Brian Epstein
epepepep.bsky.social
Brian Epstein
@epepepep.bsky.social
Linux, InfoSec, Cryptography, Scouts, Woodworking, Laser Engraving
Remote Code Execution vulnerability on Android 13-16. Latest November updates should patch.

source.android.com/docs/securit...
Android Security Bulletin—November 2025  |  Android Open Source Project
source.android.com
November 6, 2025 at 2:15 AM
I challenge all my Scouting America family to take the brand new Diversity, Equity, Inclusion, and Belonging training (SCO 1800). It only takes 30min, and is crucial to us bringing the best program we can. Let me know you completed it by commenting below!
training.scouting.org/courses/SCO_...
BSA Learn Center
training.scouting.org
October 27, 2025 at 4:02 AM
More post quantum protections are going to be implemented by Signal. signal.org/blog/spqr/
Signal Protocol and Post-Quantum Ratchets
We are excited to announce a significant advancement in the security of the Signal Protocol: the introduction of the Sparse Post Quantum Ratchet (SPQR). This new ratchet enhances the Signal Protocol’s...
signal.org
October 5, 2025 at 4:59 PM
Reposted by Brian Epstein
Picture this: An employee calls out a manager’s “joke” about accents as offensive. The manager shrugs it off. “It was just a joke. I have the right to free speech.”

Let’s notice when someone misuses free speech as a shield for harmful behavior. And speak up.

#Inclusion #BetterWorkplaces
September 23, 2025 at 5:25 PM
Happy International Allyship Day! nationaltoday.com/internationa... . Today I celebrate by reading my daily Ally Actions and try to integrate them into my life. betterallies.com/more-content/
International Allyship Day
This holiday encourages all to use their privilege to those facing inequality in underrepresented groups and minority communities.
nationaltoday.com
August 9, 2025 at 12:01 AM
I found this video by @3blue1brown.com to be an excellent, if not the best, explanation of Quantum Computing. I highly recommend it and the resources he lists as well. www.youtube.com/watch?v=RQWp...
But what is quantum computing? (Grover's Algorithm)
YouTube video by 3Blue1Brown
www.youtube.com
May 2, 2025 at 4:54 PM
New SSL/TLS certs to each live no longer than 47 days by 2029

The depreciation schedule is now as follows:

March 15, 2026: renewed every 200 days.

March 15, 2027: down to 100 days.

March 15, 2029: limited to 47 days, and 10 days for DCVs.

www.theregister.com/AMP/2025/04/...
New SSL/TLS certs to each live no longer than 47 days by 2029
: IT admins, get ready to grumble
www.theregister.com
April 15, 2025 at 3:28 AM
FBI report: Violent Online Networks Target Vulnerable and Underage Populations Across the United States and Around the Globe

Stay safe out there and learn to recognize the markers of abuse for our vulnerable anger underage population.

www.ic3.gov/PSA/2025/PSA...
Internet Crime Complaint Center (IC3) | Violent Online Networks Target Vulnerable and Underage Populations Across the United States and Around the Globe
www.ic3.gov
March 10, 2025 at 12:30 AM
Reposted by Brian Epstein
The Higher Education Community Vendor Assessment Toolkit (HECVAT) team has launched HECVAT 4. The new version is better than ever with new and updated artificial intelligence and privacy questions, training materials for institutions and solution providers, and more. https://buff.ly/3QdUsBr
February 11, 2025 at 4:33 PM
This type of identity theft specifically targets kids. Definitely something to be aware of.
'Frankenstein Fraud' Is Quickly Becoming the Most Dangerous Form of Identity Theft
www.cnet.com/personal-fin...
'Frankenstein Fraud' Is Quickly Becoming the Most Dangerous Form of Identity Theft
Criminals combine a real person's Social Security number with other real or made-up details to trick credit issuers.
www.cnet.com
January 8, 2025 at 1:24 PM
How to tell if a USB cable is hiding malicious hacker hardware... TL;DR, you can't, get a good data blocker. :)
www.pcworld.com/article/2557...
How to tell if a USB cable is hiding malicious hacker hardware
Here's how to tell if your USB cables contain hidden malicious hardware and are sending your data to hackers.
www.pcworld.com
December 20, 2024 at 12:17 AM
NPR Reports, "With a January ban looming, TikTok's future in the U.S. is more uncertain than ever"
www.npr.org/2024/12/18/g...
With a January ban looming, TikTok's future in the U.S. is more uncertain than ever
A new law gives TikTok a Jan. 19 deadline to sell to a non-Chinese company or face a nationwide ban. Law professor Alan Rozenshtein explains what this means and how President-elect Trump might interve...
www.npr.org
December 19, 2024 at 7:55 PM
Reposted by Brian Epstein
I don't know who needs to know this, but Pro Publica has an online thing that will format a letter to your US health insurance company to demand the records behind a claim denial. (which the insurance is then legally required to provide in most cases)

projects.propublica.org/claimfile/
Find Out Why Health Insurance Denied Your Claim
You likely have the right to access records that explain why your insurer denied your claim or prior authorization request. Use ProPublica’s free tool to generate a letter requesting your claim file f...
projects.propublica.org
March 22, 2024 at 1:25 PM
FBI: Criminals Use Generative Artificial Intelligence to Facilitate Financial Fraud. It was only a matter of time.
www.ic3.gov/PSA/2024/PSA...
Internet Crime Complaint Center (IC3) | Criminals Use Generative Artificial Intelligence to Facilitate Financial Fraud
www.ic3.gov
December 4, 2024 at 11:17 AM
myE-Verify can lock your Social Security Number to help protect yourself from identity theft. It is similar to freezing your credit, but for your SSN. myeverify.uscis.gov
myE-Verify
Protect your identity, track your E-Verify case, learn your rights and confirm your own employment eligibility. It’s easy and free!
myeverify.uscis.gov
November 22, 2024 at 4:01 AM