DaKnOb @DaKnObCS
I do cool things that matter ;) @[email protected] blog.daknob.net Zürich, Switzerland Joined June 2009-
Tweets43K
-
Followers938
-
Following430
-
Likes5
ISRG is hiring an SRE to help keep the world’s largest certificate authority running. Come join our team and help us make the internet safer for all. abetterinternet.org/careers/le-sre…
After a constructive engagement with @ThreemaApp during responsible disclosure, this is unexpectedly dismissive. We broke their protocol 6 ways. They updated it, thanks to our work (breakingthe3ma.app). So of course our work applies to an old version.
There’s a new paper on Threema’s old communication protocol. Apparently, today’s academia forces researchers and even students to hopelessly oversell their findings. Here’s some real talk: threema.ch/bp/new-paper-o…
We (@winterdeaf @kientuong114 and I) took a deep dive on Threema, a Swiss-made secure messaging app. We found 6 new cryptographic vulnerabilities. Full paper at breakingthe3ma.app; mini-thread follows. #threema
It takes a good six-year-old with a gun to stop a bad six-year-old with a gun.
GitHub on finally deploying IPv6.... 😊🤗 (docs.github.com/en/enterprise-…)
Don't dump LastPass because of 7 breaches, dump them for crap crypto: Padding oracle vulns, ECB pass len leaks, switch to CBC for new vaults not old ones, vault key uses AES256 but only 128 bits entropy, key webui leak, silent KDF downgrade, KDF hash log leak, keys left in mem.
@Scott_Helme @troyhunt @Yubico @Cloudflare The blue keys that are cheaper are perfectly fine for 2FA and to some degree as Passkeys / for Passwordless login. The black keys are only needed for the Nano form factor, the Lightning connector, or their other applications (PIV, GPG, etc.).
🎉 bgp.tools has passed 500 Online BGP sessions! Thanks to the networks that have made this possible We now have really quite good routing visibility in EU and a lot of the US, But isn't the whole world! The focus is now Africa, APAC, and LATAM!
This video of cops in Nevada searching a suspect and finding a seed phrase is pretty wild. Imagine having your seed phrase become part of public record due to it being captured by an officer's body camera!
Svaq zr ba Znfgbqba nf [email protected]
@aris_ada I have a little bit more, 1/5th, however it’s just one specific set of people mostly, which means Mastodon now is not covering everything I used to see here. I used fedifinder.glitch.me to find everyone and add them on Mastodon so I can begin the migration.
POV: You're a security consultant hired to be embedded in a web development team
@DaKnObCS Oh yeah, forgot about that. I'm pretty sure we have the plumbing for this, let me see if we expose it.
@mholt6 It seems to be working just fine: crt.sh/?q=sl.daknob.n… We just need more CT Logs to make this sustainable ;)
@mholt6 Google Trust Services supports setting the notBefore and notAfter via ACME so you can specify the exact duration, for up to 90 days. I’ve been using it with this patch: go-review.googlesource.com/c/crypto/+/454… Works fine, and I added it as “requested” to convey the fact that it may not happen.
@mholt6 I’ve gotten some of my certs down to 3 days and daily renewals without problems. Would you consider adding support for custom validity to Caddy / your libraries to request them via ACME? I would be happy to trial 3 or 7 day certs with Caddy!
Pulling MikroTik into the Limelight margin.re/2022/06/pullin…
Yiorgos Adamopoulos @hakmem
2K Followers 3K Following Reading AI Memo 239. Learned amateur. RT != endorsement. I run infrastructures and speak for myself. Bubblegum does not scale. @[email protected]
Bryton Herdes @next_hopself
925 Followers 683 Following Father of 2 | Husband to @TorreyHerdes4 | Principal Network Troublemaker at @cloudflare | JNCIE-SP #3023 | Views are my own https://t.co/EQJ5lF4wfd
Caramel 💛 @carameldotcat
70 Followers 1K Following ✨💛 | B: @ashtodusk | Pfp: @beckowaffle | I'm 25, 🇬🇷, and a linux nerd! | Married to @KittyBoyMel | ✨ 18+ MDNI!
