Advertisement · 728 × 90

Posts by Taggart

Preview
Zero Day Initiative — Node.js Trust Falls: Dangerous Module Resolution on Windows In September of 2024, ZDI received a vulnerability submission from an anonymous researcher affecting npm CLI that revealed a fundamental design issue in Node.js . This blog details how it continues to expose applications to local privilege escalation (LPE) attacks on Windows systems, including th

Not new exactly, but an important conversation.

If you consider DLL hijacking to be a concern, so is this—except worse in some ways, because I guarantee your EDR isn't watching JavaScript applications like it watches DLLs.

2 hours ago 0 0 0 0

I assure you: You cannot destroy this machine

3 hours ago 1130 70 80 0

If you are building anything that assumes these services will be around and/or price-stable, you are recklessly adding liability to your organization.

Tech has always had a problem with viable business models, and this is the final form of that monster.

8 hours ago 4 1 1 0

Nobody can actually afford what's going on right now. Just like in 2008, it's sleight-of-hand that will eventually be revealed, and that's when gravity takes over.

8 hours ago 4 0 1 0
The Subprime AI Crisis Is Here Hi! If you like this piece and want to support my independent reporting and analysis, why not subscribe to my premium newsletter? It’s $70 a year, or $7 a month, and in return you get a weekly newsletter that’s usually anywhere from 5,000 to 18,000 words,

I don't usually link Zitron, but this one is *important*. It isn't the tech that will derail this hypetrain; it's the money.

www.wheresyoured.at/the-subprime...

8 hours ago 5 2 1 0
Preview
HWMonitor Download Compromised Observable: CPUID Downloads with Malware Observable Type: Supply Chain compromise (?) Details: Users reporting getting a malware executable while downloading HWMonitor software from the official CPUID website A discussion on Reddit from an everyday user, with some analysis in the comments: Reddit - Please wait for verification Some press coverage: https://cybernews.com/security/cpuid-hwmonitor-hwinfo-cpuz-deliver-malware/

CPUID downloads were temporarily compromised earlier today. We have a thread compiling analysis and IoCs for you to investigate:

discourse.ifin.netwo...

#ThreatIntel #IFIN #ThreatIntelligence

10 hours ago 3 2 0 0

When AI pops, I'm looking forward to watching LinkedIn eat itself alive searching for a take.

11 hours ago 14 1 0 0
Advertisement

A demo/production Ringspace server is finally live!

ringspace.taggartinstitute.org

I'm actively looking for infosec blogs who'd like to join. I have a feeling I know some folks...

18 hours ago 4 1 0 0
Commits would have more than one is much slower than. Maximum 3 threads. --max-input-size=<size> Die.

Update: New release with bugfixes:

codeberg.org/mttaggart/ri...

18 hours ago 1 0 0 0

These are indeed excellent and shockingly creamsicle-like

22 hours ago 2 0 0 0
Meet Rayhunter: A New Open Source Tool from EFF to Detect Cellular Spying Rayhunter is a new open source tool we’ve created that runs off an affordable mobile hotspot that we hope empowers everyone, regardless of technical skill, to help search out cell-site simulators (CSS) around the world.

I think you might be looking for this? www.eff.org/deeplinks/20...

1 day ago 1 0 0 0

What kind of scanner are you thinking of?

1 day ago 0 0 1 0

Oh, and yes: EVERY SINGLE LINE OF CODE IS MINE. No generative code has entered this repo.

1 day ago 1 0 0 0

What's Ringspace? It's a proposal for a human web protocol that combines mutual trust and reputation.

https://ringspace.net

1 day ago 2 0 1 0

Believe it or not, I am still working on #Ringspace. And here's a new release!

This version of the protocol employs JWKS format for key exchange, and uses Base64URL formats for all encoded data. Plus.env support and resources for Docker deployment!

codeberg.org/mttagga...

1 day ago 5 0 3 1

Citizen Lab continues to be one of the more important institutions in our current age, I think, doing some of the most important work.

1 day ago 3 3 0 0
Preview
Protecting Cookies with Device Bound Session Credentials Posted by Ben Ackerman, Chrome team, Daniel Rubery, Chrome team and Guillaume Ehinger, Google Account Security team Following our April ...

