<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated>2026-04-03T04:31:29Z</updated>
  <generator>https://yabu.me</generator>

  <title>Nostr notes by Josh Bressers</title>
  <author>
    <name>Josh Bressers</name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://yabu.me/npub16g6cmy3pla8nq6sapkm650wdn6szn988u87yzxs62jz6ljy50sjq5xs9jn.rss" />
  <link href="https://yabu.me/npub16g6cmy3pla8nq6sapkm650wdn6szn988u87yzxs62jz6ljy50sjq5xs9jn" />
  <id>https://yabu.me/npub16g6cmy3pla8nq6sapkm650wdn6szn988u87yzxs62jz6ljy50sjq5xs9jn</id>
  <icon>https://media.infosec.exchange/infosec.exchange/accounts/avatars/000/007/792/original/49e71d2fbf1754d0.jpg</icon>
  <logo>https://media.infosec.exchange/infosec.exchange/accounts/avatars/000/007/792/original/49e71d2fbf1754d0.jpg</logo>




  <entry>
    <id>https://yabu.me/nevent1qqsw0hdsf44kw4yzz47l5225e9zw2uqg7dd4txa7cr5k9wcsptwmh4szyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg3xnx67</id>
    
      <title type="html">It&amp;#39;s the movie Ground Day Except with a penguin</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsw0hdsf44kw4yzz47l5225e9zw2uqg7dd4txa7cr5k9wcsptwmh4szyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg3xnx67" />
    <content type="html">
      It&amp;#39;s the movie Ground Day&lt;br/&gt;&lt;br/&gt;Except with a penguin
    </content>
    <updated>2026-05-07T21:31:37Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszl2g7gjpeh5xs2whtpwl66ja0v2mjpnvrdjf483sj98sjgu2zquczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgeeu5d8</id>
    
      <title type="html">This post got into my head. I think you&amp;#39;re right, the days of ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszl2g7gjpeh5xs2whtpwl66ja0v2mjpnvrdjf483sj98sjgu2zquczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgeeu5d8" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsvqja6ecf0unau3qr6qchpp6zgympcfjjugwxmvnlpfqz28cv37usx6tc83&#39;&gt;nevent1q…tc83&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;This post got into my head. I think you&amp;#39;re right, the days of coordination are over&lt;br/&gt;&lt;br/&gt;So I wrote it down&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/05-vulnerability-economics/&#34;&gt;https://opensourcesecurity.io/2026/05-vulnerability-economics/&lt;/a&gt;
    </content>
    <updated>2026-05-03T00:58:51Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsfxzka0y7swfnrlxgcx4xst7ujuley304hh6xwcqeavu3gskwv62gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9d3urz</id>
    
      <title type="html">every AI vulnerability company wants to find something juicy, and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfxzka0y7swfnrlxgcx4xst7ujuley304hh6xwcqeavu3gskwv62gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9d3urz" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs24pxnzy4xga3s99l0nvhk2sgctde8s9llpelmlszs0ahxld4pljq9h8dx5&#39;&gt;nevent1q…8dx5&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;every AI vulnerability company wants to find something juicy, and have no idea how to coordinate the findings
    </content>
    <updated>2026-05-01T01:43:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8nzspq9d736v6jvnhfe7gj0tek6a6dfeal5del6rf3h90egyauhszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg5fyxl4</id>
    
      <title type="html">Remember Linus&amp;#39;s Law? While it was never really true, there ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8nzspq9d736v6jvnhfe7gj0tek6a6dfeal5del6rf3h90egyauhszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg5fyxl4" />
    <content type="html">
      Remember Linus&amp;#39;s Law? While it was never really true, there are now A LOT of people looking for vulnerabilities with LLMs, and they&amp;#39;re finding vulnerabilities EVERYWHERE&lt;br/&gt;&lt;br/&gt;While Linus&amp;#39;s Law was clearly nonsense, this is creating an increase in vulnerabilities the world is completely unprepared to deal with&lt;br/&gt;&lt;br/&gt;What happens if we have a million CVEs every year?&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/04-linus-law-vulns/&#34;&gt;https://opensourcesecurity.io/2026/04-linus-law-vulns/&lt;/a&gt;
    </content>
    <updated>2026-04-29T12:27:39Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs286zmmxwpqefr6zsgxjnt0xuyzw4aeznhmsdxpphwzq4tvleuetqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zga2pe20</id>
    
