Sign in

hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈

@hrbrmstr.dev
3.3K followers 750 following 5.6K posts

a.k.a. boB Rudis • 🇺🇦 Pampa • Don't look at me…I do what he does—just slower. #rstats #js #duckdb #goavuncular•👨‍🍳•✝️• 💤• dailydrop.hrbrmstr.dev • Maine🦞

PostsRepliesMedia
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 09/08/2026
@f2harrell.bsky.social Hey Dr. Harrell! Did you recently start using your Mastodon account? — mastodon.social/@Frrell There's been a spate of fake accounts and account takeovers of RStats folks.
mastodon.social
Frank Harrell (@Frrell@mastodon.social)
88 Posts, 110 Following, 4 Followers · Professor of Biostatistics, Vanderbilt University School of Medicine Expert Biostatistics Advisor, FDA Center for Drug Evaluation and Research Member, R Foundati...
102
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Tanya Shapiro @tanyashapiro.bsky.social · 15/07/2026
oh no, the bots have arrived on here welp, it was only a matter of time
151
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 05/07/2026
way too little. way too late.
030
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 12/06/2026
With all of the [Mini] Shai Hulud ops of just the past few months, are there any stories of SBOMs "saving" or at least "radically helping" orgs get a handle on exposure and remediation?
020
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 31/05/2026
The HoneyLabs blog (which you shld be 👀 if you're a defender) — honeylabs.net/blog — didn't have a detectable RSS feed so I made a programmatic one via @val.town — hrbrmstr--019e7d68e38e747786809794f66af76f.web.val.run 1 of now 5 programmatic RSS-feed Vals. It takes less than 90s to make new ones.
honeylabs.net
Blog · HoneyLabs
Findings, write-ups, and notes from the HoneyLabs honeypot network.
040
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Robert Evans (the Only Robert Evans) @iwriteok.bsky.social · 04/05/2026
Knowledge Fight was and remains one of the all-time great podcasts. It is the rarest kind of thing: a show that entertains while having a real-life impact. Dan and Jordan helped defang and neuter elements of a powerful propaganda network. Excited to see what both do next.
872742487
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Lynn Cherny @arnicas.bsky.social · 02/05/2026
Alright!- don't know if your heart was "no one will notice, you're right" or "we're supporting you staying in and writing it" 😅 So latest free newsletter, with many three.js web games, some more splats/3d stuff, image model that can't do sprites, narrative news open.substack.com/pub/arnicas/...
open.substack.com
TITAA #78: Little City Builders
Three.js Cities - 360 Images & Splats - Variorum - FlipBook - Talkie - LLM Philosophy
174
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 13/04/2026
I am late to the 0900 time, but actually sleeping kind of throws off the "todo" schedule a bit. Today, I start as a Distinguished Engineer @ @censys.bsky.social !!!!! More info on the "what" I'll be doing when a certain partner in crime crosses the threshold in a few weeks. #GuessWho
080
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 13/04/2026
😠 #RStats Core member Tomáš Kalibera passed away.
082
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 10/04/2026
$ rm -rf $CURRENT_GIG $ sleep $(( $(TZ="America/New_York" date -d "2026-04-13 09:00:00" +%s) - $(date +%s) )) && echo $NEW_GIG
1120
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 08/01/2026
New research: Threat actors are actively mapping LLM infrastructure. Our Ollama honeypots captured 91K+ attack sessions. One campaign systematically probed 73+ model endpoints—GPT-4o, Claude, Llama, Gemini, and more—across 80K sessions in 11 days. www.greynoise.io/blo... 1/2
greynoise.io
Threat Actors Actively Targeting LLMs
Our Ollama honeypot infrastructure captured 91,403 attack sessions between October 2025 and January 2026. Buried in that data: two distinct campaigns that reveal how threat actors are systematically mapping the expanding surface area of AI deployments.
