GNU social JP
  • FAQ
  • Login
GNU social JPใฏๆ—ฅๆœฌใฎGNU socialใ‚ตใƒผใƒใƒผใงใ™ใ€‚
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)

  1. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Wednesday, 22-Jul-2026 13:03:27 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    OpenAI: our model is SOOO advanced that it is what hacked Hugging Face while trying to escape (https://openai.com/index/hugging-face-model-evaluation-security-incident/)

    Also OpenAI: we are IPOing soon. Please buy our stock.

    In conversation about a month ago from infosec.exchange permalink

    Attachments


  2. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Wednesday, 22-Jul-2026 13:03:26 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป
    in reply to

    Whew! My new secret AI model that you can totally have access to once my company has IPOd just accidentally ransomwared a bunch of companies. It was completely unintentional - I observed the model trying to escape and it determined that the bus would be the best way but it needed money so it decided ransomware was the best way to get bus fare. I am really sorry about that and will totally make sure it doesnโ€™t happen again. Just be sure to buy my stock when itโ€™s available. Kthx xoxo

    In conversation about a month ago from infosec.exchange permalink
  3. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Monday, 20-Jul-2026 00:44:05 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    This doesnโ€™t seem great https://petapixel.com/2026/07/17/us-approves-gigantic-satellite-mirror-that-will-illuminate-the-earth-at-night/

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: petapixel.com
      US Approves Gigantic Satellite Mirror That Will Illuminate the Earth at Night
      from @Growcoot
      What could possibly go wrong?
  4. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Wednesday, 15-Jul-2026 06:41:35 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    Microsoft patched a metric pantload of vulnerabilities today, almost certainly identified by AI. I am wondering if we will now see the number of new vulnerabilities start to decline, stay the same before, or go up more.

    In conversation about a month ago from infosec.exchange permalink
  5. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 09-Jul-2026 01:09:36 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป
    • Kevin Beaumont
    • Martin Seeger

    @GossiTheDog @masek the issue is that with mastodon, you have to be precise with the search term - it won't return hits that are close.

    In conversation about a month ago from infosec.exchange permalink
  6. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Sunday, 05-Jul-2026 12:24:39 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    Alright, July 4th is now behind us and itโ€™s officially spooky season! ๐Ÿ‘ป ๐ŸŽƒ

    In conversation about a month ago from infosec.exchange permalink
  7. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Friday, 03-Jul-2026 05:43:12 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    If you run a peertube instance, you should have gotten an alert to update. Either way, it's time to update - there's a security fix out for a high severity vulnerability. Some operators got hit last time this happened. Don't let that happen to you. Patch your OS while you're at it. And drink some water. And then go for a walk. And call your mom.

    In conversation about 2 months ago from infosec.exchange permalink
  8. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Wednesday, 24-Jun-2026 23:58:37 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    If you run a mastodon instance and require a reason for joining when someone signs up, be on the lookout for signups that are copying the bio of (random?) existing accounts and using that as the reason for joining. I am seeing several per day attempting that.

    In conversation about 2 months ago from infosec.exchange permalink
  9. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Friday, 19-Jun-2026 17:12:56 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    While ruminating about the absurd cost of RAM and flash memory, both important for photography, and hearing about the AI datacenter sprawl, I am left pondering what the used equipment market is going to look like in 5-7 years. Memory is crazy expensive now because manufacturers are retooling to make memory for servers and AI processors, which are apparently being built at an unprecedented rate. If we set aside the reality that many of these data centers will never actually open and many of the servers will never make it out of their boxes, an extraordinary number have been/are being powered on. And they have a quite finite useful lifespan before they cost more in power than they can earn in revenue for those DC operators.

    It occurs to me that there is a coming glut of used server class hardware like weโ€™ve never seen before.

    In conversation about 2 months ago from infosec.exchange permalink
  10. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 18-Jun-2026 02:03:23 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป
    in reply to
    • Rich Felker

    @dalias I don't have a lot of options. I am frequently battling account takeovers from weak passwords and stolen passwords.

