raptor, to random

This project looks very cool (and useful)!

The Garden is a collection of HTTP and configured to be composable, along with scripts to interact with them in a way that makes finding much much easier.

https://github.com/narfindustries/http-garden

For some cool demos of the stuff that you can find with the HTTP Garden, check out our 2024 talk.

https://invidious.slipfox.xyz/watch?v=aKPAX00ft5s&t=2h19m0s

robpegoraro, to random
@robpegoraro@journa.host avatar

When I looked at the schedule, I thought I'd get a lot out of seeing @thepacketrat unpack his research into pig-butchering scams. Then I checked and saw that my client PCMag had somehow not run a breakdown of this tactic*, so I had to write up his talk.

https://www.pcmag.com/news/dont-engage-pig-butchering-scams-start-with-a-text-end-in-financial-ruin

  • Freelance-journalism advice: It always helps to find a scarcity in your client's coverage that you, preferably only you, can fill.
darthnull, to random

The closing slides from this year's badge puzzle. As this was likely the last time I'll be able to compete in this contest, this year I played to win. And my daughter and I did just that! :)

Thanks to Flowers By Irene for another great game! https://docs.google.com/presentation/d/1_zJypaL7-LXLi0xzZBBsEuCBQy4aXPJFw0h_JGSxgdY/edit#slide=id.p https://hackintime.shmoocon.org

(it also occurred to us way too late that we should've called ourselves "The Sith Lords," instead of "The Time Lords,” but since the theme of the con was time travel…the latter seems most appropriate anyway.)

LaserMistress, to random
@LaserMistress@mstdn.social avatar

I'm seeing an interesting trend between and . When called out on their disgracefully gross single tone white cis male speaker lineups, they each responded with "we tried reaching out to other types of people (let me guess, a few white women), and they refused us".

This seems to clear their conscience and resolve it for them.

ahem YOU HAVE NOT MADE AN ENVIRONMENT GOOD FOLKS WANT TO PARTICIPATE IN.

YOU CHOOSE EVERY DAY TO NOT CHANGE THAT.

YOU ABSOLUTELY COULD.

blacksincyber, to random

Congratulations to our Top 3 Teams! 🏅

Thank you to all the teams that played, The support of @ShmooCon Staff and Volunteers, Our Table Sponsor JP Morgan and our Prize Sponsor Off Sec !

TindrasGrove, to random

Learning that there’s an SEC whistleblower bounty program.

TindrasGrove,

Interesting point that, especially for the CISO, other companies’ 8K filings should be part of the threat feed.

da_667, to random

So have the man in the chicken mask and the man in the horse mask started a fight again?

deweyritten, to random

flying over dc hey

nobletrout, to random

Mouse at bar at
. Unlike Trevor this one was rescued by a brave soul and brought outside. I nominate his name as mcguyver the survivor!

video/mp4

briankrebs, to random

Apart from during the pandemic, I've been getting my hair cut at the same place for 30 years, which is across the street from the old WaPo building in NW DC. Turns out today was not the best day to visit an establishment that is 3 blocks from the White House, because there are a ton of a people streaming by with banners calling for a cease fire in Gaza.

Took 45 minutes to get 2 miles because police were everywhere and had blocked off vast areas of Northwest DC.

grecs,

@briankrebs You moved back to DC? Haven’t been tracking the socials as closely as I use to so probably missed it. You around at this weekend?

hacks4pancakes, to random

Once again y’all aren’t going to mistake me for anyone today! #Shmoocon

nobletrout, to random

Many thanks to everyone who watched or came to my talk.

You can find slides and stuff here

https://github.com/nobletrout/plaintext_LTE

agunn, to random

Absolute banger of a talk by @TheTar@omg.wtf.sh just now at -- feel like I just found my next research obsession. Thank you!!

llorenzin, to ADHD

brainweasel wrangling, edition!

After figuring out years ago that I can listen better, especially over long periods of time, if I have something to keep my hands busy, I try to always have a project on hand heading into multi-day meetings or conferences.

Ran out of time to prep for this one, so I started winding my skein into a yarn ball during opening remarks, got my sizing swatch done for a one-skein triangle shawl (Moogly Fortune's Shawlette) by the end of One Track Mind, and made a nice bit more progress during the firetalks...

It's the perfect con project - a simple diagonal-box-stitch repeat, no complex counting required. Just add a box every row until I run out of yarn, and then frog back until I have enough yarn left for the edging. 😁

@crochet

Yarn ball wound from that skein, sitting on my Ghibli Museum susuwatari crochet bag
Six-box sizing swatch of the Moogly Fortune's Shawlette, next to my ruler - exactly four inches! This never happens.
WIP triangle on a white sheet next to my ruler. I frogged the sizing swatch (because I hadn't expected to get it right on the first try and thus wasn't paying as close attention as I would have liked!) and still managed to end up with 8 inches of progress at the end of the evening...

llorenzin,

project progress...

We honestly spent as much time catching up with old friends and meeting new friends as we did attending talks - one of the many reasons we love this con so much! - so I'm only 33 rows in on the shawl. But it's shaping up nicely!

I love the interplay of this colorway and this pattern - thinking it'll be gorgeous once it's finished and blocked. 💖
@crochet

Closeup of shawl corner

llorenzin, to random

@wendynather Tonight's firetalk on the Cookie Dough model of security, in which @TindrasGrove made a great analogy to infosec from Nestle's "don't eat raw cookie dough" vs Pillsbury's "we made the cookie dough safe because we know you're going to eat it even if we tell you not to" reminded me in - the best possible way - of your incredible talk on Democratizing Security...

The Internet is for clicking - cookie dough is for eating - meet the users where they are!! 💞

llorenzin,

For anyone who hasn't seen it, @wendynather's RSA keynote I mentioned above is here - highly recommend! https://m.youtube.com/watch?v=FKLc3VG2qYM

TindrasGrove, to random

Thanks to everyone who stuck around for

For those who got cookies: they were the ones pictured in the slides: Toll House Turtle and Pillsbury Oreo.

And thank you to all the judges for your time and feedback - you really make this a unique event!

grecs, to random

Last for 2024 … Amanda Draeger, “The Cookie Dough Model of Cybersecurity”

chmod777, to random

I'm really bummed that I couldn't make it to Shmoo Con this year - but definitely looking forward to seeing all the posts (TOOTS) about it!

grecs, to random

Live now at … Ray [Redacted], “Metabolism Hacking for Fun and Longevity

grecs, to random

Next up at Edward Warren “Inter-App Collusion: Exploiting the Improper Export of Android Application Components for Privilege Elevation & Credential Theft”

grecs, to random

#ShmooCon #Firetalks live steam is here … under in One Track Mind: https://www.shmoocon.org/streams/

grecs, to random

first speaker, Maddie Bright, is going on now! “Looking Into The Past: How Reflecting Helped Me Grow as a New Professional” Very relevant giving our time travel theme!

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • cisconetworking
  • DreamBathrooms
  • InstantRegret
  • ethstaker
  • magazineikmin
  • Youngstown
  • thenastyranch
  • mdbf
  • slotface
  • rosin
  • modclub
  • kavyap
  • GTA5RPClips
  • provamag3
  • osvaldo12
  • khanakhh
  • cubers
  • Durango
  • everett
  • ngwrru68w68
  • tester
  • normalnudes
  • tacticalgear
  • anitta
  • megavids
  • Leos
  • lostlight
  • All magazines