Alrighty, #infosec folks -

Looking into the NHS worm issue, this looks to be Eternalblue - a derivative of the shadow brokers "lost in translation" dump from 14-APR.

This spreads via SMB [windows shares] on, usually, port 445, and is neutered by windows patch MS17-010.

If you have that patch installed, there is nothing to worry about.

This is a photo of a crashed kiosk advertising the menu and offers at a popular Norwegian pizza restaurant chain. It shows that the kiosk was running facial recognition and basic sentiment analysis on the people looking at it.

Based on the number of people who sent me this on Twitter, it’s clear that people care and are unhappy with corporate surveillance.

The worst bit? Compared to what Google and Facebook do daily and at scale, this is a toy.

Scans for Intel ME in April: 4
Scans for Intel ME in May so far: 123

About half of them are in a huge spike May 2nd/3rd which quickly leveled off. The April probes are from a few days before the public disclosure. Neat!

Number of times "apt autoremove" has worked flawlessly and made my life easier: 2

Number of times "apt autoremove" has shot me in the foot: literally every other time

New Kali release. More info here:


Support for RTL8812AU Wireless Card Injection
Streamlined Support for CUDA GPU Cracking
Amazon AWS and Microsoft Azure Availability (GPU Support)
OpenVAS 9 Packaged in Kali Repositories

Anyone have any updates on the ransomware attack that hit Puerto Rico last month? Responsible parties, how they got infected, details on the investigation? I'm having trouble finding news sources that go into more detail than "it happened."

Spanish articles are fine, puedo leer español.

Came across this video at work. Am I crazy, or is it paranoid FUD? They got a bunch of people in the comments wondering why IANA owns their phone's IP address.

#debian announcing a #mastodon package to make install new instance server easier ! <3 debian <3 mastodon

