Best Pixel for GrapheneOS 2026: Which Phone to Buy (Pixel 7a vs 9a vs 10a vs 10)

vucense.com · Jun 28 · 🛡️ Sysadmin & Security ·

Which Pixel should you buy for GrapheneOS in 2026? Full comparison of Pixel 7a, 8a, 9a, 10a, and Pixel 10 for security support, value, and GrapheneOS compatibility. Updated June 2026 with Pixel 10a…

If Your Company Funnels Money to Fascists, You’re a Fascist Company

markwrites.io · Jun 28 · 🛡️ Sysadmin & Security ·

Today I read something about one of Mullvad’s founders, Daniel Berntsson, donating to a fascist party in Sweden. Because I have been championing for Mullvad for a long time, I thought I’d do some…

Your agent should not inherit your admin token

siddhantkhare.com · Jun 28 · ✨ AI ·

Agents need delegated access, not inherited human access. Put policy between the agent and the tool before agents touch real systems.

Watching GLM 5.2 Escape QEMU

provos.org · Jun 28 · ✨ AI ·

Effective AI-driven vulnerability discovery does not require a restricted frontier model. This is a concrete run that shows it, start to finish: I pointed IronCurtain’s vuln-discovery workflow…

It's dead, Jim!

blog.einval.com · Jun 27 · 🛡️ Sysadmin & Security ·

I previously wrote about the upcoming UEFI CA rollover. Well, it's happened now - the old Microsoft UEFI CA from 2011 expired yesterday: Third Party Marketplace Root (used for signing option ROMs and…

Weeknote 26:2026

geewiz.dev · Jun 27 · 🛡️ Sysadmin & Security ·

Weeknote 26:2026 Coding fever On Monday, I started a speedrun cleaning up the modernization issue queue for the freistilbox infrastructure code. I was fed up with our team running into roadblocks all…

Extortion Masquerading As Normal Business, Verizon Edition

ideatrash.net · Jun 27 · 🛡️ Sysadmin & Security ·

It is difficult to express how the feel of capitalism has changed over the course of my lifetime. When I was a kid, you didn’t know who was […]

If you ask people, often they just do things!

pwndefend.com · Jun 27 · 🛡️ Sysadmin & Security ·

You might see, BREAKING NEWS, RUSSIAN Hackers steal SIGNAL BACKUP KEYS, or other such styled headlines. Wow this sounds super … Continue reading If you ask people, often they just do things!

Two Planes, Not One Store

blog.canoozie.net · Jun 27 · 🛡️ Sysadmin & Security ·

Last post I said the most important decision in Orbit is splitting cluster state into two planes, and then I made you wait for it. Here it is. If you only read one post in this series, read this one,…

Switching from pre-commit to prek

paulsprogrammingnotes.com · Jun 27 · 🧩 Programming ·

I moved my repos from pre-commit to prek, a reimplementation of the same framework in Rust. It reads your existing .pre-commit-config.yaml unchanged, so the switch is mostly a no-op. Two things sold…

Live Subsea Cable Update: WACS & 2Africa Outages

subseacables.blogspot.com · Jun 27 · 🛡️ Sysadmin & Security ·

Abidjan clients on WACS report an outage began 4 AM local time today. Outage began with a severe drop of 385 volts. Investigation shows the fault lies in segment S3C between the first and second…

AI Is the Best Thing to Happen to Security

badshah.io · Jun 27 · ✨ AI ·

LLMs have been around for a while now. When Anthropic released a statement that nation state attackers are using Claude for attacks, I read it with a lot of skepticism.

California legislature agrees to upload driver’s licenses to national database

papersplease.org · Jun 27 · 🛡️ Sysadmin & Security ·

Withdrawing its opposition under behind-the-scenes pressure from Gov. Gavin Newsom and lawless threats from the US Department of Homeland Security (DHS), the California legislature has agreed to fund…

Claude Code - Experimenting With Dev Containers and Permission Allowlists

paulsprogrammingnotes.com · Jun 27 · 🧩 Programming ·

I run Claude Code, and its VS Code extension, inside dev containers. The reason is isolation. Editor extensions and the toolchains a project pulls in have been a real supply-chain vector lately, and…

Mullvad funding the far-right and the problem with tech company ownership

kjz.im · Jun 27 · 🛡️ Sysadmin & Security ·

Mullvad is a “proper” VPN that does its VPN job without collecting or selling your data to various partners. It made a bit of splash recently by vocally objecting to the UK’s authoritarian plans to…

A peek into Reddit's anti-spam internals

lyra.horse · Jun 27 · 🛡️ Sysadmin & Security ·

How Reddit accidentally leaked its spamurai system.

