Security ops engineer for DomainTools, DT Investigations threat researcher, writer, voracious reader. he/him. Fan of good trouble. Opinions here mine only. No LLM content from me, all flaws detected are human-generated. Autistic/depressed/anxious/hungry. #infosec #cybersecurity #privacy #actuallyautistic #neurodivergent
Public Key
npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Profile Code
nprofile1qqs229hjxk9zp2gv2c976fdnf7eeaedaz2n3s7phm7xfdgv7qpcvumgpz4mhxue69uhhyetvv9ujuerfw36x7tnsw43qz9thwden5te0wfjkccte9ekk7um5wgh8qatzlzy9js
Show more details
Published at
2026-08-22T23:17:24+02:00 Event JSON
{
"id": "a773cd9dc5419f80c4a2d5ff752c8dad6977e9397445703829b459682e968248" ,
"pubkey": "a516f2358a20a90c560bed25b34fb39ee5bd12a7187837df8c96a19e0070ce6d" ,
"created_at": 1787433444 ,
"kind": 0 ,
"tags": [
[
"proxy",
"https://masto.deoan.org/users/neurovagrant",
"activitypub"
],
[
"client",
"Mostr",
"31990:6be38f8c63df7dbf84db7ec4a6e6fbbd8d19dca3b980efad18585c46f04b26f9:mostr",
"wss://relay.ditto.pub"
]
],
"content": "{\"name\":\"Ian Campbell 🏴\",\"about\":\"Security ops engineer for DomainTools, DT Investigations threat researcher, writer, voracious reader. he/him. Fan of good trouble. Opinions here mine only. No LLM content from me, all flaws detected are human-generated. Autistic/depressed/anxious/hungry. \\n\\n#infosec #cybersecurity #privacy #actuallyautistic #neurodivergent\",\"picture\":\"https://masto.deoan.org/system/accounts/avatars/109/336/884/948/058/833/original/4f10b24f8223cb18.png\",\"nip05\":\"[email protected] \",\"fields\":[[\"advice\",\"Be the computing problem you wish to see in the world.\"],[\"DomainTools Investigations\",\"https://dti.domaintools.com\"],[\"Latest work reading list:\",\"https://dti.domaintools.com/securitysnacks/cybersecurity-reading-list-week-of-2026-08-17\"]]}" ,
"sig": "901dbe2dd14606727c0e593dcd772a1d15f810229f53a2d3134b00852304dc3df0d82c21a27ae4b04afd258c0944fd8aae32d8065905d5e7e046e1c0d01090cb"
}
Last Notes npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 For your amusement, an $11 KitKat. Oh, Vegas. https://masto.deoan.org/system/media_attachments/files/117/060/819/010/803/875/original/6dade88f1d1d2d1b.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…gu7x time to log off for a bit and maybe go touch grass, friend. and i say this knowing just how hypocritical it sounds coming from me. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 NEW RESEARCH! @nprofile…lpl4 Investigations researchers have spent the past several weeks pulling apart data from Russian threat actor Doppelganger to analyze recent campaigns and explore its technical and organizational structures. #infosec #threatintel #cybersecurity https://dti.domaintools.com/research/doppelganger-rrn-disinformation-infrastructure-ecosystem npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 I have been remiss in having forgotten to mention that Da Boss, Daniel Schwalbe, will be speaking tomorrow at BSides Seattle! Go see him work his magic. Bonus points if you ask him what the "F" in "DFS" stands for. #infosec #cybersecurity #bsidesseattle https://masto.deoan.org/system/media_attachments/files/116/145/129/351/903/968/original/628f6ab68102a500.png npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 US - Remote / ET - Datadog - Cyber Threat Intelligence Engineering Manager I (I am not affiliated with Datadog or at all involved in this hiring process.) https://careers.datadoghq.com/detail/7181025/?gh_jid=7181025 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 *ATTENTION, ATTENTION* @nprofile…y4qv is a fucking genius. That is all. Thank you for your attention in this matter. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…29kj Good luck! maybe i should take my toot down so less other people apply 👀 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 USA, multiple offices - Amazon Cyber Threat Intelligence - Sr. Technical Program Manager (I am not affiliated with Amazon or at all involved in this hiring process.) USA, TX, Austin USA, VA, Arlington USA, WA, Seattle USA, NY, New York USA, MD, Annapolis Junction USA, VA, Herndon https://www.amazon.jobs/en/jobs/3189668/sr-technical-program-manager-amazon-cyber-threat-intelligence npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Autistic thought of the morning: What I really want is an actively cooled weighted blanket. Maybe liquid cooling would work for both cases. Then I wondered at how much more work I could get done if I was that comfortable. And then I realized I was essentially turning myself into a high-performance PC and, you know, I'm okay with that. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…y4qv swing and a miss! npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 https://www.bloodinthemachine.com/p/across-the-us-people-are-dismantling https://masto.deoan.org/system/media_attachments/files/116/108/331/161/674/583/original/adbdb508295aaff3.