ge

Malicious NPM Packages Target Roblox Users with Data-Stealing Malware

A new campaign has targeted the npm package repository with malicious JavaScript libraries that are designed to infect Roblox users with open-source stealer malware such as Skuld and Blank-Grabber. "This incident highlights the alarming ease with which threat actors can launch supply chain attacks by exploiting trust and human error within the open source ecosystem, and using readily available




ge

IcePeony and Transparent Tribe Target Indian Entities with Cloud-Based Tools

High-profile entities in India have become the target of malicious campaigns orchestrated by the Pakistan-based Transparent Tribe threat actor and a previously unknown China-nexus cyber espionage group dubbed IcePeony. The intrusions linked to Transparent Tribe involve the use of a malware called ElizaRAT and a new stealer payload dubbed ApoloStealer on specific victims of interest, Check Point




ge

AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services

The threat actors behind the AndroxGh0st malware are now exploiting a broader set of security flaws impacting various internet-facing applications, while also deploying the Mozi botnet malware. "This botnet utilizes remote code execution and credential-stealing methods to maintain persistent access, leveraging unpatched vulnerabilities to infiltrate critical infrastructures," CloudSEK said in a




ge

Security Flaws in Popular ML Toolkits Enable Server Hijacks, Privilege Escalation

Cybersecurity researchers have uncovered nearly two dozen security flaws spanning 15 different machine learning (ML) related open-source projects. These comprise vulnerabilities discovered both on the server- and client-side, software supply chain security firm JFrog said in an analysis published last week. The server-side weaknesses "allow attackers to hijack important servers in the




ge

New GootLoader Campaign Targets Users Searching for Bengal Cat Laws in Australia

In an unusually specific campaign, users searching about the legality of Bengal Cats in Australia are being targeted with the GootLoader malware. "In this case, we found the GootLoader actors using search results for information about a particular cat and a particular geography being used to deliver the payload: 'Are Bengal Cats legal in Australia?,'" Sophos researchers Trang Tang, Hikaru Koike,




ge

New Ymir Ransomware Exploits Memory for Stealthy Attacks; Targets Corporate Networks

Cybersecurity researchers have flagged a new ransomware family called Ymir that was deployed in an attack two days after systems were compromised by a stealer malware called RustyStealer. "Ymir ransomware introduces a unique combination of technical features and tactics that enhance its effectiveness," Russian cybersecurity vendor Kaspersky said. "Threat actors leveraged an unconventional blend




ge

North Korean Hackers Target macOS Using Flutter-Embedded Malware

Threat actors with ties to the Democratic People's Republic of Korea (DPRK aka North Korea) have been found embedding malware within Flutter applications, marking the first time this tactic has been adopted by the adversary to infect Apple macOS devices. Jamf Threat Labs, which made the discovery based on artifacts uploaded to the VirusTotal platform earlier this month, said the Flutter-built




ge

New Phishing Tool GoIssue Targets GitHub Developers in Bulk Email Campaigns

Cybersecurity researchers are calling attention to a new sophisticated tool called GoIssue that can be used to send phishing messages at scale targeting GitHub users. The program, first marketed by a threat actor named cyberdluffy (aka Cyber D' Luffy) on the Runion forum earlier this August, is advertised as a tool that allows criminal actors to extract email addresses from public GitHub




ge

Geekcode 2022

Another even year, another odd Geekcode. The Geekcode is a very old tradition. It was written by Robert…




ge

Posts Spread Unfounded Claim of Race-Based Threat of Violence in Georgia

Posts shared on Facebook make an unfounded claim of racially motivated threats of violence in Gwinnett County, Georgia, "from now until the Inauguration." The county sheriff's office said it had "not received any information indicating threats to any group(s) on or after election day."

The post Posts Spread Unfounded Claim of Race-Based Threat of Violence in Georgia appeared first on FactCheck.org.




ge

Writing through cringe

For the first day of NaBloPoMo (National Blog Posting Month), I want to start with something difficult, and the reason why I’m participating in this monthly challenge.

I’ve lost all affection for my writing voice, and I don’t entirely know why.

These days, it’s challenging for me to get excited about writing anything personal. Everything I post, aside from ink swatches, makes me cringe, even simple replies to others' posts. When I started writing online, it was so easy to share any little moss-bulb of detail, despite lacking confidence in my voice or purpose. It was enough to noodle in public; I had a stage (my website) and tap-tap-tapping its microphone didn’t make me feel immediately self-conscious.

