Thursday, 5 January 2023

Southwest Airlines: ‘Shameful’ Technical Debt Bites Back - DevOps.com

The moral of the story: I like criticism. It makes you strong.

Wednesday, 4 January 2023

PyTorch supply chain attack: Dependency confusion burns DevOps - ReversingLabs

Flaming security posture: A classic dependency confusion attack revealed itself last week. The PyTorch open source software supply chain was compromised by a hacker publishing a malicious torchtriton clone on PyPI.

Tuesday, 3 January 2023

‘We Must Ban TikTok!’ — Senate, House, FCC Agree - Security Boulevard

GOP: No FYP for U
TikTok’s days are numbered in the U.S.—if the GOP has its way. Because the app is “a sophisticated surveillance tool” that embodies China’s “techno-totalitarian control,” they say.

Wednesday, 21 December 2022

AWS Saves Ukraine’s Data | WPF ‘is not Dead’ (yet) | Devs Quit for Cash - DevOps.com

The moral of the story: Everybody wants to be famous—but nobody wants to do the work

Tuesday, 20 December 2022

DraftKings fantasy? How YOU can prevent credential stuffing attacks - ReversingLabs

I’ll choose a mask to look like you: There’s been a huge uptick in a type of low-effort hacking, where bad actors crack accounts of people who reuse passwords. They simply feed off of data from previous credential breaches.