new range of Unifly devices...
@Error A nested pigeon error.
@Error braucht noch 'n Taubentauglichen Scanner und Drucker.
@Error @nocoursewalks I am legit not proud to understand the joke without looking it up. Have I wasted my times?
@flq you trained for this, take the win. @Error @nocoursewalks
@Error So this is the nested subnet I’ve heard about.
@Error a hub on the internet! That pidgeon really made a home on the wifi
@Error Turns out the pigeon is integral. If you remove it then the network goes down.
@Error
Nah, this "Avian carrier over TCP/IP"
@Error UDM = UniFi dove machine
@Error This time it's not cosmic background radiation. It's actual pigeon poo.
@Error Something, something, flapping ports.