Rapid7 is sunsetting AttackerKB, and the public API goes dark on August 18, 2026. After that, the vulnerability discussions, community assessments, and Rapid7 analysis that accumulated on the platform become a dead link. I wrote a small Go CLI that pulls it down while the API still responds: attackerkb-archive. What It Does The tool hits […] The post AttackerKB Is Shutting Down: Here’s an Archive…
(Repost from ai.rud.is) I’ve written and said enough times that I’m tired of OpenAI and Anthropic pulling cybersecurity out as the headline AI risk. The framing is commercially convenient, and it flattens a more complex reality — these models can break plenty of things that have nothing to do with cyber, and most of Anthropic’s […] The post On AI Agents, Criminal Activity, And Who Is Actually…
HMEFB: Anatomy of a Belarusian Worm I found this story because of a re-post on Mastodon by Fritz Adalis regarding a suspicious User-Agent by Jason Callahan of SANS’s ISC. He found something odd in his DShield honeypot logs: a URI path that read /?_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_. In the User-Agent header, an email address: HelpMeEscapeFromBelarus@proton.me. The SANS diary […] The post Your…
For the second time in a row, a post by cr0w on Mastodon regarding the Chrome release blog appearing to not render anything resulted in me firing up lynx to show a sub-second load and render, then finally doing something a bit more tangible about the situation. The 81-Second Wall The Google Blogger pages load […] The post Unjamming the Chrome Releases Blog appeared first on rud.is .
Cloudflare announced PACT this week — privacy-preserving tokens to separate humans from bots, backed by Google, Mozilla, Microsoft, and Shopify. The cryptography is solid. The governance model doesn’t exist yet. I wrote about why the “ratchet effect” should worry anyone who cares about the open web, how this is Web Environment Integrity re-skinned for the […] The post PACT: The open web doesn’t…
May 2026 dropped three critical Linux vulnerabilities on a near-weekly cadence, and the security discourse has mostly treated them as three separate bad days. They’re not. Together they form a reliable, race-free, forensically quiet kill chain from the public internet to root, and if you’re running nginx in front of anything that matters, you need […] The post Three CVEs and the May 2026 Exploit…
At our previous employer, the global deception and detection infrastructure generates tons of events that eventually make their way into an ever-growing data lake with (as of February 2026) 22 TB of PCAPs and 32 TB of session protocol data. When trying to find novel and truly dangerous attacker behavior, the bottleneck isn’t the data […] The post [un]prompted Spring 2026: Threat Hunting In The…
In the past ~4 weeks I have personally observed some irrefutable things in “AI” that are very likely going to cause massive shocks to employment models in IT, software development, systems administration, and cybersecurity. I know some have already seen minor shocks. They are nothing compared to what’s highly probably ahead. Nobody likely wants to […] The post AI Proofing Your It/cyber Career: The…
(If you’d prefer, you can skip the intro blathering and just download the full white paper) Back in 1997, a commercial airline captain noticed his fellow pilots had a problem: they’d gotten so used to following the magenta flight path lines on their fancy new navigation screens that they were forgetting how to actually fly […] The post Are We Becoming Children of the MagentAI? appeared first on…
QUESTION 1: “Do you want to change Maine election laws to eliminate two days of absentee voting, prohibit requests for absentee ballots by phone or family members, end ongoing absentee voter status for seniors and people with disabilities, ban prepaid postage on absentee ballot return envelopes, limit the number of drop boxes, require voters to […] The post Maine 2025 Ballot Questions Redux…