      <title type="html">I wrote a blog post Open source was never about trust ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs286zmmxwpqefr6zsgxjnt0xuyzw4aeznhmsdxpphwzq4tvleuetqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zga2pe20" />
    <content type="html">
      I wrote a blog post&lt;br/&gt;&lt;br/&gt;Open source was never about trust&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/04-never-about-trust/&#34;&gt;https://opensourcesecurity.io/2026/04-never-about-trust/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;There&amp;#39;s been a lot of really crazy events happening around open source for the last few months. But it&amp;#39;s probably all going to be OK
    </content>
    <updated>2026-04-11T16:02:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsfculm348w02c4v5n567rquma8xh2cy0uanak6qz0wcdyakczu0wqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgt807x8</id>
    
      <title type="html">Looks like all the cybersecurity stocks have recovered since the ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfculm348w02c4v5n567rquma8xh2cy0uanak6qz0wcdyakczu0wqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgt807x8" />
    <content type="html">
      Looks like all the cybersecurity stocks have recovered since the &amp;#34;Claude is going to destroy every security company ever&amp;#34; news&lt;br/&gt;&lt;br/&gt;Feels like an investing strategy :)
    </content>
    <updated>2026-03-05T15:52:34Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgqyu9jgm67e8el268n8d2dyxplaptqndxpt67arju9ljvjls3pkczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgam989l</id>
    
      <title type="html">I had a chat with Frank Karlitschek from @npub1rk6…hv4q about ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgqyu9jgm67e8el268n8d2dyxplaptqndxpt67arju9ljvjls3pkczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgam989l" />
    <content type="html">
      I had a chat with Frank Karlitschek from &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1rk6czmpvny876kqvc4aqseuku3zmnxlphyxs2940g6u59te5m2yq57hv4q&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Nextcloud 📱☁️💻&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1rk6…hv4q&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; about digital sovereignty&lt;br/&gt;&lt;br/&gt;There&amp;#39;s a lot of attention lately around digital sovereignty and often that conversation also includes Nextcloud. Frank tells us all about how Nextcloud works, how it can be used to free your data, and has some great insight into what decentralization already looks like and what it could look like soon&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/2026-02-nextcloud-frank-karlitschek/&#34;&gt;https://opensourcesecurity.io/2026/2026-02-nextcloud-frank-karlitschek/&lt;/a&gt;
    </content>
    <updated>2026-02-09T15:43:55Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszwxpqmlqmn2e69jp5f4prlveh6x0awx4uteut88xrqrs2tchnreczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg4afgke</id>
    
      <title type="html">It&amp;#39;s always been hard for humans to find security bugs in ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszwxpqmlqmn2e69jp5f4prlveh6x0awx4uteut88xrqrs2tchnreczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg4afgke" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqst2ftzr76da3x39sam6z2sq96j9x86pskn4uk8r2hk0lnw9paxefc9zsnu0&#39;&gt;nevent1q…snu0&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;It&amp;#39;s always been hard for humans to find security bugs in code, generally we had to focus on one specific area at a time&lt;br/&gt;&lt;br/&gt;But the real challenge has always been writing and testing the patches, this is even harder than finding the vulns in many cases&lt;br/&gt;&lt;br/&gt;We will of course see claims to &amp;#34;just use an LLM to write the patch&amp;#34;, but I&amp;#39;ve not seen any evidence showing that&amp;#39;s realistic yet (there might be something I&amp;#39;ve missed, goodness knows this space is hard to follow everything)
    </content>
    <updated>2026-02-06T21:31:25Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs9m22rtkeywjyc63flyhqv2he4dy9m3njk8c9ntfmtjx5ay9en2fszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg2rta6h</id>
    
