<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><description>Welcome to the aforementioned slinky and sultry Web 2.0 crap.</description><title>tumblr.attrition.org</title><generator>Tumblr (3.0; @attritionorg)</generator><link>https://tumblr.attrition.org/</link><item><title>NVD Gives Up</title><description>&lt;p&gt;Since 2024, representatives from NIST’s National Vulnerability Database (NVD) have given a presentation at VulnCon with updates to the program. This has been where news broke about significant changes, admissions, and omissions. The talks, typically 30 minutes, are certainly not enough time to tell us what the industry needs to know and leaves no time for Q&amp;amp;A despite there being a considerable…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/04/17/nvd-gives-up/","display_url":"https://jericho.blog/2026/04/17/nvd-gives-up/","title":"NVD Gives Up","poster":[{"media_key":"454295039e0c8e3646ee201bc5f11f5f:1d2991f74e45d514-b2","type":"image/png","width":1408,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/04/17/nvd-gives-up/" target="_blank"&gt;NVD Gives Up&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/814154591223562240</link><guid>https://tumblr.attrition.org/post/814154591223562240</guid><pubDate>Fri, 17 Apr 2026 11:05:23 -0400</pubDate><category>CVE</category><category>Harold Booth</category><category>Jon Boyens</category><category>KEV</category><category>NIST</category><category>NVD</category><category>SBOM</category><category>VulnCon</category></item><item><title>Anthropic, Mythos, and the Dark Reality No One Is Talking About</title><description>&lt;p&gt;If I had a nickel for every time Anthropic’s new Project Glasswing / Mythos initiative came up in conversation or I was asked directly about it in the last few days, I would have a shit ton of nickels! Let’s dive into it… first with brief observations about the announcements and available information, other’s opinions, then a broader opinion of my own on where this is all going.&lt;br/&gt;&lt;br/&gt;Gemini prompt:…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/04/15/anthropic-mythos-and-the-dark-reality-no-one-is-talking-about/","display_url":"https://jericho.blog/2026/04/15/anthropic-mythos-and-the-dark-reality-no-one-is-talking-about/","title":"Anthropic, Mythos, and the Dark Reality No One Is Talking About","poster":[{"media_key":"3ca7e5e38ce315b7d9811f368c0b7c9d:909322cd55518ae9-15","type":"image/png","width":1036,"height":766}]}'&gt;&lt;a href="https://jericho.blog/2026/04/15/anthropic-mythos-and-the-dark-reality-no-one-is-talking-about/" target="_blank"&gt;Anthropic, Mythos, and the Dark Reality No One Is Talking About&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/813976057317376000</link><guid>https://tumblr.attrition.org/post/813976057317376000</guid><pubDate>Wed, 15 Apr 2026 11:47:40 -0400</pubDate><category>Anthropic</category><category>Cloud Security Alliance</category><category>Glasswing</category><category>Jon Martindale</category><category>KEV</category><category>Mythos</category><category>Nico Waisman</category><category>So-called AI</category><category>The AI Security Institute</category><category>Vulnerability Disclosure</category></item><item><title>Vulnerability Research Isn&amp;rsquo;t Cooked; It&amp;rsquo;s Burned Beyond Recognition</title><description>&lt;p&gt;On March 30, 2026, Thomas &amp;amp; Erin Ptacek posted a blog titled “Vulnerability Research Is Cooked“. I don’t believe I know Erin, but I know of Thomas as an old-school vulnerability researcher who has been well respected for a long, long time. When he speaks about vulnerability research, I certainly listen. So this blog was of interest to me for a variety of reasons as it primarily talked about the…&lt;/p&gt;&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/04/06/vulnerability-research-isnt-cooked-its-burned-beyond-recognition/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/04/06/vulnerability-research-isnt-cooked-its-burned-beyond-recognition/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;Vulnerability Research Isn't Cooked; It's Burned Beyond Recognition&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;1700b405cf2379ec64f3dba2dfd6ffd4:b562e74780ccd501-fc&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/png&amp;quot;,&amp;quot;width&amp;quot;:1408,&amp;quot;height&amp;quot;:768}]}"&gt;&lt;a href="https://jericho.blog/2026/04/06/vulnerability-research-isnt-cooked-its-burned-beyond-recognition/" target="_blank"&gt;Vulnerability Research Isn&amp;rsquo;t Cooked; It&amp;rsquo;s Burned Beyond Recognition&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/813157399076700160</link><guid>https://tumblr.attrition.org/post/813157399076700160</guid><pubDate>Mon, 06 Apr 2026 10:55:26 -0400</pubDate><category>Erin Ptacek</category><category>LLM</category><category>Nicholas Carlini</category><category>OpenClaw</category><category>So-called AI</category><category>Thomas Ptacek</category><category>Vulnerability Disclosure</category></item><item><title>We Are Legion (We Are Bobservations); Answering a &amp;ldquo;Simple&amp;rdquo; Question</title><description>&lt;p&gt;In late February, a friend linked an article about a science-fiction book and asked if I had read it. I told her that I hadn’t but after reading an abstract it sounded good. She asked if I would be her designated reader due to her workload, and report back. I said sure! She was particularly interested in it after reading an article by Rya Jetha in the The San Francisco Standard. The article,…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/04/04/we-are-legion-we-are-bobservations-answering-a-simple-question/","display_url":"https://jericho.blog/2026/04/04/we-are-legion-we-are-bobservations-answering-a-simple-question/","title":"We Are Legion (We Are Bobservations); Answering a \"Simple\" Question","poster":[{"media_key":"05ee37ddd9dcffe5a49bdd49b7f8f201:4224151522257fd7-4c","type":"image/png","width":1376,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/04/04/we-are-legion-we-are-bobservations-answering-a-simple-question/" target="_blank"&gt;We Are Legion (We Are Bobservations); Answering a &amp;ldquo;Simple&amp;rdquo; Question&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/812976831336677376</link><guid>https://tumblr.attrition.org/post/812976831336677376</guid><pubDate>Sat, 04 Apr 2026 11:05:23 -0400</pubDate><category>Dennis Taylor</category><category>Marc Benioff</category><category>Religion</category><category>Rya Jetha</category><category>So-called AI</category><category>Space Exploration</category><category>Von Neumann Probe</category></item><item><title>Wait&amp;hellip; We Needed That CNA Rule?! A Complaint =)</title><description>&lt;p&gt;It’s one of those rules you’d never think we needed until something happens…&lt;br/&gt;&lt;br/&gt;On March 27, a VulnDB (not to be confused with VulDB) analyst noticed that a CVE description had a line appended that basically advertised the service of the assigning CNA. CVE-2026-4963 had a pretty standard description from VulDB (not to be confused with VulnDB!) using their lackluster templating:&lt;br/&gt;&lt;br/&gt;“If you want to get…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/31/wait-we-needed-that-cna-rule-a-complaint/","display_url":"https://jericho.blog/2026/03/31/wait-we-needed-that-cna-rule-a-complaint/","title":"Wait… We Needed That CNA Rule?! A Complaint =)","poster":[{"media_key":"3fc77f41a70f14aa93ce5fcaa95ffdc6:9084ecd9a53221e9-96","type":"image/png","width":1376,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/31/wait-we-needed-that-cna-rule-a-complaint/" target="_blank"&gt;Wait… We Needed That CNA Rule?! A Complaint =)&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/812616951236083712</link><guid>https://tumblr.attrition.org/post/812616951236083712</guid><pubDate>Tue, 