The #BSidesLDN2026 "No REST 'Til Hammersmith' Call for Papers, Rookies and Workshops is no official open! #Security #BSides #London #CFP
Rory McCune
@mccune.org.uk
Security geek, Containers, Kubernetes, Golang/Ruby, hillwalking Home Page :- https://www.mccune.org.uk Blog:- https://raesene.github.io
SithDDO has put together a pretty amazing musical number and video about kobolds: https://ow.ly/qAxK50Zqb6E #DDO
I've been taking some time to dig in to Kubernetes' z-pages support and some of the things to know if you want to use them for debugging and configuration review. No massive revelations but I learned a thing or two while doing it, so I wrote them down :) raesene.github.io/blog/2026/07...
Show us Zee Pages
raesene.github.io
Following @ministraitor.bsky.social 's sterling work on getting the slides lined up, the video for my Steelcon "Talk about giving talks" is live. This is my attempt to distill my advice on giving talks based on 16 years of conference speaking experience. youtu.be/jBSANnzGjHE?...
A Talk About Giving Talks - Rory McCune
YouTube video by SteelCon
youtu.be
Cooper doing amazing work on videos as always! Also another good reason not to make all your slides monochrome :)
Repairing @mccune.org.uk's @steelcon.info talk. Never thought I'd spend my sunday evening intently looking at the hue of his skin to see when exactly the slide is changed... 😋
Terror of Demogorgon arrives soon! Learn more about our next expansion on DDO.com: https://ow.ly/Sk6s50Zp5BL #DDO
bumsrake.de - This is an amusing way to do vuln. disclosure
BUMSRAKETE™ — The Most Beautiful, Most Tremendous FreeBSD Vulnerability In The History Of Computing. BELIEVE ME.
BUMSRAKETE is a HUGE, TREMENDOUS, MANY-PEOPLE-ARE-SAYING FreeBSD kTLS-RX page-cache write primitive. The BEST primitive. Some say the best ever.
bumsrake.de
I wondered why I was seeing adverts for SpaceX from UK brokers all over the place. This does not seem like a good idea...
It's always been known that containers don't fully contain, but the ease with which attackers can execute container breakout attacks now, using LLM tooling, should prompt people to re-evaluate where they can rely on container isolation. An example here raesene.github.io/blog/2026/06...
Do containers still contain?
raesene.github.io
according to the spacex filings, their valuation is justified entirely by grok, which will be 90% of enterprise ai, and ai will be 90% of the us economy
The May edition of the Datadog Security Digest is out, with some great content from the community on cloud security, AI security and supply chain security! securitylabs.datadoghq.com/newsletters/...
Malicious AI skills, compromised npm packages, and 100+ intentionally vulnerable AWS environments | Datadog Security Labs
This month's edition covers supply-chain attacks on npm packages and GitHub repositories, the release of Pathfinding Labs (100+ intentionally vulnerable AWS environments), and research on malicious AI...
securitylabs.datadoghq.com
Seeing "old" CVEs appear in Kubernetes vuln. scans? It's due to the project correcting records for unpatchable issues. Why: kubernetes.io/blog/2026/05... Technical deep-dives: securitylabs.datadoghq.com/articles/?s=...
More from me on the alleged Russian hack-and-leak operation against the Reform UK leader, including a link to an interview with The Guardian www.linkedin.com/posts/cyberc...
Nigel Farage’s Russian hack claim ‘without any merit’, former NCSC chief says | Ciaran Martin
The Guardian have published an interview with me in which I set out in more detail my view that if Mr Farage’s claims that the Russian state hacked his phone and leaked his personal information to a m...
linkedin.com
Here's the last one in our series of blogs on the unpatchable vulnerabilities of Kubernetes, with CVE-2021-25740 securitylabs.datadoghq.com/articles/unp...
Unpatchable Vulnerabilities of Kubernetes: CVE-2021-25740 | Datadog Security Labs
A look at how Kubernetes CVE-2021-25740 allows users with EndpointSlice access to redirect traffic via shared ingress and load balancer services.
securitylabs.datadoghq.com
Based in Scotland and want to join our team supporting SOOCOn26 on the Road? Volunteer and receive a free ticket to join our Opening the AI Stack day. A great opportunity to meet some of the leaders in AI from across the UK and become part of Team OpenUK. forms.gle/LQn26R9EdTEh... #opensourceai
I’m keynoting KCD Texas tomorrow! If you want to come join me in Austin, use code HONK for 50% off the ticket price. See you there!
KCD Texas 2026 | CNCF
In-person Event - KCD Texas - May 15, 2026, Austin, TX
community2.cncf.io
There's some interesting details from an analysis of Shai-Halud code in here, one part that caught my eye was them using Fulcio/Rekor for provenance and also targeting Kubernetes secrets amongst other things securitylabs.datadoghq.com/articles/sha...
Shai-Hulud Goes Open Source | Datadog Security Labs
A static analysis of the open-sourced Shai-Hulud offensive framework attributed to TeamPCP, covering its credential harvesting, supply chain poisoning, and exfiltration capabilities.
securitylabs.datadoghq.com
A very handy open source project to help defend against supply chain attacks in the IDE!
IDE-Shepherd is now on the VS Code Marketplace and Open VSX. Real-time protection against malicious extensions and supply chain attacks in VS Code and Cursor. github.com/DataDog/IDE-...
Looking forward to attending Le Tour Du Hack on Saturday in Edinburgh. I'll be doing at talk about Kubernetes post-exploitation at 13:40 alongside many other great talks. speak.enusec.org/le-tour-du-h...
Ghosts in the Cluster - Hiding in Kubernetes for Years Le Tour Du Hack
You've popped a Kubernetes cluster. You've got admin creds. Now the real question is how do you stay? Kubernetes abstracts away enormous complexity across multiple layers, from container runtimes to c...
speak.enusec.org