Elektrine lite

โ† Feed

Christoffer S.

nopatience@swecyb.com

<p>๐Ÿ‡ช๐Ÿ‡บ Father, husband, Swedish and cyber. Oh man, all the things cyber but mostly threat Intelligence. Dabble with Python. In the cybersecurity field as a professional since 2001.</p><p>Cybersecurity all the way... let&#39;s go!</p>

Posts

  • View post

    @Viss@mastodon.social Indeed. And I struggle, genuinely. LinkedIn has been good for me, but I struggle to understand it now. The algorithm seem to ... prioritize I don&#39;t know what. If someone has some other emotionally charged topic to talk about the algorithm loves it. But trying to be &quot;professional&quot; is a losing game. It&#39;s about memes, punchlines and attention grabbing content. As much else these days I guess. But Yeah, I&#39;m a little bit sad about it because I spent tim...

  • View post

    Time to revive @orlysec@swecyb.com soon I think. Have made some improvements to various components and I can now ... get the content (security advisories) from Fortinet PSIRT and others meaning I could push those types of content through Orlysec. But either way, would be fun to get Orlysec back in action.

  • View post

    Finally managed to find the time to upgrade the Mastodon instance version to v4.7.1. While it really didn&#39;t take all that much time, sometimes... life will make even the smallest bit of extra commitment feel like an almost insurmountable task. But now we&#39;re done and we&#39;re back on track with version tracking.

  • View post

    Let me tell you, there&#39;s nothing more stressful than your NAS starting to beep and telling you there is a critical failure on your storage pool. 4/5 drives working... I should always have a spare available... lesson learned. New drive ordered, NAS offline, do not dare to keep it online. Self-hosting... is all fun and games, until it gets real. :-)

  • View post

    I love CSS about as much as I love stepping in dog shit, driving amongst cyclists, cycling amongst drivers, attempting to convince my kids that TikTok is shite, and trying to explain to my wife what I do for a living. Love it.

  • View post

    Good morning, good afternoon and good evening fellow fedizens. What&#39;s going on? Saturday and the sun is shining, at least here in the northern parts of Europe. Expectations of the coming week is even hotter weather which suggests that the inflatable pool should be ... Inflated. What will you be doing?

  • View post

    For the past 2 months or so I&#39;ve been building something that I&#39;m both unable and unwilling to name yet. AI companion would be trivializing it, and calling it a human brain model would over complicate it. It&#39;s something else. I wanted to settle a curiosity after having tried OpenClaw (which didn&#39;t do it for me at all). I wanted to see how far I could push using LLMs to model my version of ... something with volition, emotions and a continuous memory system. I&#39;m not a neuros...

  • View post

    The IOCTA 2026 report has been published by Europol: https://www.europol.europa.eu/cms/sites/default/files/documents/IOCTA-2026.pdf #Cybersecurity

  • View post

    Spoke with a friend in the US regarding AI and LLMs. He said that in the startup, entrepreneur circles if you&amp;#39;re doing anything AI you&amp;#39;re assumed to be using a frontier model, there&amp;#39;s just no mental alternative. I&amp;#39;ve gone the other route and even assuming that frontier models will disappear and we&amp;#39;ll be left with smaller, &amp;quot;local&amp;quot;, models in 2-3 years time. I also find that frontier models are used for even the most trivial of tasks wher...

  • View post

    Experimenting with a column based &amp;quot;timeline&amp;quot; like view of articles. Each column is dynamic in what content appears based on a combination of topics and tags extracted from each article. I kinda like this, like Mastodon timelines but for articles ๐Ÿ™‚

  • View post

    It&amp;#39;s this kind of &amp;quot;threat landscape&amp;quot; monitoring I&amp;#39;ve always wanted. Curated topics, articles delivered to me when they appear and bundle with others talking about the same thing: Things are &amp;quot;finally&amp;quot; starting to come together.

  • View post

    Spring. There&amp;#39;s nothing quite like it. The magic of the season. The horror of time speeding up for a few months. The duality of it all. Sunshine and wonderful feelings, never ending rain and depression over a period soon gone. Sweden most certainly have seasons. A long and dark period from November until March. The snow can help lighten things up, but without it it&amp;#39;s ... dark. Come spring and things comes alive. People, nature, and promises of fulfilling dreams and ambitions....

  • View post

    Quite happy with an update for the: https://threat.cstromblad.com/dashboard where the &amp;quot;Threat Actor&amp;quot; details have been significantly updated. This is all derived automatically, no hands on keyboard to generate. Each named actor comes with extracted aliases, and a set of &amp;quot;Archetypes&amp;quot; which is basically my attempt to characterise the threat actor based on what documented &amp;quot;goals&amp;quot; they appear to have had. Each archetype lists the most recently...

