Amy
banner
amyre.bsky.social
Amy
@amyre.bsky.social
180 followers 150 following 110 posts
professional security border collie and VDP manager | pop culture glutton | outdoor super enthusiast | looking at birds & making up music videos in my head | she /her / hers
Posts Media Videos Starter Packs
Are you ans experienced iOS security researcher? If so, you probably already know about the Apple Security Researcher Device Program (security.apple.com/research-dev...).
If you’ve been thinking about applying, applications close in a week, on 31 October. Apply before the opportunity 👻s you!
Security Research Device - Apple Security Research
Get an iPhone dedicated to security research through the Apple Security Research Device program. Learn how to apply.
security.apple.com
Yikes. Did not enjoy. Please unsubscribe.
Werner Herzog just started an IG account. You’re welcome.
Yes, I get that one of these things is not like the other in terms of societal impact, but I find joy in it nevertheless.
I know it’s hard to find things to be happy about these days, but Zohran Mandani won NYC’s mayoral democratic primary race last right, protesters managed to shut down the ICE office in here in SF yesterday, and S4 of The Bear drops today.
Absolutely dining on these morsels of serotonin this morning.
Walking up on a dreary Sunday morning, the apartment is quiet and still, the dog sleeping in his bed. Early, low light filters into the bedroom giving it a low parchment glow. My brain begins to boot into awareness:
Steve le-
(Wah ahahaha)
Le poisson Steve
(poisson Steve)
It est oraaaaaaannnnnnge
Reposted by Amy
Pegasus spyware maker NSO Group just got publicly rebuffed by the US.

They came to DC to get off the US blacklist.

It did not work out.

You know about the human rights abuses, but let me tell you why NSO is no friend to the United States. 1/

www.washingtonpost.com/national-sec...
Put some on a piece of strong English cheddar, smoked Gouda, or a dill havarti and it will change your life.
Behold my favorite weird Chrome security bug of 2025 so far!

A jaw-dropping URL / omnibox spoof via ligatures, specifically the googlelogo ligature.

issues.chromium.org/issues/39178...
Chromium
issues.chromium.org
Sprinting home to watch this.
Agree. So much that I essentially watched the entire season in a single weekend a couple of weeks ago.
Security friends attending RSAC, please attend this session and heckle the fuck out of Kristi Noem.
If you’re at RSA remember to leave your pets far away from the venue!!
The pants I am wearing today are cute (subjectively), comfy (objectively), but so noisy.

I don’t think I can wear them to the office again. I feel the need to compulsively apologize for being disruptive, as I sound like a sailboat cruising aggressively in blustery conditions just walking about.
So I guess this is the wrong time for my standard takes that CVEs often wielded like infosec Pokémon and CVSS scores are terrible data points for making software update decisions?
/subscribe
I’m genuinely interested in folks respond to this question.
Two things I’ve never noticed on previous trips to Vancouver.
1. Some of the freeways have bike lanes, such as the road to the airport.
2. There are tampons and pads sitting out in the restrooms available for free.
Two ways America would sadly never.
I’ve been in Vancouver (Canada) since Thursday. This somewhat randomly timed trip could actually not have been better timed.
On top of my general long-time love for this city, I am especially daunted leaving tonight and returning to the U.S. and well, everything else.
Instead and unfortunately some are doing the opposite. I’m seeing cybersecurity firms (at least one former employer) cheerleading Trump because of the EO to grease the wheels of the defense acquisitions process. They’re bending the knee because they want that DoD contracts money.
Chromium now has a patch rewards bounty for fixing some (non-security) bugs!

This is very cool and provides an opportunity to contribute to open source and get some 💵 for your efforts!
🚨 Attention Chromium developers! 🚨

The SOCBB Bug Bounty Program is offering up to $10,000 for fixing bugs in Chromium-based browsers like Chrome & Edge! Contribute to repos like chromium, v8, and more.

Get paid via GitHub Sponsors! Start fixing: github.com/Supporters-O...

#Chromium #OpenSource
This is very cool and very excited to see this now live!

If you like fixing bugs and have been looking for an excuse to participate more in OSS — here’s your chance and also get some $$$.
I'm excited about this program! Chromium isn't necessarily easy, but I know there are great engineers out there who would love to get paid for improving it!
🚨 Attention Chromium developers! 🚨

The SOCBB Bug Bounty Program is offering up to $10,000 for fixing bugs in Chromium-based browsers like Chrome & Edge! Contribute to repos like chromium, v8, and more.

Get paid via GitHub Sponsors! Start fixing: github.com/Supporters-O...

#Chromium #OpenSource
I can honestly say I’m not sure what the thing is that is happening here is, but may it never find me.
In the latest installment of weird startup ads, did you know: