io

Canada Orders TikTok to Shut Down Canadian Operations Over Security Concerns

The Canadian government on Wednesday ordered ByteDance-owned TikTok to dissolve its operations in the country, citing national security risks, but stopped short of instituting a ban on the popular video-sharing platform. "The decision was based on the information and evidence collected over the course of the review and on the advice of Canada's security and intelligence community and other




io

Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers

Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) that has racked up thousands of downloads for over three years while stealthily exfiltrating developers' Amazon Web Services (AWS) credentials. The package in question is "fabrice," which typosquats a popular Python library known as "fabric," which is designed to execute shell commands remotely over




io

CISA Alerts to Active Exploitation of Critical Palo Alto Networks Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a now-patched critical security flaw impacting Palo Alto Networks Expedition to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2024-5910 (CVSS score: 9.3), concerns a case of missing authentication in the Expedition migration tool that




io

Malicious NPM Packages Target Roblox Users with Data-Stealing Malware

A new campaign has targeted the npm package repository with malicious JavaScript libraries that are designed to infect Roblox users with open-source stealer malware such as Skuld and Blank-Grabber. "This incident highlights the alarming ease with which threat actors can launch supply chain attacks by exploiting trust and human error within the open source ecosystem, and using readily available




io

AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services

The threat actors behind the AndroxGh0st malware are now exploiting a broader set of security flaws impacting various internet-facing applications, while also deploying the Mozi botnet malware. "This botnet utilizes remote code execution and credential-stealing methods to maintain persistent access, leveraging unpatched vulnerabilities to infiltrate critical infrastructures," CloudSEK said in a




io

Security Flaws in Popular ML Toolkits Enable Server Hijacks, Privilege Escalation

Cybersecurity researchers have uncovered nearly two dozen security flaws spanning 15 different machine learning (ML) related open-source projects. These comprise vulnerabilities discovered both on the server- and client-side, software supply chain security firm JFrog said in an analysis published last week. The server-side weaknesses "allow attackers to hijack important servers in the




io

5 Ways Behavioral Analytics is Revolutionizing Incident Response

Behavioral analytics, long associated with threat detection (i.e. UEBA or UBA), is experiencing a renaissance. Once primarily used to identify suspicious activity, it’s now being reimagined as a powerful post-detection technology that enhances incident response processes. By leveraging behavioral insights during alert triage and investigation, SOCs can transform their workflows to become more




io

New Flaws in Citrix Virtual Apps Enable RCE Attacks via MSMQ Misconfiguration

Cybersecurity researchers have disclosed new security flaws impacting Citrix Virtual Apps and Desktop that could be exploited to achieve unauthenticated remote code execution (RCE) The issue, per findings from watchTowr, is rooted in the Session Recording component that allows system administrators to capture user activity, and record keyboard and mouse input, along with a video stream of the




io

WHY COMPETITION IS RELEVANT TO SELF-DEFENSE

Recently saw this on YouTube, from a grandmaster competition shooter who is also in law enforcement. I agree with him. I’ve said for years that while a shooting match is not a gunfight, a gunfight most certainly is a shooting match. Competition experience makes shooting under pressure the norm. Wyatt Earp competed in the informal […]




io

ABOUT THE ELECTION

Don’t you hate it when the candidate “on your side” acts as if he’s trying to throw the fight? I voted for Donald Trump and urged others to do the same in 2016 and 2020, and as soon as early voting opens in my state will vote for him again in 2024. Not because he’s […]




io

THE LAW AND THE FACTS ARE ON OUR SIDE, BUT WE SHOULD BE USING EMOTION, TOO

Historically, both law and facts are on the gun owners’ side of the “gun control” debate, and the Other Side had relied largely on emotion.  I respectfully submit that emotion is something our side should play to, as well. I made that point recently at the 2024 Gun Rights Policy Conference in San Diego last […]




io

SUICIDE PREVENTION

While participating in a Zoom conference with other members of the New Hampshire Firearms Safety Coalition, of which I’ve been a proud member for a quarter century or so, I was reminded that I have not addressed here a topic NHFSC has strongly and successfully focused upon: suicide prevention. The organization was founded by the […]




io

CATCH THE NEW SECOND AMENDMENT FOUNDATION VIDEO

The Second Amendment Foundation has released a 22-minute video celebrating its fifty years of fighting for gun owners’ civil rights. Some of those who’ve been along for most or all of the ride, including founder Alan Gottlieb, give insight into how far we’ve come.  See it here:





io

Typo in Trump’s Name on Ballot Review Screen Is Not ‘Election Fraud’

A misspelling of former President Donald Trump's name occurred on an optional ballot review screen in Virginia, prompting an unfounded claim on social media of "election fraud." The error was a typo that appeared only on the ballot review screen, not on actual ballots, and would not affect any votes, election officials said.

The post Typo in Trump’s Name on Ballot Review Screen Is Not ‘Election Fraud’ appeared first on FactCheck.org.




io

Posts Spread Unfounded Claim of Race-Based Threat of Violence in Georgia

Posts shared on Facebook make an unfounded claim of racially motivated threats of violence in Gwinnett County, Georgia, "from now until the Inauguration." The county sheriff's office said it had "not received any information indicating threats to any group(s) on or after election day."

The post Posts Spread Unfounded Claim of Race-Based Threat of Violence in Georgia appeared first on FactCheck.org.




io

Raskin Didn’t Say He ‘Won’t Be Certifying the Election’

Social media users have spread a quote attributed to Democratic Rep. Jamie Raskin, claiming he said "we won’t be certifying the election" if former President Donald Trump wins. Raskin responded, saying the quote is "100% fabricated" and that "America is having a free and fair election and Congress will certify the winner." The origin of the posts appears to be a misleading account of Raskin's comments in February.

The post Raskin Didn’t Say He ‘Won’t Be Certifying the Election’ appeared first on FactCheck.org.




io

Posts Falsely Claim CBS News Reported ‘Cheating’ in Election

Some social media posts falsely claimed that CBS News reported there was "cheating" in the 2024 presidential election that benefitted President-elect Donald Trump. We found no evidence of such a report, and a CBS News spokesperson said the outlet "did not report or say there was cheating in the election."

The post Posts Falsely Claim CBS News Reported ‘Cheating’ in Election appeared first on FactCheck.org.




io

Law enforcement operation takes down 22,000 malicious IP addresses worldwide




io

AI in radio: A Polish interviewer fired




io

FBI says hackers are sending fraudulent police data requests ot tech giants to steal people's private information




io

Election Officials Are Prepared for a Lot More Than You Might Think




io

Falsehoods from Russia on Election Were Brazen




io

Questionnaire for everyone who stopped talking to me

I’ve developed a survey to give to people who slipped me into their not-friend category. Since I’m a person with no ability to cope with nuance, answers to all questions are yes/no. 1. Were you ever my real friend?  I want to know if you needed me like I needed you, but I don’t want […]

The post Questionnaire for everyone who stopped talking to me appeared first on Penelope Trunk Careers.


















io

BBC Radio 2 In Concert complete show




io

White label auction

Update: today at 2pm UK time.

Final prices 

Pornography - £1,000
The Head on the Door - £800
Show - £750
Wish - £600
The Top - £800
Japanese Whispers - £700
Paris - £850
Greatest Hits - £1,000


The White Label Auction In Aid of The BRIT Trust

Upcoming auction from Omega Auctions. 

8 from The Cure, all signed by Robert Smith.

Pornography 
The Head on the Door 
Show
Wish
The Top
Japanese Whispers 
Paris
Greatest Hits

Thanks, JC










io

Anonymous heART Project auction is up

Update: 

Final prices

DRONE:NODRONE- £1,800

WARSONG - £3,974

ALL I EVER AM - £2,551

A FRAGILE THING - £3,600

I CAN NEVER SAY GOODBYE -£15,500


The @heartresearchuk auction is up.


DRONE: NODRONE - https://www.ebay.co.uk/itm/267030793797


WARSONG - https://www.ebay.co.uk/itm/267030793091


ALL I EVER AM - https://www.ebay.co.uk/itm/267030794980


 A FRAGILE THING - https://www.ebay.co.uk/itm/267030793378


I CAN NEVER SAY GOODBYE - https://www.ebay.co.uk/itm/267030794239




io

Songs of a Lost World chart positions

Songs of a Lost World debuts at:

Australia - #5

Austria - #1

Belgium (Flemish and Wallonian) - #1

Canada - #12

Denmark - #1

Dutch - #1

France - #1

Germany - #1

Ireland - #3

Italy - #2

New Zealand - #3

Scotland - #1

Spain - #2

Sweden - #1

Switzerland - #1

UK - #1

US - #4




io

Album of the Week on BBC Radio 2

From The Cure:

SONGS OF A LOST WORLD IS ALBUM OF THE WEEK ON @BBCRADIO2. TUNE IN THIS WEEK TO VERNON KEY & OJ BORG TO HEAR TRACKS FROM THE ALBUM






io

Oct 15 NYC DevOps Meetup: "Introduction to Site Reliability Engineering" by Nathen Harvey

This month's nycdevops meetup speaker is Nathen Harvey of Google, who will give a talk titled "Introduction to Site Reliability Engineering".

