Thatβs me! π
Thatβs me! π
On Thursday I presented at Way West Hackinβ Fest in Denver to a group of friends, colleagues, and my son! I appreciate this community of people who come together to learn, to be supportive, and to have fun! (Slides and hopefully video shared soon.) Thank you #wwhf!
I have a friend who became blind in her 50s almost overnight. Helping her with using computers has helped me understand the need for better accessibility in a way that I never understood before.
We can all do better in making technology more accessible. Please do.
bees.substack.com/p/making-hac...
Thank you! Delta 400 cost always seemed hard to justify when HP5 does the job. A little enlarger filtering does indeed go a long way.
What do you prefer about Delta 400 vs. HP5? The blacks in these photos look fantastic, but maybe thatβs post-processing?
This video from Dave Plummer really helped me understand the implications and methods behind DeepSeek. Worth a listen! youtu.be/r3TpcHebtxM?...
Today I realized Iβm the person people at work turn to when they have Git questions or problems.
Me.
How did we fall so far? π¬
Happy birthday to the unusual number of my cybersecurity friends who all have January 1st birthdays on Facebook! π§π§π§
Ghostty 1.0 is now available and it's amazing. ghostty.org #terminal #macos #linux
Reminds me of the set of Tiny Music Desk. Maybe youβll play there someday!
Whoa, nicely done!
TIL βflag plantingβ exists outside of CTF cyber competitions. π§
I feel like those kind of shows were my favorite when I was younger and a rarity today. Glad you got to catch them!
Love that talk title!
TIL about github.com/iknowjason/e..., a useful utility to assist in figuring out βwhat cloud provider/region is this entity deployed in?β
$ ./edge -single 140.179.144.130
β¦
[INF] Matched IP [140.179.144.130] to Cloud Service [API_GATEWAY] and Region [cn-north-1]
Just avoid cliches like the plague.
πππ
Important for parents/anyone guiding/mentoring kids-especially middle/high school: make sure they know ChatGPT etc are mostly WRONG and should never be used as sole sources!! Itβs an important lesson because the (VC-fueled) tech media fawns over the lie engines as if theyβre the second coming.
Sure, but any sigsegv in a kernel module is a possible pathway to root on a system where you donβt have root access.
Iβm really just trying to offer a bright outlook to your driver crash. π
On the plus side, every kernel module crash is an opportunity for privilege escalation? π€·ββοΈ
A crash of what nature? π§
Man near bear in forest with text βIf you meet a bear in the forest, just ask him to review your pull request so he pretends he didn't notice you and goes awayβ
Here, here. --break-system-packages is unnecessarily foolish.
For the love of all holy just buy film.
"Our job is to make it safe, not to tell [users] not to click on things on the *thing clicking machine that we gave them*" @metlstorm.risky.biz
I'm planning on repeating this quote quietly to myself at least once a week for the rest of my days.
www.youtube.com/watch?v=Rxye...
AI has taught me many things.
First and foremost is that I hate bulleted lists. #ai
Itβs not a good bouldering session without some scrapes!
As a pen tester, I'd be uncomfortable submitting my methodology fusing only Brainstorm (AI endpoint fuzzer) due to the non-deterministic nature of the tool. Maybe more valuable to integrate with strong list-based discovery and some AI-driven endpoint identification? github.com/Invicti-Secu...
Article by Bogdan Calin on using local LLMs to improve endpoint/file discovery. I'm not sure how practical this is for pen testers, but optimizing requests to avoid WAFs is real. www.invicti.com/blog/securit...