      <title type="html">Thanks!</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs9m22rtkeywjyc63flyhqv2he4dy9m3njk8c9ntfmtjx5ay9en2fszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg2rta6h" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqszywkf5f7krul0gezhlxhjfpt7399vfa4wngx34ve5y542hh7vmws4s9m48&#39;&gt;nevent1q…9m48&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Thanks!
    </content>
    <updated>2026-01-12T15:32:31Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsy02y7w7d6222vsxfsaav85jyrjchgg7arznv6nl3jlul7ps0kexgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9937lf</id>
    
      <title type="html">This week on #OpenSourceSecurity I have a chat with ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsy02y7w7d6222vsxfsaav85jyrjchgg7arznv6nl3jlul7ps0kexgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9937lf" />
    <content type="html">
      This week on #OpenSourceSecurity I have a chat with [@algernon](&lt;a href=&#34;https://come-from.mad-scientist.club/@algernon&#34;&gt;https://come-from.mad-scientist.club/@algernon&lt;/a&gt; ) about [@iocaine](&lt;a href=&#34;https://come-from.mad-scientist.club/@iocaine&#34;&gt;https://come-from.mad-scientist.club/@iocaine&lt;/a&gt; ) &lt;br/&gt;&lt;br/&gt;Iocaine creates a maze of garbage to trap scraping bots. I love this idea, it has amazing chaotic good energy!&lt;br/&gt;&lt;br/&gt;I learn all about how Iocaine works, and even got to see some dashboards showing off the size of the problem and how Iocaine handles it all.&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/2026-01-iocaine-algernon/&#34;&gt;https://opensourcesecurity.io/2026/2026-01-iocaine-algernon/&lt;/a&gt;
    </content>
    <updated>2026-01-12T15:30:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsfvustnsf9wyt8ffgcc4gmurzunrtc9ydr99y7zdnfrykk6v59egczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg8w60pn</id>
    
      <title type="html">This week on #OpenSourceSecurity I have a chat with ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfvustnsf9wyt8ffgcc4gmurzunrtc9ydr99y7zdnfrykk6v59egczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg8w60pn" />
    <content type="html">
      This week on #OpenSourceSecurity I have a chat with &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub17mj525xqpm2c7urrkytdpvpv37thhnfq2e575s054svh69su9z2qcl0mhx&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Xe :verified:&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub17mj…0mhx&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; about #Anubis, the tool that stops web AI scrapers&lt;br/&gt;&lt;br/&gt;The scale of web scraping is way worse than I expected, and blocking things is also a lot harder than I expected&lt;br/&gt;&lt;br/&gt;This is one of those conversations where I learned how little I know&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2026/2026-01-anubis-xe/&#34;&gt;https://opensourcesecurity.io/2026/2026-01-anubis-xe/&lt;/a&gt;
    </content>
    <updated>2026-01-05T14:29:47Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8spmxnazqxgcrdm4372rvp2qfv72fzr46waefnumjnr36kz8688czyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zguvrv2q</id>
    
      <title type="html">#OpenSourceSecurity has a chat with @npub1klc…sud3 about ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8spmxnazqxgcrdm4372rvp2qfv72fzr46waefnumjnr36kz8688czyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zguvrv2q" />
    <content type="html">
      #OpenSourceSecurity has a chat with &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1klc09gu7vzsv5cz2dg97rq3ahgjldp653999sxs5qmd2pu6eat5szrsud3&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Seth Larson&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1klc…sud3&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; about &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1vv848aca8vpv9lt2l2tj6wwehw7drwrs2e3ev9693rwz02jh448qcc6fhk&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Python Software Foundation&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1vv8…6fhk&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; security&lt;br/&gt;&lt;br/&gt;Seth has a new whitepaper, there&amp;#39;s a CFP open (which you should submit a paper to), and some discussion about the PSF grant situation&lt;br/&gt;&lt;br/&gt;It&amp;#39;s always fun to chat with Seth, I learn a ton every time!&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2025/2025-11-python-security-seth-larson/&#34;&gt;https://opensourcesecurity.io/2025/2025-11-python-security-seth-larson/&lt;/a&gt;
    </content>
    <updated>2025-11-24T15:58:53Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0jdrrm7nhv64gzggv03t48eqe5ls5y7cwj4a4hjcl8xjzre495fqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9q9yr0</id>
    
