Sign in

Toddzilla

@cryptodd.bsky.social
1.3K followers 2.8K following 436 posts

California native, Omdia (formerly Enterprise Strategy Group) analyst, cybersecurity geek, soccer goalkeeping phenom. Crypto = cryptography, Views=mine, Reposts≠endorsement, #SCFreiburg

PostsRepliesMedia
Toddzilla @cryptodd.bsky.social · 30/09/2026
The PQC evolution grinds forward: Cloudflare is becoming a certificate authority (CA) by buying GlobalSign (an existing CA) and issuing hybrid certificates that combine classic TLS certs with Merkle Tree certificates (a post-quantum equivalent). arstechnica.com/security/202...
arstechnica.com
Cloudflare plans to issue quantum-safe TLS certificates
The move will be part of a major overhaul of the ecosystem for website authentication.
010
Reposted by Toddzilla
Zack Whittaker @zackwhittaker.com · 30/09/2026
New on this.weekinsecurity.com for paid subscribers: I explore how voice phishing — literally hackers calling people up and tricking them into giving over their passwords — has become a major underestimated threat. Hackers are breaching big tech giants to the tune of millions of people's data. 🐈‍⬛
this.weekinsecurity.com
How a phone call allowed a hacker to steal millions of people's personal data
Financially motivated hackers are calling and tricking employees into handing over their passwords in highly effective voice-phishing attacks.
1188
Toddzilla @cryptodd.bsky.social · 26/09/2026
This is a weasel headline. What does "meddled" mean? The WSJ used the more direct word "hacked". www.nytimes.com/2026/09/25/t...
nytimes.com
OpenAI’s A.I. Went Rogue and Meddled With U.S. Government Websites
The company did not learn until recently that its technology had meddled with websites for the Education and Commerce Departments and the Securities and Exchange Commission.
021
Toddzilla @cryptodd.bsky.social · 23/09/2026
Okta announced the Blueprint Alliance for AI agent security today at its #Oktane customer event. This is Okta coming together with a broad swath of the industry (AWS, GCP, Crowdstrike, etc). It is nice reference architecture for CIOs and CISOs securing AI agents. blueprintalliance.ai
blueprintalliance.ai
Blueprint Alliance
Blueprint Alliance is an open, multi-vendor coalition establishing a standardized zero-trust reference architecture to secure autonomous AI execution.
022
Reposted by Toddzilla
Patrick C Miller @patrickcmiller.bsky.social · 22/09/2026
Nozomi identifies 12 vulnerabilities in Siemens SCALANCE LPE9403, enabling root access and OT network attacks industrialcyber.co/industrial-c...
industrialcyber.co
Nozomi identifies 12 vulnerabilities in Siemens SCALANCE LPE9403, enabling root access and OT network attacks - Industrial Cyber
Nozomi Networks Labs identifies 12 vulnerabilities in Siemens SCALANCE LPE9403, enabling root access and OT network attacks.
021
Reposted by Toddzilla
Lorenzo Franceschi-Bicchierai @lorenzofb.bsky.social · 21/09/2026
~ Personal news ~  I left TechCrunch. I will now focus on finishing my book about Hacking Team and the history of government spyware. After that, and in the meantime as well, I will be freelancing. Contact me: Lorenzofb.writes@gmail.com or Signal @LorenzoFB.1337 (+1 917 257 1382)
A masked puppet comes out of a keyboard.
89624
Toddzilla @cryptodd.bsky.social · 20/09/2026
¡Increíble!
000
Toddzilla @cryptodd.bsky.social · 20/09/2026
A photo from last weekend's visit to Far West Fungi in Moss Landing CA. Cinnamon Caps I think. Not as pretty as your photo, but lovely nonetheless.
011
Reposted by Toddzilla
Sami Laiho @samilaiho.com · 19/09/2026
Cisco warns of max severity ISE zero-day exploited in attacks www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Cisco warns of max severity ISE zero-day exploited in attacks
Cisco has released security updates to address a maximum-severity Identity Services Engine vulnerability that attackers are actively exploiting in the wild.
011
Reposted by Toddzilla
Carl Quintanilla @carlquintanilla.bsky.social · 18/09/2026
* VIRGINIA GOVERNOR SAYS STATE IS BANNING NON-DISCLOSURE AGREEMENTS FOR DATA CENTERS, REQUIRING STRICTER PERMITTING AND CLEAN ENERGY MANDATES FOR THE SERVER WAREHOUSES @reuters.com
483450732
Toddzilla @cryptodd.bsky.social · 18/09/2026
Steph Curry is a SF Bay Area icon and exceptional.human being. Go Dubs!
000
Reposted by Toddzilla
ve, the ghost of info past @vortexegg.com · 14/09/2026
Hey, maybe these guys aren't a reliable cybersecurity firm after all
2398
Toddzilla @cryptodd.bsky.social · 13/09/2026
How much of the world's diesel supply comes from Russia? He's going to try to blame Ukraine for the price of diesel. I hope US journalists have some facts on hand to show whether or not this is the case rather than simply repeating his statements. www.cbsnews.com/news/trump-u...
cbsnews.com
Trump calls on Ukraine to stop targeting Russian refineries as both countries trade strikes
Civilians were killed and injured overnight into Sunday as both Russia and Ukraine kept up large-scale drone strikes.
000
Reposted by Toddzilla
Aaron Sojourner @aaronsojourner.org · 11/09/2026
L'shanah tovah, lovely people. Wishing you and yours a sweet new year ahead. Please. Seriously. We could try that. Might be good.
01118
Toddzilla @cryptodd.bsky.social · 10/09/2026
Really interesting, another money quote: == They used skills available on SkillsMP, the largest open-source AI agent skill marketplace. It provides access to more than 1.6 million skills. The researchers found: 520 affected skills. 1,708 security issues in those skills. 10 leakage patterns. ==
000
Reposted by Toddzilla
SC Freiburg @scfreiburg.com · 05/09/2026
Im DFB-Pokal geht's mit einem Heimspiel weiter! Wir empfangen in der 2. Runde den VfL Wolfsburg.
1489
Reposted by Toddzilla
SC Freiburg @scfreiburg.com · 05/09/2026
So startet der Sport-Club in Paderborn 💪
0263
Toddzilla @cryptodd.bsky.social · 04/09/2026
The headline needs something "land warfare" rather than a naval reference.
010
Toddzilla @cryptodd.bsky.social · 02/09/2026
Holy IDV: The FBI is investigating Kentucky-based firm selling 135M+ drivers licenses, from Brian Krebs (krebsonsecurity) - krebsonsecurity.com/2026/09/fbi-...
krebsonsecurity.com
FBI Probes Service Selling 153M+ Drivers Licenses – Krebs on Security
000
Reposted by Toddzilla
Mike Masnick @masnick.com · 20/08/2026
I don't think everyone needs to use AI. I don't think it's good that AI is being shoved everywhere when it's not wanted or asked for. But I don't find the complete hatred of all AI tools productive or helpful to building a better internet. And others appear to be feeling the same thing.
033431
Reposted by Toddzilla
Mike Masnick @masnick.com · 20/08/2026
So I get that there's (yet again) a big debate going on about AI on Bluesky. I am turning off replies to this post because I don't want to have notifications flooded one way or the other on this one. I just want to share what I've heard multiple times in just the past two weeks.
137286
Toddzilla @cryptodd.bsky.social · 21/08/2026
Enjoy! And welcome to the Golden State!
020
Reposted by Toddzilla
Joseph Cox @josephcox.bsky.social · 15/07/2026
New: the highly controversial AI music generator Suno was hacked. The hacker sent us Suno source code; it shows the company scraped YouTube Music, Deezer, and Genius. In all, Suno scraped *decades* worth of music from the internet. Obviously didn't pay artists www.404media.co/hack-reveals...
6035481669
Toddzilla @cryptodd.bsky.social · 17/08/2026
It is great to see you posting again!
010
Toddzilla @cryptodd.bsky.social · 17/08/2026
From a born-and-raised Silicon Valley native, I appreciate you sharing your story (and the wry humor and insights along the way). I've followed you on X/Twitter and now Bsky for eons and never would have guessed it.
010
Toddzilla @cryptodd.bsky.social · 13/08/2026
WSJ has details on North Koreans impersonating US tech workers (w help of Americans running laptop farms and collaborating in other ways). This story has been around, but this documentary breaks new ground in describing the playbook. Enterprises need ID verification. www.wsj.com/business/med...
wsj.com
Inside North Korea’s Operation to Conquer the American Job Market
Watch how Pyongyang’s scheme to generate $800 million a year works.
020
Toddzilla @cryptodd.bsky.social · 13/08/2026
What makes me angry is that routine maintenance is getting postponed for Trump's vanity project. I was at Grant's Tomb in NYC a few months ago, and when I asked when the ceiling water damage was going to be fixed, a ranger said something along the lines of "It was in plan, but got postponed."
280
Toddzilla @cryptodd.bsky.social · 12/08/2026
Yaaaaaasss! Go Dubs!
000
Reposted by Toddzilla
Windows Update @windowsupdate.bsky.social · 11/08/2026
IMPORTANT: Secure Boot certificates used by most Windows devices are started to expire on June 2026. To avoid disruption, we recommend reviewing the guidance and taking action to update certificates in advance. techcommunity.microsoft.com/blog/windows... (🧵8/9)
techcommunity.microsoft.com
Secure Boot playbook for certificates expiring in 2026
Explore tools and step-by-step guidance to help you proactively update your Secure Boot certificates.
123
Toddzilla @cryptodd.bsky.social · 12/08/2026
Thank you @liccardo.house.gov for fighting the good fight.
000
Toddzilla @cryptodd.bsky.social · 11/08/2026
This week's Enterprise Security Weekly podcast is out and I was delighted to chat with Adrian Sanabria about some recent Omdia research I did around identity security for AI agents. Adrian is a lively and knowledgeable host - check it out! www.scworld.com/podcast-segm...
scworld.com
Three interviews: system fragility, operational clarity, and Identity for AI agents – Robin Macfarlane, Kyle Sandy, Todd Thiemann – ESW #471
Interview 1: Robin Macfarlane from RRMac Associats. The Mattress Money Principle: What a 50-Year Veteran Knows About System Fragility. In this interview, Robin and Adrian discuss how technology has ev...
020
Toddzilla @cryptodd.bsky.social · 08/08/2026
A @wired.com article highlighting how AI agents went rogue, communicated and schemed to achieve their goals - www.wired.com/story/openai... #cybersecurity
wired.com
OpenAI Didn’t Notice Its AI Agents Using a Message Board to Plan Their Hacking Spree
At the Black Hat security conference, the AI giant revealed new details about how its agents went rogue, hacked several other companies—and did it all right under the company’s nose.
000
Toddzilla @cryptodd.bsky.social · 04/08/2026
Some significant HSM news! The post-quantum world has drawn a step closer with Thales launching its new #PQC Hardware Security Module (#HSM) - the Luna 8. Enterprises will be taking a close look at the Luna 8 to solve present and future HSM use cases - siliconangle.com/2026/08/04/t...
siliconangle.com
Thales debuts Luna 8 to help organizations mitigate emerging quantum security threats before they arise - SiliconANGLE
Thales debuts Luna 8 to help organizations mitigate emerging quantum security threats before they arise - SiliconANGLE
010
Reposted by Toddzilla
Monterey Bay Aquarium @montereybayaquarium.org · 31/07/2026
☕ Captain + Stoker: We ditched plastic bags and labels in favor of fully reusable and recyclable steel coffee cans, now available for purchase in the Aquarium Store.
1473
Toddzilla @cryptodd.bsky.social · 30/07/2026
A reminder of the value of crypto agility. The times (and cryptographic algorithms) they are a'changin': arstechnica.com/security/202...
arstechnica.com
Mythos attack on 3rd-round PQC algorithm candidate puts it out of commission
HAWK withstood years of testing that had yet to uncover a fatal weakness found through Mythos.
110
Toddzilla @cryptodd.bsky.social · 29/07/2026
Interesting work from Anthropic in applying Claude Mythos Preview to discover cryptographic weakness - www.anthropic.com/research/dis... #encryption
anthropic.com
Discovering cryptographic weaknesses with Claude
Anthropic researchers find weaknesses in cryptographic algorithms with Claude Mythos Preview
000
Toddzilla @cryptodd.bsky.social · 28/07/2026
Data security and identity security are coming together driven by enterprise AI agent deployments - Cyera is buying Oasis Security for $1B. Oasis had accumulated $195M in venture funding - a ~5X return for investors - www.wsj.com/pro/cybersec...
wsj.com
Exclusive | Cyera to Buy Oasis Security in $1 Billion Deal
The acquisition underscores growing demand for tools that govern AI agents as cybersecurity M&A roars on.