Irbreaorcalk @Irbreaorcalk83
22 Followers 977 Following
Sriayu Lestari @shuuaaa_yzz
0 Followers 10 Following
Thoathur @Thoathur5zqzL
75 Followers 3K Following
George Tsopanakis @GTsopanakis
2K Followers 4K Following #1cloudcompany Sales FTS, @1NCE_IoT, @VodafoneGroup, @Oracle, @infiterracom, specialty #cloud , #IoT , ICT transformation - views are my own, not FTS -
Ian Foster @lanrat
687 Followers 1K Following Researcher, Hacker, Programmer, Geek, https://t.co/QDqRj22WOh Organizer for @BSidesSF, @ToorCon, and @ToorCamp. Alt : @lanrat.bsky.social @[email protected]
Lawsmaw @LawsmawHE4Vy_o
47 Followers 1K Following
Fabian Bechter @bechter_fabian
0 Followers 9 Following
Pascal Schärli @pascscha
14 Followers 68 Following Cryptography Engineer. More active on Mastodon or Bluesky.
nam.es @XDomains
3K Followers 3K Following The best domain names on X and the world wide web. Literally.
Nola @tokurayuuk79287
103 Followers 7K Following
7-Zark-7 @7Zark76
218 Followers 2K Following «Φύσει μέν ἐστιν ἄνθρωπος ζῷον πολιτικόν» | IT Guy | Also, Star Trek Online and Humour
Thomas Ploutonas @xX1t3r
0 Followers 23 Following
Shore @ShorenSw
11 Followers 1K Following
Adrian Pitulac @AdrianPitulac
50 Followers 660 Following CEO @ InterData Systems - Enterprise Solution Architect - Cloud Datacenter Architect
BlackHOST @_blackhost
1K Followers 311 Following #UNMETERED web hosting provider, when a regular one isn’t simply enough. 🚀 1-100Gbps 👨💻 24/7 support 🌐 multiple locations
TimKleefass.bsky.soci... @TimKleefass
459 Followers 815 Following Planing to move Bits (Tweets are my own)
ShirleyAdam @O20D5T833jNY70
19 Followers 2K Following
ClaraWesley @5DAg9Z9DW1Y206H
27 Followers 3K Following
Christos Trochalakis @ctrochalakis
522 Followers 2K Following Tech & opensource addict, xCTO @SkroutzDevs, Debian Developer.Florian @SirAmfy
138 Followers 2K Following Sys/NetEng. Libertarian Capitalist. First Amendment. Being frugal. You don’t have a title when you run a business.
Christopher Adigun @Futuredon
423 Followers 3K Following Kubernetes, NFV (vEPC), IoT, vIMS, Edge Computing
ammar @impl_u64
398 Followers 2K Following network things, rust, flying, etc - all posts and replies are randomly generated by AI
Netsl @Netslay
51 Followers 912 Following Helping teams ship faster: websites, AI, apps, MVPs. GPT-native stack. Accepting crypto. 🚀 Built - launched - scaled. fndr of https://t.co/HN45tHuyNm - dev 7 years
Carl Magnus Bruhner @bruhner
688 Followers 903 Following /ˈbrʉ̟ːnɛrː/ — 𝕏plorer. PhD student in cybersecurity @ @liu_universitet / @LiU_IDA1983 / @WASP_Research. MSc Eng IT. BSc BA. Opinions are my own. 🇸🇪
