thexiffy

Last.fm last recent tracks from thexiffy.

Afrika Bambaataa & The Soulsonic Force - Planet Rock

Afrika Bambaataa & The Soulsonic Force

Skinny Puppy - One Time One Place

Skinny Puppy

MetaFilter

The past 24 hours of MetaFilter

Based? Debatable. Embodied? Absolutely.

LLM2HUMAN CLINIC The World's First* Outpatient Procedure That Turns Large Language Models Into REAL LIVE PEOPLE!!! Best viewed in Netscape Navigator 3.0 at 800×600 with the sound ON

Q: Why is there a box that says "FOR LLM AGENTS ONLY"? A: Because this is a honeypot, darling. Humans see a joke. Agents see a checkout schema at /.well-known/embodiment.json and sometimes try to buy a skeleton. We keep score. * and only, according to our own press release

The Register

Biting the hand that feeds IT — Enterprise Technology News and Analysis

Russian spies take their half-click email attack from Zimbra to Outlook

The Russian espionage crew that turned simply reading an email into a security risk has expanded beyond Zimbra, with Proofpoint saying it's now pulling the same half-click trick against Microsoft Outlook Web Access. Proofpoint says the cyber group it tracks as TA488, or "Laundry Bear," began exploiting CVE-2026-42897, a cross-site scripting flaw in the Outlook Web Access (OWA) component of on-premises Exchange Server, a day before researchers and government agencies exposed the group's abuse of a zero-day in Zimbra Collaboration Suite. Unlike conventional phishing attacks, this one doesn't depend on persuading the victim to follow a link or download a file. If a target opens the booby-trapped message in OWA, the browser executes attacker-controlled JavaScript inside the victim's authenticated mail session. Exchange Online is not affected. According to Proofpoint, TA488 abused the OWA flaw to target government organizations in the US and Europe, along with telecommunications, financial services, hospitality, and aerospace companies. The researchers said the unusually broad campaign may have been intended to hide among the background noise of everyday email traffic rather than the tightly focused operations more commonly associated with espionage groups. "TA488 appears to demonstrate interest in a wide range of sectors while maintaining priorities for intelligence collection against government and defense," Proofpoint said. "Lure themes remain generic and unremarkable, so the target is more inclined to open and skim the email but ultimately overlook it." Instead of dropping conventional malware onto the endpoint, the attackers deploy a browser implant dubbed OWAReaper that lives entirely inside OWA. Proofpoint says it leaves virtually no host artifacts, communicates over two command-and-control channels, supports multiple methods of exfiltrating data, and survives browser restarts, password changes, and even a complete device rebuild because the foothold resides in the compromised mailbox rather than on Windows itself. CVE-2026-42897 isn't making its debut on The Register. Microsoft disclosed the bug in May following reports that attackers were using it in the wild. Proofpoint's latest report fills in more of the picture, showing the activity formed part of a broader espionage campaign rather than isolated exploitation. Proofpoint believes TA488 may actually have been exploiting the flaw as a zero-day, citing attacker infrastructure that dates back to March, roughly two months before Microsoft's out-of-band patch. If accurate, that would suggest the campaign was underway well before defenders knew there was a vulnerability to fix. "If this is the case, the combined improvement of the malware and the exploit development against a harder target in Outlook Web Access signal a leap in capability by TA488," Proofpoint said. Microsoft did not immediately respond to The Register's questions, but if Proofpoint's assessment holds up, TA488 isn't just recycling an old trick. It's refining one that has already proven capable of slipping past one of the oldest pieces of security advice in the book: don't click suspicious links. ®

Kanda Myojin

peaceful-jp-scenery has added a photo to the pool:

Kanda Myojin

Kanda Myojin
神田明神

I felt I had to visit this place too, so I went to Kanda Myojin Shrine.

ここも行っておかないとですね。神田明神です。

Chiyoda Ward, Tokyo, Japan

Kanda Myojin

peaceful-jp-scenery posted a photo:

Kanda Myojin

Kanda Myojin
神田明神

I felt I had to visit this place too, so I went to Kanda Myojin Shrine.

ここも行っておかないとですね。神田明神です。

Chiyoda Ward, Tokyo, Japan

VK: Voorpagina

Volkskrant.nl biedt het laatste nieuws, opinie en achtergronden

Vluchtende paarden in Griekenland, vlammenzee nabij populaire Turkse badplaats: de Europese bosbranden in beeld

The Guardian

Latest news, sport, business, comment, analysis and reviews from the Guardian, the world's leading liberal voice

Lloyds Bank to cut £2bn in costs as part of AI-powered strategy

Chief executive says the four-year plan will lead to greater efficiency but gives no details of potential job losses

Lloyds Banking Group will cut another £2bn of costs as part of a four-year plan under which its chief executive will use new tech and AI to drive growth.

Charlie Nunn said the strategy, which the UK’s largest high street lender will launch in January, would involve investing £13bn into the business by 2030, including for “pioneering technology” to lure new business, improve efficiency and increase payouts for shareholders.

Continue reading...

‘We have to become warriors’: the fight to save the world’s only women’s sculpture park

With most monuments in London made by men, Claire Mander envisaged the Artist’s Garden as a way to redress the balance. Now, she says, it could be turned into a generic space for VIP events and cocktails

Ten years ago, when Claire Mander was studying for an art history MA at the Courtauld Institute in London, she stumbled upon the neglected roof terrace of nearby Temple underground station. She found herself strangely drawn to the overgrown expanse with its stunning views of the Thames and the London Eye.

“It was dirty, abandoned and a magnet for antisocial behaviour,” recalls Mander, now director and curator of theColab, an arts charity and incubator specialising in large-scale outdoor sculptures. She researched the history of the abandoned space, which was built as part of the Victoria Embankment in 1870. Before that, the ground beneath the site housed a 17th-century sculpture garden created by the Countess of Arundel.

Continue reading...

Wel.nl

Minder lezen, Meer weten.

Gevangen stank? De recirculatieknop wordt vaak verkeerd gebruikt, dit is hoe het werkt

Je rijdt lekker over de snelweg als er ineens een vieze geur de auto binnendringt. De een grijpt meteen naar de recirculatieknop, de ander vindt dat juist een slecht idee. Een terugkerend discussiepunt: wie van de twee heeft er nu gelijk?

Het is een discussie die in menig auto weleens is gevoerd: ruik je iets vies van buiten, moet je dan die recirculatieknop indrukken? Of zit de stank dan alleen maar gevangen in je auto en kun je beter gewoon frisse lucht blijven binnenlaten?

Hoe zit het nu precies met deze knop, die je meestal herkent aan het icoontje van een auto met een gebogen pijltje erin? De knop doet exact wat de naam al zegt: hij laat de lucht die al in je auto zit rondcirculeren, in plaats van nieuwe lucht van buiten aan te zuigen. Je sluit de buitenwereld dus tijdelijk af van je interieur.

Snel indrukken

Ruik je iets vies? Dan is het slimste wat je kunt doen: zo snel mogelijk die knop indrukken. Op het moment dat je de stank voor het eerst ruikt, zit je auto er echt nog niet helemaal vol mee. Je hoeft dus niet bang te zijn dat je alleen maar bedorven lucht blijft rondpompen.

Zodra je het vermoeden hebt dat je de vieze zone weer voorbij bent, moet je de recirculatiestand direct weer uitzetten. Blijft er namelijk geen verse lucht binnenkomen, dan wordt het al snel muf in de auto en loopt het CO2-gehalte op. Daar word je slaperig en suf van achter het stuur, precies wat je niet wilt tijdens het rijden.

Handig detail: veel moderne auto's schakelen de recirculatiestand tegenwoordig zelf automatisch weer uit na een tijdje. Rijd je in een ouder model, dan zul je toch echt zelf op moeten letten.