596 Followers
2.4K Following
597 Posts

Doing DFIR, in love with the thrill of the thrunt <3

"Chaotisch neutral" (@HonkHase)
"Bester Faden-Jäger EU West" (@jrt)
"So ein Troll, ey" (@brahms)
"lol. lmao." (@gayint)

#DontEatMyHomies
#LowkeyLoki
#SparklyOpossum
#ThruntersAnonymous

Disclaimer:
Personal account. Opinions expressed are my own and not related in any way with my employer.

Wanted Hasheshttps://pastebin.com/Fn79UvzC
Ego-Tootinghttps://justmytoots.com/@g0rb@infosec.exchange
VThttps://www.virustotal.com/gui/user/nhs28

Think Strava leaking ship locations is crazy?

Well guess how they figure out wind conditions from ships and artillery locations...

RE: https://social.linuxkram.de/@u880d/116267973703708913

»"Wir wechseln zu Nutanix als Alternative!"

IHR HABT NICHTS GELERNT. Gar nichts. Null. Vom Regen in die Traufe.
«

#openSource

Microsoft are removing the Copilot integrations in Notepad, Snipping Tool etc in Windows.

Turns out telling PMs to bake Copilot into everything was a dumb idea.

"There are some things money can’t buy; this includes common sense."
The quote wasn't about Harvard tuition, it was about infosec training costs

Chuck Norris ist tot

Der US-Schauspieler und Actionstar Chuck Norris ist im Alter von 86 Jahren im Kreise seiner Familie gestorben.

https://www.swr3.de/aktuell/promi-news/chuck-norris-ist-tot-100.html?at_medium=social&at_campaign=%40swr3%40ard.social

The hidden beauty of vibe coding

"It passed all the unit tests, the shape of the code looks right," he said. It's 3.7x more lines of code that performs 2,000 times worse than the actual SQLite. Two thousand times worse for a database is a non-viable product. It's a dumpster fire. Throw it away. All that money you spent on it is worthless."

https://www.theregister.com/2026/03/17/ai_businesses_faking_it_reckoning_coming_codestrap/

AI still doesn't work very well, businesses are faking it, and a reckoning is coming

interview: Codestrap founders say we need to dial down the hype and sort through the mess

The Register
Making an account on something today when I came across a novel to me password restriction

@cR0w
@mattly
@g0rb

Optimising for revenue I'd belay publishing that until after the first public crash.

Instead of a classic Triple-A or AAA (authentcation, authorisation, accounting) server with AI you can sell an AAAAI server, short A4i.

That will be followed by an Agentic-Agent-Aware A4I system, short A7I.

That of course must be accompanied by an Antagonistic-Agentic-Agent-Aware-Anti-Attack-Appliance with AI, in short an A8I

Marketing will love that.

Rooting OpenWRT from the parking lot: I discovered an XSS in the OpenWRT SSID scan page, that can be chained to remote root access 👾
Write-up and demo: https://mxsasha.eu/posts/openwrt-ssid-xss-to-root/
CVE-2026-32721, fixed in 24.10.6 / 25.12.1