keisatsu

Security consultant / Pentester

keisatsu boosted:
Cat šŸˆšŸ„— (D.Burch) :blobcatrainbow:catsalad@infosec.exchange
2025-12-08

/bin/cat

Photo of a fluffy cat poking its head out of a square trash bin on the floor while it looks at the camera.
keisatsu boosted:
Moritzpreya
2025-11-13

Holy Shit, did a product launch in 2025 and did not mention AI a single fucking time. So refreshing.

keisatsu boosted:
2025-11-02

Had a little scraping fun with Austria's yellow press. German explainer, sadly, no English captions.

youtube.com/watch?v=4rvPK6jB3l4

Let me explain. In Austria, governments feed the media with government funding and ads. No matter the party.

A few years ago, they invented yet another money funnel: digital transformation funding. Young online media explicitely excluded, aimed at establisehd media houses only.

They submit project proposals, a politically appointed jury waves them through. 🧵

Table shows funding awarded to Mediengruppe Ɩsterreich across multiple media outlets from 2022 to 2025. Columns: Year, Company association, Medium, Project title, Funding amount. 2022: 5 projects including 'ƖSTERREICH' (€844,425), 'Oe24-HOMEPAGE-REDESIGN' (€700,180), 'oe24' (€327,359). 2023: 3 projects including 'Conversion Strategy E-Paper Abos' (€396,432), 'Multichannel Content Management System' (€214,800). 2024: 14 projects with largest being 'KI Bilderkennung/Datenbanken/Korrektur/Creation' (€287,528), 'ƶsterreich - Upgrade e-paper' (€235,370), plus multiple SEO optimization projects for various outlets (Madonna, Gesund und Fit, Cooking, Reiselust, Insider) ranging €6,752-€9,013 each. 2025: 3 projects including 'Launch des Content-Hubs für einen integrierten digitalen Workflow' (€401,127), 'Digital Distribution von personalisierten News' (€357,298). All funding to same media group across different properties.Table shows funding awarded to AHVV Verlags GmbH for the medium 'Heute' from 2022 to 2025. Columns: Year, Funding recipient, Medium, Project title, Funding amount. 2022: 6 projects including 'HEUTE goes digital' (€790,808), 'HEUTE Videoworld' (€697,724), 'HEUTE Relaunch Frontend' (€507,276), 'HEUTE for Future Weiterentwicklung' (€210,000), 'Schulung digitaler QualitƤtsjournalismus' (€168,304), 'HEUTE Big Data' (€162,636). 2023: 2 projects - 'HEUTE Premium' (€430,730), 'Heute goes secure' (€308,866). 2024: 5 projects with 'HEUTE reloaded' (€354,982), 'HEUTE - Deine PERSƖNLICHE Nachrichtenplattform' (€310,510), 'KI-gestützter Journalismus' (AI-assisted journalism, €140,876), 'Videoplayer Reloaded' (€30,151), 'HEUTE Leserreporter 2.0' (€28,231). 2025: 3 projects - 'HEUTE Connect' (€364,451), 'Innovate Connect' (€312,431), 'Lehrredaktion Online-Journalismus' (Editorial training for online journalism, €250,701). All funding to same publisher for same medium over four years.
keisatsu boosted:
2025-10-24

@quad Music Assistant (Home Assistant component) does exactly what you described. You can connect it to Jellyfin (and various other sources) and have it stream to any networked speaker. In the case of the meeting room PC you mentioned, you can install a barebones distro and run squeezelite as the client.
music-assistant.io/

keisatsu boosted:
2025-10-23

Happy one year anniversary of Microsoft "temporarily" not publishing Windows Developer VMs!

Why aren't they just asking Copilot to fix it?!

keisatsu boosted:
2025-10-23

Microsoft are rolling out Gaming Copilot to all Windows 11 PCs (excluding in China).

Enabled by default, silent install, takes screenshots and trains MS AI by default.

