53 Followers
281 Following
52 Posts

Ever since @thedarktangent mentioned the concept of agency to me, I’ve not stopped thinking about how much modern technology asks us to relinquish control of our data.

I’ve never used music streaming services. I always disliked the idea of not owning my music. For me, the original iPod was the epitome of agency: mine to do with what I wanted, when I wanted.

With the relentless march of frontier models consuming as much of our data as possible, we need more agency today, not less. Control over who has access to our data. Control over when they have it. Control over what they are allowed to do with it.

Silicon Valley has given us some truly amazing inventions, but it has also welcomed some ugly things into our lives. Systems where we have very little control, very little ownership, and very little say.

That needs to change. Really looking forward to @defcon this year

Anyone already in Singapore for DEF CON?

It’s my first time in Singapore, so any recommendations on what to see/do are welcome!

#defcon #defconsg

New policy from #Atlassian:

Unless you opt out by August 17th 2026, data from Jira and Confluence will automatically be used for AI training. Some data cannot be opted out at all on some plans.

I read this ⬇️ #solarpunk short story this morning, and it strikes me that this is a joyful way to start the day - far better than beginning with doom scrolling, or the news. So my plan is to make it a habit. Grist has plenty of stories in their archive, and it's not hard to find positive and uplifting short stories elsewhere (doesn't have to be solarpunk).

So I am embarking on #SunriseStories. Wanna join in?

https://grist.org/climate-fiction/imagine2200-a-holdout-in-the-northern-california-designated-wildcraft-zone/

A Holdout in the Northern California Designated Wildcraft Zone

From the Imagine 2200 climate fiction contest: An inquisitive drone responsible for protecting a forest ecosystem stumbles upon a surprise deep in the woods.

Grist

and then you see articles like this:

https://archive.is/KU7kZ

🚨 Critical React + Next.js RCE Alert 🚨
New flaws in the React Server Components “Flight” protocol (CVE-2025-55182 & CVE-2025-66478) allow unauthenticated remote code execution on default installations.

Attackers only need one malicious HTTP request to take over a server.

Wiz reports 39% of cloud environments are vulnerable.

If you're running:
• React 19.0–19.2
• Next.js 14.3.0-canary, 15.x, 16.x (App Router)
• Any framework bundling react-server (Redwood, Waku, Vite/Parcel RSC plugins, etc.)

👉 You are likely exposed. Patch immediately.

Updates now available:
React 19.0.1 / 19.1.2 / 19.2.1
Next.js 14.3.0-canary.88 / 15.0.5+ / 16.0.7

Full RCE. Remote. Unauthenticated. Near-100% exploit reliability.

Patch today. Do not wait.

Google Cloud Platform was vulnerable to a HTTP desync attack leading to "responses being misrouted between recipients for certain third-party models". Aka your LLM response goes to someone else. The Expect header strikes again!
Context: http1mustdie.com
https://cloud.google.com/support/bulletins#gcp-2025-059
Security Bulletins  |  Customer Care  |  Google Cloud

Google Cloud
EVERYBODY GO READ THE AWS INCIDENT WRITE-UP! https://aws.amazon.com/message/101925/
Summary of the Amazon DynamoDB Service Disruption in the Northern Virginia (US-EAST-1) Region

Amazon Web Services, Inc.

How cheap? Well, here's hardware hacker Pete Warden demoing a chatbot that you talk to and that talks back to you - and it's running on Synaptics System-on-a-Chip (SoC) that costs "low single digit dollars":

https://petewarden.com/2025/10/16/why-does-a-local-ai-voice-agent-running-on-a-super-cheap-soc-matter/

This is basically a little special-purpose Alexa, except it doesn't connect to the internet at all (and therefore doesn't leak any of your data). In Warden's demo,

20/

Why does a Local AI Voice Agent Running on a Super-Cheap Soc Matter?

Most recent news about AI seems to involve staggering amounts of money. OpenAI and Nvidia sign a $100b data center contract. Meta offers researchers $100m salaries. VCs invested almost $200b in AI …

Pete Warden's blog

Please share!

Arrrr you ready for this year's @eff Benefit Poker Tournament at @defcon? Register *now* at the URL below to secure your spot, and join us at the Horseshoe Poker Room at high noon, August 9th to defend the Open Internet!

X marks the spot for this year's treasure hunt. Join me, our amazing MC @pluralistic as well as celebrity knockout prize guests @malwarejake, @runasand, and @deviantollam! And as always: I and my dad will be running a poker clinic the hour before in case you want a refresher on the rules or table etiquette.

Win an actual treasure chest and take home the Jelly Bean Skull! All *preregistered* players are guaranteed to receive the nifty new EFF Poker Deck debuting this year!

https://www.youtube.com/watch?v=iVvTNC4BUqM

https://eff.org/poker

Treasure Hunt 2024: EFF Benefit Poker Tournament at DEF CON

YouTube