150
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 08/01/2026
That which was originally a private customer threat intel share in our weekly At The Edge reports is now a public blog post! www.greynoise.io/blo... This is a deep dive into a massive reconnaissance campaign that unfolded between December 25–28. 1/4
greynoise.io
The Ransomware Ground Game: How A Christmas Scanning Campaign Will Fuel 2026 Attacks
Over four days in December, one operator scanned the internet with 240+ exploits, logging confirmed vulnerabilities that could power targeted intrusions in 2026.
110
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 01/01/2026
#macOS folks!! Today is a *great* day to: ```bash brew update && brew upgrade && brew cleanup && brew doctor ``` then: ```bash brew bundle dump --file=~/Brewfile --describe --force ``` to create a `Brewfile` you can use to "quickly" restore the Homebrew bits that you rely on.
0110
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 22/12/2025
🙏🏽 Lifehacker for introducing GreyNoise Check to a broader population! 👉 lifehacker.com/tech/... If you haven't used GreyNoise Check — check.labs.greynoise.io — this is the perfect time to do so, especially if you're visiting friends/fam over the holidays. 1/2
GreyNoise Check all green!
110
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 17/12/2025
"There's Payloads, And Then There's pAIloads: A Look At Selected Opportunistic (And Possibly AI-"Enhanced") React2Shell Probes and Attacks" www.greynoise.io/blo... 1/3
greynoise.io
React2Shell Payload Analysis: A Look at Selected Opportunistic and Possibly AI-"Enhanced" Probes and Attacks
Over the past ~1.5 weeks, the React2Shell campaign has unleashed a flood of exploitation attempts targeting vulnerable React Server Components. Analyzing the payload size distribution across these attacks reveals a clear fingerprint of modern cybercrime, and a landscape dominated by automated scanners with a handful of sophisticated outliers.
141
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
GreyNoise @greynoise.io · 11/12/2025
Just in: Watch #React2Shell exploitation unfold over time in the map below (geo of source IPs attempting to exploit CVE-2025-55182). #GreyNoise #ThreatIntel #CVE202555182 #Nextjs #Cybersecurity
084
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 09/12/2025
Whilst spelunking through React2Shell traffic and associated initial access payloads, I came across a late-to-the party attacker attempting to deploy a MeshCentral agent for C2. Thanks to Censys, we poked a bit harder, and boy howdy are we on the precipice of a real mes[hs].
labs.greynoise.io
React2Shell Side Quest: Tracking Down Malicious MeshCentral Nodes – GreyNoise Labs
While spelunking through React2Shell initial access payloads, MeshCentral entered the building, so we decided to see just how Mesh-y GreyNoise Data Is
030
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 05/12/2025
I had the [mis?]fortune of being awake just as attackers decided to slam the public internet with React2Shell exploits. GreyNoise had a tag up for it yesterday afternoon. Full write-up of the initial spate of attacks: www.greynoise.io/blo... 1/3
greynoise.io
CVE-2025-55182 (React2Shell) Opportunistic Exploitation In The Wild: What The GreyNoise Observation Grid Is Seeing So Far
GreyNoise is already seeing opportunistic, largely automated exploitation attempts consistent with the newly disclosed React Server Components (RSC) “Flight” protocol RCE—often referred to publicly as “React2Shell” and tracked as CVE-2025-55182.
140
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 29/11/2025
Got 30s of public media "fame" on NPR yesterday www.npr.org/2025/11/28/n...
npr.org
Holiday cyber scams are getting more inventive
Hackers are hoping to take advantage of the holiday season, and they're not just stealing money or data.
181
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 25/11/2025
🔍 New tool alert: GreyNoise IP Check Your home network might be compromised and you'd never know. Residential proxies, IoT botnets, and router malware are everywhere—turning regular internet connections into attack infrastructure. 1/3
1103
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 17/11/2025
There once was an organization called Stark Industries (no, not *that* one! this one is real!). They emerged around the time Russia decided to invade Ukraine. Oddly enough, their ASN real estate was the source of scads of Russian state-sponsored cyber ops. 1/5
Line graph showing IP activity from two bulletproof hosting providers from July to November. Orange line represents PQ Hosting (AS44477) peaking at 1,600 IPs in early September before declining to near zero by November. Blue line shows THE.Hosting/WorkTitans (AS209847) remaining low until late September, then spiking to over 1,000 IPs in November as PQ Hosting activity ceased, illustrating the migration of malicious operations between hosting providers.