It installed on my Windows 11 Professional PC 🫔 it’s also not dependent on an NPU or Copilot+

doublepulsar.com/microsoft-bui

2025-10-22

@malmoeb I have also had success using esentutil to copy the SAM, SYSTEM and SECURITY hives when Defender EDR blocked my attempts to use reg save, maybe that works for ntds.dit too? :)

keisatsu boosted:
2025-10-22

Today I learned: Using diskshadow to fetch the NTDS.dit. As mentioned several times, I love reading the HTB writeups from 0xdf because I always learn something new. Like here [1]:

"To dump the domain hashes, I’ll want to get the C:\Windows\NTDS.dit file. Unfortunately, this file can’t just be copied as it is locked and in use. I can access it via a shadow copy, which I’ll generate with diskshadow and this script:

set verbose on
set context persistent nowriters
set metadata C:\Windows\Temp\0xdf[.]cab
add volume c: alias 0xdf
create
expose %0xdf% e:

and pass it [the script from above] to diskshadow:
C:\programdata> diskshadow /s C:\programdata\backup"

Attackers love vssadmin, and so do the EDR vendors. How about diskshadow? We tested the attack flow in our lab with various EDRs, and the results were .. interesting. Would the command above trigger an alert in your environment?

And here, for reference, is the corresponding lolbas article [3]

[1] 0xdf.gitlab.io/2025/09/19/htb-
[2] raw.githubusercontent.com/elas
[3] lolbas-project.github.io/lolba

keisatsu boosted:
nixCraft 🐧nixCraft
2025-10-13

GitHub Copilot Chat Flaw Leaked Data From Private Repositories securityweek.com/github-copilo

It turned out that Copilot was not merely learning from private repos, it was reportedly distributing them as if they were party favors. The user had not realized that the definition of an "AI pair programmer" extended to "unauthorized code distributor." 🤣 the GitHub user should perhaps feel flattered that their proprietary data was deemed worth sharing šŸ˜‚

keisatsu boosted:
2025-10-11

I've been really enjoying Grim Dawn the past two weeks. It's essentially Diablo 2 in 2016.

keisatsu boosted:
MastodonMastodon
2025-10-08

We’re thrilled to be bringing you a upcoming feature to help you find your people on Mastodon: Packs. (Or something… we’re still figuring out the name.)
As always, we want to build this important feature for the community WITH the community.
Read this blog post about our approach and let us know what you think!

blog.joinmastodon.org/2025/10/

2025-10-06

@MadMike77 @dabeaz cool, thanks for sharing!

keisatsu boosted:
2025-10-06

@keisatsu @dabeaz It's a little labyrinth game. You can try the esp32-python version online on wokwi. It generates a labyrinth. You navigate it with the switches. The LEDs light indicate that the direction is walled-off. You start in north-west corner of the labyrinth and need to find the exit in the south-east.

We did it as a showcase for our hackerspace-booth at a fair.

wokwi.com/projects/40662179266

Rust code is here: github.com/PJaros/rust-nano-la

2025-10-06

@MadMike77 @dabeaz ah I meant what your project used it for, sorry for not being more clear

2025-10-06

@MadMike77 @dabeaz what does the arduino do, if you don't mind telling more?

2025-10-01

@RnDanger Happy to see you got Fallout running! If you don't know already: You can look up games on ProtonDB to see if they run well and if there are any tweaks others have figured out for those that won't work out of the box

keisatsu boosted:
Jasper Fox :therian:Redfuchs@furries.club
2025-10-01

Repost if you can hear this image blaring

Photo of Microsoft's 3D Pinball Space Cadet
keisatsu boosted:
2025-09-19
@wolf480pl yeah i know.

still wish they'd make the galaxy client run on linux though
keisatsu boosted:
VissViss
2025-09-13

if you would like to see my 'how to bug hotel rooms' talk from -T, it's got its own clip now!

youtube.com/watch?v=ScwNIWzk4R

keisatsu boosted:
Em :official_verified:Em0nM4stodon@infosec.exchange
2025-09-11

Good news! Your action worked! :awesome: šŸŽ‰

Germany will be OPPOSING the Chat Control proposition! This (for now) secures a blocking minority to stop this horrifying proposal for mass surveillance.

But keep the pressure on! āœŠšŸ‡ŖšŸ‡ŗ

The final vote will be on October 14th and many things could change until then. Keep contacting your representatives to tell them to oppose (or keep opposing) Chat Control, as soon as you can.

The blocking vote should be as large as possible to ensure this Orwellian nightmare never becomes reality.

Let's change this blocking minority into a blocking majority! We can do it! :ablobcatnod: šŸ’š

#ChatControl #HumanRights #EUpol

digitalcourage.social/@echo_pb

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst