Advertisement · 728 × 90

Posts by Chapin Bryce

From postalcoder in news.ycombinator.com/item?id=4758...:

~/.config/uv/uv.toml
exclude-newer = "7 days"

~/.npmrc
min-release-age=7
ignore-scripts=true

~/Library/Preferences/pnpm/rc
minimum-release-age=10080

~/.bunfig.toml
[install]
minimumReleaseAge = 604800

2 weeks ago 1 0 0 0
Preview
axios Compromised on npm - Malicious Versions Drop Remote Access Trojan - StepSecurity Hijacked maintainer account used to publish poisoned axios releases including 1.14.1 and 0.30.4. The attacker injected a hidden dependency that drops a cross platform RAT. We are actively investigatin...

The compromise of Axios is another reminder to configure your package manager to use a minimum release age.

Not a perfect solution but provides folks a few days to catch and respond to a supply chain attack.

2 weeks ago 0 0 1 0
Mayor-elect Smyth Announces December Community Listening Sessions NORWALK, Conn. — Mayor-elect Barbara Smyth is inviting residents to participate in two community listening sessions this month as her transition team begins gathering public input on priorities for the new administration. The sessions will be held Dec. 10 from 6 to 7:30 p.m. in the Community Room at Norwalk City Hall, and Dec. 18 […]
4 months ago 1 2 0 0
Post image

Great talk on making your reverse shells disappear using rootkits by Asritha from the UMass Cyber Security Club at BSides CT this morning

6 months ago 2 0 0 0
Post image

The BSides CT conference badges are 😎

6 months ago 1 0 0 0
Public Hearing to Shape Norwalk’s 2026-27 Budget Set for Wednesday NORWALK, Conn. — Norwalk residents will have an opportunity to weigh in on the city’s spending priorities this week during the annual joint budget public hearing hosted by the City of Norwalk and Norwalk Public Schools. The hearing is scheduled for 6 p.m. Wednesday in the Common Council Chambers at City Hall and will also […]
6 months ago 0 1 0 0

Nancy on Norwalk
Save the Date! Sept. 4 NancyOnNorwalk Democratic Primary Mayoral Debate
Join us as Democratic Primary candidates Barbara Smyth and Darlene Young answer questions and share their vision for the future of Norwalk. Mark Berns,...

Read more

7 months ago 1 1 0 0
Advertisement
Preview
Middletown police say speed cameras contributed to 120,000 fewer incidents of speeding a week The chief hopes the other cameras by Spencer Elementary School and Moody School will be operational next month.

This is really tough news for the “I want to legally break the law” speeding crowd

www.ctpost.com/news/article...

7 months ago 6 2 0 0

Nancy on Norwalk
Norwalk Tree Alliance, Courville Nurseries launch free tree giveaway
NORWALK, Conn. — The Norwalk Tree Alliance has partnered with Courville Nurseries to give away free trees to residents in an effort to cool city streets and...

Read more

7 months ago 0 1 0 0
Preview
Emails: Lamont sought counsel on HB 5002 housing bill opposition CT Gov. Ned Lamont involved his wife, a former state senator and others in discussions over how to respond to opposition to HB 5002.

"They [staffers in the governor's office] reported that much of the opposition came from Fairfield County residents who appeared not to have read the actual bill."

ctmirror.org/2025/08/18/c...

7 months ago 1 0 0 0
Preview
Writing Code Was Never The Bottleneck LLMs make it easier to write code, but understanding, reviewing, and maintaining it still takes time, trust, and good judgment.

ordep.dev/posts/writin...

8 months ago 0 0 0 0

GitHub Copilot is useful for asking questions about a repository you’re evaluating. “What network requests does this package make? Show me where in the code” “Does this package read any envars or configuration data?”

8 months ago 0 0 0 0

“Malware doesn’t go ‘boom!’” in the context of NPM package malware. It may perform the stated capabilities, but carries out its objective quietly. The packages follow the trends, currently focused on Vite, MCP, and Solana. Give those packages more scrutiny.

