What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
Black cat is an acrylic painting in contemporary square format painted by artist Karen Kaspar. A black cat is hiding in a meadow. You see the head of the black cat with green eyes. The background is painted with bold expressive brushstrokes in shades of green, yellow, orange and ocre.
0
0
0
0
0
0
0

it's kinda crazy that RAM prices are just gonna be fucked until 2028. Consumer electronics inflation is crazy. All those gay ass cost of living indicators are gonna explode because the price of TVs are gonna jump, along with everything else.
0

Signal: “Please give me unfettered access to your address book. I’m very trustworthy!”
Me: “No, you’re not.”
“Why not?”
“You keep pushing this dark pattern on me and have no way for me to say I never want to consent to this.”
“Okay, but besides that?”
“…”
“Same time next week?”

“Find contacts on Signal” pop up with only “Not Now” and “Allow Access”
0
0
0
0
0
0

cybersecurity job posting in washington state

Information Security Officer

Salary: Position Range: $92,589.00 - $128,166.00 Hiring Range: $104,449.000 - $122,236.000 Most applicants’ offers will fall within this hiring range based on qualifications, experience, and alignment with the role’s needs. FLSA Status: Exempt Join the team that keeps the Tri-Cities moving! OUR MISSION AND VALUES Ben Franklin Transit (BFT) provides exceptional and cost-effective transportation services that consistently exceed customer expectations while promoting the principles and practices of livable communities and sustainable development. We value customer service, collaboration, diversity, fiscal accountability, innovation, sustainability, and safety. Employees and representatives of BFT are expected to uphold our values and mission. NATURE OF POSITION The Information Security Officer (ISO) is responsible for leading the agency’s cybersecurity governance and risk management program. The ISO develops and maintains cybersecurity policies and standards, designs and delivers security awareness and role-based training, establishes security recordkeeping and evidence practices (including retention coordination), and drives incident readiness and continuous improvement. This role partners with IT, operations, maintenance, safety/security, records management, HR, and vendors to ensure cybersecurity controls are practical, auditable, and aligned with transit operational needs. ESSENTIAL DUTIES AND RESPONSIBILITIES Own and maintain the agency cybersecurity program charter, roadmap, and key performance indicators. Maintain a cybersecurity risk register; facilitate risk acceptance decisions with leadership and system owners. Chair or coordinate a cross-functional cybersecurity steering group (IT, operations, maintenance, safety/security, records, HR, procurement). Ensure cybersecurity requirements are integrated into projects, change management, and system lifecycle activities. Develop and maintain cybersecurity policies, standards, and procedures with a defined review cadence and exception process. Establish minimum security standards for identity, access, endpoints, logging, backups, remote access, and vendor connectivity. Produce and maintain plain-language guidance that staff can follow (one-page standards, job aids, checklists). Design and manage annual security awareness training and new-hire cybersecurity onboarding. Deliver role-based training for high-risk roles (e.g., finance, HR, dispatch supervisors, IT administrators, maintenance leads). Coordinate phishing simulations and targeted coaching/remediation (where used). Measure training effectiveness and report completion and risk trends to leadership. Partner with the Records Officer to align cybersecurity records (policies, acknowledgements, training records, incidents, and logs) with applicable Washington State retention requirements and agency records policies. Define and maintain a security evidence framework: what records are required, where they live, and how they are produced for audits/public records requests. Support legal holds and preservation requirements related to incidents, investigations, and litigation. Leverage security and compliance capabilities available in the agency’s Microsoft 365 Government G5 environment (e.g., Microsoft Defender, Microsoft Entra ID, and Microsoft Purview) to improve prevention, detection, and data governance. Coordinate configuration standards and monitoring for email and collaboration security, identity protection (MFA/conditional access), data protection (sensitivity labels/DLP), and retention/eDiscovery/audit capabilities as licensed. Develop operational runbooks and reporting dashboards so controls remain effective and measurable over time. Maintain and test the Cybersecurity Incident Response Plan, including playbooks for ransomware, business email compromise, and vendor compromise. Coordinate tabletop exercises with IT and operational stakeholders; track corrective actions through closure. Serve as a lead technical/program liaison during cybersecurity incidents (internal coordination and vendor coordination). Establish cybersecurity requirements for vendors and contracts (secure remote access, MFA, incident notification, logging, and data handling). Perform risk reviews for critical vendors and systems; validate that compensating controls are documented when needed. Coordinate vendor access lifecycle management (onboarding, periodic review, termination). Other duties as assigned. KNOWLEDGE, SKILLS & ABILITIES Knowledge of modern threat landscape (phishing, ransomware, credential theft, supply-chain compromise) and practical mitigations. Ability to develop clear policies, standards, and training content and to maintain document and evidence control. Ability to assess risk, prioritize work, and communicate risk to non-technical stakeholders. Understanding of identity and access management, endpoint protection, vulnerability management, logging, backups, and incident response. Ability to work effectively with operations and maintenance staff to design controls that do not disrupt service delivery. Strong written and verbal communication skills, including the ability to facilitate cross-functional discussions and influence outcomes without formal authority. MINIMUM QUALIFICATIONS Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field; or an equivalent combination of education and experience. Five (5) years of progressively responsible experience in cybersecurity, information security, IT risk management, or a related field. PREFERED QUALIFICATIONS Security certifications such as CISSP, CISM, CRISC, Security+, GIAC, or equivalent Experience in public sector, critical infrastructure, transportation, or a 24/7 operational environment. Working knowledge of NIST Cybersecurity Framework (CSF), NIST SP 800-53/800-171 concepts, or comparable control frameworks; ability to map controls to agency policy and evidence. Experience with Microsoft Defender, Microsoft Purview, Microsoft Entra ID (identity governance/conditional access), and security reporting/monitoring practices. Experience partnering with records management on retention, eDiscovery, and public records response readiness. PHYSICAL REQUIREMENTS Generally sedentary in nature; occasionally stand and walk; intermittently kneel, stoop, bend and twist at the waist, and reach overhead; sit for long periods of time. Rarely kneel, crouch, or crawl. Occasionally lift, push/pull, or carry up to 40 pounds. Good vision to read print and computer screen. Hear and speak to communicate in person, before groups, and over the telephone. Manual dexterity of hands and fingers to include repetitive keyboarding, grasping and reaching to operate a computer keyboard, mouse and/or standard office equipment. WORKING CONDITIONS Work is primarily performed in an office environment where noise, distractions, and lack of privacy may be present. Position participates in after-hours incident response as needed and may be on-call during cybersecurity events. Operate a motor vehicle. Remote option dependent on location. If you want to give back to the community, consider hopping onboard the team that's going places! Equal Employment Opportunity (EEO) Policy Ben Franklin Transit (BFT) is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. It is BFT’s policy to employ, train, promote, compensate, and provide conditions of employment without regard to a person’s race, color, sex, disability, religion, national origin, age, veteran’s status, citizenship, or any other status protected by applicable law. Drug-Free Workplace Policy Ben Franklin Transit (BFT) is a drug-free workplace. The purpose of this policy is to ensure worker fitness for duty and to protect our employees, passengers, and the public from the risks posed by the use of alcohol and prohibited drugs. Participation in BFT’s zero tolerance drug-free workplace policy is a condition of employment. Ben Franklin Transit (BFT) provides exceptional and cost-effective transportation services that consistently exceed customer expectations while promoting the principles and practices of livable communities and sustainable development. We value customer service, collaboration, diversity, fiscal accountability, innovation, sustainability and safety. Employees and representatives of BFT are expected to uphold our values and mission. We offer a competitive salary and comprehensive benefits package including medical, dental, vision, long term disability, and life insurance. For more information please click here and scroll down to the benefits section.