31 Mar 2026 11:45:15 -0400</pubDate><category>CNA</category><category>CVE</category><category>Rules</category><category>Scott Moore</category><category>VulDB</category></item><item><title>Miggo, KEV, and FUD; They Still Don&amp;rsquo;t Get It</title><description>&lt;p&gt;[If the name ‘Miggo’ is familiar to you in the context of my blogging, you are thinking about one I wrote titled “Miggo Security’s AI Slop &amp;amp; Potential Trademark Infringement” in July, 2025. That was more around ‘corporate’ culture and bad lawyering. This blog is different, pointing out how they don’t seem to understand KEV at all.]&lt;br/&gt;&lt;br/&gt;On November 18, 2025, Miggo published a report titled “Missing…&lt;/p&gt;&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/30/miggo-kev-and-fud-they-still-dont-get-it/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/30/miggo-kev-and-fud-they-still-dont-get-it/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;Miggo, KEV, and FUD; They Still Don't Get It&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;01781faf483adbf138bca3073f699de4:e16366ff0556b95a-8b&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/png&amp;quot;,&amp;quot;width&amp;quot;:2048,&amp;quot;height&amp;quot;:2048}]}"&gt;&lt;a href="https://jericho.blog/2026/03/30/miggo-kev-and-fud-they-still-dont-get-it/" target="_blank"&gt;Miggo, KEV, and FUD; They Still Don&amp;rsquo;t Get It&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/812525782326968320</link><guid>https://tumblr.attrition.org/post/812525782326968320</guid><pubDate>Mon, 30 Mar 2026 11:36:10 -0400</pubDate><category>EPSS</category><category>KEV</category><category>Miggo</category><category>Patrick Garrity</category><category>VulnDB</category><category>Vulnerability Statistics</category><category>Vulnerability Tourists</category></item><item><title>NaClCON Talks I Am Excited For</title><description>&lt;p&gt;Earlier this month, I published “My Unofficial NaClCON FAQ” talking about a new security conference that I am excited for. It’s still a bit surprising to myself that I am interested in one at all. I fully thought I was done with them, but here we are! After participating on the Call For Papers (CFP) team to help select speakers, I wanted to highlight some talks that sound great.&lt;br/&gt;&lt;br/&gt;First, the…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/27/naclcon-talks-i-am-excited-for/","display_url":"https://jericho.blog/2026/03/27/naclcon-talks-i-am-excited-for/","title":"NaClCON Talks I Am Excited For","poster":[{"media_key":"69940c4050b7b100d2f729ee57e8a8da:2d74e1c7528e2035-8e","type":"image/png","width":684,"height":457}]}'&gt;&lt;a href="https://jericho.blog/2026/03/27/naclcon-talks-i-am-excited-for/" target="_blank"&gt;NaClCON Talks I Am Excited For&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/812263821459800064</link><guid>https://tumblr.attrition.org/post/812263821459800064</guid><pubDate>Fri, 27 Mar 2026 14:12:24 -0400</pubDate><category>Chris Wysopal</category><category>conferences</category><category>Hackers</category><category>History</category><category>Lee Felsenstein</category><category>NaClCON</category><category>Richard Thieme</category><category>TNO</category></item><item><title>YouTube: I Don&amp;rsquo;t Think You Understand Your Userbase</title><description>&lt;p&gt;It’s pretty rare that I use YouTube on a television, typically only if in the mood for specific music. Even then it tends to be a handful of videos as my ‘go to’. Earlier this month I was in the mood for such a concert and loaded it. I am authenticated as my Google account, so YouTube knows exactly who I am. At the top of the screen are my recommendations:&lt;br/&gt;&lt;br/&gt;You can probably see exactly where I