Jan Brennenstuhl

98 Followers
52 Following
111 Posts
Principal Engineer. Security Enthusiast. Modernizing Identity & Access Management. Pass{keys, codes, words}.
Posts do not represent anyone.
Websitehttps://www.janbrennenstuhl.eu

15 years ago today, a powerful act of resistance unfolded in the streets. On 02-23-2011, artists & communities came together to buff Nazi graffiti, reclaiming public space with unity & creativity. This moment reminds us: street art isn’t just aesthetics—it’s a tool for change. How do you see art shaping social justice today? Read more: https://www.urbanartcore.com/buffing-nazi-graffiti/

#StreetArt #Graffiti #UrbanCulture #PublicArt

Buffing Nazi Graffiti

Irmela Mensah-Schramm fights against Nazi graffiti and stickers on the streets in Germany. Her effort is well-known and for that reason two film-makers started to create a documentary about the Nazi graffiti buffer!

Urban Art Core
We are alarmed by reports that Germany is on the verge of a catastrophic about-face, reversing its longstanding and principled opposition to the EU’s Chat Control proposal which, if passed, could spell the end of the right to privacy in Europe. https://signal.org/blog/pdfs/germany-chat-control.pdf

The existence of billionaires is a market failure
The existence of billionaires is a policy failure
The existence of billionaires is a societal failure
The existence of billionaires is a humanitarian failure
The existence of billionaires is an existential failure

The existence of billionaires is a failure.

The Russian foreign minister showed up in Alaska wearing a USSR sweatshirt. CCCP are the Cyrillic letters for the USSR. Clearly indicating that Russia will not stop at Ukraine, but intends to capture Armenia, Azerbaijan, Belarus, Estonia, Georgia, Kazakhstan, Kyrgyzstan, Latvia, Lithuania, Moldova, Tajikistan, Turkmenistan, and Uzbekistan too. Many in Russia also believe Alaska to be their territory still as well.

There's a really disturbing #Paypal #phishing scam happening right now. Obviously this reads like a typical phishing attempt (bad grammar, a malformed phone number to call, etc), but the official Paypal email wasn't spoofed. It came from PayPal's email infrastructure.

Examining the headers shows that SPF, DKIM, and DMARC all pass. If you have a Paypal account, please exercise caution. Don't click links in these emails. Forward them to [email protected].

Please boost for visibility.

It seems like the AI crawlers learned how to solve the Anubis challenges. Anubis is a tool hosted on our infrastructure that requires browsers to do some heavy computation before accessing Codeberg again. It really saved us tons of nerves over the past months, because it saved us from manually maintaining blocklists to having a working detection for "real browsers" and "AI crawlers".
a bargain I had to secure: almost 1k pieces for less than 20€ — take that #lego.
The attempts by law enforcement & governments to subvert end-to-end encryption are ongoing. The European Commission is going to spend a year thinking about their new "Roadmap for law enforcement access to data", and they are (genuinely) asking for people to join their expert group to help. Here I urge you to join that group (also because I can't): https://berthub.eu/articles/posts/possible-end-to-end-to-end-come-help/
Possible End to End to End Encryption: Come Help - Bert Hubert's writings

tl;dr: The European Commission is honestly asking for experts to advise them on ways to institute “effective and lawful access to data for law enforcement”. If you are an expert, I urge you to apply to join this group. You have until September 1st. Do read on for more details! The never-ending battle where police and intelligence services demand more/total access to communications shows no sign of stopping, even in the face of mathematical and practical impossibilities.

Bert Hubert's writings
As a followup to my previous cloud pieces, which feature a coherent suggested policy to get to a European cloud, here in some detail the logical next step, which would be a "no regret win" for everyone. Uplift software to craft "European Cloud Modules" that could be used by lots of places to provide credible & rock solid IAM, S3, RDS, SQS and similar services: https://berthub.eu/articles/posts/european-cloud-modules/?o=1
European Cloud Modules - Bert Hubert's writings

Advanced cloud services are based on good hardware, decent software, and surrounding infrastructure that combines these both into solid solutions that can be provided as a business activity. Europe is good with operating the hardware. And surprisingly, we are also good with writing software. Much of the software used by the main cloud providers is based on open source, and lots of that open source is authored by European programmers. What we sorely lack here are providers of higher level cloud services, the kind that businesses clamor for.

Bert Hubert's writings

Adobe is now processing all your PDFs in the cloud, by default. The setting to “Enable generative AI features in Acrobat” was on, and I didn’t know it until I opened a document and Adobe asked me if I wanted a document summary. It’s annoying to have to click “No,” so I opened settings to disable the prompt.

THE PROBLEM
I sign Non-Disclosure Agreements for many of my clients. Adobe is a potential leak of protected information. I don’t know what Adobe does with this information. I don’t know what they store, or for how long. I don’t know what country (or countries) the data is stored in. I don’t know what LLMs are trained with this data. And I don’t need to know. What I need to know is that they won’t use default opt-in as a legal excuse to wiretap my information.

I recommend that you check your Adobe settings on all devices, for all Adobe accounts.

#CallMeIfYouNeedMe #FIFONetworks

#cybersecurity