Advertisement · 728 × 90

Posts by defendtheworld.bsky.social

Preview
Paged Out! Deeply technical zine. And it's free.

𝙿𝙰𝙶𝙴𝙳 𝙾𝚄𝚃! #𝟾 𝙳𝙴𝙰𝙳𝙻𝙸𝙽𝙴: 𝟺 𝙹𝚊𝚗𝚞𝚊𝚛𝚢 𝟸𝟶𝟸𝟼 𝙴𝚘𝙳 𝙴𝚘𝙰

Save the date if you're planning to write an article or showcase your digital art in the next issue of our magazine.

pagedout.institute

P.S. We're looking for sponsors for issue #8 as well.

4 months ago 5 4 0 0

I was thinking of something much more simple, time division and non geo geostationary.

Wrt proxy for entanglement based approaches the idea is the satellite would be an untrusted bell pair generator sending entangled pairs for parties to generate keys with

6 months ago 1 0 0 0

Btw Luke I’ve just sent you an email regarding a new attack analysis against BB84 I’ve been working on

6 months ago 1 0 0 0

Nice to chat here! You’re right about point to point during QKD of course. what would be the right phrase to describe that multiple receivers, even mobile, can perform QKD with the Sat, sequentially if not concurrently without multiplexing

6 months ago 1 0 2 0

There’s production * (typo)

6 months ago 0 0 0 0

I think the clearest argument is that it requires classical auth to start with. So why not just use classical authentication then ???

Regarding scalability there’s productive satellite QKD available now, so the last mile/ point to point argument does not apply there

6 months ago 0 0 2 0
End-of-Train and Head-of-Train Remote Linking Protocol | CISA

Yikes. Turns out you can send a plaintext radio signal to cause any train in the USA to do an emergency break. The original 'security' was just a checksum, no encryption or authentication. Reporting this took them 12 years (!) because the vendor dismissed it initially www.cisa.gov/news-events/...

9 months ago 182 64 11 10

Yeah when I first implemented that for WiFi wpa2/3 my thoughts were similar, but recently revisited this and can’t help but wonder if this helps create sidechannel points with known plaintext on the pattern that’s unwrapped

8 months ago 0 0 0 0

I am at usenix woot today/tmrw! Ping if you want to connect

8 months ago 1 0 0 0
WiFi dispenser

WiFi dispenser

Hey bitchat users, I started a bluer/bluez rust Linux client github.com/spr-networks.... Runs in a docker container and I hooked it up to the wifi password dispenser over e2e. Each user gets their own wpa3 pass

8 months ago 2 0 0 0
Advertisement
Preview
Supply-chain attacks on open source software are getting out of hand Attacks affected packages, including one with ~2.8 million weekly downloads.

Supply-chain attacks on open source software are getting out of hand

8 months ago 17 8 0 0
Preview
Supernetworks Router WiFi 6 Poe+ Router Order Page WiFi 6 PoE+ Router built with Raspberry Pi CM5

www.supernetworks.org/compute-boar...

8 months ago 2 0 0 0
Preview
Jack Dorsey says his 'secure' new Bitchat app has not been tested for security | TechCrunch Dorsey admitted that his new messaging app had not been reviewed or tested for security issues prior to its launch.

techcrunch.com/2025/07/09/j...

9 months ago 1 0 0 0

Do they also aid memory forensics/
Sidechannels for automated key discovery ?

9 months ago 0 0 0 0

It’s also terribly insecure as implemented. The trusted peers can be trivially intercepted an adversary can inject themselves into a trusted chat

www.supernetworks.org/pages/blog/a...

9 months ago 0 0 0 0

Being an identical twin has its perks, like easy biometrics testing. Most vendors sensitivity isn’t as good as I hope

11 months ago 1 0 0 0

I've just been told that John Young of Cryptome.org passed away last week.

#Cryptome was foundational, and a predecessor to organizations like @ddosecrets.com and #Wikileaks.

RIP, John.

1 year ago 120 49 4 3
Preview
Exclusive | In Secret Meeting, China Acknowledged Role in U.S. Infrastructure Hacks A senior Chinese official linked intrusions to escalating U.S. support for Taiwan.

Chinese officials acknowledged in a December meeting with Biden officials in Geneva that Beijing was behind the Volt Typhoon intrusions into U.S. critical infrastructure citing increasing U.S. policy support for Taiwan as an excuse www.wsj.com/politics/nat...

1 year ago 56 16 1 3

West Coast numbers are coming in, and estimates have now surpassed 5 million. People are still pouring into the streets—nearly 2% of the American population is rising up. America, we are so proud of you. You did it.

1 year ago 60034 11655 1151 797

What percent of imports are from perfect competition companies

1 year ago 1 0 0 0
Advertisement
Post image

Anti coercion act and statements from EU makes it seem like they’re a target for EU.

of the deficit something like 75% -80% is due to US related party import. Taxing US activity for production abroad would have been the better approach to avoid collateral damage to exports

1 year ago 1 0 0 0
Preview
Suspected China-Nexus Threat Actor Actively Exploiting Critical Ivanti Connect Secure Vulnerability (CVE-2025-22457) | Google Cloud Blog

Hot off the press is a new blog detailing our observations from in the wild exploitation of CVE-2025-22457 by UNC5221 including two newly observed malware families tracked as BRUSHFIRE and TRAILBLAZE.

cloud.google.com/blog/topics/...

1 year ago 15 7 0 5

Today I learned that cracking keys now takes about 1/3rd as many qubits as before without substantially different gate counts.

Clémence Chevignard, Pierre-Alain Fouque, and André Schrottenloher 2024.

eprint.iacr.org/2024/222.pdf

1 year ago 0 0 0 0
About the security content of macOS Sequoia 15.4 - Apple Support This document describes the security content of macOS Sequoia 15.4.

 Today's April 1st. From garage geeks to tech titans: Happy Birthday, Apple

Our team discovered some security vulnerabilities in launchd, SMB, and Kerberos, now patched. #CVE-2025-24269 #CVE-2025-31182 #CVE-2025-24235 #CVE-2025-30444

support.apple.com/en-us/122373
support.apple.com/en-us/122371

1 year ago 1 1 0 0

Paged Out! #6 has arrived! And it's jam-packed with content!
You can download it here:
pagedout.institute?page=issues....

1 year ago 23 27 0 3

What’s up with YouTube ads asking for location lately

1 year ago 0 0 0 0
Post image

www.supernetworks.org/compute-boar...

Shipping in 8-12 weeks

1 year ago 0 1 0 0
Preview
OpenAI calls DeepSeek 'state-controlled,' calls for bans on 'PRC-produced' models | TechCrunch In a proposal, OpenAI describes DeepSeek as 'state-controlled,' and recommends banning models from it and other PRC-affiliated operations.

My contempt for anyone involved with this drivel knows few limits. Conflating issues and fear mongering because a Chinese company dared to publish an actual open model:

techcrunch.com/2025/03/13/o...

And trying to talk about copyright after training in Libgen.

Hypocrisy, lies, grifting :-(

1 year ago 80 17 5 0

Only way to make sure a security review gets good coverage

1 year ago 0 0 0 0
Advancing DecoyAuth is Key to Making WiFi & WPA3 More Secure | SPR Pioneering WiFi Security

I wrote up my thoughts on a promising new project to evolve wpa3 to better support multipass without having users pay a “security tax” www.supernetworks.org/pages/blog/w...

1 year ago 1 0 0 0
Advertisement