Profile avatar
thedarktangent.defcon.social.ap.brid.gy
Founder of DEF CON & Black Hat. Member of the UK Gov Cybersecurity Advisory Board & The Council on Foreign Relations. Working to get Hackers and […] [bridged from https://defcon.social/@thedarktangent on the fediverse by https://fed.brid.gy/ ]
57 posts 655 followers 0 following
Prolific Poster
Conversation Starter

I'm trying to understand why one of the worst bulletproof hosting providers out there today -- Russia-based Prospero OOO -- is now getting transit to the larger internet via the antivirus and security firm Kaspersky Lab? […] [Original post on infosec.exchange]

Chris Hadnagy vs. DEF CON Lawsuit update 2025/02/24 It’s been a while since our last update - a lot has been going on behind the scenes - and with the discovery phase complete we have filed a motion for summary judgement asking the court to dismiss his […] [Original post on defcon.social]

Dan Farmer, who spoke at the first #DEFCON is still at it, this time pointing out some #BMC #IPMI problems on SuperMicro (and most likley other) systems: https://trouble.org/?p=1227

“Hitler's Enabling Act (1933) let his cabinet bypass parliament while claiming to ‘save democracy.’ Yesterday's Executive Order lets White House control all independent agencies while claiming to ‘restore democracy.’ They're not even changing the playbook […] [Original post on mastodon.online]

I’ve been iteratively compiling a #FreeBSD kernel adding more and more compiler and linker security options until it fails to compile. Now that is complete the next step is I’ll try actually booting them. Compilation doesn’t actually mean they work.

Time for coffee and checking in on social media.

Anyone I know have a PACER account?

Well after the USPS that basically leaves the Federal Reserve. Once Trump goes after that I predict markets will get a bit spicy.

Hardest thing I've had to write in quite some time: https://about.iftas.org/2025/02/06/funding-challenges-and-the-future-of-our-work/ tl;dr - we are running out of money and will not be able to pay our bills in April. As such, unless we can secure funding by end of February, we will be […]

DEF CON's Franklin Project has released the First Inaugural Hackers' Almanack! Grab it for yourself for an easily digestible compendium of remarkable research from DEF CON 32. https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20Hackers'%20Almanack.pdf […] [Original post on defcon.social]

With all the crazy health news I decided on getting my vaccinations tuned up. People travel so an outbreak in one place can turn up elsewhere. So far in 2025: ✅ flu 💉 ✅ TDAP booster💉 ✅ Hep B booster 💉 ✅ RSV 💉 ✅ COVID booster 💉 I did a titer test, that’s how I knew to do the Hep B […]

You had better take a shot, and then read this. https://www.linkedin.com/posts/charles-spitzer-stadtlander-jd-mpa-9b018b25_urgent-national-security-threat-i-work-activity-7296973991716499456-31eV

The tough reality of being a "glue person": 1. Your wins are (mostly) silent, but your missteps are very public. 2. Glue sits at the joints, and joints are where the stress is. 3. You see more than most people—which can be draining. 4. You see more than most...and that can be politically […]

Correct. If the birthdate field contains corrupt or mismatched data, it defaults to 1875-05-20, which serves as a flag. May 20, 1875, is the day the international standards and metrics treaty was signed. Everything is a conspiracy when you don’t know how anything works.

Bruce Schneier David Ottenheimer have written a tremendous piece for Foreign Policy that everyone should read called "DOGE is Hacking America." It clearly explains why what DOGE is doing has to be stopped, and what's at stake here […]

This is dumb. My W11 laptop has slowed down because every time I try and open a folder I have to wait for #Windows invasive account sign in / telemetry to time out: #Privacy #Network

The NYT has published a useful graphic showing all the agencies with investigations into or regulatory battles with of Musk's companies that have seen staffing cuts, including the firing of top officials. https://www.nytimes.com/2025/02/11/us/politics/elon-musk-companies-conflicts.html

