Profile avatar
blackasphodel.bsky.social
Cybersecurity ninja, too many food allergies, nerd of many flavors
66 posts 63 followers 101 following
Regular Contributor
Active Commenter

Wordpress. Again. This is getting as bad as Adobe products back in the day :P

Here's an amicus brief being filed to ensure Seniors get celiac-safe food in care homes. This is hugely important to anyone who has the disease, but also should be expanded to hospitals for ANY celiac. nationalceliac.org/wp-content/u...

Fighting back against AI crawlers: techcrunch.com/2025/03/27/o...

GitHub CodeQL Actions Critical Supply Chain Vulnerability (CodeQLEAKED) Discussion

Nothing says happy Sunday morning like reporting a security bug to the software company that runs your doctor's patient portal system 😑 This one is so dumb too.

Everyone knows all the apps on your phone Discussion

OSS-SEC: Three bypasses of Ubuntu's unprivileged user namespace restrictions Discussion

Assuming this is what @rachelonthebay was referring to the other day

Me, playing Xenoblade Chronicles X for the first time: “Wow, that looks like the spaceship wreckage I’m supposed to find.” Me, moments after being stomped by a level 60 robot: “That was definitely NOT spaceship wreckage.”

Who’s got a Chromebook? cloudisland.nz/@rmi/1142198...

A breach at Oracle Health impacts multiple US healthcare organizations and hospitals after a threat actor stole patient data from legacy servers. This is not related to the alleged Oracle Cloud breach. www.bleepingcomputer.com/news/securit...

Vivaldi has announced the integration of Proton VPN directly into its browser without requiring add-on downloads or plugin activations, allowing users to protect their data against 'Big Tech' surveillance for free.

Oops

The concern is what happens to your data if 23+Me goes under or sells out...Even if you aren't in CA worth checking out if you did the tests. oag.ca.gov/news/press-r...

Decrypting Encrypted files from Akira Ransomware (Linux/ESXI variant 2024) using a bunch of GPUs -- "I recently helped a company recover their data from the Akira ransomware without paying the ransom. I’m sharing how I did it, along with the full source code."

A critical remote code execution (RCE) vulnerability in Apache Tomcat tracked as CVE-2025-24813 is actively exploited in the wild, enabling attackers to take over servers with a simple PUT request.

A supply chain attack on the widely used 'tj-actions/changed-files' GitHub Action, used by 23,000 repositories, potentially allowed threat actors to steal CI/CD secrets from GitHub Actions build logs.

Popular GitHub Action tj-actions/changed-files is compromised Discussion

Everything you say to your Echo will be sent to Amazon starting on March 28 Discussion

Mozilla is warning Firefox users to update their browsers to the latest version to avoid facing disruption and security risks caused by the upcoming expiration of one of the company's root certificates.

Alcest, Mono, and Kaelan Mikla last week.

The coolest thing I’ve seen today is that a bunch of volunteer public health professionals and developers have restored the CDC website from before January 20th 2025. This differs from an archive in that they want to rebuild the links between pages and replicate the full website.

Just reminded myself how hard the ending of Coffin Text Spell 714 goes