      <title type="html">I started using @npub1zq5…dlp2 as my search engine The biggest ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0jdrrm7nhv64gzggv03t48eqe5ls5y7cwj4a4hjcl8xjzre495fqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg9q9yr0" />
    <content type="html">
      I started using &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1zq54veajsqqdzcdprz3j8var8j6akpsqnhka2w9wd9gv879twx9sc6dlp2&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Kagi HQ&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1zq5…dlp2&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; as my search engine&lt;br/&gt;&lt;br/&gt;The biggest surprise has been how jarring seeing a search page that isn&amp;#39;t full of shit&lt;br/&gt;&lt;br/&gt;I didn&amp;#39;t realize my brain has come to expect a page of garbage when I search for things, and it doesn&amp;#39;t know what to do now
    </content>
    <updated>2025-11-04T15:43:43Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsymp4lnxdespgh9duphypep8wylfpggq2k9lylyys2mnl0zymf9yqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgjcxtny</id>
    
      <title type="html">This week on #OpenSourceSecurity I talk to @npub1uy3…kphj about ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsymp4lnxdespgh9duphypep8wylfpggq2k9lylyys2mnl0zymf9yqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgjcxtny" />
    <content type="html">
      This week on #OpenSourceSecurity I talk to &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1uy3szhxu5ee9dmhlqysh9jesrdd9d7jv67chmfzclqsh25kyywuqcpkphj&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Otto&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1uy3…kphj&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; about his blog post about detecting an attack like xz in Debian&lt;br/&gt;&lt;br/&gt;It&amp;#39;s a fascinating conversation about a very complicated topic&lt;br/&gt;&lt;br/&gt;There are things that could be detected, but this one would have been very very difficult&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2025/2025-11-xz-debian-otto/&#34;&gt;https://opensourcesecurity.io/2025/2025-11-xz-debian-otto/&lt;/a&gt;
    </content>
    <updated>2025-11-03T15:11:58Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd8zsezl2lnpzsqx8aynpcmpml2exhwtx7ggemhphp7pam6u9692gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgtyrvaz</id>
    
      <title type="html">New project idea Scream-o-pedia It&amp;#39;s a clone of wikipedia, ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd8zsezl2lnpzsqx8aynpcmpml2exhwtx7ggemhphp7pam6u9692gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgtyrvaz" />
    <content type="html">
      New project idea&lt;br/&gt;&lt;br/&gt;Scream-o-pedia&lt;br/&gt;&lt;br/&gt;It&amp;#39;s a clone of wikipedia, but filled with endless screaming
    </content>
    <updated>2025-10-30T13:14:26Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswk7860rnxefya6ayg5sughcs4gl6xwamw5wnx336666z42mtalcgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgft8dsy</id>
    
      <title type="html">OK open source security nerds, I need your help I have a podcast ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswk7860rnxefya6ayg5sughcs4gl6xwamw5wnx336666z42mtalcgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgft8dsy" />
    <content type="html">
      OK open source security nerds, I need your help&lt;br/&gt;&lt;br/&gt;I have a podcast youtube show thing called Open Source Security&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/&#34;&gt;https://opensourcesecurity.io/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;I&amp;#39;m always looking for guests. Back when I changed formats in January I had a pretty large list of people sent to me as suggestions. I&amp;#39;ve made it through the list (it took me 10 months)&lt;br/&gt;&lt;br/&gt;If you know someone (or are someone) doing open source security work I would love a suggestion. DMs are open and there are other contact things on the website&lt;br/&gt;&lt;br/&gt;I especially like guests who are unsung heroes
    </content>
    <updated>2025-10-08T23:44:08Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsx299ahf2uedgdvlsm3jgl3zpw9pyzzzj909zzrqe044pddw6pu9qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgltljl2</id>
    
