Alex 

@alexlomas@infosec.exchange
342 Followers
109 Following
327 Posts
I downloaded my gender from the internet
🏳️‍🌈🏳️‍⚧️
PronounsThey/Them
Linkshttps://www.alexlomas.com
🟦 BSKY@alexlomas.com

NOT A DRILL: there is a new Tim Hunkin video.

https://www.youtube.com/watch?v=cqpvl-YGFD4

The Secret Life of the Home

YouTube

Are you a boy or a girl?
I'm nonbinary.

Yeah, but what were you born as?
A baby.

No, I mean what is your sex?
Awesome.

FFS! Do you have a penis or a vagina??
I've had my share of both.

OMFG!! WHAT IS IN YOUR PANTS??
A frankly disturbing number of lockpicks.

Very nice report on the fire at North Hyde substation which took down Heathrow in March.

tl;dr:

* Fire was caused by moisture ingress in a high voltage bushing which was detected in 2018 but got lost in the system.
* North Hyde is an ageing substation which didn't have adequate protection against spread of fire
* Heathrow didn't think that a loss of grid feed was a plausible risk, so they assumed 10-12 hours was a reasonable recovery time from that.

https://www.neso.energy/document/363891/download

FIFTY THOUSAND responses.

My QNAP NAS died an abrupt death today that not even the application of a 100ohm resistor could resuscitate.

I also learnt that:

1. I no longer had the encryption key
2. The external backup to USB silently stopped working in February

So any recommendations for a replacement? SMB and Docker are my needs, as well as having something take care of things for me.

I hear Synology are vendor locking drives as well so…? Halp?

Last couple of days to have your say.

Please do respond especially if you are an ally. https://infosec.exchange/@alexlomas/114681391090197556

Alex :nonbinary_flag: (@alexlomas@infosec.exchange)

If you have some time this weekend, please consider responding to the EHRC consultation on its proposed statutory code of practice. It's especially important if you are cis or own a company or service provider, or participate in non competitive sports like Park Run. The proposed changes are illogical and a legal nightmare to implement and you might want to have your say before you end up with a legal issue to navigate. Guidance on responding: https://transactual.org.uk/equality-act-campaign/responding-to-the-ehrc-consultation/

Infosec Exchange

The trans community officially made it 😻

#csdleipzig

We watched activists disrupt a ‘gender-critical’ meeting dressed as clowns

Last night, members of The Dyke Project – a collective of cis, trans and nonbinary lesbians – unleashed a series of surreal disruptions at a trans-excusionary lecture

Dazed
Thanks to everyone who queued for hours to get into Westminster to meet MPs for the #trans mass lobby event today.
×

Having seen @q’s talk on reverse engineering the crypto on these Iridium trackers I thought I’d have a quick look at the hardware.

The JTAG is unlocked so it was trivial to dump the flash with a Segger.

The crypto password is stored in plain on the device.

@alexlomas @q aha! You also managed to get one and reverse engineer it
@blue @q There was a seller on eBay and I made a ridiculously low offer and now I have one. It needs a new battery if I were to actually use it.
@alexlomas @q > The crypto password is stored in plain on the device.
JFC. How did this get past the first inspection?