Ela

Old school hacker.

@m Du missverstehst. Das BSI hat eine funktionierende Krypto gebaut, die im BOS-Digitalfunk statt der kaputten Standardverschlüsselung eingesetzt wird.

Ach heise. Ein Hinweis, dass der BOS-Funk eine eigene Krypto verwendet, weil das BSI schon in den 90ern die von den Franzosen eingeschleusten Schwächungen und Hintertüren der TETRA-Standard-Krypto kannte, hätte diesem Artikel durchaus gut zu Gesichte gestanden.

heise.de/news/Digitaler-Behoer

Ela boosted:
2025-08-08

New from 404 Media: we've seen and verified video of a CBP agent wearing Meta's AI glasses during immigration raid in LA. Glasses capable of recording, live-streaming, Meta plans to add facial recognition. Experts deeply concerned about this tech being abused by DHS 404media.co/a-cbp-agent-wore-m

Ela boosted:
xyhhx 🔻 (plz hire me)xyhhx@nso.group
2025-08-06

EXTREMELY IMPORTANT:

The Mask-Off Moment for Digital Identity

newdesigncongress.org/en/note/

> Now, as we prepare to publish, the polite façade of digital identity has shattered; every principal threat model we outlined in 2024 can now be observed in operation; some at pilot scale, others nationwide.
>
> In other words, all of the threats described in this report have materialised. Every single one.
>
> In my 12-year career, I have never, ever seen anything like it.

#DigitalID #eID #DigitalIdentity

Ela boosted:
Catalin Cimpanucampuscodi
2025-08-05

A security researcher has accidentally published the details of a BusyBox bug that can be abused to crash IoT devices, gain root privileges, or plant persistent backdoors

lists.busybox.net/pipermail/bu

Text that reads: A: n the context of security vulnerability disclosure, the term
"embargo" refers to an agreed-upon period of time during which details
of a discovered vulnerability are kept confidential. This allows
affected parties (such as software vendors, maintainers, or downstream
distributions) time to prepare and release patches or mitigations
before the vulnerability becomes public.

The list is public, hence agreed immediately to disclosure or the
30-days confidential period past invaine (or just a template). Anyway,
good time to list those systems that are impacted and those that are
not affected by this vulnerability.
Ela boosted:
noiter online 🦦🌐deersyrup@yiff.life
2025-08-05
An image of the ceo caught at a Coldplay concert cheating with his hr lead, who was also cheating, with the caption “HR IS IN BED WITH YOUR BOSS. UNIONIZE”
Ela boosted:

Transhumanismus, Akzelerationismus, Libertarismus, Privatstädte, Weltraumkolonien, KI-Gottheiten, Unsterblichkeit... Was man als toxische Arschlochphilosophien und weltfremde Scifi-Träumereien abtun könnte, gärt in den Köpfen der mächtigsten, weil reichsten Menschen der Welt und prägt deshalb wichtige Weichenstellungen für unser aller Zukunft.

Eine ausgezeichnete Dokumentation befasst sich mit den Zukunftsvisionen und Ideologien der sogenannten Tech-Milliardäre. Spoiler: Die sind allesamt dystopisch und menschenverachtend. In der Doku wird mitunter ein recht polemischer Tonfall angeschlagen, der aber angesichts der sonst üblichen Verharmlosungen erfrischend ehrlich wirkt.

Podcast, sechs Teile zu je ca. 30 Minuten, kein Transkript.

ardaudiothek.de/episode/urn:ar

#Musk #Thiel #Vance #Techbros #SiliconValley #Podcast

@thomasfricke Having spent some time writing Coq, I can comfortably say that while writing specs is hard, writing proofs is harder. Also, note that the NOVA project has code in C, so the Coq proof is on a model of the code, not the code itself. That's not a desirable state.

@henryk @littledetritus @casandro

@littledetritus erstaunlicherweise lol but serious.

@henryk Ah, but that's not what's going on. We ask the monkeys for a proof, and validating that proof is a type check.

@vmexell Es ist erstaunlich vernünftig. Ausser dass halt ein Mensch die Spezifikation schreiben muss.

@casandro Yep. Clowns will be using an LLm to write the specification. Oops.

But what if we can stop AI from lying by forcing it to give us a machine-checkable formal proof of correctness of the code it wrote? gasstationmanager.github.io/ai

@NanoRaptor Which, not by accident, is how phone onscreen keyboards work internally, even dynamically adjusting size depending on the context.

Ela boosted:
creezycreezy
2025-07-30

new blogpost: Dr. Carsten Linnemann fordert für Menschen mit psychischen Erkrankungen ein zentrales Register, um mögliche politische Rechtsextremisten zu identifizieren.

Und ich frage mich: Wie politisch rechtsextrem ist Carsten Linnemann selber schon?

holyfruitsalad.blogspot.com/20

Ela boosted:
2025-07-30

"Remember back in 2023 when hackers exposed (and fixed) malicious anti-repair software in Polish trains? Well, it turns out that the manufacturer, Newag, is at it again" cc @pluralistic ifixit.com/News/112008/polish-

Ela boosted:
2025-07-29

You Went to a Drag Show—Now the State of Florida Wants Your Name

eff.org/deeplinks/2025/07/you-

Ela boosted:
2025-07-29

Hey 👋

Ich suche zum 01.10. nach einem Job als Netzwerk- oder Linux Systemadministratorin. Das ganze überwiegend remote, von Karlsruhe aus.
Ich habe eine gute Menge Erfahrung mit NixOS, ein OSPF in privater Infrastruktur, etwas Erfahrung mit DN42 (BGP u.ä.) und eine bunte Programmiersprachen-Mischung (PHP, Python, Rust, ...). Zusätzlich noch ein erfolgreich abgebrochenes Informatikstudium, Erfahrungen aus dem #GPN23 NOC und als #JugendHackt Mentorin.

(Boosts welcome)

#GetFediHired

@trailofbits My gut feeling is that this will work as well as WAFs do for SQL injections (i.e., a nuisance for an attacker, but not stopping them), for the same langsec reasons.

Ela boosted:
2025-07-29

Hey folks, I just got done writing up a blog post on my experiences trying to install Linux "Gaming" distros. Come laugh at my Odyssey.

totes-legit-notmalware.site/ho

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst