Show more
Biggles boosted
Biggles boosted

That thing where you see a cool new project on Hacker News, go to the README to find out more about it... and find there's a quote from you IN that README about how cool it is from the last time you looked at, which you had since completely forgotten! github.com/bitfield/script/blo

Biggles boosted

So - built into Metatext. Free too, which is nice.

Biggles boosted

Ingenious!

Ukrainian army noticed that during hot days, the Russian mines absorb heat during the day, which is then released at night.

So with a thermal camera, the Ukrainian army can map out the exact location of the mines. 💡

Suource: #CNN youtu.be/MO8CWts2-P8

#Ukraine #landmines #UkraineWillWin #ArmUkraineNow #StopRussianAggression #ArrestPutin

Biggles boosted

Let me try to put it a little more eloquently:

In large metropolitan areas, tourists tend to give themselves away because they're far more inclined to gazing upward at the surrounding skyscrapers than local residents. Now, a growing body of evidence suggests that this same tourist dynamic is a dead giveaway in virtually all computer intrusions that lead to devastating and disruptive attacks like ransomware, and that organizations should set virtual tripwires that sound the alarm when authorized users and devices are spotted exhibiting this behavior.

Hey, that's a pretty good lede. :)

Show thread
Biggles boosted

tl;dr: Only tourists look up in a new town.

"Introduction:
Many people have pointed out that there are a handful of commands that are overwhelmingly run by attackers on compromised hosts (and seldom ever by regular users/usage). Reliably alerting when a user on your code-sign server runs whoami.exe can mean the difference between catching a compromise in week-1 (before the attackers dig in) and learning about the attack on CNN.
Introducing our new Sensitive Command Canarytoken."

Show thread
Biggles boosted

Some sound advice in a new blog by @TalosSecurity on defending against sophisticated attacks targeting network infrastructure:

"One of the most important things to talk about here is that in each of the cases we’ve seen, the threat actors are taking the type of “first steps” that someone who wants to understand (and control) your environment would take. Examples we have observed include threat actors performing a “show config,” “show interface,” “show route,” “show arp table” and a “show CDP neighbor.” All these actions give the attackers a picture of a router’s perspective of the network, and an understanding of what foothold they have."

blogs.cisco.com/security/netwo

They don't mention it, but Thinkst Canary seems to fit the bill here. You can set it up to get alerts for just about anything, such as whenever an endpoint starts running basic footprinting commands to get the lay of the land, like "whoami?" "net view" etc.

blog.thinkst.com/2022/09/sensi

Biggles boosted

“Once men turned their thinking over to machines in the hope that this would set them free. But that only permitted other men with machines to enslave them.”

- "Dune" by Frank Herbert

Biggles boosted
Biggles boosted

During the engineering work for the supersonic Concorde in England, "Thunderbirds" TV series creator Gerry Anderson was visiting the main facility one day. Someone asked him what he did for a living. Feeling massively outranked by all the engineering talent surrounding him there, he quietly replied that he made children's TV shows. Asked which ones, he mentioned Thunderbirds.

Within minutes he was surrounded by Concorde engineers who wanted to talk to him and shake his hand, many of whom told him it was his shows that had inspired them toward engineering careers, because they wanted to actually build the planes and rockets he had in his series. He was flabbergasted.

The original Star Trek had a similar affect on many career choices.

Now of course, TV mostly inspires people toward careers as lazy bums or crooks.

Biggles boosted

Go get explosive gas+monoxide detector. $50. I bumped my stove and turned on a burner one time by accident.
Mine (NO REFERRAL) amazon.com/Nighthawk-Monoxide-
And if you have Alexa, it can alert your phone when a siren like this is going off remotely.

(Video source : twitter.com/toriyorgeytv/statu)

Biggles boosted
Biggles boosted

Well it had to happen eventually. #Scripps is retiring FLIP (FLoating Instrument Platform). This is an amazing piece of engineering (and soooo weird on the inside - everything pivots, so walls become floors). The #ship to be towed out to a location, and it would literally flip, sinking most of the ship directly down to give a *very stable platform for #oceanography research. Launched in 1962.
maritime-executive.com/article

Biggles boosted

No, guys, they have not achieved "net energy gain" (theguardian.com/environment/20) because you're only counting the energy IN the laser, no the energy it takes to FIRE the laser, which is hundreds, maybe thousands of times more.

It's misleading and irresponsible to let people think we're anywhere near break-even in fusion.

Biggles boosted
Biggles boosted
Biggles boosted
Biggles boosted

Block people who are annoying. All dudebrah arguments against — that it’s weak, soft, etc. — apply equally to not drinking urine.

“Dude, you don’t drink urine? That’s weak bro.”

“Gross. Why would I drink urine? I don’t want to.”

“Maybe you’re just too soft bro. What a pussy.”

Biggles boosted

@Remittancegirl @mayaisloading slatestarcodex.com/2014/03/20/ is instructive on this mindset. tl;dr: Closeted folks in repressive areas assume everyone is like themselves, forcing themselves to be straight for the good of society. That literally explains all of their fears about “grooming” and the slippery slope. Fascinating read.

Show more
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.