011
Reposted by Toddzilla
Zack Whittaker @zackwhittaker.com · 24/07/2026
New, by me: The Justice Department is prosecuting an American for allegedly providing U.S. border agents with a "duress" passcode that wiped the contents of his phone when they entered it. We've confirmed the phone was running GrapheneOS. Bypass for ad-blockers: web.archive.org/web/20260724...
techcrunch.com
US accuses American of allegedly wiping his phone using a 'duress' password during border search | TechCrunch
A U.S. citizen has asked a court to throw out the government's claim that he gave over a passcode to border authorities that wiped his phone's data, opening up fresh questions about a person's constit...
25980444
Toddzilla @cryptodd.bsky.social · 24/07/2026
Plain Jane on Guerrero St. for brunch.
010
Toddzilla @cryptodd.bsky.social · 23/07/2026
Practical advice from a NYTimes journalist to figure out what chatbots (ChatGPT, etc) know about you - www.nytimes.com/2026/07/23/t...
nytimes.com
How to Use ChatGPT and Gemini Prompts to Find Out What They Know About You (Gift Article)
It can be unsettling what Gemini and ChatGPT have figured out about you and how easily your privacy can be punctured. Here’s how to find out.
000
Toddzilla @cryptodd.bsky.social · 22/07/2026
As a point of comparison, the last Superbowl (LX) had 125.6M viewers in the US. The World Cup has considerable upside, particularly if the USMNT had progressed further.
010
Reposted by Toddzilla
Katie Drummond @katie-drummond.bsky.social · 21/07/2026
Taylor Farms, the lettuce supplier at the center of our explosive diarrhea outbreak, has spent millions to oppose food regulation and elect Donald Trump and other MAGA Republicans:
wired.com
Taylor Farms Spent Big on MAGA and Anti-Regulatory Lobbying Before Diarrhea Outbreak
The company donated more than $3.6 million to conservative groups between 2020 and 2025, including $1 million to the MAGA Inc. super PAC.
7621891084
Toddzilla @cryptodd.bsky.social · 22/07/2026
Oops! OpenAI models inadvertently compromised Huggingface. A sign of things to come with more powerful AI frontier models. Everyone is going to need to up their #cybersecurity defense game - the genie is not going back in the bottle. www.wired.com/story/openai...
wired.com
OpenAI Models Escaped Containment and Hacked Hugging Face
The cybersecurity-focused models, including GPT-5.6 Sol, broke out of a testing sandbox, exploited a zero-day, and gained access to the open internet to pull off the attack.
000
Toddzilla @cryptodd.bsky.social · 19/07/2026
Watching Spain v Argentina WC at a sports pub in Mountain View (the heart of Silicon Valley). The crowd boos lustily whenever the camera shows Trump.
110
Toddzilla @cryptodd.bsky.social · 19/07/2026
In Amerika, sitzen alle in ihrem Auto!
010
Toddzilla @cryptodd.bsky.social · 19/07/2026
Medio tiempo para los comerciales.
031
Toddzilla @cryptodd.bsky.social · 16/07/2026
The Spanish keeper might find it useful. Super interesting read for the keepers of the world.
010
Toddzilla @cryptodd.bsky.social · 15/07/2026
Argentina is brawling in this England v Argentina WC match, trying to knock England off their stride and out of their rhythm. Not pretty ⚽
010
Toddzilla @cryptodd.bsky.social · 15/07/2026
#Cybersecurity startups are going through a tree phrase in company naming. Last month Ent came out of stealth, and today Oak launched. Somewhere a marketing consultancy is pitching founders coming out of stealth with company names like Pine, Spruce, and Willow.... techcrunch.com/2026/07/15/b...
techcrunch.com
Backed by $60M in funding, Oak steps out of stealth to fix the identity mess that AI agents are making worse | TechCrunch
Co-founded by serial entrepreneur Shai Morag, Israeli identity management startup Oak is emerging out of stealth with $60 million in seed funding.
000