      <title type="html">The Register wrote a story about a single maintainer open source ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsx299ahf2uedgdvlsm3jgl3zpw9pyzzzj909zzrqe044pddw6pu9qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgltljl2" />
    <content type="html">
      The Register wrote a story about a single maintainer open source project, I think it&amp;#39;s shameful and upsetting. So I wrote a blog post about it&lt;br/&gt;&lt;br/&gt;An absolutely ridiculous amount of open source is one person projects. I have the data to prove it&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2025/08-oss-one-person/&#34;&gt;https://opensourcesecurity.io/2025/08-oss-one-person/&lt;/a&gt;
    </content>
    <updated>2025-08-28T01:38:32Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsyv0zx2ughfkj5dhx5tp2mcgkydapz09gnnfqe0zc3v8fjdf07dyszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg30wjxs</id>
    
      <title>Nostr event nevent1qqsyv0zx2ughfkj5dhx5tp2mcgkydapz09gnnfqe0zc3v8fjdf07dyszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg30wjxs</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsyv0zx2ughfkj5dhx5tp2mcgkydapz09gnnfqe0zc3v8fjdf07dyszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg30wjxs" />
    <content type="html">
       &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/115/047/116/951/360/607/original/f08bfdd22e1784aa.jpeg&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2025-08-18T01:16:01Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsf9htddu5dd0x6gcaphjat4p4uauye4mm4xs0h8mhctuq4ttsjtaczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg7djm23</id>
    
      <title type="html">A bunch of vulnerability nerds are collecting in a discord server ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsf9htddu5dd0x6gcaphjat4p4uauye4mm4xs0h8mhctuq4ttsjtaczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg7djm23" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsfn5z6dk06tnekdnyrkqk8vlckht8gls9f8nkhw48j73nqdyayxaq40x6kt&#39;&gt;nevent1q…x6kt&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;A bunch of vulnerability nerds are collecting in a discord server to coordinate whatever will need coordinating for this&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://discord.gg/gSCrXxMuPx&#34;&gt;https://discord.gg/gSCrXxMuPx&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;All are welcome, even if it&amp;#39;s just to lurk
    </content>
    <updated>2025-04-15T21:08:51Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsxvlx9fxd2a7waug6g8d0tu2dcgy9stlajvet07pgezmy22pc225gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgjf3k4q</id>
    
      <title type="html">Now imagine how much value it would be if they were using AI!!!!! ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsxvlx9fxd2a7waug6g8d0tu2dcgy9stlajvet07pgezmy22pc225gzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgjf3k4q" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs0y96z3emmskkmg4tw5v8q984qmmkl7z4pyqdqu0vxg2738xtlpgge5tepn&#39;&gt;nevent1q…tepn&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Now imagine how much value it would be if they were using AI!!!!!&lt;br/&gt;&lt;br/&gt;It would be at least NaN dollars!!!!!!!!
    </content>
    <updated>2025-04-08T14:00:34Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs06m7q6qtprm9tyz2a7kj9nt5n6e80d55v90hcfwllamqqejwmksczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgkfwcyk</id>
    
      <title type="html">Is there a web browser that won’t try to shiv me in my sleep? ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs06m7q6qtprm9tyz2a7kj9nt5n6e80d55v90hcfwllamqqejwmksczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgkfwcyk" />
    <content type="html">
      Is there a web browser that won’t try to shiv me in my sleep?&lt;br/&gt;&lt;br/&gt;#askingforafriend
    </content>
    <updated>2025-02-27T02:21:15Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdpcwh9zktqcc799g9hs88gjwp4a5swexuchjwtlsnk3k8rxsqq0czyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg0pwcfn</id>
    
