Florencio Cano

307 Followers
639 Following
2.6K Posts
Principal Product Security Engineer
Open Cybersecurity Trends (Substack)https://opencybersecuritytrends.substack.com
LinkedInhttps://www.linkedin.com/in/florenciocano/
The team, the team, the teamhttps://youtu.be/7KOwLaCf0y0
🚨🚨 URGENT: Multiple political groups are meeting NOW to discuss their voting on the Chat Control amendments TOMORROW. They are being lobbied massively by industry and NGOs. Chat Control hurts everyone. The template has been updated, take contact now: https://fightchatcontrol.eu/ !
Fight Chat Control - Protect Digital Privacy in the EU

Learn about the EU Chat Control proposal and contact your representatives to protect digital privacy and encryption.

Agent Skills: Explore security threats and controls | Red Hat Developer

Learn how to manage the security threats and access controls associated with adopting the new Agent Skills functionality

Red Hat Developer

Anthropic: "Reviews are billed on token usage and generally average $15–25, scaling with PR [pull request] size and complexity,"

Code reviews on average take about 20 minutes to complete.

In #curl, we could employ at least one person full time only for code reviews for that money.

If we had that money, of course.πŸ’πŸ»β€β™‚οΈ

https://www.theregister.com/2026/03/09/anthropic_debuts_code_review/

Anthropic debuts pricey and sluggish automated Code Review tool

: First vibe coding, now vibe reviewing ... but the buzz is good as it finds worthy issues

The Register

Interesting: The Rejection of Artificially Generated Slop (RAGS)
[ERROR 406i: AI_SLOP_DETECTED]

"This document specifies the standard protocol for handling and discarding low-effort, machine-generated contributions submitted to source code repositories, issue trackers, vulnerability reporting portals, and community forums, be they public open-source projects or internal corporate monoliths."

https://406.fail/

RFC 406i - The Rejection of Artificially Generated Slop (RAGS)

NEW: The FBI said it is investigating a hack on its networks.

The breach affected the FBI's systems to manage wiretaps and surveillace requests, according to CNN.

https://techcrunch.com/2026/03/05/fbi-investigating-hack-on-its-wiretap-and-surveillance-systems-report/

FBI investigating hack on its wiretap and surveillance systems: Report | TechCrunch

Hackers allegedly broke into the FBI’s networks, according to a report by CNN.

TechCrunch
Picard management tip: Work should be useful, stimulating, and challenging, not wasteful, tedious, nor impossible.

How do you implement the EU Cyber Resilience Act without overburdening open source maintainers?

Our new case study explores how Red Hat worked with OpenSSF to align #CRA standards with community-driven development.

Read more: https://openssf.org/blog/2026/03/02/case-study-defending-the-open-source-supply-chain-in-a-new-regulatory-era/

❓Have you noticed that digital products and services are getting worse? So have we!

➑️We have published a report about enshittification, on how and why digital products and services keep getting worse - and how we can turn the trend (hint: open tech, enforcement, public policy++)

Obviously @pluralistic is a big inspiration and help in this work.

More than 80 groups in Europe and the US has joined in a call to action.

More here: https://www.forbrukerradet.no/breakingfree

Enjoy this short film!

It's 2026 and time to stop getting cybersecurity advice from the undead. πŸ§Ÿβ€β™‚οΈπŸ§Ÿβ€β™€οΈ

Ready to let go of zombie advice? Start at hacklore.org! πŸ”

Bluesky: https://bsky.app/profile/hacklore.bsky.social

Newsletter: https://buttondown.com/hacklore

πŸ“£ Spread the word!! πŸ“£

I made an app.
https://play.google.com/store/apps/details?id=ch.pocketpc.nearbyglasses
Nearby Glasses is here to warn you when smart glasses are nearby.

I hope it's useful for someone.

The app is now open source (AGPL-3.0), the app is free and rather simple
https://github.com/yjeanrenaud/yj_nearbyglasses

It's also downloadable outside the Play Store. iOS port is in the making. F-Droid is an option, will have to look into that