> Markdown version of [/magazine/477-dev-digest-134-where-pixels-sing](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Dev Digest 134 - Where pixels sing? **By:** [Chris Heilmann](https://www.wearedevelopers.com/@chris-heilmann) **Published:** September 23, 2024 ## News and Articles ![Data and security day](https://wearedevelopers.imgix.net/public/magazine/articles/477/images/66ed6852317d2f0508f01174_dataday.jpeg?w=720&fit=max&dpr=2&auto=format) WeAreDevelopers [LIVE Data and Security Day](https://www.wearedevelopers.com/en/live-events/7/data-and-security-day-september-2024?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) is on **Wednesday, 25/09/2024**. Learn about _OPC UA Updates_, _Best Practices for Using GitHub Secrets_, _Passwordless Web 1.5_, _Emerging AI Security Risks,_ _Data Privacy in LLMs_ and get a chance to take part in the [CODE100](https://code100.dev/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) finals next year. Quite a few cool things this week. **Interop2025** wants [your proposals](https://web.dev/blog/interop2025-proposals?hl=en&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and [Apple Webkit](https://webkit.org/blog/15942/get-ready-for-interop-2025-your-chance-to-shape-the-web/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and [Microsoft Edge](https://blogs.windows.com/msedgedev/2024/09/17/interop-2025-call-for-proposals/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) are all in. The [State of HTML](https://survey.devographics.com/en-US/survey/state-of-html/2024?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) survey is also open. **Discord** announced [end-to-end encryption](https://discord.com/blog/meet-dave-e2ee-for-audio-video?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) whilst **YouTube** tries to embark on their turf with [YouTube Communities](https://blog.youtube/news-and-events/a-new-youtube-communities-experience-for-fans-by-fans/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). There are some [changes to the OSCP exam](https://help.offsec.com/hc/en-us/articles/29840452210580-Changes-to-the-OSCP?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and the **W3C** proposes how to [shape the secure Web](https://www.w3.org/blog/2024/web-security-shaping-the-secure-web/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Australia's police managed to [hack into ‘Ghost’](https://www.404media.co/police-hack-into-ghost-an-encrypted-platform-for-criminals/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) whilst [Meta scraped Australian user accounts to train its AI](https://www.engadget.com/apps/meta-scraped-every-australian-users-account-to-train-its-ai-120026200.html?src=rss&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). The **Crowdstrike** issue is also not over, touting [monoculture as monofailure](https://www.prospectmagazine.co.uk/ideas/technology/67625/when-monoculture-leads-to-monofailure?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and reports from ex-employees stating that [quality control was not part of their process](https://www.semafor.com/article/09/12/2024/ex-crowdstrike-employees-detail-rising-technical-errors-before-july-outage?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Meanwhile, **Microsoft** builds new [Windows security features](https://blogs.windows.com/windowsexperience/2024/09/12/taking-steps-that-drive-resiliency-and-security-for-windows-customers/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) to prevent similar incidents. **GitHub's** Copilot Chat is [now aware of security alerts](https://github.blog/changelog/2024-09-05-copilot-chat-in-github-com-is-now-contextually-aware-of-github-advanced-security-alerts/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g), and [offers AI-powered fixes for code vulnerabilities](https://www.infoworld.com/article/3487305/github-rolls-out-ai-powered-fixes-for-code-vulnerabilities.html?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) whilst [GitHub Actions are vulnerable to typosquatting](https://thehackernews.com/2024/09/github-actions-vulnerable-to.html?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and [many other attacks](https://github.com/jstawinski/GitHub-Actions-Attack-Diagram?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Prompt injection [can lead to Agent hijacking](https://snyk.io/blog/agent-hijacking/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) which is scary as Agents are the new hot thing. And talking of scary and worrying, Oracle co-founder **Larry Ellison** claimed that [omnipresent AI cameras will ensure good behavior](https://arstechnica.com/information-technology/2024/09/omnipresent-ai-cameras-will-ensure-good-behavior-says-larry-ellison/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and this [dystopian idea is already reality](https://www.404media.co/larry-ellisons-ai-powered-surveillance-dystopia-is-already-here/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) in some places and you can [summarise surveillance video footage with AI](https://github.com/Ravi-Teja-konda/Surveillance_Video_Summarizer?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Other tech big wigs do better, like the [Craigslist founder pledging $100 Million to Boost U.S. Cybersecurity](https://www.wsj.com/tech/cybersecurity/craigslist-founder-pledges-100-million-to-boost-u-s-cybersecurity-5357f5ae?st=mnso7i&reflink=desktopwebshare_permalink&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). And there were reports of [ChatGPT messaging users unprompted](https://futurism.com/openai-chatgpt-initiating-conversations?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g), you know, like the [WOPR](https://en.wikipedia.org/wiki/WarGames?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) calling you back to end the game you started. ## Code and Tools Have you ever been [bitten by Unicode](https://pyatl.dev/2024/09/01/bitten-by-unicode/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g), encountered [Regex going wrong](https://www.trevorlasn.com/blog/when-regex-goes-wrong?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g), wanted to [learn Rust for fun and backdoo-rs](https://security.humanativaspa.it/learning-rust-for-fun-and-backdoo-rs/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) or [OAuth from First Principles](https://stack-auth.com/blog/oauth-from-first-principles?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g)? You can also gain wisdom from [Penetration Testing Notes](https://github.com/GTekSD/SUASS?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) or from a write-up ob how to get people's personal information by [prompt injection of Microsoft Copilot](https://embracethered.com/blog/posts/2024/m365-copilot-prompt-injection-tool-invocation-and-data-exfil-using-ascii-smuggling/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Or you could [make a REST API typesafe](https://noahflk.com/blog/typesafe-rest-api?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) with React Query and Zod. **Some tools for you:** - [Redbird](https://www.npmjs.com/package/redbird?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - a reverse proxy with Cluster, HTTP2, LetsEncrypt and Docker - [huntsman](https://github.com/mlcsec/huntsman?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - Email enumerator, username generator, and context validator - [safe-stringify](https://github.com/sindresorhus/safe-stringify?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - object to JSON serialisation without circular references - [URL validation bypass cheat sheet](https://portswigger.net/web-security/ssrf/url-validation-bypass-cheat-sheet?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - how to get access - [wush](https://github.com/coder/wush?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - transfer files and open shells over a P2P WireGuard connection - [StatiCrypt](https://github.com/robinmoisson/staticrypt?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) - encrypt and password protect HTML with in-browser decryption ## Talks and Videos ![Martina-Kraus-Cross Site Scripting is yesterdays news, isnt it-UGxhbm5pbmdfMjAwMzA2NQ](https://wearedevelopers.imgix.net/public/magazine/articles/477/images/66ed6850571ea4900aa66f96_Martina-Kraus-Cross_Site_Scripting_is_yesterdays_news,_isnt_it-UGxhbm5pbmdfMjAwMzA2NQ.png?w=720&fit=max&dpr=2&auto=format) **Martina Kraus** reminds us that XSS is still a thing, shows current trends and advanced XSS techniques and how to protect ourselves against them. [Check it out](/videos/1028-cross-site-scripting-is-yesterday-s-news-isn-t-it). **Other videos and talk write-ups of note:** - ‍ **Ali Yazdani** - [Real-world Threat Modeling (22m)](/videos/936-real-world-threat-modeling) - ‍ **Reinhard Kugler** - [A Hitchhikers Guide to Container Security - Car Edition (22m)](/videos/1119-a-hitchhikers-guide-to-container-security-automotive-edition-2024) **‍** - **Andrei Epure** - [How your .NET supply chain is open to attack - how to fix it (29m)](/videos/938-how-your-net-software-supply-chain-is-open-to-attack-and-how-to-fix-it) **‍** - **Niels Tanis** - [3rd party library security reviews with the OpenSSF Scorecard (26m)](/videos/1041-reviewing-3rd-party-library-security-easily-using-openssf-scorecard) **‍** - **Sebastian Leuer** - [Programming secure C#/.NET Applications: Dos & Don'ts (34m)](/videos/1126-programming-secure-c-net-applications-dos-don-ts) ## Work and Jobs ![TUM, netcetera and TUM initiative for applied artificial intelligence logos](https://wearedevelopers.imgix.net/public/magazine/articles/477/images/66ed68504554a0aa0d52b10d_logos.png?w=720&fit=max&dpr=2&auto=format) Netcetera, TUM and AppliedAI are [conducting a survey on how AI is transforming software development,](https://ww3.unipark.de/uc/AIatSoftwareDevelopment/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and invite you to share your insights! Your participation will help us understand the impact of AI on the software development lifecycle and create valuable recommendations for developers and decision-makers. The survey covers key topics like AI's influence on development phases, collaboration, quality, and more. It takes about 15 minutes. **Salesforce** admitted that its [AI Strategy will take jobs](https://finance.yahoo.com/news/salesforce-ai-strategy-acknowledges-ai-120000175.html?