157 Followers
369 Following
1.3K Posts

She/her
Librarian by day, whitehat by night. Cybersec consulting on the side when companies are in deep doo-doo. Probably one of exceedingly few 30-somethings to touch cobol 74 without spontaneously combusting.

If you live in the Nordic countries I have probably touched your bank's backend inappropriately. Multiple times.

Microsoft says Office bug exposed customers' confidential emails to Copilot AI | TechCrunch

Microsoft said the bug meant that its Copilot AI chatbot was reading and summarizing paying customers' confidential emails, bypassing data-protection policies.

TechCrunch

Merry Christmas to everybody, except that dude who works for Elastic, who decided to drop an unauthenticated exploit for MongoDB on Christmas Day, that leaks memory and automates harvesting secrets (e.g. database passwords)

CVE-2025-14847 aka MongoBleed

Exp: https://github.com/joe-desimone/mongobleed/blob/main/mongobleed.py

This one is incredibly widely internet facing and will very likely see mass exploitation and impactful incidents

Impacts every MongoDB version going back a decade.

Shodan dork: product:"MongoDB"

Any movie where you leave the theater thinking "I would fuck that alien" is a good movie
Whatcha thinking about there, kitty?

Do good gateways get pets?

#shitpost

You accept some level of weirdness from the middle aisle in Lidl - but this??

How to spot a phishing scam or Stargate episode

- sense of urgency / deadline
- comes from an unknown source or address
- unreliable/wrong information
- claims of being official, powerful or wealthy
- unusual salutations

Chef's kiss.