      <title type="html">This episode #OpenSourceSecurity talks to @npub1frk…5a27 about ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdpcwh9zktqcc799g9hs88gjwp4a5swexuchjwtlsnk3k8rxsqq0czyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg0pwcfn" />
    <content type="html">
      This episode #OpenSourceSecurity talks to &lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Person&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/npub1frkedgrjevuxctmsfkh2c8f2rmfq8mjk9rlufuvr9ujrwwdcd48sva5a27&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;&lt;span&gt;Sheogorath&lt;/span&gt; (&lt;span class=&#34;italic&#34;&gt;npub1frk…5a27&lt;/span&gt;)&lt;/a&gt;&lt;/span&gt; about forking open source projects&lt;br/&gt;&lt;br/&gt;It&amp;#39;s a lot more complicated than you think it is, and Sheogorath has some first hand experience from one of the most complicated forks I&amp;#39;ve ever seen in HedgeDoc&lt;br/&gt;&lt;br/&gt;It&amp;#39;s a fun chat filled with lessons&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2025/2025-02-fork_open_source_sheogorath/&#34;&gt;https://opensourcesecurity.io/2025/2025-02-fork_open_source_sheogorath/&lt;/a&gt;
    </content>
    <updated>2025-02-24T15:33:34Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8yn0juh8kpv3ptu4jq0dq56nwnql4tjtdy577axzxm0anz02yq5qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgnxtmka</id>
    
      <title type="html">Now that 2025 is here, it&amp;#39;s time to wind down the #osspodcast ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8yn0juh8kpv3ptu4jq0dq56nwnql4tjtdy577axzxm0anz02yq5qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgnxtmka" />
    <content type="html">
      Now that 2025 is here, it&amp;#39;s time to wind down the #osspodcast&lt;br/&gt;&lt;br/&gt;It was a fun run, but it was time to be done.&lt;br/&gt;&lt;br/&gt;I have a new project I&amp;#39;m calling &amp;#34;Open Source Security&amp;#34; (the domain is too good to not do something with it)&lt;br/&gt;&lt;br/&gt;I want to chat with people securing the use and creating of open source. I explain a lot more in the blog post (which also has audio)&lt;br/&gt;&lt;br/&gt;If you&amp;#39;re one of these people, let me know! There are a lot of lessons for us all, and the people doing the best work aren&amp;#39;t being listened to&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/posts/2025-01-the_future_of_open_source_security/&#34;&gt;https://opensourcesecurity.io/posts/2025-01-the_future_of_open_source_security/&lt;/a&gt;
    </content>
    <updated>2025-01-01T14:34:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsffrss9ugfda5cj7qguqp45h4p5r8h2jdfwdsyt5celk73xvjy2cgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg47dh7h</id>
    
      <title type="html">Looks like #NVD has stopped enriching #CVE again. So that&amp;#39;s ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsffrss9ugfda5cj7qguqp45h4p5r8h2jdfwdsyt5celk73xvjy2cgzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg47dh7h" />
    <content type="html">
      Looks like #NVD has stopped enriching #CVE again. So that&amp;#39;s neat&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/470/838/253/287/674/original/1ef64d2e900d9ebd.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2024-11-12T16:07:13Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspmtpqwz8tvxwpxg3rwagvplsq9cdzhwzslk3dyqf8adqa2umf3vczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgufl2vr</id>
    
      <title type="html">Hungry for McRib!!!</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspmtpqwz8tvxwpxg3rwagvplsq9cdzhwzslk3dyqf8adqa2umf3vczyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgufl2vr" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsfaz02clm5ka36kkch9frgqzumv043fz8c7vlu865nkq6ae3594uqluxcew&#39;&gt;nevent1q…xcew&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Hungry for McRib!!!
    </content>
    <updated>2024-10-15T13:18:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg3ry8huq0p260uwl9udtygjj666us8wjl9zzrt0mk7d49gnjvdyszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg8rrfwy</id>
    
