7 Followers
66 Following
31 Posts

husband, father and working in #infosec. basically the #IcidentResponse, #blueteam, #SIEM guy at $job for >10 years.

I like #photography, especially #landscapephotography and #astrophotography

[german/english]

🎉 We're very happy to announce our new release KeePassXC 2.7.11 and... *drumroll* that the KeePassXC version 2.7.9 has been awarded a CSPN Security Visa by the French National Cybersecurity Agency (ANSSI). 🎉❤️🔒
See our blog post for more information: https://keepassxc.org/blog/2025-11-23-2.7.11-released/ #VisaSecu #KeePassXC

LNP500 am 31. August
live in der Urania Berlin \o/

Hier geht’s zu den Tickets:
https://pretix.eu/lnp/lnp500/

Beachtet bitte, dass ihr Shirts *nur bis zum 31. Juli* vorbestellen könnt :)

Logbuch:Netzpolitik 500

Sa, 31. August 2024

A key element of Recall is Microsoft say only you can access your Recall, it is per user.

ArsTechnica enabled Recall on Windows 11 box and tested the claim. By logging in as another user they could access the database and screenshots.

https://arstechnica.com/ai/2024/06/windows-recall-demands-an-extraordinary-level-of-trust-that-microsoft-hasnt-earned/

Windows Recall demands an extraordinary level of trust that Microsoft hasn’t earned

Op-ed: The risks to Recall are way too high for security to be secondary.

Ars Technica
CCC | CCC meldet keine SicherheitslĂĽcken mehr an CDU

Der Chaos Computer Club ist eine galaktische Gemeinschaft von Lebewesen für Informationsfreiheit und Technikfolgenabschätzung.

@flexghost @jerry

Not only does Jerry run 15 different platforms on the Fediverse, he also has more than just two donation links!   

So like Pokemon, I collected them all; one for each of the 4 platforms he hosts which I use regularly. Thank you Jerry!!!!! ❤️

Liberapay: https://liberapay.com/Infosec.exchange/

PayPal: [email protected]

Here's a list of of all the servers in the infosec.* family:

1 - https://infosec.exchange - Glitch-soc fork of Mastodon (this instance does not block threads.net)
2 - https://relay.infosec.exchange - Activitypub relay
3 - https://video.infosec.exchange - Peertube instance (like youtube)
4 - https://infosec.press - WriteFreely blog*
5 - https://pixel.infosec.exchange - Pixelfed instance (like instagram)
6 - https://matrix.infosec.exchange - Synapse (with sliding sync) homeserver*
7 - https://infosec.place - Akkoma instance (like mastodon)
8 - https://infosec.town - iceshrimp instance (like mastodon)
9 - https://infosec.pub - Lemmy instance (like reddit)
10 - https://fedia.io - General interest mbin instance (also like reddit)
11 - https://fedia.social - General interst Iceshrimp instance
12 - https://elk.infosec.exchange - Elk web interface for Mastodon
13 - https://books.infosec.exchange - Bookworym instance (like goodreads)
14 - https://meetups.infosec.exchange (mobilizon)
15 - https://infosec.space - Glitch-soc fork of Mastodon (this instance does
block threads.net)

*indicates the instance authenticates against Infosec.exchange

Infosec.exchange's profile - Liberapay

This will fund operations and hosting costs for the infosec.exchange Mastodon instance. I greatly appreciate any and all donations.

Liberapay
Do you know what frequencies your kids are jacking??

Once “too scary” to release, GPT-2 gets squeezed into an Excel spreadsheet

OpenAI's GPT-2 running locally in Microsoft Excel teaches the basics of how LLMs work.

https://arstechnica.com/information-technology/2024/03/once-too-scary-to-release-gpt-2-gets-squeezed-into-an-excel-spreadsheet/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social

Once “too scary” to release, GPT-2 gets squeezed into an Excel spreadsheet

OpenAI’s GPT-2 running locally in Microsoft Excel teaches the basics of how LLMs work.

Ars Technica

Sicherheitsforscher genervt: Lücken-Datenbank NVD seit Wochen unvollständig

Die von der US-Regierung betriebene Datenbank reichert im CVE-System gemeldete SicherheitslĂĽcken mit wichtigen Metadaten an. Das blieb seit Februar aus.

https://www.heise.de/news/Sicherheitsforscher-genervt-Luecken-Datenbank-NVD-seit-Wochen-unvollstaendig-9656574.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#NIST #Security #news

Sicherheitsforscher genervt: Lücken-Datenbank NVD seit Wochen unvollständig

Die von der US-Regierung betriebene Datenbank reichert im CVE-System gemeldete SicherheitslĂĽcken mit wichtigen Metadaten an. Das blieb seit Februar aus.

heise online
Trump tweeted an image from a spy satellite, declassified document shows

More than three years after his tweet, the U.S. government has formally declassified the image from one of its most powerful spy satellites.

NPR
Laying off 90% of your staff and locking them out of your offices a few days before the World cup when you need all-hands to keep the whole thing tipping up is .. a choice