Show newer

CFSN Detailed Analysis - Substack Daily Update – 9-9-25 – Free Content – tinyurl.com/4e42wvrd

Review – 9 Advisories and 5 Updates Published – 9-9-25 – NCCIC-ICS control system security advisories for products from Rockwell (8) and ABB – Updates for products from Rockwell, Mitsubishi (2), EG4 and Schneider – Short version – tinyurl.com/26bjbjdz

9 Advisories and 5 Updates Published – 9-9-25 – NCCIC-ICS control system security advisories for products from Rockwell (8) and ABB – Updates for products from Rockwell, Mitsubishi (2), EG4 and Schneider – tinyurl.com/2jhd2tz7 Subscription required

Short Takes – 9-9-25 – Space Geek Edition – NGSO for inflight connectivity – May he rest in space – Moon race – OSC/TraCSS budget cut – Artemis 2.0 alternative – Oumuamua an ‘exo-Pluto’ – tinyurl.com/c7uuer4x

Review – HR 3838 Rule for Consideration – FY 2026 NDAA – 298 floor amendments authorized – Short version – tinyurl.com/yu4hjft3

HR 3838 Rule for Consideration – FY 2026 NDAA – 298 floor amendments authorized – Includes 8 cybersecurity and Space Geek of interest here – tinyurl.com/bd4e4jyu Subscription required

Review – Bills Introduced – 9-8-25 – 62 bills – HR 5167, intel authorization – Space Geek: HR 5175, international space awareness – Short version – tinyurl.com/tnu26xre

Bills Introduced – 9-8-25 – 62 bills – HR 5167, intel authorization – Space Geek: HR 5175, international space awareness – MIP: S 2733, program duplication – S Res 377, nominee consolidation – tinyurl.com/4hae3yyb Subscription required

@GossiTheDog Fortunately, no one that is writing code for industrial control systems are using those poorly understood libraries..... RIGHT???

For anybody confused about how this happens, basically:

- For about the past 15 years every business has been developing apps by pulling in 178 interconnected libraries written by 24 people in a shed in Skegness

- For about the past 2 years orgs have been buying AI vibe coding tools, where some exec screams "make online shop" into a computer and 389 libraries are added and an app is farted out

The output = if you want to own the world's companies, just phish one guy in Skegness

Show thread

CFSN Detailed Analysis - Substack Daily Update – 9-8-25 – Free Content – tinyurl.com/3jmvt4sw

That NodeJS supply chain hack incident is amazing because the threat actor(tm) got RCE access to like a billion devices and ran the world’s shittest Etherum dumper.

Imagine if they had done reverse shells instead, or automated lateral movement to ransomware deployment NotPetya style.

The thing that saved companies here was the threat actor was incompetent crypto boy, nothing more.

Short Takes – 9-8-25 – Florida vs kids – Complex shutdown contest (2) – GOP vs Dem spam – Vance vs Paul on Venezuelan boat sinking – Bird flu in GA flock – Microbes under Antarctic ice – WiFi heart measurements – tinyurl.com/4y4t9nmh

Committee Hearings – Week of 9-7-25 – More spending bills being marked up – NDAA on the floor in both the House and Senate – tinyurl.com/36cxv3rd Subscription required

Short Takes – 9-8-25 – Space Geek Edition – FAA approves Falcon 9 EI – ISS data center – Space Force leadership changes – NASA support for commercial SS – Interstellar comet closer – tinyurl.com/3xvp54bk

Review – Spring 2025 Unified Agenda – FAA UAS Rulemakings – 2 active FAA (and 1 PHMSA) rulemakings – Short version – tinyurl.com/mryvyuvr

Spring 2025 Unified Agenda – FAA UAS Rulemakings – 2 active FAA (and 1 PHMSA) rulemakings – 3 long term action rulemakings – tinyurl.com/4f5zbrbz Subscription required

CFSN Detailed Analysis - Substack Daily Update – 9-6-25 – Free Content – tinyurl.com/4rt26wja

Short Takes – 9-6-25 – Hyundai immigration raid – Russian spy drones – US forces vs cartels – High meat prices – FERC vs Trump – Mechanochemistry recycling – tinyurl.com/bdhj5pmt

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.