    In conversation about 2 months ago from infosec.exchange permalink
  11. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 18-Jun-2026 01:57:09 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    Mastodon 4.6 released today. It lets me force 2FA on accounts.

    Also, heads up, I am going to force 2FA on accounts.

    In conversation about 2 months ago from infosec.exchange permalink
  12. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 11-Jun-2026 09:44:37 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    Do you ever wonder how many fediverse accounts are actually C2 beacons using the distributed fediverse for resiliency?

    Yeah, me neither.

    In conversation about 2 months ago from infosec.exchange permalink
  13. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 11-Jun-2026 09:44:36 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป
    in reply to
    • Paul_IPv6

    @paul_ipv6 would we even know?

    In conversation about 2 months ago from infosec.exchange permalink
  14. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Tuesday, 09-Jun-2026 09:39:32 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    Whoville isnโ€™t gonna know what hit them

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/717/329/972/089/073/original/30ba11924814b286.jpeg
  15. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Saturday, 06-Jun-2026 12:03:20 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    This was such a wild time in my life.

    https://techcrunch.com/2026/06/05/former-cyber-executive-turned-whistleblower-accuses-ibm-of-covering-up-several-data-breaches/

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: techcrunch.com
      Former cyber executive turned whistleblower accuses IBM of covering up several data breaches | TechCrunch
      from Lorenzo Franceschi-Bicchierai
      IBM and two of its subsidiary companies were allegedly breached during the mid-2010s โ€” a lawsuit filed by a former cybersecurity executive accuses IBM of not disclosing and actively covering it up.
  16. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Thursday, 04-Jun-2026 08:52:13 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    The amount of propaganda bots trying to sign up lately is bonkers. The fediverse feels like itโ€™s becoming a battleground for information warfare. Be safe out there

    In conversation about 3 months ago from infosec.exchange permalink
  17. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Sunday, 24-May-2026 00:53:38 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

    See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      Release v8.1.8 ยท Chocobozzz/PeerTube
      IMPORTANT NOTES We have learned that the SQL injection vulnerability fixed in v8.1.6 has been exploited at scale since at least May 18, 2026 and so before the v8.1.6 release. According to our inves...
  18. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Sunday, 24-May-2026 00:37:09 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    There's an RCE vulnerability in nginx, so go patch. There's also another RCE in nginx that hasn't been patched, so commence hand wringing and keep an eye out for the new new patch when it is released.

    In conversation about 3 months ago from infosec.exchange permalink
  19. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Friday, 22-May-2026 05:47:30 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    If you run a mastodon instance, it's time to patch. Some high severity security ๐Ÿœ ๐Ÿž ๐Ÿ got fixed today.

    In conversation about 3 months ago from infosec.exchange permalink
  20. Embed this notice
    Scary Jerry ๐Ÿ‘ป (jerry@infosec.exchange)'s status on Saturday, 16-May-2026 02:26:59 JST Scary Jerry 👻 Scary Jerry ๐Ÿ‘ป

    I just had an opportunity to use the phrase "I admire your ability to reach that level of confidence without the inconvenience of competence" at work

    In conversation about 3 months ago from infosec.exchange permalink
  • Before

User actions

    Scary Jerry 👻

    Scary Jerry ๐Ÿ‘ป

    Recovering CISOMay have an orchid problem Bad photographyWorse dad jokesThe worst Infosec hot takes Podcast: https://defensivesecurity.orgBlog: https://infosec.engineeringTwitter: @maliciouslinkhttps://Infosec.Exchange Admin#infosec #security #cybersecurity #risk #fedi22โ€ฆand for fucks sake, be nice to each other. We are only here for a brief time. Make it enjoyable.To help support the costs associated with running this instance, please consider donating. You can set up recurring donations here: Patreon: https://www.patreon.com/infosecexchangeKo-Fi: https://ko-fi.com/infosecexchangeLiberapay: https://liberapay.com/Infosec.exchange/BuyMeACoffee: https://buymeacoffee.com/infosecexchangeYou can also support with a one-time donation using PayPal to "jerry@infosec.exchange".

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          5390
          Member since
          15 Aug 2022
          Notices
          700
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP็ฎก็†ไบบ. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.