Leonard Athilenios @athilenios14326
40 Followers 2K Following
EarthHobbit @indyview
84 Followers 1K Following
Frank @crystaloptik
13 Followers 262 Following
Cal Bryant @callanbryant
107 Followers 674 Following VP of Engineering @cydarmedical. I like designing and building things.
yawniek 📯 @yawniek
554 Followers 1K Following A high-powered mutant of some kind. Never even considered for mass production. fixing AdTech as CTO of https://t.co/BxoESuv8L2 and building #molternet apps
Taseat @Taseat136896
99 Followers 7K Following
bess @bessx_
86 Followers 4K Following
Thouteyt @thouteyt42614
99 Followers 3K Following
Tehtafara0 @Tehtafara0
71 Followers 246 Following
nsao @__nsao__
8 Followers 189 Following
ballad4seasons @ballad4seasons
7 Followers 772 Following
RL @avdmax
0 Followers 3K Following
c2342 @c2342
22 Followers 946 Following
Kim Nguyen @Ensembleadhoc
162 Followers 1K Following
Atanas Yankov @xupypra
47 Followers 516 Following
Youfu Zhang @_youfu
134 Followers 1K Following
Felicia @smeadeysh54795
54 Followers 2K Following
SwiftOnSecurity @SwiftOnSecurity
410K Followers 9K Following computer security person. former helpdesk.
Matthew Green @matthew_d_green
155K Followers 1K Following I teach cryptography at Johns Hopkins. Mostly on BlueSky these days at https://t.co/GI4QlxYTdk.
Ryan Hurst @rmhrisk
6K Followers 3K Following Dropout. Father. I build things. Security, Cryptography, Engineering, Entrepreneurship. @peculiarventure + xMSFT + xGOOG ++. also on https://t.co/FaDXJfnZBm & Bluesky
@mikko @mikko
225K Followers 948 Following Researcher and a best-selling author. Keynote talks at RSA, Black Hat & DEF CON. TED Speaker. Chief Research Officer at Sensofusion.
argp @_argp
18K Followers 148 Following Hacker. Ascetic. Phrack author. The most technical boy in town.
Nathalie Trenaman @Nathabeer
875 Followers 521 Following Manager @ Team AMS-IX Passion for teaching and internet since 1999. Dutchie & female
Accidental CISO @AccidentalCISO
59K Followers 2K Following I accidentally became the CISO. I didn't want this job, but the job chose me. I'm scared, and I want to go home.
Adriana Porter Felt @__apf__
66K Followers 957 Following I like writing silly Tweets, but that doesn't pay so I build things at @googledeepmind. Principal Engineer. ex-@googlechrome. volunteer @2ndharvest. 🇺🇸🇨🇷
Troy Hunt @troyhunt
249K Followers 1K Following Creator of @haveibeenpwned. Microsoft Regional Director. Pluralsight author. Online security, technology and “The Cloud”. Australian.
thaddeus e. grugq @thegrugq
128K Followers 420 Following Hacker :: PhD researcher @warstudies @KingsCollegeLon :: [email protected] :: PGP https://t.co/dYipV8y3bo
Proton @ProtonPrivacy
363K Followers 479 Following Protect your privacy with one encrypted ecosystem: Mail, VPN, Drive, Pass, & more. Swiss & Open Source 🛟 @ProtonSupport | 🐾 Private AI @asklumo
Robert Graham @robertgraham
68K Followers 2K Following Created (BlackICE,IPS,sidejacking,masscan). Doing (blog,code,cyber-rights,Internet-scanning). Macrodata refiner.
RPW: @[email protected]... @esizkur
8K Followers 890 Following
Anna Maria Mandalari ... @ammandalari
1K Followers 437 Following Assistant Professor @ucleeenews @UCL_ICCS. Member of the Italian Technical Secretariat Committee for the use of AI @AgidGov. Research Fellow @imperial_isst.
Ryan Dickson @ryancdickson
225 Followers 116 Following Technical Program Manager at @GoogleChrome and hobbyist beekeeper. Tweets are my own, not my employer’s.
