@OutsideCasey

32 Followers
140 Following
262 Posts

So I’ve just had a quick play with this and yes, it works. Essentially BitLocker has a backdoor. https://github.com/Nightmare-Eclipse/YellowKey

Mitigation = BitLocker PIN and BIOS password lock.

GitHub - Nightmare-Eclipse/YellowKey: YellowKey Bitlocker Bypass Vulnerability

YellowKey Bitlocker Bypass Vulnerability. Contribute to Nightmare-Eclipse/YellowKey development by creating an account on GitHub.

GitHub
One of our TTI folks made this and I think it's pretty neat! Modular resume builder for cyber jobs using Typst. https://github.com/joshnck/typst_resume_generator
GitHub - joshnck/typst_resume_generator: A Typst-based resume generator for cybersecurity professionals. Write your bullets once, then compile role-targeted PDFs by selecting which tags to use.

A Typst-based resume generator for cybersecurity professionals. Write your bullets once, then compile role-targeted PDFs by selecting which tags to use. - joshnck/typst_resume_generator

GitHub

"There are no more juniors. There was a funeral for their passing in 2024. Nobody came. The machine does what they do now, but cheaper. Of course, juniors weren't valuable for what they produced, they were valuable for who they would become: the senior engineer who knows where the bodies are buried. We optimized for output, and abolished apprenticeship. A few years from now, we'll wonder where all the seniors are. We shot them. Nobody will remember."

https://www.stvn.sh/writing/programming-still-sucks-fqffhyp

Programming Still Sucks. — Writing

Sorry Peter. — I'm at a birthday party, and while most people here also work in tech, there's always a Guy with a Real Job. You know, a physical job, building some or other thing people need. And this Guy always asks some variant of the same question: aren't you worried AI is taking your job? I glance around and see a few faces turning around toward us, rolling their eyes ever so slightly before returning to their previous conversation. Yes, this question again.

A very good article by @ggpsv (& Tunnel and Fortress graduate) surveying the state of container security in light of the recent #copyfail vuln. He makes a strongly-argued case for rootless Podman, with a defence-in-depth and isolationist strategy limiting damage in the event of privilege escalation in containerised deployment contexts.

https://garrido.io/notes/podman-rootless-containers-copy-fail/

#infosec #sysadmin

Podman rootless containers and the Copy Fail exploit

Gabriel Garrido

Just a reminder, in the context of AI or any other discussion: "humans use energy too" is a eugenics pitch/project. The argument devalues life and we all know the picking order.

https://www.cnbc.com/2026/02/23/openai-altman-defends-ai-resource-usage-water-concerns-fake-humans-use-energy-summit.html

It’s absurd that American authorities can purchase personal data – that they’re not allowed to gather themselves without a warrant – directly from data brokers. This violates the Fourth Amendment, and it’s time to close the data broker loophole.

Today, the Surveillance Accountability Act was introduced. It requires warrants based on probable cause for all government surveillance and data access.

You can read more about it here: https://www.surveillanceaccountability.com/

The Surveillance Accountability Act | Protect Privacy, Take Action Now

Support privacy rights with the Surveillance Accountability Act. Learn how it aims to limit government data collection and protect your freedoms. Join the movement today.

The Surveillance Accountability Act

if you think azure is bad now, or ms products are bad now, imagine what happens when all the elder god types still there, who are barely keeping the ship afloat, all take this deal and bounce

https://www.cnbc.com/2026/04/23/microsoft-plans-first-voluntary-retirement-program-for-us-employees.html

Fediverse tip: you don’t always have to say the thing. In fact, in many cases it’s better if you do not say the thing.
Here, I did the thing
“System justification” is the belief that “if it is in the system (political, educational, etc.) it must be right.” Yeah, we need to start seriously questioning that assumption.