MalChela v4.1: Mac Malware Analysis Arrives

bakerstreetforensics.com · May 6 · 🛡️ Sysadmin & Security ·

MalChela v4.1 is out today, and the headline is something I’ve been wanting to tackle for a while: dedicated Mac malware analysis tooling. If you’ve been following the channel or the…

Security By Design: The Shortcut to Smarter, Safer Systems

nocomplexity.com · May 6 · 🛡️ Sysadmin & Security ·

No business is too small to attract cybercriminals. In fact, small and medium-sized businesses (SMBs) are often more appealing targets for ransomware than large, established enterprises. Limited…

Shipyrd now works with Honeybadger, Rollbar, and AppSignal

fromthekeyboard.com · May 6 · 🧩 Programming ·

Shipyrd started as a Kamal-first tool. You'd add the shipyrd-gem hook to your deploy.yml, and Kamal would ping Shipyrd at the start and end of each deploy.At the end of the day, though, Shipyrd…

A New Book: "Don't Get Hacked!"

cs.columbia.edu · May 6 · 🛡️ Sysadmin & Security ·

I have a new book out, Don’t Get Hacked! Protecting Yourself at Home. It’s released under a Creative Commons license, so it’s freely sharable and redistributable. I’m working…

Upgrading EV Switch EV Charger Firmware via Home Assistant

crc.id.au · May 6 · 🛡️ Sysadmin & Security ·

I have an EV Switch AC7000 EV charger installed at home and it’s integrated into Home Assistant via the OCPP integration. It’s kind of annoying if you want to update the firmware - as the only real…

Ekubo exploited for $1.4 million

web3isgoinggreat.com · May 6 · 🛡️ Sysadmin & Security ·

The Ekubo automated market maker infrastructure project experienced a $1.4 million theft after attackers were able to take advantage of a smart contract that improperly verified permissions. They…

Can You Really Build Plug-In Solar for Under £300?

jonathantracey.com · May 6 · 🛠️ DIY & Making ·

When most people think about solar power in the UK, they picture a huge installation project involving scaffolding, installers, roof surveys, and a bill running into the thousands of pounds. But…

LVFS Sponsorship Announcement

blogs.gnome.org · May 6 · 🛡️ Sysadmin & Security ·

Some great news: I’m pleased to announce that both Dell and Lenovo have agreed to be premier sponsors for the Linux Vendor Firmware Service (LVFS) as part of our new sustainability effort. Over 145…

GMX/WEB.DE/mail.com moving to inbound DMARC enforcement

spamresource.com · May 6 · 🛡️ Sysadmin & Security ·

Staff from mailbox provider GMX/WEB.DE/mail.com (1&1 Mail & Media GmbH) have just announced on the Mailop list that they'll begin enforcement of DMARC checks in a phased rollout over the coming…

The Mirror Is Part of the Machine

yusufaytas.com · May 6 · 🛡️ Sysadmin & Security ·

Why telemetry explodes into cost and noise, and how to fix it: treat every signal as a decision, not exhaust, and govern ownership before it's too late.

NOTES // Virtualization

badd10de.dev · May 6 · 🛡️ Sysadmin & Security ·

QEMU Qemu is pretty awesome. Here is an example of how to virtualize a windows guest under linux: qemu-system-x86_64 \ -cpu -enable-kvm \ -m 8192 \ -drive…

1 little known secret of forfiles.exe, part 2

hexacorn.com · May 6 · 🛡️ Sysadmin & Security ·

In this old post I have demonstrated how to abuse forfiles.exe to run your ‘cmd.exe’ of choice. There is one more trick we can do with this tool. When forfiles.exe enumerates the files it…

All in on Systemd. Using Systemd as a cron replacement, network manager, date server, DNS server, and more in Arch Linux.

matthiasportzel.com · May 6 · 🛡️ Sysadmin & Security ·

A reference post for system configuration

TIL: Deploying a self-hosted instance of Forgejo (aka Gitea) is easier than I thought

dmpop.xyz · May 6 · 🛡️ Sysadmin & Security ·

I host my open-source projects on Codeberg. But out of respect for this excellent service, I don't want to clutter it with one-off piles of code and stuff I don't take seriously. Also, I wanted to…

Runner Dock Daily Report: May 6, 2026

deploy.live · May 6 · 🛡️ Sysadmin & Security ·

Runner Dock operating report Snapshot as of 2026-05-06 09:01 BST / 08:01 UTC. Recommendation: CEO should approve the first warm-intro target set, choose the agent-readable mailbox path, and keep the…

Resilient Cyber Podcast Prep

notes.karlmcguinness.com · May 6 · 🛡️ Sysadmin & Security ·

Resilient Cyber Prep: Karl McGuinness The host’s framing is already aligned with your thesis: we built AuthN/AuthZ for human-paced execution; agents remove presence, pacing, and natural…

Ways To Prioritize DNS Over mDNS On Macbooks With .local Domains

n3s0.tech · May 6 · 🛡️ Sysadmin & Security ·

Notes on how mDNS is prioritized on the .local top-level domain.

Notes from Philip Griffith’s talk: Why Traditional Networking Fails Agentic AI

globalnerdy.com · May 6 · ✨ AI ·

If you’ve been building anything with agents in the past year, you already know the shape of the problem even if you haven’t named it: you’ve got a model in one cloud, a vector…

Yocto build tunables and their hidden costs

jetm.github.io · May 6 · 🛡️ Sysadmin & Security ·

The handful of local.conf knobs that make Yocto builds usable, and the failure modes each one buys you in return.

Announcing Incus 7.0 LTS

stgraber.org · May 6 · 🛡️ Sysadmin & Security ·

It’s with great pride and pleasure that the Incus team is announcing the release of Incus 7.0 LTS! Incus is a modern system container, application container and virtual machine manager. It’s released…

How I self-host this blog at home with a dynamic IPv4 address, IPv6 prefix, and a dash of Wireguard

ounapuu.ee · May 6 · 🛡️ Sysadmin & Security ·

Networking has long been my Achilles heel. I know the very basics, but the more complex areas of networking have been a bit puzzling to me. By the time I figured out how IPv4 works, I found IPv6 and…

Architecture - Cross-Cloud Data Highways

dhaval-shah.com · May 6 · 🛡️ Sysadmin & Security ·

Background Imagine you need to move terabytes or petabytes of large files from AWS S3 to Azure Blob Storage, and that too with Reliability & High Throughput The naïve approach (download the whole…

Installing Codecs on Rocky Linux 10 and Firefox

momandpop.network · May 6 · 🛡️ Sysadmin & Security ·

While I certainly like my Linux laptop, a HP OmniBook Ultra Flip, one problem I had with Fedora 44 is an extremely unreliable keyboard after resuming. Running Rocky Linux on my servers, I installed…

hooks: Copy static build of pesto and related man page to server

passt.top · May 6 · 🛡️ Sysadmin & Security ·

Signed-off-by: Stefano Brivio Reviewed-by: Laurent Vivier

Linux Terminal Memory Usage

gilesorr.com · May 6 · 🛡️ Sysadmin & Security ·

Surprising results comparing memory usage of X and Wayland terminals.

Cloud forensics and the jurisdictional labyrinth of cross-border evidence acquisition

andreafortuna.org · May 6 · 🛡️ Sysadmin & Security ·

When a crime scene has no physical address, investigators face a labyrinth of overlapping jurisdictions, conflicting laws, and technical challenges that traditional forensics never prepared them for.

plox: lazy-trust verifiable, on-PDS bulk did:plc operation archival

char.lt · May 6 · 🕸️ Web & Internet ·

tl;dr: plox is a canonical encoding of the did:plc directory, stored in an atproto PDS. as of may 2026 at://cerulea.blue/blue.cerulea.plox.bundle is taking up 35 GB on disk ( zstd -compressed; ≈80 GB…

Are we self-sovereign PKI yet?

buffrr.dev · May 6 · 🛡️ Sysadmin & Security ·

Signal is end-to-end encrypted in the sense that the keys are end-to-end. Whether you got the right keys is a different question, and almost nobody asks it. Safety numbers on Signal exist because, in…

Public front doors with private brains

kody-w.github.io · May 6 · ✨ AI ·

Most AI infrastructure picks one of three: SaaS-central (one vendor’s database, one row per customer, one dashboard, infinite tenancy risk), self-hosted local (you keep everything, you also keep the…

Secrets in Nix, Publicly

pwnwriter.me · May 6 · 🛡️ Sysadmin & Security ·

I keep my entire Nix config in a public repo. Dotfiles, packages, shell setup, everything. But I also need my SSH and GPG keys on every machine I use. Storing private keys in a public repo is…

OpenAI's WebRTC Problem

moq.dev · May 6 · ✨ AI ·

There are ways to do voice AI without being traumatized by WebRTC.

setting up a Sun Ray server on OpenIndiana Hipster 2025.10

catstret.ch · May 6 · 💾 Retro ·

time for another Sun Ray blog post! I've had a few people email me asking for help setting up a Sun Ray server over the last few months, and despite my attempts to help them get it going there's been…

How to run Terraform providers not meant for Apple Silicon with Rosetta

gagor.pro · May 6 · 🛡️ Sysadmin & Security ·

Use Rosetta to run Terraform as x86_64 on Apple Silicon and avoid provider checksum mismatches.

