Advertisement · 728 × 90

Posts by Niels Tanis

Glasswing et al present a moral hazard to bug bounties.

What I've seen recently is a significant increase in AI generated, or assisted vulnerability reports that are not vulnerabilities.

(1/6)

1 day ago 27 8 2 2
Preview
[un]prompted 2026 - YouTube

I’m excited to let you know that the talks from [un]prompted—the AI Security Practitioner Conference—are now live on YouTube.

No fluff, no hype—just real-world AI security from people actually doing the work.

www.youtube.com/playlist?lis...

2 weeks ago 7 4 0 0

That is not what a 0-day is.

It is a .NET CVE, it *does not* effect .NET Framework.

🙄

4 weeks ago 16 5 5 0

It's not that I mind AI written vulnerability reports for .NET, but there are a few problems we're seeing

1) Simply submitting the output from your favourite AI without testing the code it says demonstrates the vulnerability is bad.

(1/4)

1 month ago 8 3 1 0
Post image

#BSidesLDN2025 videos are now live on our YouTube channel.
Don’t forget to like and subscribe, we only publish once a year, your support makes a real difference!
www.youtube.com/@Securitybsi...

Huge thanks to @ministraitor.bsky.social & all our presenters for sharing their time and expertise!

1 month ago 12 7 0 0
Video

𝐓𝐡𝐢𝐬 𝐭𝐢𝐦𝐞 𝐰𝐞’𝐫𝐞 𝐠𝐨𝐢𝐧𝐠 𝐞𝐯𝐞𝐧 𝐝𝐞𝐞𝐩𝐞𝐫! #UCK26

👉 krakow.updateconf.net

#UpdateConference #Krakow

@davidortinau.com & @konradkokosa.bsky.social & @codrina.bsky.social & @jfversluis.dev & @louella.dev & @niels.fennec.dev

1 month ago 3 3 0 0
Video

Aspire beyond the basics.
Aspire goes beyond its defaults once you understand the ideas underneath it. That foundation opens the door to extending Aspire in meaningful ways.
Watch the full session from VSLive! Orlando
youtu.be/rZQbhDfj7ek

1 month ago 5 3 0 0
NDC Copenhagen 2026 - 4-Day Event for Software Developers

NDC Copenhagen 2026 - 4-Day Event for Software Developers

The NDC Copenhagen Agenda is out 🇩🇰
See the full agenda and secure your Early Bird tickets before 27 Feb 👉 ndccopenhagen.com #ndccph

2 months ago 3 2 0 1

How hard can it be 😂

2 months ago 1 0 0 0
Staying Safe from Phishing, Scams, and Impersonation We provide a privacy-first, end-to-end encrypted (E2EE) messaging and calling platform designed so only you and your intended recipients can communicate securely. Even with strong encryption, attac...

Like many services, as Signal grows, it becomes a more appealing place for scammers to try and cause harm.

We've put together tips to help you protect yourself from phishing, scams, & impersonation attempts. Plus info about how Signal support communicates.

support.signal.org/hc/en-us/art...

4 months ago 417 141 3 2
Advertisement
Call for Papers ends 1 Feb

Call for Papers ends 1 Feb

📢 The NDC Copenhagen #CFP ends this Sunday, 1 February!
We welcome all subjects relevant to software developers. If you have something to say, then speak up!
📅 Deadline: 1 February
👉 Submit: ndccopenhagen.com/call-for-pap...
#ndccopenhagen

2 months ago 0 1 0 0

I'm going to be around as well! Looking forward to it!

2 months ago 0 0 1 0

After a bit of trial and error, I finally made an agent that does exactly what I want. No hallucinations. Runs locally. And costs almost nothing.

#! /bin/bash

// Do exactly this one task and nothing else.
// If it doesn't work, wait 30 seconds and try
// again. If that fails, log a message.
doTask

2 months ago 90 2 3 0
Post image
2 months ago 0 0 0 0

Yeah that was kind of how I thought about it.. But hey here you go..

2 months ago 0 0 1 0
Post image

On 9 January 2026 mine and my family's lives changed forever.
I tell the full story in this video: youtu.be/mNEPSWcOheY

If you want to support my family as well as our local community, consider sharing this post, or donating here: www.gofundme.com/f/we-lost-al...

2 months ago 17 27 6 7

If 2025 was the year of vibe coding, 2026 will be the year of vibe maintenance and security.

3 months ago 267 27 8 5
Post image

It's that time of the season again, time for BsidesLondon! Let me know if you're around!

3 months ago 1 0 0 0
Introducing NDC Toronto, 5-8 May 2026

Introducing NDC Toronto, 5-8 May 2026

We’re headed to Toronto! 🇨🇦
We’re excited to partner up with @cppnorth.bsky.social for an incredible 4-day event you don’t want to miss. We’re currently booking speakers, and the CFP is open → ndctoronto.com

4 months ago 6 2 0 1
Advertisement
Generating SBOMs for .NET apps and NuGet packages with Microsoft.Sbom.Targets How to use the Microsoft.SBOM.Targets NuGet package to produce a Software Bill of Materials (SBOM) during your release builds.

