AlexSa :unverified:

Building great things breaking others. Mostly cybersec/infosec related ramblings | Hamburg & Stockholm

AlexSa :unverified: boosted:
Merry Christmaslyndamerry484
2025-07-01

Found it.

Mom knows best.

AlexSa :unverified: boosted:
2025-07-01

They are starting to get it ...

Mark Butcher 

1) Sandra used AI to write a report 
2) Bill used AI to summarise the report 
3) Bill used AI to write questions about the report 
4) Sandra used AI to respond to the questions 
5) Bill used AI to create a presentation about the report 
6) Jane used AI to take notes from the presentation 
7) Jane’s team used AI to summarise the notes she shared 

No one wrote the report, no one ever read the report, no one understood the questions or the answers. 

No business value was achieved 

But but but AI adds business value
AlexSa :unverified: boosted:
Fridays for Future Germanyfff@chaos.social
2025-07-01

100.000 Leute fordern die Bundesregierung und Wirtschaftsministerin Reiche auf, das geplante Abkommen, welches Gasbohrungen vor Borkum ermöglichen soll ,nicht zu unterzeichnen - bist auch du schon dabei?
weact.campact.de/petitions/kei

AlexSa :unverified: boosted:
Ciarán McNallyciaranmak@mastodon.ie
2025-07-01

This is important to remember, especially in hard times

A 2 part graph

On the left is a branched tree where the branches represent "life paths" where only one path is highlighted in green (the path you took) from root to tip (this is the past)

The right of the graph represents your future and you are at the base of a new branched tree where every pathway is green, representing the choices you have going forward.
AlexSa :unverified: boosted:
2025-07-01

🌡️ 🆘 Die aktuellen Hitze kann für wohnungslose Menschen schnell zur lebensbedrohlichen Gefahr werden. Ohne Rückzugsort, Schatten oder regelmäßigen Zugang zu Wasser sind sie Kreislaufversagen, Hitzeerschöpfung und Dehydrierung schutzlos ausgeliefert. Jeder von uns kann helfen:

📝 ndr.de/nachrichten/Hitze-gefae

#NDR #Hitze #Obdachlosenhilfe

Obdachlosen bei Hitze helfen:

Wasser geben: Eine Flasche Wasser hinstellen kann bereits lebensrettend sein.
Freundlich ansprechen: Menschen direkt, respektvoll und höflich fragen, ob sie Hilfe brauchen.
Notruf wählen: Wenn jemand apathisch wirkt oder nicht reagiert – sofort 112 anrufen.
Einrichtungen kontaktieren: Lokale Hilfeeinrichtungen benachrichtigen, damit Mitarbeitende unterstützen können.
Berührungsängste überwinden: Menschliche Nähe und Aufmerksamkeit sind wichtiger als Perfektion im Helfen.
AlexSa :unverified: boosted:
2025-06-30

Julia #Klöckner ist einfach moralisch, ethisch und persönlich ungeeignet das Amt der Bundestagspräsidentin auszuführen.

Außerdem ist sie parteipolitisch und das widerspricht ihrem Amt vollkommen.

tagesspiegel.de/gesellschaft/d

AlexSa :unverified: boosted:
daniel:// stenberg://bagder
2025-06-30

I've been talking to GitHub and giving them feedback on their "create issues with Copilot" thing they have in the works.

Today I tested a version for them and using it I asked copilot to find and report a security problem in curl and make it sound terrifying.

In about ten seconds it had a 100-line description of a "catastrophic vulnerability" it was happy to create an issue for. Entirely made up of course, but sounded plausible.

Proved my point excellently.

AlexSa :unverified: boosted:
Sven Giegoldsven_giegold
2025-06-30

Dobrindt nennt den int. Haftbefehl gegen Netanjahu „nur eine Ansicht“. Was kommt als nächstes?

Das Grundgesetz „nur ein Vorschlag“?

Das gilt - gerade wenn es unbequem ist. Der Int. Strafgerichtshof ist ein historischer Fortschritt, den wir nicht untergraben dürfen!

AlexSa :unverified: boosted:
Dave SpectorDhmspector
2025-06-30

In 1934 the Nazis ended birthright citizen ship in Germany.

Jews, Roma, Black Germans, communists, trade unionists, and others were stripped of citizenship entirely. Their assets stolen and they were rounded up, they were thrown into vans by government agents and disappeared.

Seems familiar somehow. Remind me — what happened next?

Meanwhile, right now, in America….

DOJ announces plans to prioritize cases to revoke citizenship
npr.org/2025/06/30/nx-s1-54453

AlexSa :unverified: boosted:
2025-06-30

Griechenlands Premier hat mit Athanasios Plevris erneut einen Ultrarechten zum Migrationsminister ernannt. Dieser fiel unter anderem durch Goebbels-Zitate auf.
taz.de/!6097450

AlexSa :unverified: boosted:
2025-06-30

I saw someone on LinkedIn talking about the ways to use LLMs on the #BlueTeam side of things and I have some bad news for those folks.

I tried a bunch to different systems and Google gave me the best answer overall because it was correct about it being a non standard URL and why, but obviously skids off the rails in the details.

This was the kind of "it can defend against phishing attacks" that were used as an example.

#infosec

A google search for "windows.com phishing domain?"
The first W in the word Windows has been replaced by a homoglyph from Unicode to make it appear as a legitimate site, a common tactic in phishing.

The AI assistant response begins:
Yes, the domain "windows.com" is a phishing domain. It uses a unicode character (a) instead of the standard "a" to create a visually similar but distinct domain, making it a classic example of a homograph attack. This is designed to trick users into thinking it's the legitimate Microsoft website. 
Here's why it's a phishing domain and how to identify it:

Homograph Attack:
    The subtle difference in the "a" character is a form of homograph attack. The unicode character a (U+FF41) is used instead of the standard ASCII a (U+0061). 

Visual Similarity:
When displayed in a URL, the two characters look almost identical, making it difficult for users to spot the difference.
AlexSa :unverified: boosted:
2025-06-30

Is "sovereign washing" the new "privacy washing"?

Microsoft, Google, and AWS recently published “sovereign clouds”.

❌ BUT digital sovereignty doesn’t come from shiny new product names such as these “sovereign clouds” - which still must hand out data to US without a warrant based on the CLOUD Act and FISA.

✅ Digital sovereignty comes from full European legal and technical control. Everything else is nothing more than sovereign washing.

👉 tuta.com/blog/sovereign-washing

The Trojan Horse at Europe's gate - with AWS, Microsoft, and Google inside.
AlexSa :unverified: boosted:
2025-06-30

At least 66 children dead of malnutrition in Gaza amid Israel’s war

UNICEF says the number of malnourished children in the Gaza Strip is rising at an ‘alarming rate’.
aljazeera.com/news/2025/6/29/a

AlexSa :unverified: boosted:
2025-06-30

Israel steps up Gaza bombardment ahead of ceasefire talks rte.ie/news/world/2025/0630/15

AlexSa :unverified: boosted:
2025-06-28

New update for the @vulkan #Vulkan Hardware Capability Viewer released.

This adds in support for several new extensions and also is the first version with native builds for Linux ARM64 thanks to an external contribution.

Download at: vulkan.gpuinfo.org/download.ph

AlexSa :unverified: boosted:
Anne Wizorekmarthadear@zirk.us
2025-06-28

Der Verfassungsschutz warnt auf eine Anfrage des RedaktionsNetzwerks Deutschland (RND):

„Aufgrund der mittlerweile gefestigten Strukturen und der Aktionsorientierung der in 2024 neu entstandenen [rechtsextremen] Jugendgruppen ist insbesondere für Angehörige der LSBTIQ-Bewegung, linken Szene und Personen mit Migrationshintergrund eine abstrakte Gefährdung für Leib und Leben gegeben.“ rnd.de/politik/rechtsextreme-j

AlexSa :unverified: boosted:
abgeordnetenwatcha_watch@bewegung.social
2025-06-27

Der SPD-Parteitag 2025 wird Ihnen präsentiert von Philip Morris, McDonalds und der Gaslobby. #spdbpt25 #Parteitag

Screenshot der Aussteller und Sponsoren des SPD-Parteitags 2025 mit zahlreichen FirmenlogosScreenshot der Aussteller und Sponsoren des SPD-Parteitags 2025 mit zahlreichen FirmenlogosScreenshot der Aussteller und Sponsoren des SPD-Parteitags 2025 mit zahlreichen Firmenlogos
AlexSa :unverified: boosted:
2025-06-27

Website/device age verification is a privacy and security nightmare and everyone who tells you that this is a solved problem is lying to you.

gizmodo.com/supreme-court-says

AlexSa :unverified: boosted:
2025-06-27

Great! A bunch of us here wanted it. Now it exists. 👍

It's a "dark archive" of the arXiv - a non-public backup to save the data in case of attack by hackers or the US government. The arXiv, I hope you know, is the biggest source of modern math and physics papers.

Who got the job done? The TIB: the Technische Informationsbibliothek, run by the Leibniz Information Centre for Science and Technology, in Hannover, Germany.

They write:

"The TIB has now set up a so-called dark archive for the arXiv content in order to be able to make the backed-up data accessible if the data stored in the USA is lost. The archive functions as a silent reserve: the complete copy of the content is stored decentrally at the TIB, but is not publicly accessible. This means that the data stock – almost 10 terabytes – is protected against potential outages and can be activated in an emergency.

The TIB is currently working on processes to keep the archive up to date: new submissions and updated versions must be backed up regularly in order to preserve the state of research as completely as possible.

“Building a Dark Archive is an expression of our longstanding commitment for a reliable, international academic provision, and as a partner of arXiv. Even though the Dark Archive today only works in the background, it is a key element in safeguarding digital research contents in the long term, because in case of a crisis, we could open the archive,” explains Dr Irina Sens, Deputy Director of the TIB."

We should call it the darXiv.

More details here:

blog.tib.eu/2025/05/14/protect

AlexSa :unverified: boosted:
Frank KarlitschekKarlitschek
2025-06-26

Unglaublich. Die EU knickt vor Trump ein statt die eigene Gesetze durchzusetzen die zum Schutz der Europäischen Bürger und Unternehmen eingeführt wurden.

digitalpolitik.ghost.io/big-te
businessinsider.de/gruendersze

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst