Jack Shanahan, retired US Air Force General and first Director of the Department of Defense Joint Artificial Intelligence Center:
Jathan McCollum
@jathanism.bsky.social
I kick ass and eat pizza. I do a lot of automation and hardcore security and network infrastructure work. Cryptography for fun and profit but mostly fun.
“.. This is simply attempted corporate murder,” Ball wrote. “I could not possibly recommend investing in American AI to any investor; I could not possibly recommend starting an AI company in the United States.” @politico.com #Anthropic www.politico.com/news/2026/02...
I brought Network Source of Truth (NSoT) back from the long, slow death of open source rot. Version 2 is now actively maintained. Check it out! github.com/jathanism/nsot
GitHub - jathanism/nsot: Network Source of Truth - Fork of Dropbox's original NSoT that has been updated for Python 3 and Django 5.x
Network Source of Truth - Fork of Dropbox's original NSoT that has been updated for Python 3 and Django 5.x - jathanism/nsot
github.com
What do you get when you cross an oasis in a canyon with a pump and a thump? It's this. This is what you get. And you deserve it! This set fucking bumps! This was originally released on the Leyenda Radio Podcast as episode 007 on 3 Nov 2024; recorded 16 Mar 2024. on.soundcloud.com/z0WPmDedqpbs...
Live at Leyenda del Corazon 2024
What do you get when you cross an oasis in a canyon with a pump and a thump? It's this. This is what you get. And you deserve it! This was originally released on the Leyenda Radio Podcast as episode 0
on.soundcloud.com
Read it and weep. Literally. From the article: "...the communication path from the modified app to the storage endpoint is not fully end-to-end encrypted." & the attacker "breached TeleMessage's system within 15 to 20 minutes of becoming curious about the product." https://cyberinsider.com/signal-
If honking and flashing my lights at, and running a Cybertruck off the highway is wrong, I don't wanna be right.
I really like porridge 🥣 and very secure bears.
Torn between data security & actual usability? @nicksullivan.org’s latest article says you can have both. It’s the Goldilocks of #DataProtection: #SearchableEncryption, where data stays locked up, yet you can still get all the insights you need. "Just Right" 🐻 www.blindinsight.com...
At @getblindinsight.bsky.social, we believe that data-sharing shouldn’t force you to choose between innovation & privacy. NIST’s differential privacy guidelines (NIST SP 800-226) aim to give organizations a safer path to collaborate on critical datasets without sacrificing sensitive information.
#DataPrivacy can be a growth catalyst. Check out our “Closing Deals w/ Data Privacy & Security Excellence” guide to learn how to: • Strengthen your security posture • Gain customer trust early • Shorten sales cycles by months www.blindinsight.com/insights/clo... #DataSecurity #EncryptionInUse
Uploading your data into Blind Insight validates, encrypts, and indexes it in real time. Choose the interface that works best for you!
Need a fast, secure way to upload data to your schema? In this demo, @aspiringroadkill.bsky.social shows how to add data to a schema using the CLI. With just 4 arguments (& a few seconds), your records are securely uploaded & instantly available in the Blind Insight web UI. youtu.be/a1S2La-KiQE...
We must launched upload for the UI and I gotta say it's pretty slick to be able to transparently encrypt your data just like a regular data import. But using your keys not ours!
Need a fast, secure way to upload data to your schema? In this demo, @aspiringroadkill.bsky.social shows how to add data to a schema using the CLI. With just 4 arguments (& a few seconds), your records are securely uploaded & instantly available in the Blind Insight web UI. youtu.be/a1S2La-KiQE...
In this ⏰ 20-second demo, @getblindinsight.bsky.social CTO @jathanism.bsky.social shows the lightning-fast upload speeds in our innovative, privacy-enhancing technology. 1,000 records uploaded & indexed in seconds, fully searchable, and end-to-end encrypted. So you can have your data & eat it too.
Some things work better together... like valuable data insights, and privacy & security. The @getblindinsight.bsky.social beta is now open. Get real-time searchable encryption and fine-grained programmable access controls.
This is my literal nightmare. I've dedicated my career of over 30 years to cybersecurity only to have these buffoons upend decades of progress in mere weeks.
DOGE Exposes Once-Secret Government Networks, Making Cyber-Espionage Easier than Ever
A new investigation shows nuclear secrets and government servers are dangerously exposed to nation-state hackers.
cyberintel.substack.com
Oh hey it's me!
How do you search encrypted data without exposing it? Blind Insight delivers end-to-end searchable encryption: Your keys, your control. 💪 @jathanism.bsky.social shares how @getblindinsight.bsky.social can help your team maintain #DataPrivacy while still unlocking insights.
CFPB has finalized the #OpenBanking rule. Under Section 1033, financial institutions must provide consumers with free and secure access to their financial data. In this article @getblindinsight.bsky.social founder @jackiepeters.bsky.social shares an analysis of what’s ahead: bit.ly/open-banking...
The Finalization of Section 1033
Blind Insight | Discover the opportunities of open banking! Learn how financial institutions and software vendors can overcome challenges, foster trust, and drive innovation in a more connected and s...
bit.ly
Please for your sake and sanity DO NOT USE DeepSeek on your phone.
DeepSeek iOS app sends data unencrypted to ByteDance-controlled servers
Apple’s defenses that protect data from being sent in the clear are globally disabled.
arstechnica.com
Insurance companies right now are all like: "Thanks for being our loyal customer for the last 25 years. Here's four paragraphs where we explain how and why we are going to fuck you over by jacking up your rates and there's nothing you can do about it! I hope this helps. All the best!"
Confidential computing is a pretty cool paradigm; in theory, you don’t need to trust your cloud provider to not steal or tamper with your data anymore, you *just* have to trust the hardware. In practice, don’t forget about defense in depth & co 😉
AMD: Microcode Signature Verification Vulnerability
### Summary Google Security Team has identified a security vulnerability in some AMD Zen-based CPUs. This vulnerability allows an adversary with local administrator privileges (ring 0 from outside...
github.com
PSA: We're 2+ weeks w/o the Morbidity and Mortality Weekly Report, published WEEKLY by the CDC since 1961. It's where we first learn about emerging infectious diseases. It's where we first learned about AIDS, Legionnaires Disease and COVID-19. It's been blocked since Jan 20, 2025. WE ARE NOT SAFE.
TIL that Discord now supports passkeys for strong authentication. Every time a provider enable passkeys a kitten gets its whiskers. 😻
In implementing a new large file and batch upload feature to the @getblindinsight.bsky.social Blind Proxy I discovered the TUS protocol. It is flipping awesome. Highly recommend it. And the best part is their reference implementation is in Go! tus.io
tus - resumable file uploads
tus is the open protocol standard for resumable and reliable file uploads across the web, facilitating efficient and seamless file transfer experiences.
tus.io
Today in "why securing healthcare data privacy is so critically important". www.bleepingcomputer.com/news/securit...
Backdoor found in two healthcare patient monitors, linked to IP in China
The US Cybersecurity and Infrastructure Security Agency (CISA) is warning that Contec CMS8000 devices, a widely used healthcare patient monitoring device, include a backdoor that quietly sends patient...
bleepingcomputer.com
Every day. Every fucking day. I wake up 15 minutes before my alarm. Is it too much to ask to "sleep in"? 😑
Groan. Here we go again with another speculative execution vulnerability. arstechnica.com/security/202...
Apple chips can be hacked to leak secrets from Gmail, iCloud, and more
Side channel gives unauthenticated remote attackers access they should never have.
arstechnica.com
Well that didn't take long for DeepSeek to be exposed as so ridiculously insecure it's jaw-dropping. So it goes that one of the largest gaps in the AI space is traditional bare bones infrastructure security. Good lord. www.wiz.io/blog/wiz-res...
Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History | Wiz Blog
A publicly accessible database belonging to DeepSeek allowed full control over database operations, including the ability to access internal data. The exposure includes over a million lines of log str...
wiz.io
No matter how many times you tell PayPal to "trust this device", it doesn't. PayPal has no memory, just like the bath towel I use to dry my bum.
The new administration has blocked our company's grant proposal for privacy-preserving healthcare technology, issuing a broad, indefinite pause on federal loans and grants, which is unprecedented and deeply concerning. ground.news/article/trum...
Ground News - Trump administration directs widespread pause of federal loans and grants
The White House budget office is ordering a pause to all grants and loans disbursed by the federal government, according to an internal memo sent to agencies Mo
ground.news
The hits just keep on coming from the Change Healthcare data breach. Doesn't bode well for 2025. www.bleepingcomputer.com/news/securit...
UnitedHealth now says 190 million impacted by 2024 data breach
UnitedHealth has revealed that 190 million Americans had their personal and healthcare data stolen in the Change Healthcare ransomware attack, nearly doubling the previously disclosed figure.
bleepingcomputer.com