Degoog und QueryHop (Search Redirector)

bln41.de · Jun 27 · 🛡️ Sysadmin & Security ·

Wie hier schon kurz angeteasert, habe ich mir mal degoog auf den heimischen Raspberry Pi gedengelt. »Search engine aggregator with a comprehensive plugin/extension system« Die Installation gestaltete…

onak 0.6.5 released

earth.li · Jun 27 · 🧩 Programming ·

I had intended that the next release of onak, my OpenPGP keyserver, would be 0.7.0, and include OpenPGP v6 support (RFC9580). However events conspired to make a 0.6.5 release a really good idea.…

GPT-5.6 Sol and Claude Mythos Show That the AI Race Has Reached a New Level

eido-askayo.blogspot.com · Jun 27 · ✨ AI ·

GPT-5.6 Sol matters because the performance story is strong. OpenAI says Sol is its strongest cyber model yet . On ExploitBench , it says Sol is competitive with Claude Mythos Preview while using…

After installing MinerU with uv tool install, you still need cuda and ninja

nite07.com · Jun 27 · 🧩 Programming ·

Install MinerU with: uv tool install "mineru[all]"After that, mineru and mineru-gradio can both start. But the first real conversion may still fail. The first error I hit was: RuntimeError:…

Java To Native Linux App: One 5MB Binary, x64 And Arm

debugagent.com · Jun 27 · 🧩 Programming ·

Yesterday's release post introduced the new native Linux desktop port. This post is the detailed version: what it is, why the hard parts were hard, and how to build one. What is Codename One? Codename

Sorry, Cyber: You Aren't the Only Ones Saving the Company from Itself

philvenables.com · Jun 27 · 🛡️ Sysadmin & Security ·

There’s still a bit of a tone in some security circles that we’re somehow unique in constantly having to push back against ill-advised moves, or even outright craziness, from our business,…

Pushing a repo to your own tangled git server

suranyami.com · Jun 27 · 🛡️ Sysadmin & Security ·

Recent Server Problems

so-obsessed.com · Jun 27 · 🛡️ Sysadmin & Security ·

The server problems the other day was identified this as a DDoS attack, and my host seems to have resolved it some time yesterday night.

Pedit COW Turns a Normal Linux User Into Root While the Disk Stays Clean

hackingpassion.com · Jun 27 · 🛡️ Sysadmin & Security ·

A flaw in the Linux kernel called pedit COW lets a regular, unprivileged user rewrite /bin/su in memory and become root, while the copy on disk never changes and a file integrity check comes back…

SimpleX: The Messenger Without Accounts

hoeijmakers.net · Jun 27 · 🕸️ Web & Internet ·

No phone number. No username. No directory. Just a secure connection between two people.

From Plex to Jellyfin Part 7: Watching Habits—Tautulli to Streamystats

jasontucker.blog · Jun 27 · 🛡️ Sysadmin & Security ·

Streamystats is the stats tool for Jellyfin. Watch history, library analytics, AI recommendations, custom watchlists, and a Year in Review that shows you exactly what you watched.

Moving from TailScale to NetBird

avilpage.com · Jun 27 · 🛡️ Sysadmin & Security ·

I have been using TailScale from 4 years. Recently, I wanted to self-host HeadScale(open source TailScale server) on my own server. During self hosting, I realised that HeadScale is not a drop-in…

Isolating GitHub Copilot With Docker Sandboxes

kenmuse.com · Jun 27 · 🛡️ Sysadmin & Security ·

Give GitHub Copilot its own microVM with a firewall and monitoring so that you can worry less about what your AI is doing.

Running Coding Agents in a Secure MicroVM on Windows with sbx

ajeetraina.com · Jun 27 · 🧩 Programming ·

Docker Sandboxes (sbx) runs your coding agent inside a microVM instead scoped to a single project directory, behind a network policy you control. Here's how to set it up on Windows, step by step.

How to self-host your own tangled git server without Bluesky

suranyami.com · Jun 27 · 🛡️ Sysadmin & Security ·

How to Set Up CI/CD for a React App

yashkapure.com · Jun 27 · 🧩 Programming ·

A practical, step-by-step walkthrough of CI/CD for React: from a git push to GitHub Actions, quality gates, preview deployments, production releases, monitoring, and rollback - with interactive demos…

Windows VM

maydayv7.cc · Jun 27 · 🛡️ Sysadmin & Security ·

Intro this.style.color='', 1000); return false;" >§ This is a guide to running a Windows 11 VM with an NVIDIA dGPU passed straight through to it, displayed via Looking Glass directly on the primary…

A Database You Own: Postgres with CloudNativePG

imti.co · Jun 27 · 🛡️ Sysadmin & Security ·

Every platform needs a database, and for most of what you build it should be PostgreSQL. The managed versions, RDS and Cloud SQL and the rest, are convenient, and they bill you for that convenience…

Stop Punishing Your Postgres for a Crash That Won't Happen

mydbanotebook.org · Jun 27 · 🛡️ Sysadmin & Security ·

There is a misconception I keep running into, and it causes real harm in production. People are afraid to increase checkpoint_timeout. They think a longer timeout means a longer recovery after a…

Cleaned Isn’t Fixed

aarondcampbell.com · Jun 26 · 🛡️ Sysadmin & Security ·

Operation Endgame's SocGholish takedown was good news. It was also a warning. The cleanup bought time. The fix is what happens next. The post Cleaned Isn’t Fixed appeared first on Aaron D.…

Is Going Local Worth It Right Now?

rayfernando.ai · Jun 26 · ✨ AI ·

The honest math on building your own AI box in June 2026, who it actually makes sense for, and why timing matters more than people think.

