Zara
banner
xara.one
Zara
@xara.one
neuroscientist. all things data and offsec

x: https://x.com/xedseraph
blog: https://www.xara.one/
Reposted by Zara
happy regular-day to all non-americans
November 27, 2025 at 12:52 PM
good read and always relevant, "how complex systems fail"
how.complexsystems.fail
How Complex Systems Fail
how.complexsystems.fail
October 24, 2025 at 11:24 AM
Reposted by Zara
We encountered a unique variant of the ClickFix malware technique. The catch? The user is social engineered into running a PowerShell script which downloads no files, makes no web requests, and embeds no payload.

Regardless, it's still able to install a malicious loader.

expel.com/blog/cache-s...
Cache smuggling: When a picture isn’t a thousand words
We recently observed an innovative campaign using the ClickFix attack tactic for cache smuggling. Here's what you need to know.
expel.com
October 8, 2025 at 4:38 PM
walking around the app versus walking around the compiler
vickiboykis.com/2025/09/09/w...
bernsteinbear.com/blog/walking...
September 29, 2025 at 10:01 AM
Reposted by Zara
Lectures, music, art, punk: Join us at the 39th Chaos Communication Congress and please submit! The deadline for all submissions for the stages is October 24. #39C3 will take place from December 27 to 30 www.ccc.de/en/updates/2...
CCC | Lectures, music, art, punk: Join us at the 39th Chaos Communication Congress!
Der Chaos Computer Club ist eine galaktische Gemeinschaft von Lebewesen für Informationsfreiheit und Technikfolgenabschätzung.
www.ccc.de
September 27, 2025 at 11:14 PM
Reposted by Zara
Putting the Secret Service's nonsense framing aside, it's a pretty cool discovery. Those black boxes are SIM gateways which you plug sim cards into and they act like virtual cell phones. They then route the access over the internet so people can use the sim cards from anywhere in the world.🧵
1/3
September 23, 2025 at 4:38 PM
The US vs EU debate is especially tiresome. It's simply not true that all people in Europe do is be on vacation all summer and sleep in all day long. At least not in my circle. And 9/10 times person doing this coal-posting himself is working on some degenerate gambling app
It’s the same shit as the US vs EU debate. Many European countries put a heavy focus on work/life balance and standard of living. Then tech bros are like “yeah well that’s why their economy sucks. If they focused on building, they could have tech conglomerates that shred the fabric of society”…why?
September 6, 2025 at 2:24 PM
Reposted by Zara
I love this take because I can’t think of a single leftist I know whose entire thing isn’t wanting to build stuff. And also as someone who works in tech, if i could undo everything Silicon Valley has built in the last decade or so I would.
There is a lot to hate about the politics of the silicon valley right, but they do actually want to build stuff, and I would prefer if the left didn't cede "we should be able to build stuff" to the right.
September 6, 2025 at 1:10 PM
we need more measured tones and less histrionics and doom-speak
August 30, 2025 at 9:12 AM
Reposted by Zara
To explain this photo a bit more: back then, most programming was done on paper (sometimes on special coding sheets), then punched onto cards/tape, then fed into a mainframe to be tested (& if necessary debugged). Counterintuitively, needing LESS computer time was the mark of a better programmer!
Anne Moffatt's memoir, The IT Girl, details the story behind the photograph with the baby—where Moffatt, then Technical Lead at Shirley’s company, Freelance Programmers, programmed the black box flight recorder for the Concorde
August 23, 2025 at 11:43 AM
some candor for tuesday. i wanna stress that i'm not anti AI and the gains in productivity because of it are undeniable but i also think we're in a bubble
August 19, 2025 at 4:17 PM
i use inoreader btw
xara.one Zara @xara.one · Aug 8
this account is now firmly RSS pilled. can't believe i used to live like a caveman
August 19, 2025 at 4:10 PM
Reposted by Zara
finally caught up with this paper and it was very accessible and had none of that appeal-to-emotion bit that many news organizations do when laying the case against frontier labs.
August 8, 2025 at 4:51 PM
this account is now firmly RSS pilled. can't believe i used to live like a caveman
August 8, 2025 at 4:20 PM
Reposted by Zara
Been working on some interesting mobile security research lately? 📱🔬 Submit it to Black Hat Europe, the CFP deadline is August 11. Speaker honorarium + travel to London 🎡💂🏼‍♀️🏙️ are covered!
August 6, 2025 at 9:22 PM
nice table even though the rest i've read a 100 billion times over the yrs but in the domain of public service, it's quote useful
Over the weekend I published an essay series on a question I've been thinking about for a while:

What does AI progress mean for medical progress?

It starts with this 500 word piece. If you want more after that, there are 10,000 words of forking paths:

blog.jacobtrefethen.com/ai-progress-...
What does AI progress mean for medical progress?
Rapid AI progress does not automatically mean rapid medical progress. If the point of AI progress is human flourishing, we must make other complementary investments too. Even with extremely powerful A...
blog.jacobtrefethen.com
August 6, 2025 at 3:33 PM
Reposted by Zara
Left out of the brief mention of Silicon Valley’s historical roots in Defense contracts is why it broke from the military: popular opposition to the Vietnam war and technologists who didn’t want their work to kill people. These are all political choices.
www.nytimes.com/2025/08/04/t...
Silicon Valley Enlists in the Business of War
www.nytimes.com
August 5, 2025 at 6:46 PM
my goat
My BSidesLV keynote is here. It touches on several difficult topics in our industry. Topics best discussed in person. As our industry spends this week in Vegas, please share this talk with your peers and discuss in person.

www.youtube.com/watch?v=4CD9...
BsidesLV 2025 - Breaking Ground - Monday
YouTube video by BSidesLV
www.youtube.com
August 6, 2025 at 11:02 AM
Reposted by Zara
Newsletter: In a media landscape dominated by algorithmic feeds that aim to manipulate and extract, sometimes the most radical thing you can do is choose to read what you want, when you want, without anyone watching over your shoulder.

Here’s how to use RSS.
www.citationneeded.news/curate-with-...
Curate your own newspaper with RSS
Escape newsletter inbox chaos and algorithmic surveillance by building your own enshittification-proof newspaper from the writers you already read
www.citationneeded.news
July 31, 2025 at 4:34 PM
they our here tryna steal my whole flow. no personal identity whatsoever, just leeching off of someone else's aura
have you had your bit stolen? you may be entitled to compensation
August 6, 2025 at 7:17 AM
Jamie Brandon new blog post alert

www.scattered-thoughts.net/writing/all-...
All the cool kids are doing it
www.scattered-thoughts.net
August 6, 2025 at 7:11 AM
heard about the news. time to listen to this song near and dear to my heart. the opening guitar riff is so filthy
July 22, 2025 at 8:26 PM
when I first learnt what a bain-marie was, I was insufferable for a while
sean learned the term ‘maillard reaction’ and now when we watch cooking shows he likes to very confidently say ‘that’s a solid maillard reaction’ or ‘nice maillard reaction on that’
July 20, 2025 at 11:03 AM
Reposted by Zara
I really appreciate a well-thought out product and full-line code completion in PyCharm had to be one of my favorites, I use it for logging all the time

vickiboykis.com/2025/07/16/m...
My favorite use-case for AI is writing logs
One of my favorite AI dev products today is Full Line Code Completion in PyCharm (bundled with the IDE since late 2023). It’s extremely well-thought out, unintrusive, and makes me a more effective dev...
vickiboykis.com
July 17, 2025 at 3:39 PM