Gabriel N
gnyman@infosec.exchange
Posts
-
View post
RE: https://infosec.exchange/@disarray_fi/117318705237424207 One small clarification from someone who grew up on Åland and have traveled these waters one time too many. There is no international waters on this cruise. So don't get any ideas about being a real life pirate or lawless hacker :-) That said, don't miss this conference if you are in to or interested in infosec. #conference #infosec
-
View post
@fj@mastodon.social seems like bike shed-security to me :-/ I mean where in the threat model to the fediverse is "someone is collecting all fediverse traffic in order to break it later"? Almost everything here is public by definition isn't it?
-
View post
I love what your doing with obsidian @kepano@mastodon.social but can you help me understand this. Is it convoluted edge case that was not prioritised? Is opening untrusted md's not something you think people do? (I don't but just sample of 1). As Adam presents it, it looks bad but I'd like to hear the other side of the story. https://www.linkedin.com/posts/evilpacket_if-you-use-obsidian-you-will-want-to-upgrade-share-7488660732641763328-69yj/
-
View post
RE: https://infosec.exchange/@wdormann/116965991820118056 Microsoft: "We are making security our top priority, above all else." Also Microsoft
-
View post
RE: https://mastodon.social/@marginalia/116962929877712271 lol best way to describe dockers dumb firewall bypass It further doesn’t let you set firewall rules for the ipvlan interface, which means that anything you put there better not bind on the public IP, or its ass is going to be hanging out in full view. This is in no way a limitation of ipvlans, but purely a docker problem. I love when technical people write up why for solutions just not "here is a list of steps I ran". Please...
-
View post
Microsoft PR department does what they always done, catch on to some brand and milk it until it has negative value. They did this same thing with Azure and probably other things before it. I wonder if this is intentional, does the board want them to do this or is it an institutional thing they can't stop? https://teybannerman.github.io/strategy/2026/03/31/how-many-microsoft-copilot-are-there.html
-
View post
It's a frisk 7C but sun is out and it's time to start collecting that d-vitamin. Quite an experience to first listen to the Artemis recap and then notice that I (unintentionally) picked my ESA coffee mug. Humanity can do great things, I hope we can keep the focus on the building rather than destroying. https://youtu.be/J4FE0JocJpk
-
View post
it's a interesting world we live in where the rewrite-in-rust army has now gotten nuclear weapons in the form of LLM's, and they are not afraid to use them :-D The backstory for why I started thinking about this is that CIRCL.lu runs this vulnerability-lookup project, which is great. But I had some ideas how to improve the notification emails so I wanted to look into what it would need to self-host in order to customise it for my use. But I got distracted by this, I rewrote it in rust,...
-
View post
@campuscodi @Techaltar would be great, it would allow them to subsidier the consumer tiers just like the other big tech does. Proton is out of the reach of so many because of the cost.
-
View post
Interesting, Microsoft has (started?) putting up a warning on repos that host exploit code. From the description it sounds like the code itself would be malicious but afaik this is "just" a PoC. The interesting part is to see if they start doing this everywhere or just when it's windows exploits that make them look silly :-)
-
View post
Found this in my archive. One of the last times when I installed a dot zero OS X release. Now I generally wait until just before the next major release as around that time all new features go into the new one and the "old one" just get bug fixes.