  • View post

    ANDROID APP ๐Ÿ˜ƒ No, it&amp;#39;s not beautiful. No it&amp;#39;s not entirely useful. NO it doesn&amp;#39;t have any features beyond scrolling and viewing individual articles. But boy... it&amp;#39;s an Android app, talking to my API. BOOM!

  • View post

    RE: https://swecyb.com/@orlysec/116408668841445773 I thought it was curious with a JAVA RAT, and observed the following: Blackbasta JAVA RAT: https://blog.rapid7.com/2025/06/10/blacksuit-continues-social-engineering-attacks-in-wake-of-black-bastas-internal-conflict/

  • View post

    Very excited to try the new map coming to #ARCRaiders and by recent scout reports it looks to be a banger of a map! Once they are done with the new map, I&amp;#39;m hoping for an ambitious update to loot and gear. It needs to feel more &amp;quot;special&amp;quot; to loot, to find cool and unique gear. Why not &amp;quot;sets&amp;quot; granting special abilities? Or rad attachments? Basically we need moaaaar of everything, kinda... https://arcraiders.com/news/riven-tides-map-scout-report

  • View post

    Has anyone experimented with intent based SQL query statements? I did this, because of... reasons. Have all this semi-structured data in JSON. Lots of fields for different purposes. Used a cheap LLM to generate descriptions of what each field contains. Now I have a table with fields and a textual description for what is contained (typically) within the field. Then I used an LLM to translate user intent to appropriate fields and constructed appropriate SQL queries based on best match for the...

  • View post

    Alright friends, I&amp;#39;ve got a real need. I want a collaboration suite for myself and a few others. I don&amp;#39;t want Teams, or Slack. Ideally I&amp;#39;d like a hosted option in Europe as I will not have time to manage a self-hosted installation, it&amp;#39;s not where my energy should be directed right now. Collaboration, for me, means Chat + Video, calendars and simple file-sharing options. I&amp;#39;m currently using Proton privately, and could consider using this for a business a...

  • View post

    I&amp;#39;ve got roughly 18 months worth of collected OSINT (from primary sources) which has been processed quite extensively. Last night and today I&amp;#39;ve been spending time exploring ways to ... visualize the threat landscape based on what I have. Here&amp;#39;s the most recent iteration of &amp;quot;my dashboard&amp;quot;. Each individual little bar is clickable. It will list the articles relevant for that week/bar, the most popular tags for the articles. The purpose is to give me a d...

  • View post

    I&amp;#39;ve finally gotten around to adding the final touches to the @orlysec &amp;quot;bot&amp;quot; account. It should very soon begin to write more Toots. And just to reiterate. The ORLYSEC account will publish from a very strict set of sources, always attributing to original source and no redirects, tracking links etc. The very purpose of the account is to contribute a fairly high-quality feed of stuff that you probably would like to read/skim. Let me know if there&amp;#39;s something yo...

  • View post

    RE: https://swecyb.com/@orlysec/116252614096584883 Amazon TI team does something I have not seen any other team do - explain whether or not an IOC is still valid. That sort of &amp;quot;transparency&amp;quot; of IOCs really should inspire others to do the same.

  • View post

    Oh, exciting progress on my new processing/analytical &amp;quot;engine&amp;quot;. I&amp;#39;ve built a system to break down complex processing and analytical jobs into more &amp;quot;atomic&amp;quot; tasks. These tasks are defined as simple JSON-data structures and can then be sent to an LLM-engine of choice. For example one thing I often do when reading articles it to try and figure out which entities are the attackers and victims. Then I tag this in order to be able to quickly understand co...

  • View post

    Whenever there is a recent attack campaign reported across multiple articles I always wish for there to be a &amp;quot;sum of all the pieces&amp;quot; to try and get a better understanding. I tried something new today with regards to TeamPCP and the recent CanisterWorm and Kubernetes Wiper campaign. Let me know if you like the format. https://cstromblad.com/posts/threat-actor-profile-teampcp/ #ThreatIntel #Cybersecurity

  • View post

    And now #Swecyb is running the latest version of Mastodon which is version v4.5.8. A few security fixes, changes and other fixes. Security - Fix insufficient checks on quote authorizations (GHSA-q4g8-82c5-9h33) - Fix open redirect in legacy path handler (GHSA-xqw8-4j56-5hj6) - Updated dependencies https://github.com/mastodon/mastodon/releases/tag/v4.5.8