Simple Nomad
simplenomad@rigor-mortis.nmrc.org
<p>Long time <a href="https://rigor-mortis.nmrc.org/tags/Hacker" class="mention hashtag" rel="tag">#<span>Hacker</span></a> type. <a href="https://rigor-mortis.nmrc.org/tags/Hippie" class="mention hashtag" rel="tag">#<span>Hippie</span></a> and I care about the <a href="https://rigor-mortis.nmrc.org/tags/planet" class="mention hashtag" rel="tag">#<span>planet</span></a>, ask me about <a href="https://rigor-mortis.nmrc.org/tags/solarpower" class="mention hashtag" rel="tag">#<span>solarpower</span></a> and <a href="https://rigor-mortis.nmrc.org/tags/EV" class="mention hashtag" rel="tag">#<span>EV</span></a>. # RemoteWork since 1999. On Mastodon since April 2022, this instance since Nov 2022. </p><p>Former ghost hunter and storm chaser. Practicing <a href="https://rigor-mortis.nmrc.org/tags/p
Posts
-
Post #4073801
"And it brings an added twist: The contention that Hugging Face, an American company, was able to repel the attack by turning to an open-weights model from China offers a counterargument to some U.S. officials, as well as executives at OpenAI and Anthropic, who support restricting access to Chinese models." As a researcher, this is the part that actually bothered me. https://www.wsj.com/tech/ai/how-the-futuristic-hack-by-rogue-openai-models-unfolded-1657bcea?st=dL4iH6 #ai #openai #h...
-
Post #3656077
Has anyone ever refused a bug bounty payment? Curious…. I mean, if the only way to report a bug to some company is via a bug bounty program, is it possible to say “no thanks” on the payout? Or have them donate it to the #eff? I’d be interested in hearing about any such thing happening. #infosec #security #bugbounty
-
Post #3411666
From last April, I somehow missed this so maybe others did too. Regardless, it's fucked up. https://futurism.com/artificial-intelligence/ice-facial-surveillance-glasses #privacy #meta #security
-
Post #1822976
You know that nerd thing where there&#39;s a joke amongst techies and one of them buys the domain for the joke? Imagine simply keeping that domain and actually using it for something. Behold! https://www.markloveless.net/blog/2026/04/24/the-tale-of-handjob-alley #FunFriday #infosec #HackerLife #humor
-
Post #1822974
Reposting for those that could use a laugh, considering, you know, reality. https://rigor-mortis.nmrc.org/@simplenomad/116460018702491275
-
Post #1822973
Copied in on a lively text convo with left and right. Was asked my opinion on the whole Trump firing squad thing. I think I managed to piss off my left friends when I said &quot;I think out of some of the states doing capital punishment, don&#39;t we have some that still do firing squad?&quot; One of the right people said something like &quot;so the old hippie agrees with us&quot; and I said &quot;Well I thought you guys were pro life. Are abortions being legal his next m...
-
Post #1822972
Interesting. Using Agentic AI to avoid EDR detection while functioning as a malicious implant. Fascinating read since this is literally and figuratively hacking the system. https://www.beyondtrust.com/blog/entry/claude-control-agentic-c2-computer-use-agent #infosec #security #ai
-
Post #1625878
@jerry Let them know that despite there being plenty of anti-AI sentiment out in the world, it is not only NOT going away but it is up to the security community to fix it. Just like we did with PHP when that came out spawning hundreds of vulnerable websites from non-HTML programmers. Just like we did when we moved from server rooms to the cloud. Before HTTPS. And on and on. Whether we like it or not, security pros have to fix things.
-
Post #1625877
@joshbressers @jerry I take a step further, repost the LLM’s code in a separate chat, and say “I wrote this code but strongly suspect it is insecure, please show me the flaws and give me a diff to fix things.”
-
Post #1625876
I know there is a lot of hype and panic surrounding #anthropic and #mythos but I think the thing I am looking forward to and what no one seems to focus on is that 1) the flaws in code are still there Mythos or not, and 2) imagine running this as a part of a CI pipeline to look at every bit of code particularly during a &quot;build&quot; and &quot;test&quot; stage. That second part is what I am really looking forward to. #security #infosec #ai
-
Post #1416819
Everyone else is speculating, so… To me, I’d wager this entire thing was Israel’s idea based upon intel they gathered, brought in the US to help blow shit up (and take some blame). I mean the Israeli government has some history… I’m not saying this because I have old friends in .gov/.gov contractor companies either. I promise.
-
Post #1416818
I have a good friend and we can say virtually anything to each other and not be offended - even when trying to offend for laughs. Everyone should have a friend like that. I recently replied to her text (which I will NOT reveal), and I said &quot;Yes! As long as I am not within 500ft of a school.&quot; Like I said, everyone needs that kind of a friend.
-
Post #1416817
Oh sure, rest-of-the-planet-that-isn&#39;t-the-USA, we&#39;ve had our problems, but don&#39;t worry! We&#39;ve got our priorities straight and we&#39;re fixing this country! https://www.rollingstone.com/tv-movies/tv-movie-news/brady-bunch-house-los-angeles-landmark-1235525250/
-
Post #1416816
Interesting. I wonder what series of things happening in the #intel community prompted this particular move. The details are obvs vague, but as the bulk of these items are made in China, one could guess. https://www.pcmag.com/news/fcc-just-banned-the-sale-of-new-wi-router-models-made-outside-us #security #infosec
-
Post #1416815
A few minutes ago on the live feed for #artemis I watched the astronaut with the tablet on his lap unlock it with a password of 3939. Hope they change it before the next flight. #nasa #space #HackerLife #infosec
-
Post #1416813
Here&#39;s a fun post for pro- and anti-AI infosec people alike - guess who is going to have to &quot;fix&quot; AI? If you&#39;re thinking &quot;not me&quot; well, think again. https://www.markloveless.net/blog/2026/4/2/the-uncomfortable-effects-of-ai #security #ai #infosec
-
Post #1416812
I&#39;ll never get tired of pursuing green energy solutions. https://www.markloveless.net/blog/2026/4/9/green-update #green #greenenergy #solarpunk
-
Post #1416811
I think this is to be expected, but still glad to see it happening. https://electrek.co/2026/04/07/used-evs-just-hit-a-sales-record-a-much-bigger-wave-is-coming/ #ev #green Thanks @mattferrell for the link.
-
Post #1416810
Oh come on! Put in some effort. If you&#39;re going to scam, take your time and scam well. And make sure you fill out all of the fields. #infosec #security #docusign #scam #hacking #hacker
-
Post #1416809
A heavy day of mourning across the USA. Tax day. #tax #OldManYellsAtIRS #YesIHadToPayAndItSucks
-
Post #1057493
A sign of the times.
-
Post #451593
Karma for vibe coders comes from vibe bug hunters and vibe PRs. Who wins? Us hackers do. It&#39;s raining shells! #ai #vibecoding #Hacker #infosec