Director of Cybersecurity @EFF / Co-founder of @stopstalkerware / These are my opinions, not my employers’ / I did a TED talk once
Public Key
npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx Profile Code
nprofile1qqsrhfhexcslfawgj0du2aqhmsngud4kzmga7r4pu8lmmyg3kjy6zhcpz3mhxue69uhhyetvv9ujuerpd46hxtnfduqs6amnwvaz7tmwdaejumr0ds62uuw4
Show more details
Published at
2026-04-02T21:47:46Z Event JSON
{
"id": "0ac4e5034a43045d269290045df9bd00652168ce609a377089ebd523af836d71" ,
"pubkey": "3ba6f93621f4f5c893dbc57417dc268e36b616d1df0ea1e1ffbd9111b489a15f" ,
"created_at": 1775166466 ,
"kind": 0 ,
"tags": [
[
"proxy",
"https://hachyderm.io/users/evacide",
"activitypub"
],
[
"client",
"Mostr",
"31990:6be38f8c63df7dbf84db7ec4a6e6fbbd8d19dca3b980efad18585c46f04b26f9:mostr",
"wss://relay.ditto.pub"
]
],
"content": "{\"name\":\"evacide\",\"about\":\"Director of Cybersecurity\\n@EFF\\n/ Co-founder of\\n@stopstalkerware\\n/ These are my opinions, not my employers’ / I did a TED talk once\",\"picture\":\"https://media.hachyderm.io/accounts/avatars/110/023/534/681/636/317/original/592205ed198bf44a.jpg\",\"banner\":\"https://media.hachyderm.io/accounts/headers/110/023/534/681/636/317/original/3dfaf02bfcbcbd7b.jpeg\",\"nip05\":\"[email protected] \",\"fields\":[]}" ,
"sig": "c175b929d165c2db86bdfc42dd2a134afc3ee4388edea7a523c3c6811eea18138fd1a4f11c1548fe2253bd568a07c1531f2aba49dc7f2a1fb40133840343433a"
}
Last Notes npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Several years after I locked up my account and stopped using twitter, I have finally updated my staff bio by deleting my Twitter username and adding the URL for my Mastodon account. It feels like the end of an era. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Sometimes I wonder if working from home for so long has turned me into a goblin who cannot be trusted to interact with other people without making it weird. Then I remember that I have always been a goblin who cannot be trusted to interact with other people without making it weird. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Good news for people with older iPhones. Patch your stuff. https://www.wired.com/story/apple-will-push-out-rare-backported-patches-to-protect-ios-18-users-from-darksword-hacking-tool/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide EFF's Cindy Cohn sat down to talk to Jon Stewart on the Daily Show about 30 years of fighting for digital privacy. I think that's pretty cool. https://www.youtube.com/watch?v=QkC1aK7jfLo npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide My open tabs indicate that I got halfway through ordering a pair of high-waisted black sequinned booty shorts last night and then fell asleep. Let it never be said that I don't know how to party. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide There is a reason why most of my advice is phrased "If you are concerned about X...you may want to consider doing Y." It's not because I just love using a bunch of extra words. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Yael's post demonstrates something about digital privacy/security that I think a lot of people miss: there is no right answer, just a series of trade-offs. And every person has to make their own decisions about which trade-offs are worthwhile. https://blog.yaelwrites.com/options-for-phones-at-protests/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If you are traveling to or through Hong Kong, here is a new thing to consider when you are deciding whether or not to take your devices with you and how you should set them up. https://hk.usconsulate.gov/security-alert-2026032601/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide No really, I am not kidding when I say that the data broker industry must be destroyed: https://www.npr.org/2026/03/25/nx-s1-5752369/ice-surveillance-data-brokers-congress-anthropic npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide EFF announces its new Executive Director, Nicole Ozer: https://www.eff.org/press/releases/nicole-ozer-named-electronic-frontier-foundations-executive-director npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide People will react to news of major security vulns with "The only way to stay secure is to live as a hermit and throw your devices into the sea" and then keep chattering on the internet in a deeply unhermitlike manner while not throwing their devices into the sea. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If you have an iPhone, today is a good day to make sure you are running the latest software. https://techcrunch.com/2026/03/23/someone-has-publicly-leaked-an-exploit-kit-that-can-hack-millions-of-iphones/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide @nprofile…s8xx It is possible that for some threat models, a burner phone for DEFCON is appropriate. But I have been to 20ish DEFCONs and I have never felt the need to bring one. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Some tips on giving digital privacy/security advice: if you tell people they absolutely need to do a long list of difficult and expensive things before they travel, people will nod and smile and then not do it at all. This is why my advice focuses on harm reduction and understanding trade-offs. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide For people who are concerned about having their devices seized at US airports starting Monday when ICE "assists" the TSA, EFF has this guide: https://www.eff.org/deeplinks/2025/06/journalist-security-checklist-preparing-devices-travel-through-us-border npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide The data broker industry must be destroyed: https://www.theverge.com/news/897145/kash-patel-ron-wyden-fbi-location-data-no-warrant npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Hey, why is everyone talking about Caesar Chavez all of the sudden? Oh. Oh no. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide It sure is a cool and normal time to be working at a civil liberties non-profit in the United States. https://www.cbsnews.com/news/fbi-irs-investigate-nonprofits-domestic-terrorism-links/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If you leave the infrastructure of surveillance in place, people in power will inevitably find an excuse to resume using it. You have to take that shit down. https://boltsmag.org/verona-wisconsin-ends-contract-flock-ai-surveillance-cameras/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Attribution is hard. And there is a difference between getting a contractor on the record attributing the toolkit and a bunch of infosec dudes sitting around pontificating about how "everyone knows." https://techcrunch.com/2026/03/09/an-iphone-hacking-toolkit-used-by-russian-spies-likely-came-from-u-s-military-contractor/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Pakistan's main APT group has switched from off-the-shelf low quality malware tools to vibe-coded custom malware. I've been expecting to see this shift for a while and it is interesting to see it actually starting to happen. https://businessinsights.bitdefender.com/apt36-nightmare-vibeware npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Do you work in fundraising? Do you want a job that isn't evil? Signal is hiring a director of major gifts: https://jobs.lever.co/signal/68f75269-fe43-4d25-8d82-69439351f14d npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Obviously, age verification laws are bad and this is especially bad and laughable, but most importantly, I need you to know that I owe my career to having been an underage person using Linux. https://www.pcgamer.com/software/operating-systems/a-new-california-law-says-all-operating-systems-including-linux-need-to-have-some-form-of-age-verification-at-account-setup/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I aspire to one day have a fraction of the confidence of a mediocre white man sitting down to do an interview with Isaac Chotiner. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide The data from your Meta Ray Bans is used to train Meta's AI, which most people don't understand means that humans are looking at the most intimate details of their lives. https://www.svd.se/a/K8nrV4/metas-ai-smart-glasses-and-data-privacy-concerns-workers-say-we-see-everything npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I'm reading a bunch of Coruna reports after dinner because I am a cool person who knows how to party. Of particular interest: not only does Coruna not work against iOS in lockdown mode, but if it even detects lockdown mode running, it bails. This is why I talk about lockdown mode so damn much. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide What a stupid time to have a degree in International Relations. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide When we talk about the problems with Bluetooth-enabled physical trackers, we usually talk about AirTags, but let us save some rage for Tile, powered by this paper discussing Tile's privacy, security, and accountability problems: https://arxiv.org/abs/2510.00350v1 npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I have come away from my last conference cautiously optimistic about how useful AI can be in reversing malware and extremely scared about all of the new attack surface being created in the use and deployment of AI tools. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide The greatest joke that my brain chemistry plays on me is that every few years I get an idea for a novel, which I will outline, write several chapters for, and then never touch again. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I'm just a girl, incrementing the counter on the number of times I have been sent a plaintext email from a Protonmail user telling me that the message is encrypted. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide When I am made God Emperor, the people who design hotel bathrooms so that you cannot see your face up close in a mirror and also have somewhere to put your makeup will be piled up and set ablaze. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Hacktivists tried to find a workaround to Discord’s age-verification software, Persona. Instead, they found its frontend exposed to the open internet, and that was just the beginning. https://www.therage.co/persona-age-verification/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Anonymously threatening a security researcher seems like a shooting-yourself-in-the-dick level bad decision. Kudos to Allison Nixon for not taking any shit. https://www.technologyreview.com/2026/02/16/1132526/allison-nixon-hackers-security-researcher npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide How do you organize safely and effectively in the golden age of surveillance? I have some thoughts and Wired does too: https://www.wired.com/story/how-to-organize-safely-in-the-age-of-surveillance/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide The most monstrous lie that I regularly tell myself is "I'll get that work done while I'm on the plane." npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Trying to explain compartmentalization to activists, but the biggest stumbling block is that most people become activists by accident, so their activism is deeply enmeshed with all of their existing accounts, platforms, and devices. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Every once in a while, someone gets the genius idea of impersonating me online and I spend an afternoon looking for the most chaotic way to make them regret that choice. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Planning to film ICE? Wired has a guide for that: https://www.wired.com/story/how-to-film-ice/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide How many people here would be interested if I did a digital security/privacy advice blog somewhere? npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide This is your regular reminder that I do not owe you an argument defending a position that you have decided that I hold. Indeed, I do not owe you an argument about anything. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Hello, it's me. I'm the one training the resistance in the diabolically professional OPSEC of setting disappearing messages in the Signal group chat. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide You don't need superspy-level OPSEC in order to protest fascism. But protest does involve risk. My goal when I teach people about digital privacy/security is to make sure that people understand what risks they're taking so they can make appropriate mitigations while still accomplishing their goals. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide It's Friday night and I'm outlining a 12-minute talk about the Opium Wars because, as you are aware, I know how to party. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Trying to protect everything from everyone all the time will drive you crazy. Here is what you should do about your digital privacy and security instead. I talked to KQED's Close All Tabs about threat modeling: https://www.kqed.org/news/12070531/your-digital-footprint-reveals-more-than-you-think npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Every once in a while, the devil shows up and tells me what he thinks my soul is worth. I won't do it, but it's comforting to see the number tick up. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide The Trump administration takes national security leaks very seriously when it's time to bully and intimidate reporters. Not so much when classified documents are piled up in the Mar-a-Lago bathrooms. https://pressfreedomtracker.us/all-incidents/washington-post-reporters-home-searched-by-fbi-devices-seized/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide In addition to its internet blackout, the Iranian government is jamming Starlink to prevent news protests and crackdowns from getting out: https://restofworld.org/2026/iran-starlink-internet-shutdown/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Sometimes I read the threads that experienced activists write about how to behave at protests because it reminds me that the kinds of replies I get when I give digital privacy/security advice aren't just for me. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide We are 9 days into 2026 and my New Years' Resolution to just let people be wrong on the internet is already is truly testing the limits of my willpower. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide But if it is important to you to maintain your anonymity at a protest, consider leaving your phone at home, or at least turning it on/off only once you are well out of the neighborhood. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide There are other reasons you might want to take a cheap/disposable/burner phone to a protest, such as making sure that if you are arrested, the police don't seize/break/confiscate your main phone. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If you don't want ICE to know you were at a protest, taking a burner phone is not going to help you stay anonymous if you go home afterwards. https://www.404media.co/inside-ices-tool-to-monitor-phones-in-entire-neighborhoods/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide All that the Turing Test proves is that human are much, much stupider than Alan Turing ever suspected. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Want to know how to track Homeland security spending by looking through government databases? EFF's Dave Maass has put together a handy how-to: https://www.eff.org/deeplinks/2025/12/homeland-security-spending-trail-how-follow-money-through-us-government-databases npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide It is January 4th and my neighbor's 2026 resolution to get up at 5:50 am and spend an hour running on a treadmill while watching videos at full volume directly on the other side of the wall from my headboard is thankfully at an end. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide This year, for my mental health, I'm going to practice just letting people be wrong on the internet. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide More evidence that the Trump administration is cozying up to cybermercenaries. The Treasury Dept has removed three people closely affiliated with Intellexa, the company that makes Predator, off a sanctions list: https://therecord.media/treasury-sanctions-intellexa-removed npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide RSF discovers Belarusian surveillance malware targeting Android phones, requiring physical access: https://rsf.org/en/exclusive-rsf-uncovers-new-spyware-belarus npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I still have a Facebook account because I occasionally need to buy secondhand furniture or see which of the people that I used to know is dead now. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide @nprofile…889j You did so much good work this year. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I can't believe I have to say this, but please do not take revolutionary OPSEC advice from YA novels Cory Doctorow wrote almost twenty years ago. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Now begins the time of year when I argue with my family of strict latke fundamentalists over what qualifies as a latka. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Analysis of my 2025 clothing spreadsheet indicates that I have purchased zero gowns this year, which I would normally consider to be a sign of deep distress. However, I did buy an extravagant vintage fox fur stole at a market in Berlin this spring, so I'm probably ok. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I'm trying to take a no strings attached attitude towards 2026: if I don't ask anything of it, it can't break my heart. But I have also purchased the bottle of champagne I am going to pop when that one guy dies. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Some days, the cat eye sharp enough to kill a man is simply not achievable and I must settle for the messy raccoon eye that can probably hurt your feelings. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide 2025 Year In Review: Not feeling so great about the rule of law. Zero stars. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I'm re-reading The Big Con, by David Maurer, because I love the argot of early 20th century confidence men, but also because a book about how grifting works holds great explanatory power generations after it was written. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Finally, Elon has made a change to his social media platform that I approve of: https://www.nbcnews.com/news/us-news/x-new-location-transparency-feature-questions-origins-maga-accounts-rcna245487 npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Age verification is not the way to keep kids safe on the internet. CDT has some thoughts about what kind of child safety policies and features might actually be effective: https://cdt.org/insights/what-kids-and-parents-want-policy-insights-for-social-media-safety-features/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I gave a talk about fascism at a conference and the first reply to the conference's post on X with a photo of me in front of my slides is a rando word-vomiting about how Hitler was working for the Zionists, in case you're wondering how that place is going. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Brennan Lee Mulligan with Josh on Mythical Kitchen, eating his perfect last meal and being interviewed for more than an hour, is so wholesome and life-affirming: https://www.youtube.com/watch?v=CLVdWyNljP8 npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide After two trips to the hardware store and approximately $25 in bits and bobs that did not work, I fixed the catch on my antique dresser cabinet with a single screw. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Cybersecurity professionals/ransomware negotiators turned out to be running a ransomware gang. https://breached.company/when-the-defenders-become-the-attackers-cybersecurity-experts-indicted-for-blackcat-ransomware-operations/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Ice Cube's Good Day was, in fact, about November 4th 2025. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If you are shocked that I'm happy that a man responsible for the deaths of hundreds of thousands of people is dead, I have terrible news for you about all of my other opinions. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I can now consistently hold a freestanding handstand for 20 seconds. One day I will take up a hobby which does not require months of practice for incremental progress. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I regret not buying a My Marxist Feminist Dialectic Brings All the Boys to the Yard poster because I have some free wall space next to my It's a Slow Apocalypse, You'll Work Through It poster. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Every quote in this story from the founder of Ring, Jamie Siminoff has been designed in a lab to illustrate the single most wrongheaded approach to technology, surveillance, privacy, and crime: https://www.theverge.com/tech/804052/ring-jamie-siminoff-book-ding-dong-release-date-interview npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide For those of you who are wondering, the most important opsec lesson to take from the First Wap story is that if your threat model includes a government, do not take your cell phone with you to locations or meetings you don't want them to know about. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide People are very lucky that I do not write the headlines for these stories because there is no way I could write a headline for a story about a surveillance company called First Wap without turning it into a Megan Thee Stallion joke: https://revealnews.org/podcast/cellphone-surveillance-firstwap-lighthouse-reports/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Whoever decided that the San Francisco No Kings protest should start at the same location as the bougie weekend farmers market is a political genius. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide If your protest privacy/security advice does not start with a discussion of threat models, it is probably not good advice. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Truly, SS7 is the surveillance gift that keeps on giving: https://www.motherjones.com/politics/2025/10/firstwap-altamides-phone-tracking-surveillance-secrets-assad-erik-prince-jared-leto-anne-wojcicki/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide As the prophecy foretold, a major platform's third-party age verification system has been hacked and hackers had access to the government ID images of Discord's users. https://www.tomsguide.com/computing/online-security/discord-users-suffers-the-first-high-profile-age-verification-hack-and-its-unlikely-to-be-the-last npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I take it all back, there ARE violent criminals on the streets of San Francisco. They're grabbing people off the street and pepper spraying journalists. https://sf.gazetteer.co/i-reported-from-an-ice-action-on-sansome-and-all-i-got-was-a-face-full-of-pepper-spray npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide It is sometimes necessary, in these difficult times, to spend an hour scrolling through clothing sites, hoping that one of these gowns is going to give you the strength to fight fascism. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Ron Deibert is absolutely the voice that the infosec industry needs to be listening right now. We are in a moment where fascism is consolidating power and most of the infosec industry is either playing along or is busy bragging about how much AI they've shoved into their products. https://techcrunch.com/2025/08/06/citizen-lab-director-warns-cyber-industry-about-us-authoritarian-descent/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Writing the first draft of my FTC comments and wondering how many times I am allowed to write "fuck no, you shitweasel." https://www.ftc.gov/news-events/news/press-releases/2025/07/ftc-seeks-comment-petition-vacate-2021-order-related-provider-stalkerware-apps npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide This is just to let you know I have taken the plums out of the icebox because fruit is better at room temperature npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide This is your regular reminder that if you are the smartest person in the room, go find another room. You are not going to run out of people or rooms. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I've spent not-insignificant amount of time at protests in the US, looking for signs of IMSI catchers and never found anything, so when I saw this, my ears perked up: https://san.com/cc/exclusive-evidence-of-cell-phone-surveillance-detected-at-anti-ice-protest/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Google continues the industry-wide trend of jamming AI down users' throats, making it difficult or impossible to opt out, and potentially endangering the privacy of communications: https://www.neowin.net/guides/google-can-now-read-your-whatsapp-messages-heres-how-to-stop-it/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I was feeling entirely too confident and capable, so I decided to train press-up to handstand and now I am going to be suffering through these drills and progressions for a good long time. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Every once in a while, someone tells me that an abusive partner left them alone because they were afraid of what I would do if they didn't, and I feel like I have done something right. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Website/device age verification is a privacy and security nightmare and everyone who tells you that this is a solved problem is lying to you. https://gizmodo.com/supreme-court-says-age-verification-laws-for-porn-sites-are-constitutional-2000621265 npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Do I think that the national Democratic Party will learn anything from Mamdani's win? No. Do I think it is important to enjoy a goddamn victory once in a while? Yes. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide I would like to be Chrisjen Avasarala: impeccably-dressed, running things, swearing like a sailor. But I am Camina Drummer: barely keeping it together, sort of in charge, with a lot of complicated relationships and a strong eyeliner game. npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Did I mention that the data broker industry must be destroyed? https://theintercept.com/2025/05/22/intel-agencies-buying-data-portal-privacy/ npub18wn0jd3p7n6u3y7mc46p0hpx3cmtv9k3mu82rc0lhkg3rdyf590s3wshpx evacide Q&A from a talk I gave last week. Q: "What do you think is the biggest threat in cybersecurity right now? Is it post-quantum computing? Is it AI?" A: Fascism. It's fascism.