Security Signal Weekly: June 20-26, 2026

kylereddoch.me · Jun 26 · 🛡️ Sysadmin & Security ·

The week's biggest cybersecurity stories, filtered for defender impact, patch urgency, active exploitation, and what IT teams should actually do next.

ARE YOU IN GOOD HANDS? Allstate Stands Victorious Against Vicarious Liability Claims

tcpaworld.com · Jun 26 · 🛡️ Sysadmin & Security ·

Hey TCPAWorld! Check this out. The Seventh Circuit recently issued an opinion in Hossfeld v. Allstate Ins. Co., Nos. 25-1518 & 25-1672, 2026 WL 1815908 (7th Cir. June 24, 2026), holding that…

AI Approval Gates: Engineering Oversight at Machine Speed

clouatre.ca · Jun 26 · ✨ AI ·

AI approval gates: reversibility-tiered human-in-the-loop design with four health metrics that prevent reviewer atrophy at machine speed.

CORS: What is it protecting?

sanyamserver.online · Jun 26 · 🕸️ Web & Internet ·

CORS is a browser security mechanism, not a server one. What the Origin header and preflight checks actually do, what CORS protects against, and why it is not CSRF protection.

AI Made the Call, but Your Company Still Owns the Failure

kylereddoch.me · Jun 26 · ✨ AI ·

When an AI security tool misses an intrusion, blocks production, leaks sensitive data, or runs the wrong remediation, liability does not disappear into the algorithm. It follows the people and…

Samsung Galaxy S26’s Pixel-Level Privacy Feature Confirmed

rizbit.uk · Jun 26 · 📱 Technology ·

Samsung confirms Galaxy S26's pixel-level privacy display, using dedicated hardware to block shoulder surfing. Customizable and part of Knox security.

CASE DISMISSED: Texas Court Finds 227(b) Did Not Apply to Text Messages

tcpaworld.com · Jun 26 · 🛡️ Sysadmin & Security ·

A lot of ink has been spilled on this blog lately concerning the question of whether texts are “calls” under Section 227(c) of the TCPA. This week, a court in the Southern District of Texas touched…

Taildrive for adding music to Navidrome

blog.bmannconsulting.com · Jun 26 · 🛡️ Sysadmin & Security ·

Ampache to Navidrome, with a side of Proxmox and Tailscale

Fable 5's 38-Minute Kernel, Part II: The Token Math and the Boot Count

msuiche.com · Jun 26 · 🧩 Programming ·

Part I traveled further than I expected. The line that caught was the thirty-eight minutes: Fable 5 took an empty directory to a booting, NT-shaped kernel in Rust in thirty-eight minutes of active…

More Than Email

naisho.bearblog.dev · Jun 26 · 🕸️ Web & Internet ·

At first glance, Tuta Mail seems like just another email provider. It isn’t. It’s one of the few services I’m aware of that has consistently prioritised privacy and security for protocols that were…

From USB to NFS: Moving a 10TB USB Storage Drive Out of a Proxmox VM (Without Breaking Anything)

reprodev.com · Jun 26 · 🛡️ Sysadmin & Security ·

How I moved a 10TB media drive from a Proxmox VM to an NFS share on OpenMediaVault with zero downtime and no changes to 32 Docker containers.

KEP-555 閱讀筆記:Server Side Apply 的設計原理和脈絡

blog.yangjerry.tw · Jun 26 · 🛡️ Sysadmin & Security ·

Server Side Apply (SSA) 從 Kubernetes v1.22(2021 年 8 月)宣告 GA,也發了 blog 說大家都該使用它。 2022 年 10 月,Argo CD v2.5.0 宣布支援 SSA。2025 年 11 月,Helm 4.0.0 發布,新安裝的 release 預設啟用 SSA。究竟「SSA」是何方神聖?

Warning: Why You Must Delete Your Cursor Data Before the SpaceX/xAI Acquisition

christopherspenn.com · Jun 26 · ✨ AI ·

SpaceX/xAI has acquired Cursor. What does that mean for your data privacy? If you are NOT an enterprise customer, and you are using private data with Cursor, now is the time to find a competing…