phil

@bieberium@infosec.exchange
40 Followers
204 Following
7.4K Posts

IETF RFC1925:

With sufficient thrust, pigs fly just fine. However, this is not necessarily a good idea. [...]

PronounsHe / Him
LocationCentral Germany
ProfessionSecurity minded AD & Entra ID admin
Bookwyrmhttps://books.infosec.exchange/user/bieberium
Twitter (archival data)https://twitter.com/bieberium
Twittodon (archival data)https://twittodon.com/share.php?t=bieberium&m=bieberium%40infosec.exchange

https://github.com/ubuntu/authd/security/advisories/GHSA-g8qw-mgjx-rwjr

When a user who hasn't logged in to the system before (i.e. doesn't exist in the authd user database) logs in via SSH, the user is considered a member of the root group in the context of the SSH session. That leads to a local privilege escalation if the user should not have root privileges.

True humanitarian disaster is unrolling in #Russia as the authorities are switching off mobile Internet in places even very distant from the front line to stop Ukrainian UAVs. It has the unintended consequence that without mobile Internet you can’t buy vodka.

Since 2019 Russia introduced very strict regulations, according to which each sale of alcohol is registered in real-time (!) in an on-line system run by tax administration. This regulation is intended to enforce time restrictions on alcohol sales, so you can’t buy it after 23:00 and before 08:00, plus many more - for example on some holidays, in some locations etc.

If Internet doesn’t work, shops can’t register sales so they can’t legally sell alcohol. Risking huge fines and losing license, they won’t even offer “delayed registration” and widespread snitchery makes it really difficult to bypass these regulations.

A wire fence for #WildlifeWednesday. Oh, and I guess some #lynx whiskers for #WhiskersWednesday too


#Luchs #animalPhotography #zoo #bobcat #Tier #animal

I’m using on-device accessibility transcription in a technical call and “boot rom” keeps getting transcribed as “Buddha”

your very own factory-installed tamper-proof Buddha

Hehe
Cicadas are able to live under ground for 17 years before they rise to the surface. They are the first known insects to have developed this unique ability to avoid the Trump presidency.

The people who tut-tut over the phone number requirement never articulate anything resembling a coherent threat model.

They also are quick to recommend alternatives with inferior cryptography.

Some days I just want to grab them by the shoulders and scream "SHUT THE FUCK UP YOU ARE HURTING PEOPLE" directly into their ears.

Of course I've noticed that different people hold pens differently but I did not realize that these even have names - so what kind of pen holder are you? https://hachyderm.io/@mononcqc/114701663734224728
Dynamic Tripod
Dynamic Quadrupod
Lateral Tripod
Lateral Quadrupod
Poll ends at .
Fred Hebert (@mononcqc@hachyderm.io)

Attached: 1 image I bought a pen that ended up shaped to only be comfortable with the dynamic tripod grip, but I have always written with the lateral tripod method. So I’m doing the most logical thing and I decided to learn a whole new writing grip, messing with decades of muscle memory.

Hachyderm.io

"I came to the conference for the workshops."

The actual view from the conference venue:

#FEST2025 #Italy #beach #image