On top of being Patch Tuesday it is also update #OpenSSL day. "OpenSSL 3.4.1 is a security patch release. The most severe CVE fixed in this release is HIGH. - Fixed RFC7250 handshakes with unauthenticated servers don't abort as expected. (CVE-2024-12797) - Fixed timing side-channel in ECDSA […]

Undergraduate Upends a 40-Year-Old Data Science Conjecture | Quanta Magazine https://www.quantamagazine.org/undergraduate-upends-a-40-year-old-data-science-conjecture-20250210/

A reminder that "executive orders" are exactly that - orders from the president for the executive branch. They are not laws, and they do not directly bind anyone not in the executive branch of the US government. They might affect how laws are enforced and other things the executive branch does […]

WTF Mozilla? I'm hoping they just forgot to delete this verbiage from their terms of service, which suggests they are still working with the personal data removal service OneRep. https://www.mozilla.org/en-US/about/legal/terms/subscription-services/ Last […] [Original post on infosec.exchange]

A big batch of #InfoCon #Security and #Hacking conference torrents have been updated! This was almost two months of work, the #SecurityBSides directory alone got over 30 updates! Why so much time? We are converting the archive from HEVC -> AV1 format. When we add a new con, like #BSides Las […]

The moment has arrived - the #DEFCON33 Call Season is officially afoot! There are a bunch of Calls to peruse at leisure from Contests to Soundtrack to Vendors, and all the info you need to get started is @ defcon.org/html/defcon-.... Don’t let your dreams be dreams! Let's get after it! #defcon

So, you've (I hope) actually read the Project 2025 document and thus know a big part of the stated policy objectives of this US government, if you're impacted by them. If you have, you're probably also confused as to where the hell the rest of the chaos that's clearly not in that plan came from […]

Today was my last day at ONCD. I turned in my White House pass, laptop and phone. I was explaining why I was resigning, while they were explaining the Special Governmental Employee (SGE) program was being eliminated. We both got to the same result. No hard feelings, I wish the best for ONCD […]

A Boston local news station recently interviewed a local man who had his Experian account hijacked after he'd frozen his credit with the big three consumer reporting bureaus. It's unbelievable that Experian still hasn't done jack about this problem that I've written about ad nauseum for years […]

Flying over the Pacific Ocean I checked my radiation sensor, just watch that red light blink! Each is a particle detection. On a normal day it reads between 4-5, but 10 hours into a 15 hour flight it’s reading 21.5. 😮

On the way to fly to Washington D.C. to launch the #DEFCON Franklin “Hackers Almanac” and I passed by about $170,000 SGD of #Whisky at the airport. 😅 I wonder if anyone ever buys them.

New Racial Harmony Bill just dropped in #Singapore - Being very multicultural they work to prevent tensions.

Join Jake and the DEF CON Franklin Team for the Release of The First Inaugural Hacker's Almanack! The Almanack is a compendium of the most impactful findings from DEF CON 32 and an analysis of their policy implications. Feb 6 at 1730 Pennsylvania Ave NW Suite […] [Original post on defcon.social]

You heard it here first: The #DEFCON 32 Live Music video and audio has been posted from Friday and Saturday nights. Music to hack to, check it all out here: https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20music/

I'm once again asking everyone who got the order to delete or change stuff on their websites etc. pp.: Before doing so, ping us. Either at @SafeguardingResearch or me Also via matrix: @schoeneh:matrix.org We also got a forum to organize: https://safeguarding-research.discourse.group/ And a […]

Is there a # tag for tracking torrents of U.S. Gov data the #DataHoarders are preserving? While not related to our archive mission we do have spare disk and bandwidth to help.

The first episode of Where Warlocks Stay Up Late is out! https://www.youtube.com/watch?v=7IHKRzGQeog >Digital Jesus/o.0, aka Matt Harrigan, turned a telecommunication product release into a 0-day, tipped off drug dealers about government surveillance, and emerged as a cybersecurity founder […]

Anyone know in the #Meshtastic world if there is a board that supports PoE as well as the ability to update firmware over Ethernet? Basically I want to run a single cable to my roof and me able to power the radio and perform firmware updates. If not possible currently how do people manage […]