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g), **Amazon** [tells workers to be in office 5 days a week](https://www.cnbc.com/2024/09/16/amazon-jassy-tells-employees-to-return-to-office-five-days-a-week.html?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and **HackerNews** [discusses what that means for workers](https://news.ycombinator.com/item?id=41563621&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). Related articles are [how to communicate tradeoffs so leaders will listen](https://www.lennysnewsletter.com/p/how-to-communicate-tradeoffs-so-leaders?r=2bjtip&triedRedirect=true&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) and [how to lead teams when the house is on fire](https://peterszasz.com/how-to-lead-your-team-when-the-house-is-on-fire/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). In a pretty terrible move, a [fake recruiter coding tests](https://www.reversinglabs.com/blog/fake-recruiter-coding-tests-target-devs-with-malicious-python-packages?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) infected applicants' computers with malware. And there are [10 Essential Techniques](https://www.philvenables.com/post/security-training-awareness-10-essential-techniques?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) for teaching security in your company. ## Procrastination Corner / Wonderful Weird Web - [Defrag](https://defrag-game.com/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g)- the game? - Iceland encourages people to [throw baby puffins off cliffs](https://www.giantfreakinrobot.com/sci/iceland-throw-baby-puffins-cliffs.html?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). - [The National Cryptologic School Television Center Catalog, 1991](https://www.governmentattic.org/28docs/NatnlCryptoSchoolTVctrCat_1991.pdf?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). - ["STINKY”](https://arstechnica.com/security/2024/09/sailors-hid-an-unauthorized-starlink-on-the-deck-of-a-us-warship-and-lied-about-it/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g) the WiFi powered by a [hidden Starlink dish on US warship](https://www.navytimes.com/news/your-navy/2024/09/03/how-navy-chiefs-conspired-to-get-themselves-illegal-warship-wi-fi/?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). - PIXELL [gets info via noise generated by "singing pixels" on the screen](https://arxiv.org/abs/2409.04930?utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--8fLDM4K6T7EF7748bds3XCZU_H4FOXTlzQJYn0MG3v4m1GUlw8tDXleQqj-RvMkSsw5TOpxi1TmbZhATtSCD0p6neKMrCtyKP9Q2RxiAVlNHt29g). ## Related Articles - [Dev Digest 127 - putting 5 rings on it](https://www.wearedevelopers.com/magazine/464-dev-digest-127-putting-5-rings-on-it) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data) - [Dev Digest 126 - * yells at cloud](https://www.wearedevelopers.com/magazine/463-dev-digest-126-yells-at-cloud) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) ## Related Videos - [WeAreDevelopers LIVE: Scammer Payback with Python, Grok Goes Unhinged, The Future of Chromium and mo](https://www.wearedevelopers.com/videos/1288-wearedevelopers-live-scammer-payback-with-python-grok-goes-unhinged-the-future-of-chromium-and-mo) - [FIFA Hack, Midjourney Does Ultrasounds, and Trampoline Traffic Lights - Nicole Jeschko and Werner Jeschko](https://www.wearedevelopers.com/videos/1912-fifa-hack-midjourney-does-ultrasounds-and-trampoline-traffic-lights-nicole-jeschko-and-werner-jeschko) - [Slopquatting, API Keys, Fun with Fonts, Recruiters vs AI and more - The Best of LIVE 2025 - Part 2](https://www.wearedevelopers.com/videos/1765-slopquatting-api-keys-fun-with-fonts-recruiters-vs-ai-and-more-the-best-of-live-2025-part-2) - [WeAreDevelopers Live: Browser Extensions, Honey Scam, Jailbreaking LLMs and more](https://www.wearedevelopers.com/videos/1286-wearedevelopers-live-browser-extensions-honey-scam-jailbreaking-llms-and-more) ## Related Jobs - [Engineer, Offensive Security Organization](https://www.wearedevelopers.com/jobs/ext/1992296-engineer-offensive-security-organization) at **Twilio** - [Staff Developer Advocate, GitHub Security Lab](https://www.wearedevelopers.com/jobs/ext/1921051-staff-developer-advocate-github-security-lab) at **GitHub** - [Senior Software Engineer](https://www.wearedevelopers.com/jobs/ext/15942-senior-software-engineer) at **GitHub** - [Remote Senior Full-Stack Engineer](https://www.wearedevelopers.com/jobs/ext/679408-remote-senior-full-stack-engineer) at **Edge Impulse** - [Remote Senior Full-Stack Engineer](https://www.wearedevelopers.com/jobs/ext/683045-remote-senior-full-stack-engineer) at **Edge Impulse** - [Remote Senior Full-Stack Engineer](https://www.wearedevelopers.com/jobs/ext/639235-remote-senior-full-stack-engineer) at **Edge Impulse**