The talk starts at 5pm sharp! (NY is in US/Eastern)

Please RSVP! See you there!

https://www.meetup.com/nycdevops/events/272956481/

(This is a virtual meetup. Everyone around the world is invited!)




io

Updated BP Texas City Animation

This isn't directly sysadmin-related, but it made me think of how a really good outage retrospective can teach others how to prevent problems in the future.

"On the 15th anniversary of the incident, the U.S. Chemical Safety Board is announcing a forthcoming interactive training application based on one of the worst industrial disasters in recent U.S. history--the March 23, 2005, explosion at the BP refinery in Texas City, Texas, which killed 15 workers, injured 180 others, and caused billions of dollars in economic losses. This updated animation will be included in the training, which will focus on OSHA's Process Safety Management standard. Look for it soon at CSB.gov."

Content warning: Death




io

20 years of The Practice of System and Network Administration!

Twenty years ago the first edition of The Practice of System and Network Administration shipped! Since then there has been a 2nd and 3rd edition (2006 and 2014), plus a sequel book The Practice of Cloud System Administration, and many printings. (see the timeline here)

When we started the project we had no idea if it would be a success. There was a real chance it could be a flop. Many people told us that our proposal was illogical: How could you have a book about system administration that is vendor agnostic and talks about process and people instead of specific tools and operating systems? Well, to be honest, we took a deep breath and started writing anyway. It took 2+ years but in Sept/Oct 2001 the book finally shipped!

Instead of a flop, the reaction we got was very positive! It has sold tens of thousands of copies. Many universities have used the book and its future editions as text books. It received the Usenix LISA Outstanding Achievement Award. One DevOps pundit told me she considers it to be "the first devops book" which was quite humbling.

When I visited Google in 2004 (a year before I considered joining) I was told everyone in the "systems operations" team was given a copy on their first day. The person giving me a tour then took me to a supply closet with 30 copies awaiting to be distributed to new hires.

However the real satisfaction comes from how it has helped others. Fans have related many heartwarming stories. Many fans have told us they felt like reading the book was a turning point in their life, that the book "turned me into a professional system administrator".

To thank our readers, our publisher is offering a special deal: 45% off the latest editions now until Oct 31, 2021 What? You still have the 2nd edition and haven't seen the dozens of chapters of new material in the 3rd edition? Or maybe you haven't heard of our Cloud book? Now is your chance to get the 3rd edition or the cloud sequel!

Thank you to everyone that gave us feedback on the early drafts! Thank you to all our readers! This book changed our lives and we hope it changed yours too!

P.S. We would love to hear from you! Please post a comment with reflections on the book.




io

FAQ zur Rundfunkreform, “Ruptly” macht weiter, Wenn KI Radio macht

1. Wie die Öffentlich-Rechtlichen aus der Krise kommen sollen (taz.de, Ann-Kathrin Leclère) Ann-Kathrin Leclère hat die wichtigsten Fragen und Antworten zur Rundfunkreform zusammengestellt, beispielsweise: Warum braucht es Reformen? Wer kümmert sich darum? Was wurde beschlossen? Wer hat Angst vor welchen Änderungen? Und was ist mit dem Rundfunkbeitrag? 2. Wie das insolvente Kreml-Medium Ruptly unter neuem […]



  • 6 vor 9

io

X-Bots und US-Wahlkampf, Schunkeln für Millionen, Hollywoodfilme diverser

1. Automatisierte Bots auf X greifen in den US-Wahlkampf ein (zeit.de, Eva Wolfangel) “Die Sorge, dass das Internet von Bots zersetzt wird, gibt es schon lange. Jetzt gibt es erstmals klare Belege für solche KI-Accounts – manche machen Stimmung für Trump.” Eva Wolfangel gibt einen Einblick in die derzeitige Forschung zu Bot-Netzwerken. Weiterer Lesetipp: Elon […]



  • 6 vor 9

io

Werbeaktivitäten der Fraktionen, Sturmreif, “Nius” stockt auf

1. Bundestag will die Öffentlichkeitsarbeit der Fraktionen neu regeln (netzpolitik.org, Martin Schwarzbeck) Der Bundestag plane, noch vor der nächsten Wahl die Regeln für die Öffentlichkeitsarbeit der Fraktionen zu überarbeiten. Der Bundesrechnungshof habe festgestellt, dass viele Social-Media-Aktivitäten der Fraktionen, die eigentlich die parlamentarische Arbeit darstellen sollen, in der Vergangenheit parteipolitische Werbung enthielten. Eine breite Mehrheit der […]



  • 6 vor 9

io

How to see the invisible: Using the dark matter distribution to test our cosmological model

A Princeton-led team of astrophysicists has measured a surprising value for the “clumpiness” of the universe’s dark matter.