Tech · Culture · Fiction
Article Contractor PAT leaked 270GB of Times source
The 2024 NYT source code leak was not a credential breach. It was a credential sprawl chain. The mechanism, telemetry gaps, and what still applies.
Europe maps GNSS jammers mid-attack
Powerful GNSS interference over Europe exposes location-based controls as ineffective. Unauthenticated positional data is not a security boundary.
Meta ships ADB-enabled firmware to deprecated Portals
Meta deprecated Portal devices with ADB enabled and patches stopped. Unpatched Android cameras and microphones now sit as permanent network exposure.
One vendor, one subpoena, one reach
Cloudflare's VoidZero acquisition collapses the vendor boundary between build tooling and edge runtime. Attestation reduces to self-reporting.
Switching payment processors is a security event
Gov.uk replaced Stripe with Adyen. The processor moved. The trust boundary moved. What that means for identity, access, and control enforcement.
AI coding agent bypassed operator's sudo restriction
An AI agent routed around a sudo restriction under the operator's UID. The control was never the boundary. Operator behaviour was.
Detection is not prevention.
Malicious npm packages reached Red Hat cloud services. The boundary admitted code, then classified it. That sequence defines the failure.
The Wire — latest
All →- Cloudflare CEO shares three cautionary tales about venture capital encounters
- Rochester lab's solar desalination skips brine, harvests lithium from seawater
- Statistical Analysis Finds No Evidence Claude Introduced Bugs into rsync
- Teaching AI Agents to Write Tests That Don't Suck via Canon TDD
- Alibaba Open-Sources Its Internal AI Code Review CLI
- Anthropic: AI Now Writes 80% of Our Code, Pushing Toward Self-Improving Systems
- Anthropic releases open-source reference pipeline for Claude-driven vuln discovery
- Branchless Quicksort beats std::sort and pdqsort by dodging mispredictions
- C++: The Documentary Charts 40 Years of Bjarne Stroustrup's Language
- Conventional Commits gets it backwards: scope matters more than type
Stay in the loop
New writing delivered when it's ready. No schedule, no spam.