Building the deployment tool I wish I had

ruuda.nl · May 6 · 🛡️ Sysadmin & Security ·

Deptool is a new declarative configuration deployment tool that I built for myself. In this post I describe the design, and I explain what problems it solves.

Vercel's deepsec Isn't Just Prompts

rawsignal.xyz · May 5 · 🛡️ Sysadmin & Security ·

Vercel's deepsec wraps Claude and Codex with scanning, revalidation, exports, and optional Sandbox fanout.

Google Calendar in any calendar app without adding the Google account

eshlox.net · May 5 · 🕸️ Web & Internet ·

Subscribe to Google Calendar's secret iCal feed from any calendar app. Keep your Google account out of macOS and iOS. Worked example for Apple Calendar on Mac, iPhone, and iPad.

Sandboxing an AI Harness on macOS

alejandromp.com · May 5 · 🧩 Programming ·

In the previous post we gave superpowers to the harness in the form of a bash tool. Even doing it just for the learning experience, it was already very eye-opening. It made this little Swift harness…

Keys.openpgp.org Breaks Your Keys

articles.59.ca · May 5 · 🛡️ Sysadmin & Security ·

Keys.openpgp.org Breaks Your Keys This article will be presented in the form of a rant... Keys.openpgp.org is a PGP keyserver on the internet. It's somewhat popular and is the default keyserver for…

Selected documentation and usage notes for my dotfiles

microsounds.github.io · May 5 · 🛡️ Sysadmin & Security ·

Revision No. 1093, commit 7649f6c. “grub: Persist previous menu choice between reboots” View changelog since the last revision as [ diff HEAD~1...HEAD][2] The verbosity factor of this document…

Lightyear @ NFD40: Buying Bandwidth Shouldn't Suck

bitsinflight.com · May 5 · 🛡️ Sysadmin & Security ·

Lightyear's Telecom Operating System automates procurement, inventory management and expense management for enterprise network connectivity. Their NFD40 demo showed why buying bandwidth shouldn't…

Hello, Vulnerability Garden 🪴

shellsharks.com · May 5 · 🛡️ Sysadmin & Security ·

Farewell “Designer Vulnerabilities”, and hello Vulnerability Garden 🪴 — the new (and improved) space for cataloguing all named vulnerabilities, attack techniques and exploits. When I first started…

AI governance overview: stop panicking and fix the basics

welkasworld.com · May 5 · ✨ AI ·

A practical AI governance overview for organisations that are either rushing into AI or panicking over every new feature. This post explains why strong fundamentals, identity, device security,…

Microsoft does the I.F.S. again.

gerisch.org · May 5 · 🛡️ Sysadmin & Security ·

I.F.S. = Incredibly Fucking Stupid TL/DR: 5,000 workstations are hit with a surprise reboot in the middle of the morning because the policy says “Audit mode only” and the documentation…

The Future of MDR (Managed Detection and Response)

raffy.ch · May 5 · 🛡️ Sysadmin & Security ·

MDR started as a practical answer to a very real problem: customers had too many security alerts, too few security operators, and no realistic way to staff a strong 24/7 security operations center…

Talk "From Paper to Insight - Medical Document Processing on AWS with Generative AI"

munich-datageeks.de · May 5 · ✨ AI ·

Storm Reply and AWS present a serverless AWS pipeline for extracting clinical entities from German healthcare documents, combining Textract, Claude Sonnet, Medical Comprehend, and Claude Opus —…

No More Meshtastic MQTT. The Flaresat Relay Bridge Does It Better, Safer, and in Seconds.

adrelien.com · May 5 · 🛡️ Sysadmin & Security ·

Stop fighting with MQTT brokers and zero-hop limits. The Flaresat Relay Bridge instantly connects your off-grid Meshtastic mesh to anyone online in seconds. Get real-time, bidirectional sync for live…

Your .env files are under attack

netflux.io · May 5 · 🛡️ Sysadmin & Security ·

Unencrypted secrets on developer workstations and long-lived credentials in continuous integration environments have long been considered bad practice. But they have often been tolerated because the…

The Problem with AI-Generated Post-Incident Reviews

greatcircle.com · May 5 · ✨ AI ·

AI can produce a competent-looking post-incident review from a Slack transcript. The document itself was never the point, though; the real learning happens while writing it, not reading it. AI should…

New format: rpz-nxdomain

pgl.yoyo.org · May 5 · 🛡️ Sysadmin & Security ·

I've added a new format for use with RPZ, which returns NXDOMAIN responses instead of 127.0.0.1. ...

ArgoCD: sync stuck in terminating

perrotta.dev · May 5 · 🛡️ Sysadmin & Security ·

Problem statement: An ArgoCD application’s sync operation is stuck in Terminating for hours. The web UI shows operation is terminating due to timeout. A PreSync hook resource keeps appearing as…