Generating SBOMs for .NET apps and NuGet packages with Microsoft.Sbom.Targets

4 months ago 27 8 1 1
Won't somebody please think of the children!? – Niall Merrigan – HelloStavanger 2025
Won't somebody please think of the children!? – Niall Merrigan – HelloStavanger 2025 YouTube video by HelloStavanger

I recently did a talk on internet safety for parents/guardians and it was well received by those in the room. Its honestly the toughest talk I have researched and given. It might help you if you have kids or you are the local tech support for people with small humans. www.youtube.com/watch?v=UgF5...

4 months ago 13 7 0 1

The call for papers for NDC Security ends tomorrow. Come do your talk in Oslo: ndcsecurity.com/call-for-pap...

4 months ago 3 5 0 0
Preview
Oops. Cryptographers cancel election results after losing decryption key. Voting system required three keys. One of them has been “irretrievably lost.”…

I think this is not the type of “tampering” Matt Blaze was concerned with

4 months ago 11 1 1 0
Preview
NDC ONLINE WORKSHOPS – 1. des. 2025 – NDC Conferences AS

If you missed Aleksander Stensby's 2-day workshop on MCP and RAG at NDC AI last week, don’t worry - you can still join the online workshop on 1–2 December!

event.checkin.no/206017/ndc-o...

4 months ago 1 1 0 0
Preview
Post-Quantum Cryptography in .NET - .NET Blog What we've added for PQC, and how we got there.

The details of .NET's PQ algorithms, and their APIs are available

devblogs.microsoft.com/dotnet/post-...

4 months ago 13 3 1 1
Post image

🎤 Meet one of our VISUG XL 2025 speakers: 𝐍𝐢𝐞𝐥𝐬 𝐓𝐚𝐧𝐢𝐬!

We’re excited to welcome 𝐍𝐢𝐞𝐥𝐬 this year at Visug XL, our yearly, free, community-driven .NET conference.

📅 November 28, 2025
📍 UCLL Leuven

👉 More information and tickets: www.visug.be/Events/102

#VisugXL #DotNet #Community #Conference

5 months ago 2 1 0 0
Advertisement
Preview
Beyond Trust: Building Community-Driven Security Analysis for Your .NET Software Supply Chain | NDC Manchester 2025 With 80% of modern applications built on third-party code, supply chain security has become critical. Traditional security tools like OpenSSF Security Scorecard provide surface-level metrics, but fail...

With 80% of modern #apps built on third-party #code, supply chain #security has become critical. Don't miss
@niels.fennec.dev "Beyond Trust: Building Community-Driven Security Analysis for Your .NET Software Supply Chain" at #NDCManchester!

ndcmanchester.com/agenda/beyon...

5 months ago 4 2 0 0

Chatbots — LLMs — do not know facts and are not designed to be able to accurately answer factual questions. They are designed to find and mimic patterns of words, probabilistically. When they’re “right” it’s because correct things are often written down, so those patterns are frequent. That’s all.

9 months ago 36798 11329 631 956
Timeline of .NET Standard Term Support.
text reads:
.NET STS releases supported for 24 months
.NET 7
Nov 2022
.NET 8
Nov 2023
May 2024
.NET 9
Nov 2024
Latest release
.NET 10
Nov 2025
May 2026
.NET 11
Nov 2026
STANDARD TERM SUPPORT
Patches for 2 years
LONG TERM SUPPORT
Patches for 3 years
Get the details
The image also includes a timeline with colored bars:
Purple bar = Standard Term Support (STS) for 2 years.
Gray bar = Long Term Support (LTS) for 3 years.
.NET 9 is highlighted as the latest release.

Timeline of .NET Standard Term Support. text reads: .NET STS releases supported for 24 months .NET 7 Nov 2022 .NET 8 Nov 2023 May 2024 .NET 9 Nov 2024 Latest release .NET 10 Nov 2025 May 2026 .NET 11 Nov 2026 STANDARD TERM SUPPORT Patches for 2 years LONG TERM SUPPORT Patches for 3 years Get the details The image also includes a timeline with colored bars: Purple bar = Standard Term Support (STS) for 2 years. Gray bar = Long Term Support (LTS) for 3 years. .NET 9 is highlighted as the latest release.

We are increasing the length of support offered for .NET Standard Term Support (STS) releases from 18 months to 24 months. This change is effective starting with .NET 9 and there is no change for LTS releases.

Get all the details you need: msft.it/63328t6MeM

5 months ago 23 10 1 0
Post image

Microsoft is expanding transparency in vulnerability management. We are now publishing VEX (Vulnerability Exploitability eXchange) attestations for third-party CVEs associated with the Azure Linux Distribution (formerly CBL-Mariner).

Learn why VEX matters in our blog post: msft.it/6014shEmn

5 months ago 2 2 0 0