RC RANDOM CHAOS
RC RANDOM CHAOS

Tech · Culture · Fiction

dd writes raw sectors below the filesystem Article

dd writes raw sectors below the filesystem

Why the Unix dd command is a real security primitive: raw block writes below the filesystem, wiper TTPs, exfiltration, and the telemetry gap defenders miss.

htop is a reconnaissance surface
Article linux-security

htop is a reconnaissance surface

How htop and top expose Linux resource contention - OOM-killer steering, D-state telemetry gaps, niced miners, and PID exhaustion mapped to MITRE T1562 and T1499.

OAuth converts consent into standing permission
Article OAuth 2.0

OAuth converts consent into standing permission

OAuth 2.0 issues a token, not an identity. It verifies authority once at consent and honours the reference thereafter, without ever revalidating the grant.

Palantir was blacklisted for working exactly as designed
Article data governance

Palantir was blacklisted for working exactly as designed

Spain's Palantir blacklist is not about capability. It is what happens when a system executes trust granted once and never revalidates its lawful basis.

The unread binary every compiler still trusts
Article software supply chain

The unread binary every compiler still trusts

Translating rustc to C changes the compiler's substrate, not its logic of trust: build pipelines execute on resolved references, never verified content.

YouTube exposed creators' private videos
Article youtube-security

YouTube exposed creators' private videos

YouTube creators' private videos were accessed and leaked. The private label failed as an access control. What that failure exposes, defined strictly.

Alibaba bans Claude Code across its engineering org
Article supply chain security

Alibaba bans Claude Code across its engineering org

Alibaba's reported ban on Claude Code is a trust decision, not a CVE. Why an agentic coding tool's sanctioned egress is also its exfiltration path.

The Wire — latest

All →

Stay in the loop

New writing delivered when it's ready. No schedule, no spam.