19 Followers
54 Following
31 Posts

I posted this a few years ago on Twitter, but perhaps today is an opportune time to post again here:

Any sufficiently advanced "endpoint protection" software is indistinguishable from malware.

(Adding: Has the potential to cause global outages.)

Down the compliance rabbit hole re: NIST AC-10 Concurrent Session Control
Hypothesis: control objective is to help mitigate use of stolen credentials.

if so, MFA seems far superior.

BSidesSF 2024 CFP is now open! https://bsidessf.org/cfp
BSidesSF 2025 Call For Participation

BSidesSF is soliciting submissions for the annual BSidesSF conference on April 26-27, 2025. Call for Participation is currently open for all tracks.Note: We DO NOT provide speaker or travel ...

BSidesSF
Ask Microsoft: Are you using our personal data to train AI? https://foundation.mozilla.org/en/campaigns/microsoft-ai/ I have a good guess: Microsoft will use your personal data to train AI, even if you use an alternative OS. We are doomed with big tech now. Please boost for reach. #privacy #security
Ask Microsoft if They Plan to Use Our Personal Data to Train AI

A healthy internet requires an active, global community. Mozilla’s advocacy work brings people together from around the world to educate and fight for privacy, inclusion, literacy, and all principles of a healthy internet.

Mozilla Foundation
@cisagov short hop from SMG to SLC... Looking forward to the first in person #ICSJWG in a long time.
A Follow-up to the Exploit-DB and 0day.today Comparison https://vulncheck.com/blog/exploit-database-followup
A Follow-up to the Exploit-DB and 0day.today Comparison - Blog - VulnCheck

Following reader suggestions, we take a deeper look at the types of vulnerabilities in the Exploit-DB and 0day.today exploit databases. We also examine exploit attack vectors and find out how many of the exploits have been used in the wild.

A Follow-up to the Exploit-DB and 0day.today Comparison - Blog - VulnCheck
Imagine “the anarchist cookbook” but it’s a device-local chatbot that will answer all your (technical and ideological) questions interactively and persuasively.

BREAKING: 🐦InternetArchive will appeal today’s ruling in a suit from Big Media that would terminate libraries’ last option to own and preserve digital books.

QT internetarchive: We will appeal.

#DigitalRightsForLibraries #EmpoweringLibraries
http://blog.archive.org/2023/03/25/the-fight-continues/

The Fight Continues - Internet Archive Blogs

Today’s lower court decision in Hachette v. Internet Archive is a blow to all libraries and the communities we serve. This decision impacts libraries across the US who rely on controlled digital lending to connect their patrons with books online. It hurts authors by saying that unfair licensing models are the only way their books […]

Internet Archive Blogs
Full Committee Hearing to Examine Cybersecurity Vulnerabilities to the United States' Energy Infrastructure - Thursday, March 23, 2023, at 10:00 Eastern - https://www.energy.senate.gov/hearings/2023/3/full-committee-hearing-to-examine-cybersecurity-vulnerabilities-to-the-united-state-s-energy-infrastructure
Full Committee Hearing to Examine Cybersecurity Vulnerabilities to the United States' Energy Infrastructure

U.S. Senate Committee on Energy and Natural Resources