130
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Karen Attiah @karenattiah.bsky.social · 15/11/2025
Good morning. This is your reminder to get to the gym so that you can beat up racists if you have to.
601492231
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 21/10/2025
Nobody (nobody) should trust the 110% centralized record store that is Bluesky's ATproto dumping ground. There is zero sign of a plan for having $ to keep it independent of any malicious entity. It is a centralized store that can purge your record tomorrow on a billionaire's whim.
240
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 08/10/2025
Bari Weiss can and should (repeatedly) go REDACT herself.
020
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 06/10/2025
Bonkers Palo Alto Login Scanner activity has continued through the weekend. We coordinated with/Palo on Fri, so they know aboot it & have the backs of their customers. tzulo, inc. & 3xK Tech GmbH continue to be the primary network sources (both need a spanking/null route). viz.greynoise.io/tag...
time series showing attacks against palo continuing over the weekend
021
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Caroline Ledbetter @carolineledbetter.bsky.social · 04/10/2025
bsky.app/profile/caro...
011
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 04/10/2025
Bonus Drop #99: Duly Noted THE DROPS ARE BACK! Today, we tackle 3 note-taking tools: Blinko, Piles, and Memos. Blinko is an AI-integrated self-hosted system; Piles is a minimal web clipper; while Memos offers a lightweight, self-hosted knowledge base focused on simplicity and data privacy.
dailydrop.hrbrmstr.dev
Bonus Drop #99 (2025-10-04): Duly Noted
THE DROPS ARE BACK! Today, we tackle three note-taking tools: Blinko, Piles, and Memos. Blinko is an AI-integrated self-hosted system with features for task management and Markdown support. Piles i…
020
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Activate Maine💪🗓️ @activatemaine.bsky.social · 04/10/2025
Visibility Brigade making good trouble in Bangor, Maine!
Bridge sign on overpass in large letters: Democracy Not Dictatorship
347481
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 04/10/2025
Make. People. See. This.
111
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Adrian Sanabria @sawaba.bsky.social · 03/10/2025
Prediction: 🌶️🌶️🌶️
001
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 03/10/2025
Microsoft steals content for their AI training data but doesn't want others to do the same thing. Odd. therecord.media/linkedin-sue...
therecord.media
LinkedIn sues software company allegedly scraping data from millions of profiles
ProAPIs, a software company, and its CEO Rahmat Alam allegedly run an operation which LinkedIn says charges customers up to $15,000 per month for scraped user data taken from the social media platform...
020
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Ben Collins @bencollins.bsky.social · 03/10/2025
I am just so fucking proud of her.
204144283419
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Eileen Clancy 🧿 @clancyny.bsky.social · 03/10/2025
Logan Square neighborhood, Chicago. Man wearing a balaclava in a white, unmarked vehicle, pulls the pin on a tear gas canister and tosses it in the road. "Just trying to grab some lunch and these fucking losers showed up. FUCK ICE!" source: www.reddit.com/r/LoganSquar...
12225521227
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Monica Maalouf, MD @maaloufmd.bsky.social · 03/10/2025
My husband was detained by ICE today Juan Muñoz, an American citizen, father of 2, and local government official, was peacefully protesting w. other elected officials. He was assaulted and taken away I have had zero contact or updates since #SOS @duckworth.senate.gov @durbin.senate.gov
7602620513459
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 03/10/2025
Don't use the Comet browser #86pplx betanews.com/2025/10/03/p...
betanews.com
Perplexity releases AI web browser, Comet, for free; security warnings follow
Perplexity is the latest company to release an AI-powered web browser. Comet is available free of charge for Windows and macOS, and it is looking to compete
020
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 03/10/2025
🚨 keep an eye on your Palo logs/kit today viz.greynoise.io/tags/palo-al...
