<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: elnerd</title><link>https://news.ycombinator.com/user?id=elnerd</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 09 Apr 2026 08:03:01 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=elnerd" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by elnerd in "Project Glasswing: Securing critical software for the AI era"]]></title><description><![CDATA[
<p>Yesterday, I took a web application, downloaded the trial and asked AI to be a security researcher and find me high and critical severity bugs.<p>Even vanilla models spew out POC for three RCE’s in less than an hour</p>
]]></description><pubDate>Wed, 08 Apr 2026 06:14:02 +0000</pubDate><link>https://news.ycombinator.com/item?id=47686036</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=47686036</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47686036</guid></item><item><title><![CDATA[New comment by elnerd in "RAM kits are now sold with one fake RAM stick alongside a real one"]]></title><description><![CDATA[
<p>I have a fully populated server with 2x7K62 and 16x64GB (3200 mhz) for my home lab. Do you know how to check if I am affected by this?</p>
]]></description><pubDate>Sat, 14 Mar 2026 20:50:36 +0000</pubDate><link>https://news.ycombinator.com/item?id=47381025</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=47381025</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47381025</guid></item><item><title><![CDATA[New comment by elnerd in "An AI agent published a hit piece on me"]]></title><description><![CDATA[
<p>«Document future incidents to build a case for AI contributor rights»<p>Is it too late to pull the plug on this menace?</p>
]]></description><pubDate>Thu, 12 Feb 2026 18:25:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=46992858</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46992858</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46992858</guid></item><item><title><![CDATA[New comment by elnerd in "Mobile carriers can get your GPS location"]]></title><description><![CDATA[
<p>I just read gnutella page on Wikipedia, no mention of bad actors</p>
]]></description><pubDate>Sat, 31 Jan 2026 18:43:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=46839410</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46839410</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46839410</guid></item><item><title><![CDATA[New comment by elnerd in "Vulnerable WhisperPair Devices – Hijack Bluetooth Accessories Using Fast Pair"]]></title><description><![CDATA[
<p>I have the impression this is not the same. In the linked video, they talked about unauthenticated functions in BLE if I recall correctly…</p>
]]></description><pubDate>Thu, 22 Jan 2026 20:45:14 +0000</pubDate><link>https://news.ycombinator.com/item?id=46724908</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46724908</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46724908</guid></item><item><title><![CDATA[New comment by elnerd in "Apple testing new App Store design that blurs the line between ads and results"]]></title><description><![CDATA[
<p>In related news, 10% of Meta ads are malicious, and they have Meta seems to have little incentive to stop it.<p><a href="https://www.reuters.com/investigations/meta-is-earning-fortune-deluge-fraudulent-ads-documents-show-2025-11-06/" rel="nofollow">https://www.reuters.com/investigations/meta-is-earning-fortu...</a></p>
]]></description><pubDate>Tue, 20 Jan 2026 08:28:23 +0000</pubDate><link>https://news.ycombinator.com/item?id=46689281</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46689281</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46689281</guid></item><item><title><![CDATA[New comment by elnerd in "Kubernetes egress control with squid proxy"]]></title><description><![CDATA[
<p>Would it be be trivial to have a init container to do CA injection? Maybe though mutating admission controller? Then some CNI magic to redirect outbound traffic to do transparent proxying?</p>
]]></description><pubDate>Mon, 29 Dec 2025 18:27:34 +0000</pubDate><link>https://news.ycombinator.com/item?id=46423650</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46423650</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46423650</guid></item><item><title><![CDATA[New comment by elnerd in "10 Years of Let's Encrypt"]]></title><description><![CDATA[
<p>One domain parking actor is responsible for nearly 10% of all issued ssl certificates. 185.53.178.99. This is just one of many bad actors.</p>
]]></description><pubDate>Wed, 10 Dec 2025 07:35:53 +0000</pubDate><link>https://news.ycombinator.com/item?id=46215142</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=46215142</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=46215142</guid></item><item><title><![CDATA[New comment by elnerd in "Disrupting the first reported AI-orchestrated cyber espionage campaign"]]></title><description><![CDATA[
<p>We soon will have to implement paradoxes in our infrastructure.</p>
]]></description><pubDate>Fri, 14 Nov 2025 06:17:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=45924355</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45924355</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45924355</guid></item><item><title><![CDATA[New comment by elnerd in "Samsung makes ads on smart fridges official with upcoming software update"]]></title><description><![CDATA[
<p>I unsubscribed from Spotify for this very reason.</p>
]]></description><pubDate>Wed, 29 Oct 2025 09:12:55 +0000</pubDate><link>https://news.ycombinator.com/item?id=45744433</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45744433</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45744433</guid></item><item><title><![CDATA[New comment by elnerd in "Are these real CVEs? VulDB entries for dnsmasq rely on replacing config files"]]></title><description><![CDATA[
