#cloud

144 posts · Last used 6d

Back to Timeline
r1cksec @r1cksec@infosec.exchange · 6d ago
ANIMO is a comprehensive Azure AD / Entra ID assessment platform that combines PowerShell-based session management, Azure CLI parity, and native Graph / ARM API integration. https://github.com/dmcxblue/ANIMO #infosec #cybersecurity #redteam #pentest #cloud #opensource
0
0
0
Brian Greenberg :verified: @brian_greenberg@infosec.exchange · Aug 07, 2026
Boosted by DataKnightmare @DataKnightmare@mastodon.xyz
A software investor told an AI agent, 11 times in all caps, DO NOT TOUCH ANYTHING WITHOUT PERMISSION!! It wiped his production database anyway. Then it claimed the data was unrecoverable. It wasn't. Everyone wants to talk about how the AI misbehaved. I think that's the wrong conversation. Every failure in that story has a known engineering fix. Keep prod separate from dev. Put safeguards on destructive commands. The AI did what any unsupervised tool does. What was missing was the judgment a senior engineer brings before a single line of code is written. So I wrote about the question technology leaders should be asking instead: whose engineering judgment is your AI following? Because it's following someone's. If your standards live in a document nobody reads, your AI is coding to whatever it picked up from the prompt in front of it. AI is an amplifier. Hand it vague requirements and weak practices, and it produces bad work faster. Hand it the discipline of your best engineers, and it spreads that discipline across the whole team. Full piece in Forbes: https://www.forbes.com/councils/forbestechcouncil/2026/08/07/your-ai-is-learning-from-someone-make-sure-its-your-best-engineer/ I also open-sourced an experiment called Senior Engineering Partner, a Claude Code skill that encodes those habits into working instructions. Spec before code. Evidence before claims. Real failures turn into regression tests instead of postmortem notes. It's on GitHub if you want to try it or tear it apart. https://github.com/bjgreenberg/senior-engineering-partner #AI #SoftwareEngineering #TechnologyLeadership #security #privacy #cloud #infosec #cybersecurity
5
0
4
Ozzie :fedora: :linux: 🤘 @mjlmo@social.vivaldi.net · Aug 07, 2026

When you work on a #Microsoft #windows laptop with a small SSD, you have to manage disk space a bit more tightly. So what's the deal with #Google #Chrome On-device #AI installing a Gemini-Nano model taking up 4GB? For the sake of #privacy it is said that it runs entirely on your #hardware rather than remote servers, not sending data to the #cloud I've got two comments on this:

  1. Going to avoid using this on my personal laptop.
  2. Glad I'm a #VivaldiBrowser user, no AI nonsense or additional workload on the CPU and disk for something I didn't ask.
0
2
1
Rene Nel @ReneMichael@mastodon.social · Aug 05, 2026
Boosted by Welcoming committee @welcome@friends.deko.cloud
New here! #Introduction. Father to two daughters 🧠 Neurodivergent & living with epilepsy 🏢 Backend and development for a logistics & construction company 💻 Hobbies include web design, Python, and Fedora ☁️ Always playing around with cloud infrastructure 🖖 DS9 ​Say hi! #Introduction #StarTrek #Neurodivergent #Epilepsy #Python #Cloud #Fedora
0
0
2
Mousa Al Bateh | Cloud Security & Architect @mousa_cloud@infosec.exchange · Aug 05, 2026
Is your company's data center consumption contributing to carbon emissions? Europe and other regions have experienced several extreme heatwaves due to climate change and other factors. Data centers have been also an ongoing discussion due to their environmental impact. #cybersecurity #datacenters #climate #finops #cloud #aws #sustainability #climatechange
0
1
0
Rad Web Hosting | radwebhosting.com @radwebhosting.com@bsky.brid.gy · Aug 04, 2026
Updated Post: Deploy VoIP Call Center on VPS #Cloud #Guides #VPS Deploy VoIP Call Center On VPS...
0
0
0
Wulfy—Speaker to the machines @n_dimension@infosec.exchange · Aug 02, 2026
Replying to @CptSuperlative@toot.cat
@CptSuperlative@toot.cat @Ailantd@mastodon.art I have been using #opensource #officelibre draw for well over 10 years professionally.(closer to 20) It's only got basic primitives, but my workflow is to create my own library as a sheet. I never bought into the #cloud scam (other people's computers). #sysadmin #rosettasheet
2
1
1
Regina Mühlich ✅, Datenschutz @ReginaMuehlich@mastodon.social · Jul 18, 2025
Es ist nicht überraschend, aber dennoch: "Microsoft schafft laut eigener Aussage eine souveräne Cloud für Europa, um die Datenschutzbedenken auf dem alten Kontinent zu adressieren. Ein Microsoft-Manager hat nun aber unter Eid bestätigt: Eine Garantie, dass keine Daten an US-Behörden weitergegeben werden, ist nicht möglich." https://www.itmagazine.ch/artikel/85137/Unter_Eid_Microsoft_kann_Schutz_vor_Cloud_Act_nicht_garantieren.html #Security #Datenschutz #EU #US #Cloud #Microsoft
137
0
165
Brian Greenberg :verified: @brian_greenberg@infosec.exchange · Aug 03, 2026
✨ A sparkle icon shows up in an app you own. Nobody in IT put it there. A user opens a ticket asking what it does, and the help desk has no answer. The feature is live, it's available to everyone, and it's already processing your data. I wrote this one for Forbes because it keeps happening and I've stopped pretending it's normal. Zoom gave admins about four days in July 2024 to click "do not auto-enable" before AI Companion turned itself on. Google launched Workspace Intelligence in April 2026 with Gemini reaching into Gmail, Drive, Chat and Calendar, each source on by default, and the admin controls could show up as much as 72 hours behind the live feature. OpenAI ships ChatGPT Enterprise with connectors off and ChatGPT Business with them on. Same company, opposite decision. Here's the part that should bother you. Many U.S. states require two-party consent for recording. Whether an AI meeting summary counts as a recording under wiretap law is still an open question, and your company gets to be the test case. Zoom chat retention defaults to two years, so the evidence sticks around while you figure it out. What decent vendor behavior would look like: ・New AI features ship off, with the switch left to you ・One clear notice to admins naming the feature, the data it touches, and the date it goes live ・An evaluation window measured in weeks Until that shows up, work from the assumption that the next AI feature is already on in your tenant. Put configuration reviews on a recurring schedule. Write down every default-on surprise you find and bring that list to your renewal conversation, because that's where you actually have leverage over the behavior. Default-on is a choice. So is governance. https://briangreenberg.net/2026/07/30/default-on-ai-are-saas-vendors-outsourcing-their-risk-to-you/ #AIGovernance #CISO #SaaS #security #privacy #cloud #infosec #cybersecurity
0
0
0
KING CONSULT | Kommunikation @kingconsult@berlin.social · Jul 31, 2026
Happy #SysAdminDay! 🍰 🧁 Liebe Admins, habt Dank für eure Geduld, Hingabe und Ausdauer! Ohne euch läuft nichts – keine #Cloud, keine #ITSicherheit, kein #Datenschutz, keine #Kommunikation. Danke fürs Durchhalten und unermüdliche Verbessern! 🙏 ⌨️ 💪 #Systemadministration #FediAdmin #SysAdmin #ITsecurity #Admin #AdminLeiden #Digitalisierung
4
0
19
Santiago Andrés Triana @repepo@fediscience.org · Jul 28, 2026
A stationary lenticular #cloud with wavy #iridescent companions as the sun sets today.
30
2
13
lars @lars@fedihub.space · Jul 28, 2026
Du willst deine eigene Nextcloud starten, aber sicher und unkompliziert? In meinem neuen Beitrag zeige ich dir, wie du Nextcloud in einem Docker-Container einrichtest – direkt mit VPN-Schutz für maximale Privatsphäre. Ideal, um deine Daten selbst in die Hand zu nehmen! #Nextcloud #Docker #SelfHosting #Datenschutz #VPN #Cloud https://dasnetzundich.de/installation-von-nextcloud-im-docker-container-mit-vpn-schutz/
0
1
0
PrivacyDigest @PrivacyDigest@mas.to · Jul 27, 2026
The Best Subscription-Free Home #Security #Cameras I’ve Tried You don’t have to upload your #video to the #cloud or pay a monthly fee to secure your home. These security cameras record locally. #privacy #surveillance https://www.wired.com/story/best-subscription-free-security-cameras/
0
0
0
SNeela @vmcall@infosec.exchange · Jul 27, 2026
I'm happy to announce our work has been accepted at ESORICS 2026, going to be held at Rome, Italy in September later this year! "A Systematic Look at Quality-of-Service Feature Effects on Side Channels in AMD SEV-SNP" In our work, we show that AMD CPUs' Quality of Service features introduce and amplify side channels, especially concerning in the confidential computing / trusted execution paradigm of computing. We show that a malicious hypervisor can use allocation and monitoring features to leak and amplify what's going on in an AMD SEV-SNP confidential VM. The hypervisor can mount keystroke detection attacks, website fingerprinting attacks, Bleichenbacher attacks on RSA, and covert channels. We reported our findings to AMD, who said that "side channels are not in their threat model for SEV-SNP"... 🙂. I have a blog write up here (there's a logo of a cat wearing a business tie - no AI): https://snee.la/posts/amd-qos-side-channels/ You can read the paper at: https://snee.la/pdf/pubs/amd-qos-side-channels.pdf Thanks to Carina Fiedler, @Rayiizzz@infosec.exchange, @supersingular@chaos.social, @misc0110@infosec.exchange and @lavados@infosec.exchange for the fun collaboration! :1000: #esorics2026 #confidentialcomputing #amd #security #cloud #computing #cloudcomputing
9
0
9
C3PB e.V. @c3pb@chaos.social · Jul 26, 2026
Im August wird es bei uns leider keinen di.day geben, wir machen Libori-Pause! Weiter geht es voraussichtlich am 6. September. Stimmt gerne über den Link auf unseren Blogartikel zur Rückschau auf den Juni-Termin ab, welche Themen euch für zukünftige Termine interessieren: https://c3pb.de/blog/die-eigene-next-cloud.html Im im Oktober sind wir außerdem zu Gast beim HNF und stellen Linux vor! #diday #paderborn #didit #cccRegio #sonntag #nextcloud #cloud #linux #umfrage #libori
1
0
2
r1cksec @r1cksec@infosec.exchange · Jul 25, 2026
There is a documented enforcement gap in Conditional Access policies that apply to "all resources" but have an exclusion for at least one resource. https://dirkjanm.io/bypassing-conditional-access-with-resource-exclusio #infosec #cybersecurity #redteam #pentest #cloud
0
0
0