am…&lt;/p&gt;&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/24/youtube-i-dont-think-you-understand-your-userbase/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/24/youtube-i-dont-think-you-understand-your-userbase/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;YouTube: I Don't Think You Understand Your Userbase&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;fa34794b47a97f760ab468660a2573f6:cf264fcf74bd25e5-fb&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/png&amp;quot;,&amp;quot;width&amp;quot;:1120,&amp;quot;height&amp;quot;:698}]}"&gt;&lt;a href="https://jericho.blog/2026/03/24/youtube-i-dont-think-you-understand-your-userbase/" target="_blank"&gt;YouTube: I Don&amp;rsquo;t Think You Understand Your Userbase&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/812011547900690432</link><guid>https://tumblr.attrition.org/post/812011547900690432</guid><pubDate>Tue, 24 Mar 2026 19:22:37 -0400</pubDate><category>Emu</category><category>UX</category><category>YouTube</category></item><item><title>The Jericho Blog Graveyard (2016 - 2020)</title><description>&lt;p&gt;This is a continuing short run series of blogs summarizing old drafts and either declaring them dead, while listing them here, or keeping them as they are still relevant.&lt;br/&gt;&lt;br/&gt;Part 1 – The Jericho Blog Graveyard (2010 – 2013)Part 2 – The Jericho Blog Graveyard (2014 – 2015)&lt;br/&gt;&lt;br/&gt;Part three:&lt;br/&gt;&lt;br/&gt;2016 – Extensive notes from a group chat at RBS about how bad the 2016 DBIR report was, numerous errors in it, and…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/18/the-jericho-blog-graveyard-2016-2020/","display_url":"https://jericho.blog/2026/03/18/the-jericho-blog-graveyard-2016-2020/","title":"The Jericho Blog Graveyard (2016 - 2020)","poster":[{"media_key":"1db6f4e7ff20b7ba96aaea576f78b2a1:8d54cbfc2b0a89fe-14","type":"image/png","width":1408,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/18/the-jericho-blog-graveyard-2016-2020/" target="_blank"&gt;The Jericho Blog Graveyard (2016 - 2020)&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/811455467445485568</link><guid>https://tumblr.attrition.org/post/811455467445485568</guid><pubDate>Wed, 18 Mar 2026 16:03:58 -0400</pubDate><category>Blogging</category><category>Jericho</category></item><item><title>The Jericho Blog Graveyard (2014 - 2015)</title><description>&lt;p&gt;After my last blog on the draft graveyard, which was the first, I am down to 117 that go back to 2014. Twelve years is a bit too long to sit on a blog typically. So like before, here are ideas I had to write about but never did.&lt;br/&gt;&lt;br/&gt;2014 – “Android Annoyances” is as the title describes, centered around upgrading and importing stuff I didn’t want, auto-correcting me still after fixing something back…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/17/the-jericho-blog-graveyard-2014-2015/","display_url":"https://jericho.blog/2026/03/17/the-jericho-blog-graveyard-2014-2015/","title":"The Jericho Blog Graveyard (2014 - 2015)","poster":[{"media_key":"1db6f4e7ff20b7ba96aaea576f78b2a1:0047ba5103425383-33","type":"image/png","width":1408,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/17/the-jericho-blog-graveyard-2014-2015/" target="_blank"&gt;The Jericho Blog Graveyard (2014 - 2015)&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/811348667663613952</link><guid>https://tumblr.attrition.org/post/811348667663613952</guid><pubDate>Tue, 17 Mar 2026 11:46:25 -0400</pubDate><category>Blogging</category><category>Jericho</category></item><item><title>Reason #42 Why InfoSec Has Failed</title><description>&lt;p&gt;Building on a prior post, with an admittedly arbitrary number that seems to be about right as far as the number of reasons, and more in this series coming in the future…&lt;br/&gt;&lt;br/&gt;This is a quick story to give readers an idea of just how bad our industry really is. This is not anecdotal either, I was present for this one as