David Penfold 

@davep@infosec.exchange
2K Followers
262 Following
22.9K Posts

Does IT stuff. Vegan and anarchism curious.

Likes permaculture, infosec, Tranmere Rovers. But mainly bad jokes stolen from https://www.justthetalk.co.uk/thehaven/17468/urgent-i-need-a-good-joke-right-now

Also unreasonably fond of BPMN.

Officially not right in the noggin #ʘ‿ʘ

likewhatever
SignalDave.14
CO2 ppm at birth321.37
LinkedInAHAHAHAHA
Racism makes you stupid. If you wanna hate me based on how I look, do it properly; I’m not Mexican, I’m Bangladeshi, you absolute moron!

Way more interesting and actually technologically and cryptographically sound projects you should be considering instead:

@briar
https://briarproject.org/

A secure, privacy-preserving, decentralized IM that can work over Bluetooth.

@cwtch
https://docs.cwtch.im/

Another secure, privacy-preserving, decentralized IM project.

@VeilidNetwork
https://veilid.com/

A protocol for building privacy-preserving decentralized communication tools.

No AI, vibe-coding, cryptocurrencies, nor Dorsey.

Secure messaging, anywhere - Briar

Secure messaging, anywhere

Why is anyone still treating Jack "I-trust-Musk-to-extend-the-light-of-consciousness" Dorsey seriously is beyond me.

Save yourself the trouble, and save everyone else time, and just consider any "project" of his to be bullshit unless conclusively proven otherwise.

He is "vibe-coding" a "secure" messenger using an "AI" built by his cryptocurrency company.

This is bullshit wrapped in bullshit, sprinkled with some excrement of male cow.

I am not even going to use the name or link to anything.

Am I going crazy?

On windows, you can have your display set to a non native resolution for your panel, and that will result in bigger text etc. BUT a better way to do it is have your display set to native res, and then change A N other setting that makes text physically bigger.

As far as I can see on the Mac, you have 2 choices : run display at a worse resolution than your panel can do === bigger text. OR run the panel at native res, and have shit useless tiny text? Yes/no?

Wait, what?! Is that Sarah Connor in Resident Alien? 😳😁
life hack: to increase the odds of a doctor not blowing you off or telling you it's all in your head or your non-weight-related problem will be fixed if you lose weight, the magic words are "this is interfering with my ability to work" good heavens! We must make a treatment plan right away, we can't have you going around being a less efficient cog in the machine!

Exposing the Unseen: Mapping MCP Servers Across the Internet

"We identified a total of 1,862 MCP servers exposed to the internet. From this set, we manually verified a sample of 119. All 119 servers granted access to internal tool listings without authentication."

this is why I keep a very watchful eye on Knostic about AI stuff, they know the tech, the risks, *and* how human behavior will interact with them.

#infosec #cybersecurity #genai

https://www.knostic.ai/blog/mapping-mcp-servers-study

Exposing the Unseen: Mapping MCP Servers Across the Internet

Knostic mapped 1,862 internet-exposed MCP servers via Shodan. 100 % lacked auth, revealing immature and risky GenAI endpoints.

This is what I think of every time I see Microsoft Co-Pilot mentioned:
it's time to have the drug talk with my son and i'm really nervous because i still haven't paid him for the last ounce
×

@alfiekohn

We need our own community based de-arresting squads by training as many people as we can. Expecting the state to stop the state doesn't work. We have to save ourselves.

@alfiekohn if you think that someone is being kidnapped shouldn't you try to prevent the kidnapping in the first place?
If enough people resist, they can't arrest everyone..

@alfiekohn
Get the detainee's name, birth date, and country of origin, record as many details as possible (license plates, location, time, number of "ICE agents" & any identifying info...). Call an immigration defense hotline ASAP and tell them everything. Exchange contact info with any other witnesses.

Assume the police will not help and/or ICE will be gone by the time they arrive and/or they will show up and essentially run security for the raid. So far there are literally no instances of police intervening to stop an "ICE" abduction that I'm aware of (please correct me if wrong).

