Alex Haydock

Security Engineer. Dismantler of Torment Nexuses. Friend of Blåhaj. Knows too much about IPv6.

Interested in understanding how complex systems fail. Frequently interested in understanding how to make them fail.

Currently helping build Tor & DNS infrastructure with @emeraldonion.

:tux: :fedora: :rainbow_heart: :trans_heart:

Alex Haydock boosted:

ORG turns 20 this year! 🎈 🎉 🎂

To celebrate two decades of fighting for digital rights, join us for a special event with Cory Doctorow @pluralistic in conversation Maria Farrell.

Register now to hear about Cory's writing, surveillance capitalism, the ‘enshittification’ of digital platforms and how to fight Big Tech ✊

It's not one to miss!

🗓️ Wed 16 July, 6pm BST
💻 Zoom

openrightsgroup.org/events/org

#ORG20 #digitalrights #bigtech #corydoctorow #enshittification #privacy #capitalism #surveillance

Alex Haydock boosted:
Alba 🌸 :v_pat:mildsunrise@tech.lgbt
2025-06-17

I'll never forgive LLMs for associating themselves with my beloved em dash :neofox_sad:

2025-06-16

@VasiliWz @emeraldonion @whil That might be something we look into once load ramps up, but my working theory (yet to be disproven) is that the Tor network ought to naturally distribute the load relatively evenly across the relays we’ve deployed.

Looking forward to getting into the performance tuning once that load increases though, so we can try and use as much of our upstream bandwidth as possible!

Alex Haydock boosted:
2025-06-16

Whoa: Weston, the reference compositor for #Wayland, supports multiple physical independent mice at the same time! 😀

"New mouse, who dis?"

(See toot later in the thread for how to set this up!)

Alex Haydock boosted:
2025-06-15

We've been hard at work the past few months!

1. Leaving the Westin datacenter in downtown Seattle and moving on from expensive co-location

2. Moving our gear to Fremont, California

3. Bringing on board a few new Advisory Board members, including @whil who has been an incredible help deploying our #Proxmox infrastructure, and @alexhaydock who has been instrumental in deploying our new #Ansible infra, new recursive #DNS resolution infra, and new #Tor exit relays in California! See: infosec.exchange/@alexhaydock/ with more updates to follow

4. Installing new co-location with some older low-power systems in Amsterdam for our self-hosted #ActivityPub infra @ disobey.net, where we just moved our #Mastodon profile to!

5. Deploying a new #XMTP node @ xmtp.disobey.net, and testing a new #DeltaChat relay!

6. Deploying some new #obfs4 private bridges for use in a country who's conducting heavy internet surveillance and censorship, blocking access to @torproject

and today is our birthday!!! we're 8 years old today ^_^ stay tuned for more updates to come!

2025-06-15

We deployed 24x new Tor exit relays today for @emeraldonion ! 🧅

I'm excited to post (or maybe talk) about our deployment architecture soon. We're deploying relays as diskless VMs that each boot from a single EFI binary. No logging, no persistence. Pretty much just the Tor daemon.

metrics.torproject.org/rs.html

A screenshot of the Tor Browser showing https://dnscheck.tools open with an Emerald Onion exit relay relaying the traffic. It shows that our current IPv4 and IPv6 addresses are within Emerald Onion's AS space, and our 6 upstream DNS resolvers are too.
Alex Haydock boosted:
jonny (good kind)jonny@neuromatch.social
2025-06-15
Hi everyone - as a previous context I’m an AI Program Manager at J&J and have been using Cursor for personal projects since March.

Yesterday I was migrating some of my back-end configuration from Express.js to Next.js and Cursor bugged hard after the migration - it tried to delete some old files, didn’t work at the first time and it decided to end up deleting everything on my computer, including itself. I had to use EaseUS to try to recover the data, but didn’t work very well also. Lucky I always have everything on my Google Drive and Github, but it still scared the hell out of me.

Now I’m allergic to YOLO mode and won’t try it anytime soon again. Does anyone had any issue similar than this or am I the first one to have everything deleted by AI?