VCs Congratulating Th... @VCBrags
289K Followers 5K Following They're adding value™ And they're very proud of it. @BragsVentures
Static Flunkerizer @flunkerizer
10 Followers 65 Following Security Engineer - Rustacean 🦀 - Reformed cryptographer - Opinions are my own
Caddy Web Server @caddyserver
10K Followers 102 Following Serving your sites over HTTPS+HTTP/3 automatically! EVERY SITE ON HTTPS. 👏 Visit our forum for help: https://t.co/lT4YYe7gz1 A @zerosslHQ OSS product.
jared mauch @jaredmauch
2K Followers 166 Following internet janitor, therapist of packets and protocols, collector of bit buckets
Jonathan Zittrain @zittrain
45K Followers 9K Following A small creature who likes to run around in universities. Prof. @Harvard_Law, @HSEAS, + @Kennedy_School; @EFF board mbr; director of @BKCHarvard and @HLSLib.
p mavrommatis @mavrommatis
288 Followers 120 Following Internet Security at Google * Safe Browsing * reCAPTCHA * Certificate Transparency
Amir Omidi @aaomidi
274 Followers 519 Following 🏳️🌈🏳⚧He/Them. Ask me about WebPKI. I somehow ended up doing Certificate Authority things. #BlackLivesMatter I am [email protected]
Fred Gargula @gargu_
453 Followers 1K Following Co-founder, chairman & CEO at IP-Max, as25091. Lab manager at as35360. Passionate geek since 1980. FreeBSD & BGP lover. Proud Chti. Opinions here are my own.
ARDC @ARDC_73
1K Followers 110 Following Amateur Radio Digital Communications (ARDC) manages the 44.*.*.* IP address space and awards grants to cool #hamradio and tech projects.
🧗♂️ Matt Ho... @mholt6
9K Followers 758 Following Imperfect member of the restored Church of Jesus Christ. Husband. Father. Stepdad. Created @caddyserver. Masters in Computer Science.
Molly White @molly0xFFF
123K Followers 2K Following bsky: @https://t.co/jJXL8GfoBs crypto & tech industry researcher & critic at https://t.co/hb1tT2Q3bJ & @web3isgreat support my work: https://t.co/FPG3uvikH0
web3 is going just gr... @web3isgreat
118K Followers 1 Following tracking only some of the many disasters happening in crypto, defi, NFTs, and other blockchain-based projects since 2021 • created by @molly0xfff
Rob Leathern @robleathern
24K Followers 2K Following Founder and CEO, InfoHawk. Helping businesses protect their users from scams. 🇺🇸 + 🇿🇦. Former VP of security and privacy product at Google.
Alex Stamos @alexstamos
90K Followers 2K Following Doing AI security stuff and teaching at Stanford.
age — simple, moder... @agetool
528 Followers 2 Following A simple, modern and secure encryption tool with small explicit keys, no config options, and UNIX-style composability.
Steve Kelman @KelmanSteve
4K Followers 622 Following Harvard Kennedy School professor, does research on improving government performance. also strong amateur interest in China and learning Chinese
BGP.Tools @bgptools
4K Followers 1 Following It's like a real-time global BGP looking glass that doesn't hate you! You can also pay us to tell you when stuff changes! Tweets by: @[email protected]
Don't Disable IPv6 @DontDisableIPv6
572 Followers 57 Following IPv6 is the future of the internet, don't cut yourself off from it. If you're having issues, fix the root cause instead. #DontDisableIPv6
Stadtpolizei Zürich @StadtpolizeiZH
102K Followers 80 Following Im Notfall IMMER 117! Hier twittern: ^br / ^hö / ^ma / ^mo / ^su / ^sa / ^spa / ^sc / ^si / ^wa. Kein 24/7-Monitoring! https://t.co/43YCCAc5Lu
Shane Huntley @ShaneHuntley
17K Followers 1K Following Security / tech guy. Google Threat Intelligence Group but tweets are my own.