it impacted Risk Based Security. In addition to regular customers who consumed our…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/16/reason-42-why-infosec-has-failed/","display_url":"https://jericho.blog/2026/03/16/reason-42-why-infosec-has-failed/","title":"Reason #42 Why InfoSec Has Failed","poster":[{"media_key":"9dbdc8e55f9c73c85921d2be820982bc:772d2ca9c356bf6f-87","type":"image/png","width":1408,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/16/reason-42-why-infosec-has-failed/" target="_blank"&gt;Reason #42 Why InfoSec Has Failed&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/811258026863591424</link><guid>https://tumblr.attrition.org/post/811258026863591424</guid><pubDate>Mon, 16 Mar 2026 11:45:44 -0400</pubDate><category>Fail</category><category>Mobile</category><category>Vulnerabilities</category></item><item><title>My Lego Build: The Revolt</title><description>&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/15/my-lego-build-the-revolt/","display_url":"https://jericho.blog/2026/03/15/my-lego-build-the-revolt/","title":"My Lego Build: The Revolt","poster":[{"media_key":"16a558e0dc6d3bc7fb927a7e88890f88:517306f1d9d53b88-d2","type":"image/jpeg","width":4000,"height":3000}]}'&gt;&lt;a href="https://jericho.blog/2026/03/15/my-lego-build-the-revolt/" target="_blank"&gt;My Lego Build: The Revolt&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/811167406483521536</link><guid>https://tumblr.attrition.org/post/811167406483521536</guid><pubDate>Sun, 15 Mar 2026 11:45:21 -0400</pubDate><category>Lego</category><category>Revenge</category><category>Squirrel</category></item><item><title>My Pledge re: so-called AI and this Blog</title><description>&lt;p&gt;With the prevalence of so-called artificial intelligence (AI), the amount of people turning to it to the technology to help them write, or fully write, content is growing quickly. While it may be getting more difficult to detect assisted writing and generative images, it is still fairly easy and reliable. Regardless, I want to be very clear about my use of this technology past, present, and…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/14/my-pledge-re-so-called-ai-and-this-blog/","display_url":"https://jericho.blog/2026/03/14/my-pledge-re-so-called-ai-and-this-blog/","title":"My Pledge re: so-called AI and this Blog","poster":[{"media_key":"e5178a1cb139b13605a1a088c1c9933a:eaf56f2f7146ff48-7c","type":"image/png","width":1118,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/14/my-pledge-re-so-called-ai-and-this-blog/" target="_blank"&gt;My Pledge re: so-called AI and this Blog&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/811078113418264576</link><guid>https://tumblr.attrition.org/post/811078113418264576</guid><pubDate>Sat, 14 Mar 2026 12:06:05 -0400</pubDate><category>Jericho</category><category>So-called AI</category><category>Squirrel</category></item><item><title>Zero Day Clock - All The Pieces Matter</title><description>&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/12/zero-day-clock-all-the-pieces-matter/","display_url":"https://jericho.blog/2026/03/12/zero-day-clock-all-the-pieces-matter/","title":"Zero Day Clock - All The Pieces Matter","poster":[{"media_key":"1d65d78c5c7dbab4b1edc25a2eaf309f:c20409a6e4717848-83","type":"image/png","width":1408,"height":768}]}'&gt;&lt;a href="https://jericho.blog/2026/03/12/zero-day-clock-all-the-pieces-matter/" target="_blank"&gt;Zero Day Clock - All The Pieces Matter&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/810894672255991808</link><guid>https://tumblr.attrition.org/post/810894672255991808</guid><pubDate>Thu, 12 Mar 2026 11:30:22 -0400</pubDate><category>CVE</category><category>KEV</category><category>VulnCheck</category><category>Vulnerabilities</category><category>Vulnerability Disclosure</category><category>Zero Day Clock</category></item><item><title>My Unofficial NaClCON