@GossiTheDog@cyberplace.social
@GossiTheDog@cyberplace.social avatar

GossiTheDog

@GossiTheDog@cyberplace.social

Cybersecurity weather person and award winning shitposter. Shitposting is an anagram of Top Insights. You may be surprised to know I am not representing my employer here and these are not their opinions.

I have Direct Messages disabled - you can send them, but I will never receive them.

This profile is from a federated server and may be incomplete. Browse more on the original instance.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar
GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

I think it’s entirely possible I’ve committed career suicide over Recall.

Worth it though. Had that shipped as planned it would have been a disaster.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

Very amusing seeing Frank taking a victory lap for Twitter when the Mastodon thread consistently has more boosts and favourites.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

@neurovagrant he’s just being a condescending moron 🫡

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

I strongly believe we're within 5 years of the generative AI boom collapsing almost completely, and it will have a profound economic impact, as the use cases for the products being sold almost entirely suck arse.

GossiTheDog, (edited )
@GossiTheDog@cyberplace.social avatar

You'll know the organisations that restructured and laid off key staff in long standing profit making areas of businesses so they could concentrate all their Opex on ridiculously ill thought through AI schemes.

Remember their names, and the senior people in charge. They suck.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Always remember that businesses are not a family, and you will get sacrified to keep the line going up ('growth!'), even if that growth is based on a foundation of total quicksand.

The next trillion dollar market is good products, made well, and well supported with good customer service.

It isn't worshipping Sam Altman or whatever Tech Jesus arrives next.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

It's 2am and I'm going through this Copilot+ PC (kindly provided) and we're into the profanity filtering.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Amazingly not a single thing Microsoft has been working on with Recall and various AI services is on VirusTotal. It would be a shame if it got uploaded, right.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

It's actually pretty funny as you can just extract the wordlists from RAM and then use them against live Copilot, e.g. there's always allowed terms blah blah.

There's a similar thing where there's a bunch of Azure AI services run locally and it looks like a bunch of things overlap with the Azure hosted versions, people will definitely poke this while looking at Recall methinks.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

I just almost accidentally tooted a photo of my cat’s latest diarrhoea episode.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

My dog has started limping quite badly tonight and my cat keeps squirting shit, AMA

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

The next Doom will launch this year and be on PlayStation 5 too, along with Starfield.

Source: me.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Starfield is coming to PS5 (paywalled) along with next Doom, you’ll be surprised to know. https://www.theverge.com/2024/6/6/24172684/microsoft-xbox-showcase-2024

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

For those who aren’t aware, Microsoft have decided to bake essentially an infostealer into base Windows OS and enable by default.

From the Microsoft FAQ: “Note that Recall does not perform content moderation. It will not hide information such as passwords or financial account numbers."

Info is stored locally - but rather than something like Redline stealing your local browser password vault, now they can just steal the last 3 months of everything you’ve typed and viewed in one database.

video/mp4

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

As @tiraniddo rightly points out, anybody can programmatically reach the Recall database without admin rights. https://infosec.exchange/@tiraniddo/112566044174482506

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

TotalRecall has been updated to exfiltrate Recall database and screenshots without needing admin rights: https://github.com/xaitax/TotalRecall

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

You can now remotely dump Recall data and screenshots over the internet from Linux etc. Changes in flight for parsing data too.

https://github.com/Pennyw0rth/NetExec/pull/335

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

YouTubers are continuing to have fun with Recall

video/mp4

GossiTheDog, (edited )
@GossiTheDog@cyberplace.social avatar

Turns out speaking out works.

Microsoft are making significant changes to Recall, including making it specifically opt in, requiring Windows Hello face scanning to activate and use it, and actually encrypting the database.

There are obviously going to be devils in the details - potentially big ones.

Microsoft needs to commit to not trying to sneak users to enable it in the future, and it needs turning off by default in Group Policy and Intune for enterprise orgs.

https://www.theverge.com/2024/6/7/24173499/microsoft-windows-recall-response-security-concerns

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Obviously, I recommend you do not enable Recall, and you tell your family not to enable it too.

It’s still labelled Preview, and I’ll believe it is encrypted when I see it.

There are obviously serious governance and security failures at Microsoft around how this played out that need to be investigated, and suggests they are not serious about AI safety.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Microsoft President Brad Smith is going to be grilled by US gov next week. https://therecord.media/microsoft-reverses-course-recall-opt-in

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

@evacide I’m not sure if that’s true, honestly, as the public reaction to the feature was overwhelmingly negative.

The other thing is I couldn’t speak to the privacy implications as I just didn’t know enough about that - so I’m glad you and others did.

Microsoft will have known the problems with this one and they just.. tried to do it anyway. It’s really worrying I think as it signifies a feeling of a blank cheque with AI.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

I should be transparent btw that I took Satya and Charlie’s commitment to security at face value too - I even published a blog on it backing that up - and I have concerns (it isn’t just me).

They’re now going to have to win trust back about winning trust back.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

I know somebody at a retailer in Europe that is selling Copilot+ PCs. They’ve had fewer than a thousand preorders through to customers.

In relative terms, for them it’s about as successful as Suicide Squad Kill The Justice League.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

@gsuberland Suicide Squad Kill The Justice League was an absolutely massive flop, as they made a product customers didn’t ask for nor want. Which.. well…

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

AI Tech Bros are VERY UPSET that reviewers are REVIEWING PRODUCTS

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

The Humane AI pin is being recalled as it has a risk of catching fire… which is also a metaphor for AI products.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

TIL - the Humane AI pin company is apparently doomed financially, and one of the largest investors is Sam Altman.

I wonder what else Sam Altman invested in.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • ngwrru68w68
  • everett
  • InstantRegret
  • magazineikmin
  • thenastyranch
  • rosin
  • GTA5RPClips
  • Durango
  • Youngstown
  • slotface
  • khanakhh
  • kavyap
  • DreamBathrooms
  • provamag3
  • tacticalgear
  • osvaldo12
  • tester
  • cubers
  • cisconetworking
  • mdbf
  • ethstaker
  • modclub
  • Leos
  • anitta
  • normalnudes
  • megavids
  • lostlight
  • All magazines