157 Followers
369 Following
1.3K Posts

She/her
Librarian by day, whitehat by night. Cybersec consulting on the side when companies are in deep doo-doo. Probably one of exceedingly few 30-somethings to touch cobol 74 without spontaneously combusting.

If you live in the Nordic countries I have probably touched your bank's backend inappropriately. Multiple times.

Microsoft says Office bug exposed customers' confidential emails to Copilot AI | TechCrunch

Microsoft said the bug meant that its Copilot AI chatbot was reading and summarizing paying customers' confidential emails, bypassing data-protection policies.

TechCrunch

Merry Christmas to everybody, except that dude who works for Elastic, who decided to drop an unauthenticated exploit for MongoDB on Christmas Day, that leaks memory and automates harvesting secrets (e.g. database passwords)

CVE-2025-14847 aka MongoBleed

Exp: https://github.com/joe-desimone/mongobleed/blob/main/mongobleed.py

This one is incredibly widely internet facing and will very likely see mass exploitation and impactful incidents

Impacts every MongoDB version going back a decade.

Shodan dork: product:"MongoDB"

Any movie where you leave the theater thinking "I would fuck that alien" is a good movie
@vadhakara @briankrebs Kinda disappointed they didn't go full typo mode and write it as "Brain Crabs" for extra style points.
Whatcha thinking about there, kitty?
@reverseics @DaveMWilburn @dreadpir8robots @neurovagrant Sigh. I'm going to get multiple calls from clients during Christmas this year, aren't I? Time to turn off my phone and go hiking in the middle of nowhere for the holidays.

Do good gateways get pets?

#shitpost

You accept some level of weirdness from the middle aisle in Lidl - but this??
@sundogplanets I don't know. The goats kinda seem like they have some opinions they want to share with you. 😆