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @viss lul https://masto.deoan.org/system/media_attachments/files/116/098/610/211/506/533/original/beed11d7bde6845b.png npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Yesterday, DomainTools Investigations released research on Lotus Blossom and the Notepad++ attack - but also, we went far beyond the attack and deeper into Lotus Blossom's larger profile. #threatintel #infosec #cybersecurity https://dti.domaintools.com/research/lotus-blossom-and-the-notepad-supply-chain-espionage-campaign npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Alphabet (Google) launched a massive global bond sale, including a 100-Year Bond. The last time tech companies offered 100-Year Bonds was, according to Bloomberg, the dot com boom. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 really would like to sleep, but ok, brain npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Trump’s acting cyber chief uploaded sensitive files into a public version of ChatGPT The interim head of the country’s cyber defense agency uploaded sensitive contracting documents into a public version of ChatGPT last summer, triggering multiple automated security warnings that are meant to stop the theft or unintentional disclosure of government material from federal networks, according to four Department of Homeland Security officials with knowledge of the incident. https://www.politico.com/news/2026/01/27/cisa-madhu-gottumukkala-chatgpt-00749361 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 have just seen my favorite meme of the year so far, hands down. https://masto.deoan.org/system/media_attachments/files/115/950/215/974/098/446/original/706478d5396887ab.png npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 "Stormtroopers Who Killed Tatooine Farmers Feared for Their Lives" https://hard-drive.net/stormtroopers-who-killed-tatooine-farmers-feared-for-their-lives/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 "Most people don't need more discipline. They need an environment their biology can finally trust." hussein naji npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Oh well that's fucking clever. A threat actor is sending out phishing emails pretending to be SendGrid, and explaining that all their emails will include "Support ICE" banners in order to trigger ragebait clicks through to the phishing kit. #threatintel https://www.linkedin.com/posts/simokohonen_ragebait-as-a-phishing-tactic-a-threat-activity-7415349853754638336-gcCu?utm_source=social_share_send&utm_medium=member_desktop_web&rcm=ACoAABIZhqYBjXCQuV7JX7N_3xlpxZY6alHZ77o https://masto.deoan.org/system/media_attachments/files/115/865/138/413/167/171/original/fea28f94013a4df3.png npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…a4ar Adding to that something I picked up elsewhere: Every time history repeats itself, the price goes up. (as quoted in Joseph Tainter's "The Collapse of Complex Societies" no less.) npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 i was prepared for a rehash of 2020 because *gestures vaguely at everything.* i was not expecting to Groundhog Day all the way back to 2003. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 don't tell me if it's made up, i want to believe https://masto.deoan.org/system/media_attachments/files/115/844/801/926/880/151/original/3dae3fad31d6e827.png npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 '“Tinder for Nazis” hit by 100GB data leak, thousands of users exposed' Also exposed: it's a sausage fest, with almost no women. Shocker. I'm coining it now: "Fashley Madison." https://cybernews.com/security/investigator-exposes-white-supremacist-sites-users/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 the funniest part about LLM vulnerabilities is that we've essentially opened up our deterministic systems to techniques honed in centuries of disinformation operations, like an accelerated epistemology purposely weak to cache poisoning. https://infosec.exchange/@mttaggart/115446376556227026 https://masto.deoan.org/system/media_attachments/files/115/452/368/357/727/267/original/db5cad7e95796e4b.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 The image below, as well as other recent examples, form part of an information operation meant to make my generation and older feel prematurely aged and infirm. In this closed-door briefing i will…. https://masto.deoan.org/system/media_attachments/files/115/368/862/393/241/937/original/17dd541526a17b9f.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 So not only this excellent graphic but this graphic on this server name. https://toad.social/@amyedge/115363451499320006 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 I fucking love David Simon (creator of The Wire). Being interviewed by Ari Shapiro on AI. Editing to add: OP was on bluesky, just saw they’re on bridgy: https://bsky.brid.gy/r/https://bsky.app/profile/did:plc:t2nqc2rnyz2hco3uqxc457cd/post/3m2qdqsffuk2w https://masto.deoan.org/system/media_attachments/files/115/349/593/562/748/702/original/362a39570b37e1d8.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…fle4 is that haddix? npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 In regards to Framework’s latest footgunning, lemme reiterate two things: 1. Tech is and always has been political. Anyone saying otherwise simply wants to avoid being held accountable for their words and actions. 