    That’s one of the main reasons I am inclined to use it in a KVM env. There it can delete everything no issues at all. Even if AI was the supreme being doing everything correctly, it would not be a good practice to let it run unsupervised commands on YOUR machine. Would you let a Junior/Intern that …
Alex Haydock boosted:
bram dingelstad :nb_flag:bram@gamedev.lgbt
2025-06-15

lol changed from en_US to en_GB and got my trashcan renamed to "waste basket" lmao

2025-06-15

@psyhackological You can add exceptions — it’s quite flexible

infosec.exchange/@alexhaydock/

Or if you spot an email you manually decide shouldn’t be deleted then Proton at least has a button you can press to cancel the expiry timer for it. Not sure about other clients.

2025-06-15

@jana I'm doing it in Proton but I think Sieve might be a more generally available email filtering language now.

You can get pretty granular with it too since it just applies each rule in order to any incoming mail.

2025-06-15

Mental health tip:

Configure an email sieve filter to delete all your emails after x days.

Now your unread email counter can go down as well as up, which is far more satisfying. :blobcatbusiness:

A screenshot of an email "sieve filter" which expires emails after 6 months.

It reads:

expire "day" "182";
2025-06-11

At some point I will have to get out the HDMI capture card and Wiimote to actually patch the NetBSD Wii, but for now it can live on.

2025-06-11

Thought my Wii-based webserver had broken while I wasn't around to fix it.

Turns out it was just the WireGuard tunnel to the VPS that's presenting my ASN further upstream. Turned that off-and-on-again and now it works.

Still going strong after 50 days!

blog.infected.systems/status/

#wiibsite

Screenshot of my Wii status page at https://blog.infected.systems/status/ showing the current uptime of the Wii based webserver.

The uptime line reads:

8:30AM  up 50 days, 15:18, 0 users, load averages: 0.00, 0.00, 0.00
Alex Haydock boosted:
2025-06-10

Excellent work @popey! nerdydaytrips.org/

Fedi-friends, there are already tons of great places on here, add some more! I just added one in my home town and it was delightfully straightforward (no sign up!). Tip: look it up on openstreetmap first as you'll need the URL.

Alex Haydock boosted:
2025-06-06

@matildalove @soatok
ISO: "We created global standards for everyone to follow"
Everyone: "Can we see them?"
ISO: "No"

Alex Haydock boosted:
2025-06-06

IP/Port: 99.251.254.190:5900
Hostname: pool-99-251-254-190.cpe.net.cable.rogers.com
Client Name: chipi chipi chapa chapa
Location: Willowdale, Ontario, CA 🇨🇦
ASN: AS812 Rogers Communications Canada Inc.
VNC Password: N/A
ID: 23981179
Added to DB: 05/06/2025, 10:39:46 PM (UTC)
Last seen: 05/06/2025, 06:52:41 PM (UTC)
computernewb.com/vncresolver/b

1920x1080 screenshot of VNC Resolver ID 23981179
2025-06-05

@goetz Given it's Nintendo, I'm surprised they implemented anything at all.

2025-06-05

Switch 2 has a working #IPv6 stack it seems, according to Reddit.

I wonder if the days of Nintendo’s “forward all 65535 ports to your Switch” advice are coming to an end…

reddit.com/r/ipv6/s/cmy7tWkZ18

A screenshot of the Nintendo Switch 2 Internet settings page, showing a visible IPv6 address and gateway
Alex Haydock boosted:
Kelly Shortridgeshortridge@hachyderm.io
2025-06-02

@rmi I created this meme forever ago to describe the devolution of information security, feel free to frame it

1970s & 1980s: Our mission is to achieve deterministic security and deductive, proof-based certainty of that security in our systems.

2010s & 2020s: Our hope rests in stopping laypeople from clicking on things on the thing-clicking machine.

The horse sketch meme adapted by yours truly to illustrate the sad intellectual decline of the information security industry. The well-drawn end of the horse starts with the labels multilevel security, trusting trust, and formal methods. As the drawing gets progressively worse, the labels are firewalls, threat intelligence, and, once we reach the level of stick figure, the labels are machine learning for anomaly detection, and “prevent people from clicking things on the thing-clicking machine."

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst