For those that don't subscribe, I encourage you to do my so. Valuable stuff that is worth every penny.
For those that don't subscribe, I encourage you to do my so. Valuable stuff that is worth every penny.
NIST is stepping into standards for AI agents. We have MCP (and OAuth), A2A, and ancillary things like mutual TLS. But there is a need for refinement (lots of questions about OAuth meeting requirements). #cybersecurity #identity www.nist.gov/news-events/...
This shows the sort of data that Proton Mail, which prides itself both on end-to-end encryption and that it's only governed by Swiss privacy law, can provide to third parties. In this case, the FBI. @evystadium.bsky.social has more.
Scoop by @josephcox.bsky.social: www.404media.co/proton-mail-...
Silicon Valley isn't monolithic. The plutocrat/billionaire/Epstein class (Zuckerberg/Andreesson/etc) have a different perspective than the AI foundation model companies, which is different than lots of other Silicon Valley tech sectors, etc.
Netflix will pocket a hefty breakup fee, no? They may not have won the bidding, but they don't walk away with nothing.
AI systems are increasingly becoming decision support systems, and threat intelligence shows that their memory could be deliberately influenced. msft.it/63329Qwrsl
AI agents are a huge expansion of the enterprise cybersecurity attack surface with a lot of room for mischief and errors. The latest example of an error: www.404media.co/meta-directo...
And good luck to everyone in finding the budget to overcome the tech debt around rewriting and then QAing the code.
Identity & AWS outage:
"Amazon said that by default its Kiro tool “requests authorisation before taking any action” but said the engineer involved in the December incident had “broader permissions than expected—a user access control issue, not an AI autonomy issue.”"
arstechnica.com/ai/2026/02/a...
“I feel like, increasingly, it's impossible to talk to a single human [at Pinterest],” Pinterest user Tiana Oreglia said. “Along with being filled with AI images that have been completely ruining the platform, Pinterest has implemented terrible AI moderation” www.404media.co/pinterest-is...
There is job security that comes with working in identity security/IAM. From Palo Alto Networks Unit 42: "Identity has become the most reliable path to attacker success. Identity weaknesses played a material role in almost 90% of Unit 42 investigations." www.paloaltonetworks.com/resources/re...
Time to submit for cloudsec if you haven't already: fwdcloudsec.org/conference/n...
I plan to increase my coffee intake, and forget that decaf stuff. www.nytimes.com/2026/02/09/h...
Microsoft Defender Research has published details, mitigation, detection, and hunting guidance on the observed exploitation of internet‑exposed SolarWinds Web Help Desk (WHD) systems: msft.it/63327QPD9N
Como dicen en México, no mames! Spanish has a long run ahead in influencing American culture. Nice headline to get attention, though.
Play your game, not the other guy's game. Outrage ain't the way - I'd go for contempt, scorn, and laughter. The guy is a losing, lying weasel. talkingpointsmemo.com/edblog/trump...
On iPhone: five rapid taps in succession on the lock button shuts off all biometrics.
So sorry to see this happen @joemenn.bsky.social - you are a superstar. One door closes and others open. I look forward to reading your news of the next adventure.
New from 404 Media: the FBI has been unable to get into the iPhone of raided Washington Post journalist because the phone had Lockdown Mode enabled. Apple markets Lockdown Mode mostly to stop spyware like NSO. Here, a real world example of it stopping access too www.404media.co/fbi-couldnt-...
Lockdown Mode - use it or risk losing control of your data if someone is able to physically take your IOS (iPhone) device.
Exhibit 1 on why IOS Lockdown Mode is useful: www.404media.co/fbi-couldnt-...
Pondering on this, LinkedIn is like print media of old - you have tabloids (mediocrity) and reputable new sources (NYT, WSJ, FT,...). It depends what you read... or in case of LinkedIn, who you follow or are connected with. Of course, we also have the LI algo injecting rubbish ads into our feeds...
Where is a reputable gofundme to help defray legal costs?
Expect these strategies to proliferate to other professional leagues if they succeed consistently. Fortunately my Sunday league of soccer duffers has to worry about showing up for work on Monday uninjured - nobody wants to get hurt trying to crowd the keeper.
I felt obliged to write up an overview of all of the Fulton County fraud claims that have already been made — and dismissed. Let me know if I forgot any. www.pbump.net/o/some-thing...
People, think carefully before putting your sensitive personal information into random apps. They frequently have vulnerabilities and can leak your information. See below for the latest example courtesy of @404media.co .
Umm, why isn't the local police department ticketing the vehicles for violating state law by not having license plates?
Bitte, mach es!
"Nearly half of all American men aged 18 to 49 maintain an online sports-betting account...Emerging research suggests that the spread of sports gambling portends a huge increase in gambling addiction, which has the highest rate of suicide of any addictive behavior."
harpers.org/archive/2026...