2. “Big tent” policies do one thing: loudly express that you’re perfectly okay becoming the neighborhood nazi bar. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 “We gladly feast on those who would subdue us.” https://masto.deoan.org/system/media_attachments/files/115/341/405/820/659/114/original/98a7457ff4090f63.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 ICE now owns roving vans with integrated cell site simulators https://techcrunch.com/2025/10/07/ice-bought-vehicles-equipped-with-fake-cell-towers-to-spy-on-phones/ for commentary on this breaking news, i turn to my recently-made friend Ray Hunter Luckily everyone else can too! #infosec #privacy https://www.eff.org/deeplinks/2025/03/meet-rayhunter-new-open-source-tool-eff-detect-cellular-spying npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 episode #543345 in “Rimworld modders are not okay…”: mod option that enables the ability for colonists who specialize in mechanical robot management to have sex with their mechs. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…6kgk Congrats and well done! npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Best ten-dollar purchase I've made in ages: small desktop pomodoro-type timer that ensures I stand up, stretch, and move every hour or so. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 🎵 FIDOn’t wanna close my eeeyes 🎵 🎵FIDOn’t wanna fallll asleeep 🎵 🎵cause I’d miss yubikey🎵 🎵and I don’t wanna miss a thiiing 🎵 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Tired enough that I stood at the wrong luggage carousel, very concerned my bag was not appearing. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Officials too old for redeye flights I think. Eugh. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…aakv that looks AMAZING npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 I’m an RSS and feed ingestion addict and have tried every platform under the sun, so if it’s finding new ways for me to pull stuff in, you *know* it’s novel an exciting. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Hey folks, I want to highlight an offering from @nprofile…82k3 for a sec. He’s been working tirelessly on https://www.cyberespresso.eu - a platform that leverages threat intelligence RSS feeds and then augments them in a myriad of ways. It’s been fascinating to travel through beta, tweak things, watch the iterations, and find the real sweet spots made more apparent by keen attention to feed optimization. Highly, highly suggest folks sign up and check it out. https://www.cyberespresso.eu npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Now that I’m submitting more CFPs I need to start shopping my “Shitposting-as-a-Service” talk around… npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…nkpy Ohhh, I like that reflection. Pillow fort as sand mandala. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 New research brief from @nprofile…rtth Investigations on likely PoisonSeed threat actor activity with some questions about SCATTERED SPIDER overlap. #threatintel #infosec #cybersecurity https://dti.domaintools.com/newly-identified-domains-likely-linked-to-continued-activity-from-poisonseed-e-crime-actor/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 I need a hotel room doorknob sign that says “I’m out at my event and you can come in, but I finally got my pillow fort JUST the way I want it, so please leave the bed as it is.” npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 This is what surveillance capitalism inevitably gets us, regardless of class, party, or society. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 This story by @nprofile…kx3z and Dake Kang is so well done, and so important. Please read and share if so inclined. https://mastodon.social/@yaelwrites/115172437805090461 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Neat to see the Cybereason team building on/alongside some of our DomainTools Investigations research! Threat research is a collaborative sport, in addition to the competitive aspects. Our ecosystem benefits from everyone building across borders. https://www.cybereason.com/blog/chrome-extension-campaign-madgicx npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 This is too good. https://masto.deoan.org/system/media_attachments/files/115/169/594/749/659/184/original/e5aba7420452dd92.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…zwse that checks out. It tottered up, very fluffy, sniffed around a little, sniffed my backpack (maybe for the clif bar therein), and then seemed happy enough to wander off at the same chill pace. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Risky Business podcast’s “Snake Oilers” (paid promotion spots, very well-announced and well executed imho) had US privacy-first mobile network operator Cape on. Worth listening to in order to remember privacy is not dead, and to hear Cape’s pitch to consumers. I’m a Cape subscriber and it’s been pretty damn good so far. https://risky.biz/snakeoilers22pt1/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…dzdx @nprofile…fv4z @nprofile…sxdw @nprofile…4fn8 fair! I think the forcing effort on behalf of the AI folks is one of the most toxic things out there. I still use it sparingly, I am not all in by any means. Gotta respect consent above all else I think. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…fv4z @nprofile…dzdx @nprofile…sxdw @nprofile…4fn8 valid for pretty much everything. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Headed to the airport and was sitting outside of my house waiting for pickup when a big ol’ skunk meanders across my driveway and right up to me. Had visions of getting sprayed and missing my flight, but the skunk was just curious and pattered off again in short order. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…fv4z @nprofile…dzdx @nprofile…sxdw @nprofile…4fn8 I would like no more than to disagree with Jeff on the merits - Up through about March I refused to engage with it if I didn't have to. But, 1. QA got better with some of them. 2. Industry isn't backing off. 3. I finally realized that, yes, using them is a learned skill akin to immersing yourself in an interface. You can reliably get decent (if non-deterministic) results, it's just not the easy button it's supposed to be. grumble. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ktud F npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…2p5k I hope your day and week and year get better, friend. You deserve it. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…2p5k "boy howdy, dodged THAT one by the skin of my teeth! [stifled sob]" npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…salt oh jeezus, just lookin through this is not great. Especially the firms that haven't removed it from their record in the past 24h...like, probably not gonna matter, but c'mon people... npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…g0wr OH! Thank you! I usually do alt text but missed it this time, thanks for pointing it out and writing it up. I've added it to the image. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…salt nice find on the TXT record marker. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 This is a hilariously harmless “fucked around and found out” story. https://masto.deoan.org/system/media_attachments/files/115/153/891/629/362/909/original/4551a688edb4a5db.jpeg npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…vrgz @nprofile…gzme "verified pickup" list for later exploitation or sale to other scammers. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…85tn Well done! npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…85tn It's Friday, might as well let that one go too... https://masto.deoan.org/system/media_attachments/files/115/152/514/252/274/842/original/5b08eed32166f1ea.gif npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 New research from DomainTools Investigations this morning. Our researchers dived into the recent Kimsuky leak and emerged with interesting findings, including a significant expansion of Kimsuky's interest to now include Taiwan. Also deep dives on tooling as well as targeting (watch your PKI infrastructure, folks!). #infosec #cybersecurity #threatintel https://dti.domaintools.com/inside-the-kimsuky-leak-how-the-kim-dump-exposed-north-koreas-credential-theft-playbook/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…0pmy Hope ya get better quick! npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…5lc3 per jfrog website copy, “Serving over 80% of the Fortune 100” - 7300+ customers npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 man i am a little salty tonight npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…85tn "the only gaps I have for you are on either side of both middle fingers, enjoy" npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ygwz Microsoft chose this problem for themselves by opting users into an overtrust situation in their OS. There is no reason someone in Poughkeepsie needs to trust Fina Root CA. I don't care about the governance process that's in place, this is basic due diligence as a corporation. A simple historic CT log check of the partners Microsoft chose to ensure they're not miss-issuing certs is not rocket science. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ygwz Microsoft has chosen to put themselves in the position of a global operator, and washed its hands of monitoring responsibility? There's a relatively simple fix here, and all it needs is will and a little funding. But apparently $85B on copilot is more necessary. "Security above all else." Satya's pledge in Satya's words. Take one one-thousandth of the money they've burned on LLMs and it solves an overtrust problem they chose to expose their users to. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 In the context of opting users into CA overtrust, I am reminded of Microsoft's pledge in May 2024. "Prioritizing security above all else." https://blogs.microsoft.com/blog/2024/05/03/prioritizing-security-above-all-else/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 As a global operator, when you opt hundreds of millions of users into inherent overtrust without monitoring the explicitly engineered transparency mechanism for mistakes or abuse you are failing your users. Full stop. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Surprises me (kinda) that there's pushback about Microsoft bearing any responsibility over deciding to trust Fina CA without engaging in transparency log monitoring. I'm with this guy: "The story here is less the 1.1.1.1 certificate and more why Microsoft trusts this carelessly operated CA," Filippo Valsorda, a Web/PKI expert, said in an interview. https://arstechnica.com/information-technology/2025/09/the-number-of-mis-issued-1-1-1-1-certificates-grows-heres-the-latest/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…dceh just remember to hydrate, and to ask before hugging, and everything will be fine. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…3uj0 i guess that font has run dry. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 In case you want both AI-first *and* Jira influencing your browser's development, the path appears to be clear: https://infosec.exchange/@AAKL/115146846103216470 npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 unexpected phrases seen today: "BSides Pyongyang" npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…s6wl what the fuck did you do? npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…xund @nprofile…3nsk @nprofile…v6nv oh jeebus, sorry, getting my own wires crossed between the Silksong-related outage and this npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…xund @nprofile…3nsk @nprofile…v6nv CDN edge, not browser Edge, I think npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…x2y4 you appear to be correct despite my skepticism npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Given that everything's recovering now, it really does look like it was the Silksong release generating a metric ton of traffic and taking down all the game platforms plus some collateral damage (which looks to be Azure, maybe). npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…x2y4 is silksong that popular? i've heard a little about it but this looks like it's having effects outside just game stores npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 looks like part of the internet fell down, went boom just now npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…s0e2 very cool tool experiment! Interested in how it goes. Probably a measure of my achey morning that I first read the name as “QueryAdvil.” npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 OFAC Sanctions Chinese Chemical Company and Its Associates in Synthetic Opioid Crackdown Anyone want to place odds on whether the US government performs a missile attack on these guys? https://www.chainalysis.com/blog/ofac-sanctions-chinese-chemical-company-bitcoin-address-september-2025/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 excuse me, i'm a bit lost, where does the line form for Less Interesting Times? it's got to be around here somewhere... npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 oh my god this actually happens in the wild now? i've seen the spam demands for years but some son of a bitch made it happen... https://www.wired.com/story/stealerium-infostealer-porn-sextortion/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 Dunno who Fina Root CA is, but they finna learn some hard lessons in TLS certificate justice. Always appreciate @nprofile…v6nv getting stuff like this out into the daylight. #infosec #cybersecurity https://arstechnica.com/security/2025/09/mis-issued-certificates-for-1-1-1-1-dns-service-pose-a-threat-to-the-internet/ npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ywqr I eagerly await that photoshoot npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ywqr okay okay fair point but how do YOU know what I did?!?! npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ywqr wait what'd i do now npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…5xd5 i hate this timeline npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 mmmff, the coffee is good this morning npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…nu7s @nprofile…9r5y oh hell nah, i'm not falling for that one again. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…ffsl Sending solidarity, friend. It's okay for it to be scary - lots of things are. And you don't have to be autistic to not be socially inept. Like any other neurodivergence, you may just be operating in a world not built for you. And that can be really scary, but also - look how long you've made it, through everything so far. The fight is exhausting but you're holding your own. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 The few who read it later recalled that first, foundational paper and its odd typos. How the sheets curled inward in a strong wind or laid flat in late afternoon sunbeams. The tendency of the whole monograph to not be where it was left and somehow only findable by not looking for it and then spotting it out of the corner of your eye. But surely those typos were honest mistakes, even as a new field blossomed after publication. Surely large language model infaerencing wasn’t meant in earnest. npub155t0ydv2yz5sc4sta5jmxnannmjm6y48rpur0huvj6seuqrseekszdnysn Ian Campbell 🏴 @nprofile…36ju so a sub-conscious reckoning of sorts?