Advertisement · 728 × 90

Posts by Allan

Recently started biking for real, and holy f-ck - the cars.

I swear to absolute fucking God. The cars man. I've never in my 30+ year life seen so many stupid fucking idiots in traffic. Blind motherfuckers. They are making my blood boil.

  
Today someone decided it was a great time to make a U-turn in the middle of the street. I kept distance but the car was jerking and was indecisive and just stopped forcing me to go right on the curb making me fall head over the handle bar and crash. Not a care in the world the driver just looked at me and drove off.

  
Never in my life have I seen so many stupid people that can't drive. And I've had a drivers license for over 20 years soon.

Recently started biking for real, and holy f-ck - the cars. I swear to absolute fucking God. The cars man. I've never in my 30+ year life seen so many stupid fucking idiots in traffic. Blind motherfuckers. They are making my blood boil. Today someone decided it was a great time to make a U-turn in the middle of the street. I kept distance but the car was jerking and was indecisive and just stopped forcing me to go right on the curb making me fall head over the handle bar and crash. Not a care in the world the driver just looked at me and drove off. Never in my life have I seen so many stupid people that can't drive. And I've had a drivers license for over 20 years soon.

A common thread among newer cyclists is realizing just how awful drivers are. There are things you simply don't notice — behavior that has been normalized — when you mostly drive. Biking, walking, or rolling through the world changes that.

4 hours ago 372 79 5 22

Fascinating but of history that informs contemporary policy.

1 day ago 1 0 0 0

Why do you do with your scapes?

2 days ago 0 0 0 0
Post image Post image Post image

Ramp season! So delicious, but can be a bit of a pain to clean.

2 days ago 3 0 1 0
A flatscreen display on a "smart" water fountain, demanding to be reconnected to the internet.

A flatscreen display on a "smart" water fountain, demanding to be reconnected to the internet.

In 1999, I was playing a decker in Shadowrun, and tried to distract a guard by hacking a water fountain to overflow, and my GM said "why would a water fountain be on the network? That's fucking stupid. No you can't try."

Well it's 2026 and I just want you to know, Phil, that I FUCKING CALLED IT!

3 days ago 9840 2924 18 95

I like this point, but I think I would have a hard time carrying it further. Could you share a bit about how humans can be the deciding factor, or how we should continue to emphasize the strategic value of having good teams of good people?

6 days ago 0 0 1 0
Post image

Happy World Quantum Day Folks - to celebrate we are releasing our latest open quantum hardware project: The ‘Entropy Loop’ This is a USD $35 open source Quantum Random Number Generator made using off the shelf fiber optics and a raspberry pi pico - in a credit-card sized package!! Link below...

1 week ago 8 7 1 4
Post image

Are you ready?

The CFP, call for volunteers, Pros vs. Joes Registration, and room block are all open. Finally, registration is now officially open too.

Full details online: https://bsideslv.org/

Join us August 3-5, 2026.

6 days ago 7 7 0 0

As the founder of the (sadly short lived) SBOM-a-Rama, I love this.

1 week ago 4 0 0 0

Most clients struggling with AI governance are struggling because they haven't fully defined their enterprise data governance requirements.

You can't code "people will use their judgment" into coherent AI governance, as much as you might want to.

1 week ago 26 4 3 0
Advertisement
Post image

Aw yeah. ‘Bout to get nonna up in here.

1 week ago 8 1 0 0

LLM-found vulnerabilities don't need panic, they need faster patching. Equip your developers with AI tools for code comprehension, triage, and testing. Defenders have full source access — LLMs amplify that advantage. The bottleneck isn't technology, it's adoption.

secwest.net/ai-triage

1 week ago 6 3 0 0

“…the moment presents an opportunity to address shortcomings in how software is currently developed.”

That’s absolutely correct. Code quality is cyber 🥦 and this is just another way to remind the industry that you gotta eat your vegetables.

1 week ago 16 2 1 0

Very well said. Secure by Design, at the end of the day, good engineering. Not easy, but not impossible.