line chart with huge spike in palo alto networks login scanner
100
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
GreyNoise @greynoise.io · 02/10/2025
On 28 September, GreyNoise observed a sharp one-day surge in attempts to exploit Grafana CVE-2021-43798. Full analysis & malicious IPs ⬇️ #Grafana #GreyNoise #ThreatIntel
greynoise.io
Coordinated Grafana Exploitation Attempts on 28 September
GreyNoise observed a sharp one-day surge of exploitation attempts targeting CVE-2021-43798 — a Grafana path traversal vulnerability that enables arbitrary file reads. All observed IPs are classified a...
074
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Jason Forrest @jasonforrest.bsky.social · 03/10/2025
I'm very excited to share the official announcement from School of Visual Arts on the new MPS Data Visualization & Communication (DV&C) program!! It is a real thrill to build such an ambitious new project in the heart of NYC. We're just thrilled to create something truly new! sva.edu/features/sva...
sva.edu
SVA Announces New Graduate Program in Data Visualization and Communication | School of Visual Arts | SVA NYC
A feature on the upcoming MPS Data Visualization and Communication program arriving in fall 2026.
0243
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 03/10/2025
Most of America is not seeing coverage like this. That needs to change.
010
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Marisa Kabas @marisakabas.bsky.social · 03/10/2025
SCOOP — Pennsylvania prosecutors were alerted to possible voting irregularities by one of MAGA's leading voices against voter fraud. A long paper trail shows Jack Posobiec has been living in Maryland but voting using his parents' PA address for years. From @jsweetli.bsky.social, @slate.com + me:
slate.com
MAGA’s “Voter Fraud” Watchdog Votes in a Swing State. He Doesn’t Live There.
A long paper trail shows that Jack Posobiec casts a ballot in one state and lives in another.
384102143841
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
The Onion @theonion.com · 02/10/2025
This is not a paid advertisement. Subscribe at membership.theonion.com to receive the newspaper and see more print-exclusive content.
ICE is hiring!
13448971050
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Andrea Pitzer @andreapitzer.bsky.social · 02/10/2025
Glad to see @joshtpm.bsky.social take my “swallowing frogs” essay on the Coates-Klein conversation and lay out his own take on all of it. There are additional observations here worth reading.
27619
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Andrew Heiss @andrew.heiss.phd · 02/10/2025
Teaching this bureaucracy class again this semester has been a trip Get to talk about government shutdowns and mass RIFs tonight
1142
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Linda Skitka @lindaskitka.bsky.social · 02/10/2025
This is catastrophically bad.
1115
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Laura Jedeed @laurajedeed.bsky.social · 02/10/2025
I'm sorry: "if I wish to see a virgin on-screen"?
My Favorite Actress Is Not Human
Tilly Norwood doesn’t need a hairstylist, has no regrettable posts, and if you wish to see a virgin on-screen, this is one of your better chances. That’s because she’s AI.

A picture of some AI girl standing on an AI landscape with an AI monster behind her. I'm gonna be so real: she looks about 14

By Tyler Cowen
72378911006
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 02/10/2025
One down. Two to go.
000
hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈 @hrbrmstr.dev · 02/10/2025
I got the COVID booster and the seasonal influenza vaccine weeks before our work offsite. I caught this plague at said offsite, and — today — I'm barely back to 65%. Mask up when you can. This sucks.
111
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
Chris Geidner @chrisgeidner.bsky.social · 02/10/2025
More Kavanaugh stops.
5378106
Reposted by hrbrmstr 🇺🇦 🇬🇱 🇨🇦 🏳️‍🌈
🗽LOLGOP🗽 @lolgop.bsky.social · 02/10/2025
I don't think the Post wanted to find this. But government shutdowns are one—maybe the only!—area where Democrats have the natural advantage. People know which party wants the government open.
919451