In Los Angeles:
Union del Barrio Rapid Response:
213-444-6562
ImmDef Immigrant Defenders Law Center :
213-833-8283
CHIRLA:
888-624-4752

[Edit: Just added UdB hotline because this keeps getting boosted and I neglected to include it before].

@inquiline

@alfiekohn

I support recording it, and getting identifying information (license plate, number of people, descriptions). But I don't think I'd call 911.

In Oregon you can contact one of these groups:

1) OR DOJ, Sanctuary Promise Violations Hotline. Details:

https://www.doj.state.or.us/oregon-department-of-justice/civil-rights/sanctuary-promise/reporting-sanctuary-promise-violations-to-the-hotline/

2) Portland Immigrant Rights Coalition (PIRC) at 1-888-622-1510

3) United We Dream, 1-844-363-1423, or text 877877

Community toolkit:

https://www.doj.state.or.us/oregon-department-of-justice/civil-rights/sanctuary-promise/community-toolkit/

#USPol #Oregon #Immigration #ICE #Sanctuary

@alfiekohn
"it may not stop the detention"

So then pls don't spread this as a general advice. It may be useful in some situation, it may be harmful in another.

If a kidnapping is witnessed, I believe it's the duty to act against it based on the abilities each has. And an advice of what to do in such case needs to take this into consideration.

There are so many more possibilities that can be taken, and there are also simply many situations calling the police is just harmful.

You can reach the door of a car with a detained person? Go there an open it if you can.

You see kidnappers approaching a person, and you happen to drive by with a car? Use your vehicle to disrupt the situation, by force if necessary.

You see a kidnapping and others witnesses are around? Get them engaged and approach the kidnappers if possible. Try to figure out if the detained wish's to escape. If so help them do it. Be creative.

@alfiekohn DO NOT CALL MORE COPS

call more neighbors

@alfiekohn
> They must take a statement

😆

@alfiekohn
Who wrote this? I'm curious what they know about it

@RnDanger @alfiekohn

This looks like the same style as that one that was going around promoting a "No Kings 2.0" protest which no group was actually organizing. It was also unattributed, like this one. Someone is out there making intentionally daft political memes, I think. I'm not going to assume benign intent.

@alfiekohn I wonder if it would apply in france where we get policers to charge/hit people without their identifier (RIO). "There are people dressed as policeman hitting people, I have no way to know, help"

@alfiekohn it's not enough to #FilmCops, but #LivestreamCops so when they assault the people filming or try to steal their equipment it's not gonna be lost!

https://www.youtube.com/watch?v=NN8ISwuiX68
https://www.youtube.com/watch?v=o5Z_N2h3WHA

Minneapolis police shoot at, threaten to arrest DW reporter | DW News

YouTube
LOS ANGELES LAUNCHES RAPID RESPONSE NETWORK AND HOTLINE TO RESPOND TO ICE ENFORCEMENT ACTIONS

PRESS RELEASE FOR IMMEDIATE RELEASE: January 24, 2025Press Contact:   Jorge-Mario Cabrera, jmcabrera@chirla.org, (562) 243-5559 LOS ANGELES LAUNCHES RAPID RESPONSE NETWORK AND HOTLINE TO RESPOND TO ICE ENFORCEMENT ACTIONSThe Los Angeles Rapid Response Network (LARRN) is one of several regional, volunteer-based efforts, set up to respond, inform, protect, and document ICE enforcement operations.Los Angeles, CA –The Coalition for Humane Immigrant Rights (CHIRLA), in collaboration with several immi

IMMDEF
@alfiekohn
Here's a badge you can carry when monitoring illegal activities being performed by pun identified people claiming to be Immigration and Customs Enforcement (ICE) agents.
It identifies you as a supervisor for Citizens Defense of the People (CDotP).
#ICE #Badge #USDefianceOfTheLaw #USPolitics