228 Followers
237 Following
632 Posts

I liked ranting so much, I made it my job.
Pentester. I mostly break Web stuff but sometimes hardware too. OSINT from time to time.

Terrible music connoisseur.

@faker_ on Twitter.
#infosec #pentester #OSINT

Bloghttps://infosec.rm-it.de/
LocationMunich, Germany
#ShotoniPhone 🌍

copilot is just for entertainment? Per the TOS...
Highlighting is my own. From that last boost.

https://www.microsoft.com/en-us/microsoft-copilot/for-individuals/termsofuse

Pretty hilarious that the default Windows image viewer (I think it's called Photos) has AI pressed into it but you still cannot copy text from an image.
macOS Preview does this since years I think.
I unfortunately needed to install VMware Workstation today but I had to give up.
There is no way to download the installer from broadcom. Best guess by people on Reddit is, that someone has to approve your account first before downloads work - the error message is just a generic failure.
Absolutely insane.
A random guy telling the world how to install some new software. An illustration.

RE: https://social.heise.de/@heisec/116278847114165195

German police was physically sent out to warn businesses about a vulnerability in Windchill and ZeroPLM in the middle of the night.
Apparently they just showed up and wanted to warn them, and if nobody was there they tried calling.
Imagine being an admin and getting a call by the BKA at 4am just to tell you some internal system needs patching.
wtf indeed

Inbox zero is overrated
speak next week friends

Phenomenal reporting from ProPublica. Big takeaways:

  • FedRAMP is too understaffed to be effective.
  • Microsoft never answered serious questions about its cloud security architecture.
  • Despite a damning report, Microsoft's government cloud product was approved anyway.

https://www.propublica.org/article/microsoft-cloud-fedramp-cybersecurity-government

Federal Cyber Experts Thought Microsoft’s Cloud Was “a Pile of Shit.” They Approved It Anyway.

A federal program created to protect the government against cyber threats authorized a sprawling Microsoft cloud product, despite the company’s inability to fully explain how it protects sensitive data.

ProPublica
First time seeing this, promoted crypto scams on LinkedIn probably using stolen accounts.