FAQ</title><description>&lt;p&gt;As someone who has basically become disillusioned with most information security conferences, I didn’t find myself to be excited about another, let alone a new one. Then along came NaClCON and it changed my mind. It was a matter of days before I volunteered to help with the Call For Papers (CFP) review. With the frequency of new conferences, in addition to the staggering number of existing ones,…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/03/05/my-unofficial-naclcon-faq/","display_url":"https://jericho.blog/2026/03/05/my-unofficial-naclcon-faq/","title":"My Unofficial NaClCON FAQ","poster":[{"media_key":"8f8d409a91a0e4ccebd40abea5f40f6a:16a10b6b312e06d1-d4","type":"image/jpeg","width":1766,"height":2350}]}'&gt;&lt;a href="https://jericho.blog/2026/03/05/my-unofficial-naclcon-faq/" target="_blank"&gt;My Unofficial NaClCON FAQ&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/810278640773414912</link><guid>https://tumblr.attrition.org/post/810278640773414912</guid><pubDate>Thu, 05 Mar 2026 15:18:48 -0500</pubDate><category>Hackers</category><category>History</category><category>NaClCON</category></item><item><title>It&amp;rsquo;s 2026 and Netscout Doesn&amp;rsquo;t Understand CVE</title><description>&lt;p&gt;Every year I hold out hope that the security industry will better understand the Common Vulnerabilities and Exposures (CVE) system. A surprising number in this industry barely know about it, let alone any meaningful details. It’s one thing for a random security wonk in a back corner somewhere, laser-focused on their myopic work not to. It’s another thing for a security company that offers…&lt;/p&gt;&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/03/its-2026-and-netscout-doesnt-understand-cve/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/03/03/its-2026-and-netscout-doesnt-understand-cve/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;It's 2026 and Netscout Doesn't Understand CVE&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;adb07a753bf0ddc91218fb78c16d53cb:3ee2f9777d72c697-c4&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/png&amp;quot;,&amp;quot;width&amp;quot;:1232,&amp;quot;height&amp;quot;:864}]}"&gt;&lt;a href="https://jericho.blog/2026/03/03/its-2026-and-netscout-doesnt-understand-cve/" target="_blank"&gt;It&amp;rsquo;s 2026 and Netscout Doesn&amp;rsquo;t Understand CVE&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/810090110000529408</link><guid>https://tumblr.attrition.org/post/810090110000529408</guid><pubDate>Tue, 03 Mar 2026 13:22:11 -0500</pubDate><category>CVE</category><category>CVE Explanation Fail</category><category>Netscout</category><category>Vulnerability Tourists</category></item><item><title>Domain Transfer Confirmation Email? No, It&amp;rsquo;s Not From ICANN.</title><description>&lt;p&gt;TL;DR: If you get an email from noreply@emailverification.info saying you must click a link and input a code to finalize a domain transfer, ignore it. It claims to be an ICANN accredited registrar, but per ICANN themselves, the mail is not legitimate. Any mails about transferring a domain should come from the registrar you are moving from, or the one you are moving to.&lt;br/&gt;&lt;br/&gt;It feels weird to write…&lt;/p&gt;&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/02/26/domain-transfer-confirmation-email-no-its-not-from-icann/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/02/26/domain-transfer-confirmation-email-no-its-not-from-icann/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;Domain Transfer Confirmation Email? No, It's Not From ICANN.&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;07b4de7d2b34070256436ced7af9f83e:d0097ed59882445d-10&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/png&amp;quot;,&amp;quot;width&amp;quot;:1408,&amp;quot;height&amp;quot;:768}]}"&gt;&lt;a href="https://jericho.blog/2026/02/26/domain-transfer-confirmation-email-no-its-not-from-icann/" target="_blank"&gt;Domain Transfer Confirmation Email? No, It&amp;rsquo;s Not From ICANN.