Lars Erik Braatveit

30 Followers
128 Following
392 Posts

Doing the cybersec work in Norway | both blue and red team experience 
Crazy cat gentleman


Lurks more than posts

you want blog post?

you get blog post.

https://blog.ceejbot.com/posts/future-shock/

Future shock – Ceejbot's notes

Software development in the age of gen AI

I wrote about AI again. On some level I don't now why I do this to myself

https://jenniferplusplus.com/what-is-a-token/

Actually, I wrote most of it months ago, for work. But, it was well received, so I put it on my blog. This is the more generic version.

The short version is that AI is not magic. It's a real phenomenon with real behavior and tradeoffs. I'm deeply tired of *****ALL***** the tradeoffs being handwaved away. And so much imagination fills in for the actual behavior. So I tried to describe how it's built, because that informs how it works, which informs what it actually does. And to be clear, it does things. It's not useless. But that's not the same as being useful, or worthwhile.

Anyway, I already put ~4k words on this in the article, so I'll shut up and let it speak for itself.

What is a token

AI is meant to seem like magic. But there's no such thing as magic. It's all illusion. So, allow me to spoil that illusion for you.

Jennifer++
Cisco Security Advisory: Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability

A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to an affected system. A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-root user account. Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.  Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.  This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk

Cisco

Our site admin (@jerry) is about to get walloped with additional hosting fees, thanks to the great AIpocalypse that is messing up everything with datacenter costs.

I love the fediverse because there are no bullshit targeted ads and no bullshit algorithm-boosted messaging. Just a bunch of humans running servers. The downside of this is there is very little money in running servers and they cost more and more to keep going.

I increased my donation a bit today to help keep up with the costs.

Consult your instance admin for where to donate. In our case you can look at Jerry's profile for the official donation places. If you can afford to donate please do. If you can afford to increase your donation, please do that too.

In which I go full foil hat...or do I?

The plan sounds crazy until you realize how crazy the plan has already been.

https://taggart-tech.com/control/

Control

Ultimately, the cloud and AI industries are about robbing you of computing power and selling it back at exorbitant rents.

Lutris 0.5.20 is out!
Proton-GE is now used by default via the umu launcher plus new runners and many fixes!

https://github.com/lutris/lutris/releases/tag/v0.5.20

New Vivaldi release for Windows, Mac & Linux. We got some cool stuff for you and we avoided AI, so enjoy!

#Windows #Macos #Linux #Browser #Vivaldi #Computer #AI

https://vivaldi.com/blog/vivaldi-7-8-launches-with-message-to-big-tech-humans-dont-need-ai-babysitters/

Vivaldi 7.8 launches with message to Big Tech: humans don’t need AI babysitters | Vivaldi Browser

While other browsers race to add AI features nobody asked for, Vivaldi ships the most advanced tab multitasking system ever built for a browser…

Vivaldi Browser

RE: https://infosec.exchange/@thoughtbox/115921492285032178

Fuuuuuuuuu

Torgeir was a great guy, we had loads of amazing talks on cybersecurity, automation, greenhouses and the noise levels of huskies. RIP :(

Am I alone in my hatred towards all unsolicited moving images in my browser? I can’t stand when websites autoplay videos or have animated gifs of videos as a thumbnail to the actual video? @Vivaldi - you have options to turn off these things but they seem poorly implemented, is this a feature you could polish up? I would never use any other browser if you crack this one…

Diamine Inkvent calendar day 25:

«Myrh the Merrier» a gorgeous shimmer and sheen ink which colour shifts from a lovely blue to a purplish red with lots of glitter. I absolutely love it.

#Inkvent #AdventCalendar #FountainPen #DiamineInk