mac lawson 

53 Followers
214 Following
102 Posts

Taking a look at CISA's 2022 Top Routinely Exploited Vulnerabilities.

They specifically mention "Prioritize secure-by-default configurations". So, why are we still building systems in languages like C and C++ when we could use Rust, which has built in memory safety and concurrency safety? Rust compiles in a similar way to C/C++ and as a faster run time than Java.

https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-215a

Eliminating bias in AI may be impossible – a computer scientist explains how to tame it instead https://www.nextgov.com/ideas/2023/07/eliminating-bias-ai-may-be-impossible-computer-scientist-explains-how-tame-it-instead/388649/
Eliminating bias in AI may be impossible – a computer scientist explains how to tame it instead

COMMENTARY | Blindly eliminating biases from AI systems can have unintended consequences.

Nextgov.com
Been working a lot with Go recently. Really love the language.

Want to see Russian disinfo?

Check out the comments on this vid on yt of Putin's speech after the Wagner incident:
https://www.youtube.com/watch?v=rj-EVP9yhoE

Putin's address to the nation after Wagner rebellion (English subtitles)

YouTube
AI Prompt Engineering Isn’t the Future

Despite the buzz surrounding it, the prominence of prompt engineering may be fleeting. A more enduring and adaptable skill will keep enabling us to harness the potential of generative AI? It is called problem formulation — the ability to identify, analyze, and delineate problems.

Harvard Business Review

Well, apparently #microsoft #Sharepoint now has the ability to scan inside of password-protected zip archives.

How do I know? Because I have a lot of Zips (encrypted with a password) that contain malware, and my typical method of sharing those is to upload those passworded Zips into a Sharepoint directory.

This morning, I discovered that a couple of password-protected Zips are flagged as "Malware detected" which limits what I can do with those files - they are basically dead space now.

While I totally understand doing this for anyone other than a malware analyst, this kind of nosy, get-inside-your-business way of handling this is going to become a big problem for people like me who need to send their colleagues malware samples. The available space to do this just keeps shrinking and it will impact the ability of malware researchers to do their jobs.

Linux by Balenciaga

YouTube

New blog post on blockchain simulation.

https://maclawson.vercel.app/posts/py_chain

Mac Lawson Security Research

Malaware Analysis and Information Security

Mac Lawson Security Research
Just dropped a post about Discord malware. Pretty interesting stuff as Discord has very sophisticated developer tools.
I've been testing a few differant clients since I made the hop from bird app to here. Sengi is the best IMO.