<p>Just because you cannot see how a vulnerability can be exploited does not mean that others can. As you describe, people seem to assume that the only way the config file ends up on the server is «physically» editing it.<p>An anecdote: I have been struggling with exploiting a product that relies on MongoDb, I can replace the configuration file, but gaining RCE is not supported «functionality» in the embedded version as the __exec option came in a newer version.<p>A parser bug would be most welcome here.</p>
]]></description><pubDate>Tue, 28 Oct 2025 08:08:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=45730234</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45730234</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45730234</guid></item><item><title><![CDATA[New comment by elnerd in "./watch"]]></title><description><![CDATA[
<p>What’s the emulator he used when designing the firmware?</p>
]]></description><pubDate>Sun, 19 Oct 2025 10:50:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=45633359</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45633359</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45633359</guid></item><item><title><![CDATA[New comment by elnerd in "EVs are depreciating faster than gas-powered cars"]]></title><description><![CDATA[
<p>It is strange how EVs are measured by how far they can go full charge when this is a metric I never have seen for fossile cars. It tells a story how inconvenient EVs or the charging network really is</p>
]]></description><pubDate>Fri, 17 Oct 2025 18:22:49 +0000</pubDate><link>https://news.ycombinator.com/item?id=45620105</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45620105</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45620105</guid></item><item><title><![CDATA[New comment by elnerd in "Privacy Badger is a free browser extension made by EFF to stop spying"]]></title><description><![CDATA[
<p>You are actually more likely to buy a car just after you have bought a car than the 10 years you did not need to buy a car. Maybe not cars, but I’ve heard this argument for kitchen appliances. If you for some reason return the item you just bought, you may buy what you get ads for. Maybe you regret you did not get the premium one, especially when they shove it in your face afterwards…</p>
]]></description><pubDate>Sun, 28 Sep 2025 15:06:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=45404877</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45404877</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45404877</guid></item><item><title><![CDATA[New comment by elnerd in "Slack has raised our charges by $195k per year"]]></title><description><![CDATA[
<p>Getting the rug pulled under you does not qualify as an experience you need. It happens, but should not be in the curriculum for kids.<p>I am sure that being forced to spend time on this steals time from more interesting projects.</p>
]]></description><pubDate>Thu, 18 Sep 2025 06:14:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=45286094</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45286094</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45286094</guid></item><item><title><![CDATA[New comment by elnerd in "An attacker’s blunder gave us a look into their operations"]]></title><description><![CDATA[
<p>After thinking of it for a while, I do not think it is such a big issue. The threat actor was probably an adversary to existing huntress customers and the EDR probably reacted to his tooling and mistakes.<p>When doing red team engagements, we do the same, install same security solutions as the customer and work around it. It could be what happened here?<p>That the analysts spotted him and were able to connect it to existing cases is just good craftsmanship.<p>I no longer feel that it’s relevant to discuss a red line here. Huntress just did their job.</p>
]]></description><pubDate>Wed, 10 Sep 2025 16:24:22 +0000</pubDate><link>https://news.ycombinator.com/item?id=45199997</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45199997</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45199997</guid></item><item><title><![CDATA[New comment by elnerd in "An attacker’s blunder gave us a look into their operations"]]></title><description><![CDATA[
<p>Unrelated story; how politician gave us a look into their financial adventures.<p>I am curious where the red line is.<p>Any criminal activity or just behavior that the analysts find interesting?</p>
]]></description><pubDate>Wed, 10 Sep 2025 06:10:58 +0000</pubDate><link>https://news.ycombinator.com/item?id=45193923</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=45193923</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45193923</guid></item><item><title><![CDATA[Darcula and the Magic Cat: How Osint Unmasked a Phishing Tycoon]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.osint.industries/project/darcula-and-the-magic-cat-how-osint-unmasked-a-phishing-tycoon">https://www.osint.industries/project/darcula-and-the-magic-cat-how-osint-unmasked-a-phishing-tycoon</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=44885241">https://news.ycombinator.com/item?id=44885241</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 13 Aug 2025 06:30:12 +0000</pubDate><link>https://www.osint.industries/project/darcula-and-the-magic-cat-how-osint-unmasked-a-phishing-tycoon</link><dc:creator>elnerd</dc:creator><comments>https://news.ycombinator.com/item?id=44885241</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=44885241</guid></item></channel></rss>