1 week ago 3 0 0 0

The technical debt repo man is coming for all orgs, especially those that don’t have robust patch creation & management — & it’s clear we can’t keep cranking out these bugs in the 1st place. Stay hydrated, ops teams, & tip your doordashers well as we brace for impact of the #AI vulnpocalypse

1 week ago 55 12 8 2

Come for the updated graph, stay for the very balanced and reasonable Outlook section, which matches and reinforces my risk assessment: it's unlikely we'll see a CRQC in 2030 but not unlikely enough. So we ship.

sam-jaques.appspot.com/quantum_land...

1 week ago 29 8 0 0

Then one day you receive a message from another Greenland Shark saying he’d like to add you to his professional network on LinkedFin

1 week ago 188 28 3 1
I know the tweet is Al generated when they use " ," before and.

I know the tweet is Al generated when they use " ," before and.

“I will NOT sacrifice the Oxford comma. We've made too many compromises already; too many retreats. They assimilate the em dash and we fall back. They capture ‘not just X but y’ and we fall back. Not again. The line must be drawn here! This far, no further!”

2 weeks ago 7464 2073 160 319

Tell him he’s not alone—I am also a middle aged bearded gentleman who longs to let go on the dance floor!

1 week ago 4 0 1 0
Advertisement
Preview
The Diana Initiative 2026 (Online Event): Call for Speakers The Diana Initiative​ is hosting a one-day, online, diversity-driven conference with the goal to create a more inclusive information security industry...

Hi Friends! You have one week to submit to @dianainitiative.bsky.social, an amazing infosec conference, online this year. I understand that they are particularly interested in Red Team talks, so please circulate to those who would be interested.

sessionize.com/tdi-online-2...

2 weeks ago 4 4 0 0

Volt Typhoon right now:

2 weeks ago 21 7 1 0
Preview
Rage-quit: Coder unpublished 17 lines of JavaScript and “broke the Internet” Dispute over module name in npm registry became giant headache for developers.

Somehow I failed to remember to observe the 10th anniversary of the npm left-pad outage.

Pour one out. Also, NPM stands for "nicely propagates malware" - just ask DPRK cyberjockies.

arstechnica.com/information-...

2 weeks ago 15 3 2 0

Aw!

2 weeks ago 0 0 0 0

Heck yeah. Went to an amazing show tonight, Joseph, in a great little basement club.

Hey, want to come into DC tomorrow to see the Old 97s with us???

2 weeks ago 3 0 1 0

A very happy birthday to everyone who spent time to pick something other than Jan 1 for their fake birthday!

Many happy returns, and I hope you get a free ice cream cone somewhere. (Do they still do that?)

2 weeks ago 1 0 0 0

Got to see Whitfield Diffie speak this morning; love to see this clear illustration of how the public key magic works.

3 weeks ago 9 0 0 0
Post image

Last day of RSAC conference. Once more into the breach [response and recovery AI tooling sales talks]!

3 weeks ago 3 0 0 0

“Shadow AI is like regular AI, but with cooler hair and music.”

4 weeks ago 0 0 0 0
Linux Foundation Announces 12.5 Million in Grant Funding to Advance Open Source Security

Linux Foundation Announces 12.5 Million in Grant Funding to Advance Open Source Security

The Linux Foundation Announces $12.5 Million in Grant Funding (via Alpha-Omega and OpenSSF)

Anthropic, AmazonWebServices (AWS), GitHub, Google, GoogleDeepMind, Microsoft, OpenAI to Invest in Sustainable Security Solutions for #OpenSource

openssf.org/press-releas...

1 month ago 7 3 0 1
Advertisement
Preview
Trivy Security incident 2026-03-19 · aquasecurity trivy · Discussion #10425 UPDATE 2026-03-21 We have published a security advisory with all the details: GHSA-69fq-xp46-6x23 On March 19, we observed that a threat actor used a compromised credential to publish malicious tri...

10 years from left pad to Trivy scanner compromise and it's like we've learned so much about 3rd party risk. 🫥
github.com/aquasecurity...

4 weeks ago 3 2 0 0