Near as I can tell, this is all very good news. More things should take advantage of secure enclaves, and this **open standard** protects against one of the hardest current defense surfaces.

1 day ago 2 0 0 0
Advertisement

Minor programming note: I'm going to probably push most of the threat intelligence material I usually post through @ifin-intel.org , so it's a clear channel for actionable information.

1 day ago 5 2 0 0
Preview
White House Seeks to Slash CISA Funding by $707 Million The Trump administration says the FY2027 budget refocuses CISA on its core mission: protecting federal agencies and critical infrastructure.

This right here?

This is a huge part of why we exist. It's time to trust in each other for our mutual protection, because nobody is coming to save us.

1 day ago 2 1 0 0

But the core truth remains. You cannot have what works without the attending toxins. They are inextricable. As ever, my primary contention is that the technology is destructive to the fabric of human society, and on those grounds should we make our stand.

1 day ago 6 1 0 0

And look: I've spent time exploring the capabilities of these tools because I seek understanding through experience. I've been called spineless, fascist, racist, and just plain stupid for doing so. What I learned was important to my opposition to these tools, but also to my empathy for its users.

1 day ago 2 0 1 0
Preview
Analysis Finds That Google's AI Overviews Are Providing Misinformation at a Scale Possibly Unprecedented in the History of Human Civilization A new analysis commissioned by The New York Times suggests that Google's AI Overviews are wrong an astonishing percentage of the time.

Yeah so let's refocus on the real perspective here. It doesn't matter *at all* how good these models are at code or finding vulnerabilities if we destroy our ability to seek and share knowledge.

2 days ago 16 2 1 0
Preview
Analysis Finds That Google's AI Overviews Are Providing Misinformation at a Scale Possibly Unprecedented in the History of Human Civilization A new analysis commissioned by The New York Times suggests that Google's AI Overviews are wrong an astonishing percentage of the time.

This is catastrophic.

2 days ago 4487 2007 118 473
Preview
Bizarre crates.io phishing campaign Observable: crates[.]ws Observable Type: Domain Details: Rust maintainer phishing email sending users to a bogus Crates website. Interestingly it looks like the .ws domain redirects to .io unless ...

Looks like we have a live one here. Weird Rust maintainer phishing campaign using `crates[.]ws`:

discourse.ifin.network/t/bizarre-cr...

2 days ago 3 2 1 0
Advertisement
Preview
What do you see? | IFIN IFIN, the Independent Federated Intelligence Network, is here to make threat intelligence an act of mutual aid. Build the human network with us.

Hello world!

We are IFIN, the Independent Federated Intelligence Network, and we want to change how threat intelligence is done.

We believe we're all safer when we share what we know. Come learn more and join us!

ifin-intel.org/blog/hello/

#ThreatIntel #ThreatIntelligence #Cybersecurity #Infosec

3 days ago 8 3 0 4

Hey for what it's worth, I've been writing my own Rust for the past three days getting Ringspace ready for production use. I don't want a sticker or anything, but, y'know.

I can still do it.

2 days ago 7 0 0 0

This is a project for my own business. I'm the only employee. This would either have simply not existed, a value loss for my students, or it would have taken me a lot longer with a lot more stress, lost sleep, mental health taxes, etc. to do at this level.

2 days ago 1 0 0 0
Preview
Fair Contract Now for ProPublica Guild We, the workers of ProPublica, provide our readers with deeply researched, unbiased news that holds power to account. This work is more important now than ever, but our staff can’t properly contribute...

Sign the petition telling @propublica.org President Robin Sparkman and Editor in Chief Stephen Engelberg to Negotiate a Fair Contract Now for @propublicaguild.org :

2 days ago 31 33 2 0
Home | Security Titles

In collaboration with a couple of other leaders in the industry we are releasing securitytitles.com - It's an attempt to provide transparency about role levels, expectations and (just for the US market currently, salary ranges). For leaders writing JDs and candidates alike.

2 days ago 18 11 0 1
Preview
The Taggart Institute

Apologies if you've tried to sign up and couldn't in the last week. A misconfiguration was preventing some email from being sent. Please give us another shot!

taggartinstitute.org

2 days ago 1 1 0 0