Matt Nordhoff

155 Followers
126 Following
2.8K Posts
He/him. Previously twitter.com/mnordhoff.
CountryUS
Domain name (don't click)https://mn0.us/
RFC 8509 (DNS chaos)https://root-key-sentinel-not-ta-46211.mn-dns.monster/
Made a quick bookmark for the case when "was I on the left page or the right page, and which paragraph was I looking at?" is a relevant question...
The `left-pad` incident was 10 years ago today.

https://en.wikipedia.org/wiki/Npm_left-pad_incident

Thankfully, we've completely solved software supply chains in the years since.
npm left-pad incident - Wikipedia

So America is threatening to obliterate the entire energy infrastructure of a country of 90 million people, which would be the greatest disaster in human history, like, tomorrow.

Iran is threatening to retaliate by destroying further fossil fuel infrastructure, which, if they had much success, would be the greatest disaster in human history.

And almost everyone in America is acting like everything is fucking normal!

Shininess is one of humanity's worst inventions. What ass thought, "you know how, if you look out at a lake, the reflection of the sun burns your eyes? what if everything was like that?"
IETF 125 Shenzhen

Information about the IETF 125 Shenzhen meeting on 14-20 March 2026.

IETF

Conspiracy theory: AWS S3 account regional namespaces help NSA map social graphs through DNS/TLS SNI (by including the account ID in the hostname).

https://aws.amazon.com/about-aws/whats-new/2026/03/amazon-s3-account-regional-namespaces/

Amazon S3 introduces account regional namespaces for general purpose buckets

Discover more about what's new at AWS with Amazon S3 introduces account regional namespaces for general purpose buckets

Amazon Web Services, Inc.
Remember the halcyon days of circa 1935 – February 2022 when you could wake up in the morning and the number of nuclear facilities that had been bombed overnight was zero

The open source vulnerability scanner trivy has experienced a *second* security incident: a compromised release (v0.69.4) was published to the trivy repository.

https://www.stepsecurity.io/blog/trivy-compromised-a-second-time---malicious-v0-69-4-release

Trivy Compromised a Second Time - Malicious v0.69.4 Release, aquasecurity/setup-trivy, aquasecurity/trivy-action GitHub Actions Compromised - StepSecurity

On March 19, 2026, trivy β€” a widely used open source vulnerability scanner maintained by Aqua Security β€” experienced a second security incident. Three weeks after the hackerbot-claw incident on February 28 that resulted in a repository takeover, a new compromised release (v0.69.4) was published to the trivy repository. The original incident disclosure discussion (#10265) was also deleted during this period, and version tags on the aquasecurity/setup-trivy GitHub Action were removed. Trivy maintainers deleted the v0.69.4 tag and Homebrew downgraded to v0.69.3. The following is a factual account of what we observed through public GitHub data.

Bernie has been repeating, almost verbatim, Dario Amodei's talking points, for a while now, even quote tweeting him. Amodei positions Anthropic as the ethical alternative to OpenAI just like OpenAI positioned itself as the ethical alternative to Google in 2015 and everyone ate it up. This was an article from then, the headline says that Muskrat, Thiel, Altman + friends founded an "altruistic AI venture" πŸ™„
https://www.bbc.com/news/technology-35082344
Tech giants pledge $1bn for 'altruistic AI' venture, OpenAI

Tech giants pledge $1bn (Β£659m) for OpenAI, a non-profit venture that aims to develop artificial intelligence to benefit humanity.

BBC News

<looks at Supermicro news>

So basically they got two out of three fall guys in a scheme that every executive knew about and NV most absolutely knew about 100%. One hundred percent NV had full knowledge. SXM parts do not just 'not show up' at customers. It also VERY much explains E&Y refusing to sign off and NV being okay with BDO USA (86% of their audits were deficient last year.)

https://www.reuters.com/world/us-charges-three-people-with-conspiring-divert-ai-tech-china-2026-03-19/

cc @davidgerard