RSAC 2025 Sets A Dangerous Precedent for Cybersecurity Leadership

| | Commentary, Cybersecurity, rsa
(I posted this on LI, but I like to own my content, so am also posting here.) The cybersecurity community deserves better than what we’re witnessing at RSAC 2025, today. While Kristi Noem delivers today’s keynote, the absence of traditional cybersecurity leaders from agencies like NSA and CISA speaks volumes ... Read More

New geolocus-cli For ONYPHE’s Geolocus Database

| | Cybersecurity
ONYPHE has made available a free API and free MMDB download of their new Geolocus database. It provided IP address metadata in the form of: { "abuse": [ "[email protected]", "[email protected]", "[email protected]", "[email protected]" ], "asn": "AS14618", "continent": "NA", "continentname": "North America", "country": "US", "countryname": "United States", "domain": [ "amazon.com", "amazonaws.com", "aws.com" ... Read More

Trump’s Retaliation Against Chris Krebs — and the Cybersecurity Industry’s Deafening Silence

| | Commentary, Cybersecurity
Chris Krebs, the former director of the Cybersecurity and Infrastructure Security Agency (CISA), was fired by Donald Trump in 2020 for publicly affirming that the presidential election was secure and free from widespread fraud. Fast-forward to April 2025: Trump, now back in the White House, issued an executive order revoking ... Read More

American [Cyber] Sigh

| | Cybersecurity
A long, long time ago I can still remember How those CVEs would make me smile And I knew if I had my chance To patch a vuln or take a stance Maybe we’d be secure for a while But April ides made me shiver With each leaked memo and ... Read More
Call To Action: State Department Power Grab

Call To Action: State Department Power Grab

| | Commentary
(Re-posted from 47 Watch). The State Department, under the stewardship of Secretary Marco Rubio, has just dropped a bombshell determination that’s about as subtle as a foghorn in a library. You can/should review the Federal Register notice before continuing. There is a markdown formatted version of this on the 47 ... Read More

Xitter Hit by Major Cyberattack

| | Commentary, Cybersecurity
On March 10, 2025, Xitter experienced major service disruptions throughout the day. Users couldn’t access the platform on both mobile apps and the website. Here’s what happened and why it matters. What Happened? X suffered multiple waves of outages starting early Monday morning: First wave: Around 6:00 AM Eastern Time, ... Read More

Cruel And Vindictive By Design

| | Commentary
(This post originally published on 47 Watch) Recent administrative changes at the Social Security Administration (SSA) reveal a concerning pattern of decisions that disproportionately impact vulnerable populations while being implemented in ways that limit public awareness and oversight. Two specific policy reversals highlight this trend: the reinstatement of 100% benefit ... Read More

Senator Susan Collins’ Betrayal of Maine Demands Accountability

| | Commentary
I sent this as an op-ed to the Portland Press Herald but have no delusion they will ACK it or post even a small part of it. As a longtime Mainer and independent voter, I have watched Senator Susan Collins’ career with cautious optimism, hoping her self-branded image as a ... Read More

When Checks and Balances Fail: The State’s Role in Preserving Constitutional Order

| | Commentary
Today, my Senator — Susan Collins — failed in her oath and duty to uphold the Constitution. She voted for the appointment of a traitor to head national intelligence, and is supporting someone for director of the Office of Management and Budget (OMB) who openly wants to dismantle the foundations ... Read More
Reading PCAP Files (Directly) With DuckDB

Reading PCAP Files (Directly) With DuckDB

| | duckdb, pcap
We generate a ton of PCAP files at $DAYJOB. Since I do not always have to work directly with them, I regularly mix up or forget the various tshark, tcpdump, etc., filters and CLI parameters. While this is less of an issue in the age of LLM/GPTs (just ask local ... Read More