bft.wd501.myworkdayjobs.com

0
0
0
0
0
0
0
0

Signal: “Please give me unfettered access to your address book. I’m very trustworthy!”
Me: “No, you’re not.”
“Why not?”
“You keep pushing this dark pattern on me and have no way for me to say I never want to consent to this.”
“Okay, but besides that?”
“…”
“Same time next week?”

“Find contacts on Signal” pop up with only “Not Now” and “Allow Access”
0
0
0
0
0
0
0
0
0
0

The account @tom79@holos.social has been migrated to @tom79@holos.fedilab.appThomas using the new Custom Domains feature.

Use your own domain for your ActivityPub identity. No instance to host, pure ActivityPub from your phone. Your identity is no longer tied to the relay. Switch anytime.

Add your domain, configure a CNAME record, verify and activate. Followers are notified via a Move activity.

More: holos.social/custom-domains

Fully available in the next RC release.

0
0
0
0
0
0
0

Interesting… just saw a sidebar on a YouTube video for a fundraiser being run by the channel. Was legitimately surprised to see YouTube doing product development to further YouTube itself as a revenue center instead of just treating YouTube as a site for investor storytime about how Google is adopting "AI"

YouTube screenshot of "Angine de Poitrine" performing live at the KEXP offices, with a "donate now" box for KEXP on the right. "YouTube covers all transaction fees".
0
0
0

I was thinking about how strange it is that the cupboard in a bathroom is called a "vanity unit", and then I got to thinking, what if all your furniture was named after the seven deadly sins?

* Bathroom cupboard = vanity unit
* Paid-work office = avarice unit
* Computer gaming station = anger unit
* Device running social media = envy unit
* Bed = lust unit
* Induction hob = gluttony unit
* Sofa = sloth unit

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

Interesting… just saw a sidebar on a YouTube video for a fundraiser being run by the channel. Was legitimately surprised to see YouTube doing product development to further YouTube itself as a revenue center instead of just treating YouTube as a site for investor storytime about how Google is adopting "AI"

YouTube screenshot of "Angine de Poitrine" performing live at the KEXP offices, with a "donate now" box for KEXP on the right. "YouTube covers all transaction fees".
0
0
0
0
0
0
0
0
0
0
0

@djangonews is a wonderful resource for the community. I'm always excited to read the latest edition. This week's included some love for django-antipatterns.org

The site includes extra context on JsonResponse(safe=) which clarifies why it's important. Thankfully, browsers have gotten better to the point where this feature (and antipattern) can be removed!

better-simple.com/django/2026/

0