      <title type="html">I wrote a blog post about the #SBOM complaining that seems to pop ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg3ry8huq0p260uwl9udtygjj666us8wjl9zzrt0mk7d49gnjvdyszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg8rrfwy" />
    <content type="html">
      I wrote a blog post about the #SBOM complaining that seems to pop up every few months&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://opensourcesecurity.io/2024/10/15/the-useful-uselessness-of-sboms/&#34;&gt;https://opensourcesecurity.io/2024/10/15/the-useful-uselessness-of-sboms/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;SBOMs are used all over the place, they&amp;#39;re just not always called SBOMs
    </content>
    <updated>2024-10-15T12:51:21Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0lawp0dttqjg5qru68xptkptrqthhax37ueqq7syu4y6xynelrzqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgd2l3td</id>
    
      <title type="html">[@jwildeboer](https://social.wildeboer.net/@jwildeboer ) I ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0lawp0dttqjg5qru68xptkptrqthhax37ueqq7syu4y6xynelrzqzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgd2l3td" />
    <content type="html">
      [@jwildeboer](&lt;a href=&#34;https://social.wildeboer.net/@jwildeboer&#34;&gt;https://social.wildeboer.net/@jwildeboer&lt;/a&gt; ) I printed the meshtastic case you&amp;#39;ve been showing off here, HOLY COW it&amp;#39;s awesome. I can fit a massive battery in it that gets me over 25 hours of life, and it still fits in my pocket
    </content>
    <updated>2024-10-07T15:47:33Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsfgewre2yt6vpcauf9tp8g0rx5ce0epz3aqe8sjx5m42vnpu4le0szyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgmauhkk</id>
    
      <title type="html">OK #meshtastic nerds I&amp;#39;ve been working on a Meshtastic BBS ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfgewre2yt6vpcauf9tp8g0rx5ce0epz3aqe8sjx5m42vnpu4le0szyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgmauhkk" />
    <content type="html">
      OK #meshtastic nerds&lt;br/&gt;&lt;br/&gt;I&amp;#39;ve been working on a Meshtastic BBS that communicates through a meshtastic node (I took the TC2-BBS code and change it ... a lot)&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://github.com/joshbressers/meshbbs&#34;&gt;https://github.com/joshbressers/meshbbs&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;The goal here is to make something that&amp;#39;s REALLY easy to hack on (this was my complaint about TC2-BBS, it was hard to change)&lt;br/&gt;&lt;br/&gt;It&amp;#39;s still very much a prototype, but I think I&amp;#39;m at a point where feedback and ideas would be good&lt;br/&gt;&lt;br/&gt;And of course patches :)
    </content>
    <updated>2024-10-05T01:02:54Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0rh9fxmrl4tyxyka9zd80657fugfl2h4qdauukgesp6pn5fqas0qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg02sssf</id>
    
      <title>Nostr event nevent1qqs0rh9fxmrl4tyxyka9zd80657fugfl2h4qdauukgesp6pn5fqas0qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg02sssf</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0rh9fxmrl4tyxyka9zd80657fugfl2h4qdauukgesp6pn5fqas0qzyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zg02sssf" />
    <content type="html">
       &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/205/269/964/261/578/original/08780f70e49b426e.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2024-09-26T18:29:27Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqhsge88uypq4zhxw7nd508c0887yjwcmq8unem3qn9vnhkj9z8dszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgztmjfn</id>
    
      <title type="html">Bambu built on top of all the open work the community. I’m glad ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqhsge88uypq4zhxw7nd508c0887yjwcmq8unem3qn9vnhkj9z8dszyrfrtrvjy8l57vr2r5xm023aek02q2v5ulslcsg6rf2gtt7gj37zgztmjfn" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsgxd4e2crrtgs0q645nzweskz32mrmw2kf6gpk6efwc45gg3auypgdpszc6&#39;&gt;nevent1q…szc6&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Bambu built on top of all the open work the community. I’m glad something easy to use exists, but I think the work of the community is a very important part of the story&lt;br/&gt;&lt;br/&gt;You almost certainly don’t intend to come off that way, but it reads like it
    </content>
    <updated>2024-09-14T12:29:17Z</updated>
  </entry>

</feed>