Great talk by 6mile @ DC33

8 months ago 0 0 1 0

“We always want to lose, thats the goal […] we want to lose during the table top so we win during the incident”

8 months ago 0 0 0 0
Preview
Talks - BSides Las Vegas BSides Las Vegas is a nonprofit organization formed to stimulate the Information Security industry and community.

“Your table top should be designed for you to fail […] if your exercise is too easy or generic you risk being blindsided during an incident.” bsideslv.org/talks#9RELPE #BSidesLV

8 months ago 1 0 1 0
Preview
GitHub - luminaut-org/luminaut: Casting light on shadow cloud deployments. Detect exposure of resources deployed in AWS. Casting light on shadow cloud deployments. Detect exposure of resources deployed in AWS. - luminaut-org/luminaut

Excited to present Luminaut.org at #BSidesLV & #BlackHat Arsenal 2025! Our open-source tool helps incident responders quickly identify exposed cloud resources and scope shadow IT environments. From #AWS to #GCloud, get critical context in minutes

8 months ago 1 1 0 0
Advertisement

Nancy on Norwalk
Norwalk Narrows Down Locations for New Airport
NORWALK, Conn. — Residents of Norwalk may be surprised to find their city in the running for a new international airport. Funding for the project was tucked into the 2021 Bipartisan...

Read more

1 year ago 1 1 0 0
Post image

Make your own Jackson Pollock style art jacksonpollock.org

1 year ago 2 0 0 0

Announcing Luminaut! An open-source utility for triaging exposed cloud resources from the inside-out.

Check it out at: luminaut.org

Big thanks to everyone who joined our Shmoocon talk this year!

1 year ago 5 1 0 0
Post image

TIL about meshtastic, a protocol supporting long range mesh communication over low cost and low power devices.

Especially useful at Shmoocon, as cell reception is terrible in the conference space.

Love the pager form factor

1 year ago 1 0 0 0
Speakers – ShmooCon

Thrilled to speak at Shmoocon this year! We’ll be releasing and presenting Luminaut, our open-source tool for detecting exposure of cloud resources from the inside-out to uncover PoC and shadow IT environments.

www.shmoocon.org/speakers/#sh...

1 year ago 6 4 0 1

Ha! Though cleaning it only takes 2 min 😉

1 year ago 0 0 0 0

TIL a damp paper towel, dipped in ash, cleans fireplace glass surprisingly well

1 year ago 0 0 1 0

Nancy on Norwalk
NORWALK, Conn. — In the coming weeks, 23,000 residents will see part or all of their medical debt cancelled, Connecticut officials announced on Monday morning at the state Capitol. The measure will erase $30 million in medical...

Read more

1 year ago 1 1 0 0
Advertisement
Preview
Parsing Jenkins Configuration Files for Forensics and Fun Social description text

A little blog post and script from Stroz Friedberg for investigating Jenkins servers:

www.aon.com/en/insights/...

github.com/strozfriedbe...

1 year ago 1 1 0 0

30 day public comment period is open, direct link here: www.norwalkct.gov/DocumentCent...

1 year ago 1 0 0 0
Post image

Excited that we were able to expand childcare availability in Norwalk!

As mentioned in the discussions, I hope this enables more parents to walk their kids to daycare and have options near where they live.

www.nancyonnorwalk.com/planning-and...

1 year ago 2 0 0 0
Screenshot of the current outage notice, from https://status.openai.com

Screenshot of the current outage notice, from https://status.openai.com

OpenAI has a bit of downtime this evening: status.openai.com

1 year ago 0 0 0 0

While podcastaddict.com is my favorite Android podcast app, overcast.fm is easily my favorite on iOS

1 year ago 0 0 0 0

Anyone else feel their Spotify wrapped was a summary of the songs Spotify kept forcing into your line up?

1 year ago 0 0 0 0