&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/809648362325508096</link><guid>https://tumblr.attrition.org/post/809648362325508096</guid><pubDate>Thu, 26 Feb 2026 16:20:48 -0500</pubDate><category>Domain Transfer</category><category>ICANN</category><category>Registar</category></item><item><title>NSA, Theft, and the Original Quantum Lazlo</title><description>&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/02/23/nsa-theft-and-the-original-quantum-lazlo/","display_url":"https://jericho.blog/2026/02/23/nsa-theft-and-the-original-quantum-lazlo/","title":"NSA, Theft, and the Original Quantum Lazlo","poster":[{"media_key":"1236bfb2446b16f4dcddd63fd3315418:2e896bc643bfa8f3-68","type":"image/png","width":750,"height":750}]}'&gt;&lt;a href="https://jericho.blog/2026/02/23/nsa-theft-and-the-original-quantum-lazlo/" target="_blank"&gt;NSA, Theft, and the Original Quantum Lazlo&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/809369699710353408</link><guid>https://tumblr.attrition.org/post/809369699710353408</guid><pubDate>Mon, 23 Feb 2026 14:31:35 -0500</pubDate><category>Attrition</category><category>FOIA</category><category>Lazlo</category><category>NSA</category><category>TAO</category></item><item><title>Support Charity or Shatter Dreams</title><description>&lt;p&gt;A few days ago, a friend linked me to a contest that her daughter’s art was entered in, where voting is done online. I’m sure we’ve seen this for a wide variety of things in our lives these days, so it is easy to miss some of the little details that render the competitions unfair. The original ones often had no mechanism to stop you from just clicking ‘Vote’ over and over. Then they added…&lt;/p&gt;&lt;p class="npf_link" data-npf='{"type":"link","url":"https://jericho.blog/2026/02/22/support-charity-or-shatter-dreams/","display_url":"https://jericho.blog/2026/02/22/support-charity-or-shatter-dreams/","title":"Support Charity or Shatter Dreams","poster":[{"media_key":"03a42daa709c757323abacdd422f8f47:2c4153a2e888097f-6a","type":"image/jpeg","width":500,"height":756}]}'&gt;&lt;a href="https://jericho.blog/2026/02/22/support-charity-or-shatter-dreams/" target="_blank"&gt;Support Charity or Shatter Dreams&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/809273794668675073</link><guid>https://tumblr.attrition.org/post/809273794668675073</guid><pubDate>Sun, 22 Feb 2026 13:07:12 -0500</pubDate><category>Art</category><category>Charity</category></item><item><title>Abert&amp;rsquo;s Squirrels and Wonderful Variations</title><description>&lt;p class="npf_link" data-npf="{&amp;quot;type&amp;quot;:&amp;quot;link&amp;quot;,&amp;quot;url&amp;quot;:&amp;quot;https://jericho.blog/2026/02/14/aberts-squirrels-and-wonderful-variations/&amp;quot;,&amp;quot;display_url&amp;quot;:&amp;quot;https://jericho.blog/2026/02/14/aberts-squirrels-and-wonderful-variations/&amp;quot;,&amp;quot;title&amp;quot;:&amp;quot;Abert's Squirrels and Wonderful Variations&amp;quot;,&amp;quot;poster&amp;quot;:[{&amp;quot;media_key&amp;quot;:&amp;quot;f2d7b1a6426f46a6c2849a5c17e7bc5e:244e6a1ebd077723-27&amp;quot;,&amp;quot;type&amp;quot;:&amp;quot;image/jpeg&amp;quot;,&amp;quot;width&amp;quot;:4000,&amp;quot;height&amp;quot;:3000}]}"&gt;&lt;a href="https://jericho.blog/2026/02/14/aberts-squirrels-and-wonderful-variations/" target="_blank"&gt;Abert&amp;rsquo;s Squirrels and Wonderful Variations&lt;/a&gt;&lt;/p&gt;</description><link>https://tumblr.attrition.org/post/808542078437113856</link><guid>https://tumblr.attrition.org/post/808542078437113856</guid><pubDate>Sat, 14 Feb 2026 11:16:53 -0500</pubDate><category>Abert&amp;039;s Squirrel</category><category>Colorado</category><category>Nature</category><category>Squirrel</category></item></channel></rss>
