Artis3n
banner
hackthedigital.cloud
Artis3n
@hackthedigital.cloud
Doing application security things. He/him
Reposted by Artis3n
I don’t think anyone is prepared for what they just did w/ ICE.

This is not a simple budget increase. It is an explosion - making ICE bigger than the FBI, US Bureau of Prisons, DEA,& others combined.

It is setting up to make what’s happening now look like child’s play. And people are disappearing.
July 3, 2025 at 6:58 PM
Reposted by Artis3n
NEW: TeleMessage, the Signal knockoff used by Mike Waltz and potentially other gov officials to archive group chats in plaintext, has suspended all services after it was hacked *at least twice.* @404media.co reported a hack last night; a different hacker also broke in and gave me evidence.
TeleMessage suspends services after hackers claim breach
The app was seemingly used by Mike Waltz in last week's cabinet meeting, according to a photograph published by Reuters.
www.nbcnews.com
May 5, 2025 at 7:05 PM
Reposted by Artis3n
Hours ago, @politico.com revealed that DOGE is working with DHS on automating mass deportation efforts — likely explaining why many US citizens, green card holders, and even a Canadian (in Canada) got threatening emails last night terminating “your parole” and telling them to leave the US in 7 days.
April 12, 2025 at 2:53 AM
Reposted by Artis3n
NEW: An internal email obtained by WIRED from a threat intelligence team monitoring US Treasury systems advised labeling DOGE operatives an "insider threat," adding that it recommended suspending their access "immediately."
|
www.wired.com/story/treasu...
February 7, 2025 at 7:57 PM
Reposted by Artis3n
DOGE operative Marko Elez got the ability to alter US Treasury payment system code on Feb 1, WIRED's sources say.

For days, Trump officials fed members of Congress and the press a different story.

Elez is out now for posts reading "I was racist before it was cool" and "normalize Indian hate."
The US Treasury Claimed DOGE Technologist Didn’t Have ‘Write Access’ When He Actually Did
Sources tell WIRED that the ability of DOGE's Marko Elez to alter code controlling trillions in federal spending was rescinded days after US Treasury and White House officials said it didn't exist.
www.wired.com
February 7, 2025 at 12:16 AM
Reposted by Artis3n
Okay, let's keep going. Got another one today looking at just how absolutely fucking crazy it is that an inexperienced Musk-lackey is apparently pushing untested live code to America's checkbook. Tried to contextualize all of it.

www.techdirt.com/2025/02/05/a...
A 25-Year-Old Is Writing Backdoors Into The Treasury’s $6 Trillion Payment System. What Could Possibly Go Wrong?
Just months after we learned Chinese hackers had compromised US telecom systems through government-mandated backdoors, an inexperienced developer from Musk’s DOGE unit is pushing untested cod…
www.techdirt.com
February 5, 2025 at 6:53 PM
Reposted by Artis3n
NEW: Elon Musk's friends have infiltrated the GSA and they're looking for ways to use White House credentials to access agency tech, potentially allowing them to remote into laptops, read emails, and more, sources say.

w/ @zoeschiffer.bsky.social

www.wired.com/story/elon-m...
Elon Musk's Friends Have Infiltrated Another Government Agency
Elon Musk’s former employees are trying to use White House credentials to access General Services Administration tech, giving them the potential to remote into laptops, read emails, and more, sources ...
www.wired.com
January 31, 2025 at 11:34 PM
Reposted by Artis3n
“Let’s be crystal clear about what’s happening: A private citizen with zero Constitutional authority is effectively seizing control of critical government functions.”- @mmasnick.bsky.social

www.techdirt.com/2025/01/31/e...
Elon’s Twitter Destruction Playbook Hits The US Government, And It’s Even More Dangerous
Remember how Elon Musk destroyed Twitter by ripping apart its infrastructure without understanding it? Now imagine that same playbook applied to the federal government. It’s happening, and th…
www.techdirt.com
February 1, 2025 at 1:56 AM
Reposted by Artis3n
So it appears Apple has "agreed to pay $95 million to settle a lawsuit alleging that its voice assistant Siri routinely recorded private conversations that were then shared with third parties and used for targeted ads."

But it was "unintentional," so don't worry about it...
Siri “unintentionally” recorded private convos; Apple agrees to pay $95M
Apple users may get $20 each for up to five Siri-enabled devices.
arstechnica.com
January 3, 2025 at 5:32 AM
Reposted by Artis3n
Mad Enough to Blog It™️ www.indignity.net/the-washingt...
December 10, 2024 at 4:46 AM
I don’t know why everyone puts up with turkey. We moved to making fried chicken for Thanksgiving a few years ago and have not looked back
November 28, 2024 at 11:48 PM
Reposted by Artis3n
NEW: The Polyfill supply chain attack was launched with the goal of redirecting users to thousands of fake Chinese gambling sites, according to security researchers.

FUNNULL, the company allegedly responsible, did not respond to multiple requests for comment.

techcrunch.com/2024/10/22/r...
Researchers link Polyfill supply chain attack to huge network of copycat gambling sites | TechCrunch
A supply chain hack targeting 100,000 websites was launched to redirect internet users to a massive online gambling network.
techcrunch.com
October 22, 2024 at 4:15 PM
Reposted by Artis3n
When you build vehicles with remote functionality, you get security and privacy problems like this. For the love of God, please stop building cars with the ability to lock/unlock, stop/start the engine from an app or a website.
www.wired.com/story/kia-we...
Millions of Vehicles Could Be Hacked and Tracked Thanks to a Simple Website Bug
Researchers found a flaw in a Kia web portal that let them track millions of cars, unlock doors, and start engines at will—the latest in a plague of web bugs that’s affected a dozen carmakers.
www.wired.com
September 26, 2024 at 6:41 PM
Reposted by Artis3n
Google and Microsoft recently admitted their emissions are soaring as they build out data centers to power the AI boom.

But analysis from The Guardian suggests the data center emissions of Google, Meta, Microsoft, and Apple are 662% higher than the companies are reporting.
Data center emissions likely 662% higher than big tech claims. Can it keep up the ruse?
Emissions from in-house data centers of Google, Microsoft, Meta and Apple may be 7.62 times higher than official figures
www.theguardian.com
September 16, 2024 at 4:38 PM
Reposted by Artis3n
Wow, the Linux kernel man pages were someone's side project??
September 16, 2024 at 6:13 PM
Reposted by Artis3n
The Economist has published a deeply-researched story about car bloat -- and it's very, very damning.

"For every life that the heaviest 1% of SUVs and trucks save, there are more than a dozen lives lost in other vehicles."

Well worth your time: www.economist.com/interactive/...
September 1, 2024 at 3:23 PM
Reposted by Artis3n
SpaceX's water deluge system repeatedly violated the Clean Water Act, per TCEQ and the EPA. These violations could well scupper SpaceX's bid to massively expand rocket launches at the site.

Great reporting as usual from @lorak.bsky.social

www.cnbc.com/2024/08/12/s...
SpaceX repeatedly polluted waters in Texas this year, regulators found
SpaceX violated environmental regulations in releasing pollutants into or nearby bodies of water in Texas, a state environmental agency found.
www.cnbc.com
August 12, 2024 at 7:08 PM
This account might get some views this week, I should probably look like I post (I don't)
August 6, 2024 at 11:07 PM
Reposted by Artis3n
KOSA passed the Senate today, which means we're a step closer to the government pressuring sites like this one to remove legal speech www.platformer.news/kosa-coppa-s...
July 30, 2024 at 11:38 PM
Reposted by Artis3n
Microsoft now says the CrowdStrike crash hit 8.5 million Windows machines. blogs.microsoft.com/blog/2024/07...

I think that's the biggest disruption of computers ever. (Though maybe not the worst, given NotPetya and WannaCry did more lasting damage to hundreds of thousands of machines.)
Helping our customers through the CrowdStrike outage - The Official Microsoft Blog
On July 18, CrowdStrike, an independent cybersecurity company, released a software update that began impacting IT systems globally. Although this was not a Microsoft incident, given it impacts our eco...
blogs.microsoft.com
July 20, 2024 at 6:42 PM
Reposted by Artis3n
It turns out reporting bugs and major issues with LLMs is just as frustrating if not more than reporting security bugs

Vendors go through stages of denial, push back, silent fixes, and hand-wringing statements about safety, but acceptance? Not quite

www.theregister.com/2024/07/10/v...
Vendors' response to my LLM-crasher bug report was dire
Fixes have been made, it appears, but disclosure or discussion is invisible
www.theregister.com
July 10, 2024 at 6:16 PM
Reposted by Artis3n
Microsoft has long downplayed its role in the 2020 "SolarWinds" attack — one of the largest cyberattacks in U.S. history — but a new ProPublica investigation reveals that the tech giant ignored warnings that could have stemmed the damage... 🧵
www.propublica.org/article/micr...
Microsoft Chose Profit Over Security and Left U.S. Government Vulnerable to Russian Hack, Whistleblower Says
Former employee says software giant dismissed his warnings about a critical flaw because it feared losing government business. Russian hackers later used the weakness to breach the National Nuclear Se...
www.propublica.org
June 13, 2024 at 10:52 AM
Reposted by Artis3n
This will ultimately be fine for what I am doing because I am not defending a high-value target against a determined attacker, but...

I would not trust any insider protection I could build on GitHub honestly. I'd just assume anyone with Write has the keys to the castle.

That's worrying.
June 8, 2024 at 11:55 AM
Reposted by Artis3n
Alito lied about the reason the flag was up because he didn’t know the couple had text messages establishing the date of when the incident took place. They were supporting the insurrection. www.nytimes.com/2024/05/28/u...
May 28, 2024 at 11:44 PM