Tech · Culture · Fiction
Article Alibaba bans Claude Code across its engineering org
Alibaba's reported ban on Claude Code is a trust decision, not a CVE. Why an agentic coding tool's sanctioned egress is also its exfiltration path.
Cloudflare shipped an authorization boundary in 2025
How x402 charge gateways behind Cloudflare turn old CDN misconfigurations - origin IP exposure, cache deception, verify-settle races - into priced exploitation.
CVE-2024-43047 hit live targets in 2024
CVE-2024-3679 maps to no Qualcomm bug. The real 2024 Snapdragon zero-day is CVE-2024-43047 - a DSP/FastRPC use-after-free, CVSS 7.8, exploited in the wild.
Exposure you cannot see
A board-level assessment of why unverified detection against a public vulnerability campaign leaves exposure unconfirmed and control unproven.
LUKS suspend leaves your encryption key in memory
On Linux 6.9, LUKS suspend returns success but does not wipe disk encryption keys from memory. The success report no longer proves the state it claims.
PAN-OS remembers the verdict, forgets the reasoning
Firewall rules, AD groups, and JWTs keep executing stored references long after the reality they described has drifted. The system revalidates nothing.
Seizing the domains left the machine untouched
The FBI seizure of NetNut and the Popa botnet infrastructure exposes a structural fault in delegated trust: systems that resolve a reference but never revalidate what it points to.
The Wire — latest
All →- Alibaba reportedly set to bar Claude Code internally over backdoor fears
- An AI tuned Superpowers 6, cutting build time 50% and token cost 60%
- Apple Ships Safari MCP Server to Let AI Agents Debug Sites in the Browser
- Asking Strangers for Help Is a Skill: Put Their Mind First, Not Yours
- CarPlay Is Optional, Not a Takeover: A Rebuttal to Rivian's No-CarPlay Stance
- Commerce Order Bans Differential Privacy for US Census, Reverting to 1970s Methods
- crustc: rustc compiled to C to bring Rust to platforms LLVM forgot
- Egg Giants Kept ~1,000x Their Fine After Rigging a LIBOR-Style Price Index
- Exapunks: Zachtronics' 1997-set hacking puzzle game where code is your lifeline
- Immich Hits 3.0, Advancing Its Self-Hosted Google Photos Alternative
Stay in the loop
New writing delivered when it's ready. No schedule, no spam.