hashtag team elephant
Notices by cR0w (cr0w@infosec.exchange), page 2
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Saturday, 25-Apr-2026 04:00:38 JST
cR0w
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Wednesday, 22-Apr-2026 11:23:25 JST
cR0w
OH from my partner in the other room, who is not in IT: Teams is not a document repository!
It's not just nerds fighting that shit. 😆
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 10-Apr-2026 11:01:04 JST
cR0w
@Sempf Yeah, that's a no for me. My risk models remain unchanged.
He is right that AI gives us the catalyst and the tools.
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 10-Apr-2026 11:01:02 JST
cR0w
@darkuncle @Sempf Easier for attackers means a potentially higher likelihood of occurrence, but it does not change the severity of impact. And while the likelihood does theoretically impact the risk score, for at least some orgs, it's minimal to no change when your adversaries are at the top of the field already. The rising tide of AI may be lifting all attackers' boats, but the high water mark remains the same, despite the industry continuously claiming a tsunami is coming. I just don't see it.
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 10-Apr-2026 11:01:01 JST
cR0w
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 03-Apr-2026 16:18:02 JST
cR0w
Computers are fucking stupid.
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Thursday, 02-Apr-2026 08:48:11 JST
cR0w
Happy International Birds Day :brdKnife:
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Thursday, 02-Apr-2026 01:26:02 JST
cR0w
Cisco listed by Shinyhunters.
3 breaches (UNC6040, Salesforce Aura, and AWS accounts). Total over 3M Salesforce records containing PII, Github repositories, AWS buckets and other internal corporate data have been compromised.
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 27-Mar-2026 01:25:54 JST
cR0w
You know what would be cool? If people would acknowledge that Microsoft has no fucking idea how their own shit works and stop giving them the benefit of the doubt, especially with things like consent and AI.
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Thursday, 26-Mar-2026 04:36:53 JST
cR0w
allowing html emails is still the largest risk that pretty much every org is intentionally accepting send toot
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Tuesday, 24-Mar-2026 09:08:34 JST
cR0w
@InsiderTreat @catsalad What do you mean? Isn't that how ops usually work?
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Tuesday, 24-Mar-2026 09:08:33 JST
cR0w
stares into mirror
Am I CatSalad?
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Tuesday, 24-Mar-2026 09:08:32 JST
cR0w
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Monday, 23-Mar-2026 09:41:08 JST
cR0w
@scottwilson @da_667 There is but I can't find it right now. That means we need moar. :catte:
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Friday, 20-Mar-2026 04:39:47 JST
cR0w
Agentic. Access. Management.
LMAOOOOOOOOOOOOOOOOIn conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Thursday, 19-Mar-2026 22:48:26 JST
cR0w
sigh
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Thursday, 19-Mar-2026 02:53:47 JST
cR0w
RE: https://mastodon.art/@guilhernunes_/116251428680398756
fedi dot png
In conversation from infosec.exchange permalink Attachments
-
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Wednesday, 18-Mar-2026 01:14:51 JST
cR0w
I understand not being an absolutist against all things AI. It's wrong, but I understand. What I don't understand is people who think that those of us avoiding shit with AI or created by AI are irrational or some other offensive term. I don't see how it's different than avoiding code written by a literal honey badger. Neither the honey badger nor the AI know how to code and having them do so shows a lack of fucks given for the quality of the output. That's ( part of ) why we avoid it.
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Tuesday, 17-Mar-2026 08:13:16 JST
cR0w
@patrickcmiller Bad luck. A curse. Alternative
In conversation from infosec.exchange permalink -
Embed this notice
cR0w (cr0w@infosec.exchange)'s status on Saturday, 14-Mar-2026 01:34:15 JST
cR0w
"AI is giving attackers a huge advantage!"
"Yes, it is. It's amazing how quickly it has destroyed dev, sec, ops, management, company missions and priorities, regulations, information literacy, and civil society, making everyone more vulnerable."
In conversation from infosec.exchange permalink