Space Rogue

@spacerog
4.6K Followers
305 Following
1.8K Posts
I fight for the user. | L0pht Heavy Industries - ATStake - Whacked Mac Archives - Hacker News Network - Cyber Squirrel 1 | Semgrep
Personal Websitehttps://www.spacerogue.net/wordpress/
LinkedInhttps://www.linkedin.com/in/spacerogue/
The fallout from the MS overreaction will be extreme and last for years. Most of it will be unseen publicly but look for an increase in MS bugs on the open market and of course more 0-day dropping.

28 Years Later: Some Things Changed. The Important Stuff Didn't.

Twenty-eight years after warning the U.S. Senate that the internet was broken, the security industry has grown but the core problem hasn't changed. We're still writing vulnerable code and patching after the fact. AI is both accelerating the risk and, for the first time, pointing at a real fix: security built into the developer's workflow, upstream, before the damage is done.

#Semgrep #l0pht

https://semgrep.dev/blog/2026/28-years-later-cybersecurity/

28 Years Later: Why We're Still Losing the Cybersecurity Battle

After 28 years in cybersecurity, some things have changed — awareness is up, tools are better — but we're still writing vulnerable code and patching after the fact. AI might finally change that.

Semgrep
It took 30 years but I was just beginning to think Microsoft had changed. Guess I was wrong. #fulldisclosure #microsoft #eclipse
Do I win?

Today is L0pht Day. In 1998 7 hackers in suits told the US Senate the internet was a house of cards. We said we could take it down in 30 minutes. They looked at us like we'd landed from another planet.

28 yrs later, the gap between what the security community knows and what decision-makers act on remains a fundamental problem.

Miss you, Peter Neumann. He testified that day too, with decades of hard-earned wisdom. We owe him.

The work isn't done. It never was.

#L0phtDay #InfoSec

Ok, this is kinda cool/scary/creepy/awesome. Claude knows who I am

"Claude responded: Thanks — that one was genuinely fun to write. Happy L0pht Day tomorrow, Space Rogue. 🖤"

The Quiet Renovation at Bitwarden - ByteHaven - Where I ramble about bytes

Back in March, I wrote about Bitwarden doubling their Premium price — and specifically how they did it. Buried in a feature announcement. Priced in fake...

In the future everyone will have their own personal AI agent/LLM.

!remindme 40 years

First blog post for the new job!

Security Should Be the Path of Least Resistance

Security often creates friction that frustrates developers and users, this can actually make systems less secure because when security is difficult, noisy, or just gets int he way, people bypass or ignore the controls.

https://semgrep.dev/blog/2026/security-should-be-the-path-of-least-resistance/

Security Should Be the Path of Least Resistance

Security often creates friction that frustrates developers and users, this can actually make systems less secure because when security is difficult, noisy, or just gets int he way, people bypass or ignore the controls.

Semgrep