Berkman Klein Center ... @BKCHarvard
65K Followers 3K Following at Harvard University - exploring cyberspace, sharing in its study, and helping to pioneer its development
Google Schweiz @Google_CH
12K Followers 380 Following
HKS Executive Educati... @HKSExecEd
6K Followers 318 Following Harvard Kennedy School Executive Education provides leaders in government, corporate & nonprofit sectors with the training & tools they need to succeed.
Corey Quinn @QuinnyPig
104K Followers 1K Following Chief Cloud Economist at Duckbill. Author, Artificial Confidence. Professional skeptic with receipts.
Harvard Negotiator @HarvardNegoti8
10K Followers 79 Following The Program on Negotiation (PON) is a university consortium dedicated to developing the theory and practice of negotiation and dispute resolution.
Harvard Law School @Harvard_Law
194K Followers 354 Following The official account for Harvard Law School. Dedicated to excellence and leadership in legal education and scholarship.
BSides Zurich @BSidesZurich
2K Followers 807 Following Stay tuned for more info or join our newsletter on the website. Brought to you by @BSidesHelvetia #BSidesZH Mastodon: @[email protected]
Request for Comments @rfc
2K Followers 0 Following Unofficial RFC bot. Maintained by Hirata Yasuyuki (@hirayasu)
Kanton Zürich @KantonZuerich
21K Followers 465 Following Offizieller Account der Kantonalen Verwaltung Zürich.
Royal Hansen @royalhansen
9K Followers 1K Following Vice President, Engineering, Google - Privacy, Safety, Security: Posts on InfoSec, Privacy, Data, AI, Counter Abuse and random stuff from life in CA; Tweets=own
Marily Nika @marilynika
9K Followers 3K Following Helping PMs become AI builders 🚀 🤖 AI Product Lead @google | 📩 300K+ readers ⬇️ Get AI PM Certified 🏆 Webby nominee & bestselling Author
Ben Laurie @BenLaurie
6K Followers 280 Following Systems research at Google. @[email protected]. @benlaurie.bsky.social. https://t.co/4Q2q9MN7cC.
Alertswiss @Alertswiss
23K Followers 288 Following Offizieller Account von Alertswiss – es twittert das Redaktionsteam der Nationalen Alarmzentrale / Centrale nationale d’alarme / Centrale nazionale d’allarme
@[email protected]... @str4d
3K Followers 473 Following Zcash, Rust, cryptography & privacy. He/him. https://t.co/H3HuRnxc3h atproto: 🦋https://t.co/BSw2zoJbif age18f63qx4gk8x7p4lfuwwglqcan7snvp406q5vmk26g9fmpe9c799qqzzr3w
Dimitris Savvopoulos @dimsav
432 Followers 279 Following Founder, Indie hacker https://t.co/sKcc5qJlBo gmv €5M/y
Emily Stark @estark37
10K Followers 886 Following Trustworthy 🔑 transport 🚆 for Chrome. HTTPS, certs, encryption, security UX, software eng & mgmt. @estark.bsky.social. Opinions are my own. she/her
Signal @signalapp
620K Followers 23 Following Signal is a nonprofit end-to-end encrypted communications app. Privacy isn’t an optional mode, it’s the way Signal works. Every message, every call, every time.
GovCERT.ch @GovCERT_CH
14K Followers 22 Following National Cyber Security Centre (NCSC), Computer Security Incident Response Team of the Swiss Government (https://t.co/S9JncbbeYk)
Apollon Oikonomopoulo... @apoikos
582 Followers 325 Following Infra @skroutzit, Debian Developer, Rackocat, Fraghitect
Nick Apostolakis (Mas... @nickapos
144 Followers 376 Following
@[email protected]... @Madonius
351 Followers 289 Following (he/him) Entropist @entropiagpn. 🇪🇺 citizen. Destroy the filterbubble. Opinons expressed are those of the great Cthulhu. Profile picture by @S73AMPUNKCA7

