A few years ago, I pushed — harder than I’ve pushed for many things in my life — for the “community” aspect of Micro.blog to be more than a shared timeline. I wanted it to be something I could lean back softly into, both an audience and support group, comprised of people who shared the same penchant for collecting and amplifying small treasures of moments.

The people exist (and they are wonderful, I read what they share with delight) but the community? I know now that what I was asking for doesn’t exist online in the same way it did, but I didn’t know that yet. I kept pushing and pushing, until one day I just … stopped. Everything I said seemed to repulse people instead of drawing them closer. It was easier to find what I needed and wanted in the friendships I was slowly and intentionally building offline than it was for me to do that online. And that was a first for me. Much of my life, up to that point, had been spent focusing on connecting online.

Because much of my life, up to that point, had been lived online.

I don’t really want to go back to living so much online. But sometimes I’m nostalgic for the feeling of being understood through my writing, shades of myself that I don’t know how to represent except through words.

It’s supremely cringey even to post this, but I’m going to push through in the hopes there’s some self-acceptance on the other side of it. I’m not ready to stop writing altogether. In some ways, I feel like I’ve barely begun.




ge

Yet another danger of cryptocurrencies ...




ge

Anthropic Wants Its AI Agent to Control Your Computer




ge

When Google's AI agent messes with ya'




ge

Man who made 'depraved' child images with AI jailed




ge

How to get funding from deluded, self-congratulating investors

From 1997 to 2012 just 1% of VC funded companies had female founders. Three of those companies were mine. People tell me it’s much better for women now, but statistically, this is BS. I raised money for a startup recently, and here’s what I found works best for female founders: Get a male cofounder. Women raising money without […]

The post How to get funding from deluded, self-congratulating investors appeared first on Penelope Trunk Careers.




ge

What explains the outsized success of autistic applicants to college

Z went to a Duke recruiting weekend where accepted kids can get a feel for the university. He hung out with some kids who decided to go to Harvard and Stanford, and a bunch of kids who decided on Duke. What was similar about all of them? They talked openly about having autism. At lunch […]

The post What explains the outsized success of autistic applicants to college appeared first on Penelope Trunk Careers.




ge

My Jewish college kid is protesting the war in Gaza. And I’m proud.

In the last 48 hours many of Y’s friends have been arrested for being part of an anti-war encampment at their college. I am shocked by the large number of college encampments across the US, but I knew this was coming because Y (who goes by they) has been discussing it for months. We are […]

The post My Jewish college kid is protesting the war in Gaza. And I’m proud. appeared first on Penelope Trunk Careers.




ge

How to keep a family together

I’m meditating now because it slows down time and I only have 14 more weeks until both my kids are at college. When Z is reading on the couch, and Nino is reading next to him, I pull up a chair and meditate with my eyes open because I don’t want to miss this moment. […]

The post How to keep a family together appeared first on Penelope Trunk Careers.

















ge

Time management for political sysadmins

Can you put me in contact with the "tech team" of a political campaign?

I am offering my "time management for sysadmins" training pro-bono to any Dem or anti-Trump digital team, sysadmins, devops team, SRE, etc. Contact me via LinkedIn, DM me on Twitter or email me if you know my email address.




ge

Keine Eiscreme, Habecks Kampf gegen Windmühlen, Respektkodex

1. Wir produzieren keine Eiscreme (journalist.de, Jacob Goldmann (Pseudonym)) In seinem Essay “Wir produzieren keine Eiscreme” beschreibt Jacob Goldmann, ein Pseudonym eines Lokaljournalisten, wie wirtschaftliche Interessen zunehmend redaktionelle Entscheidungen beeinflussen. Als ein Beispiel nennt er die Berichterstattung über die Nosferatu-Spinne, die aufgrund der hohen Klickzahlen zu einer Überflutung des Nachrichtenangebots geführt habe. Goldmann argumentiert, dass […]



  • 6 vor 9

ge

Proteste gegen Strunz, Medienwende nach Mauerfall, Freiheit der Herzen

1. Euronews-Redaktionen protestieren gegen ihren neuen Chef Claus Strunz (uebermedien.de, Stefan Niggemeier) Stefan Niggemeier fasst die Diskussionen um den neuen Euronews-Chef Claus Strunz, Ex-Mitglied der “Bild”-Chefredaktion, zusammen. Mitarbeiterinnen, Mitarbeiter und Gewerkschaften in Lyon und Brüssel würfen Strunz vor, die Prinzipien der Neutralität und Unparteilichkeit zu verletzen, insbesondere durch öffentliche Pro-Trump-Äußerungen und politische Eingriffe in die […]



  • 6 vor 9


ge

One is bad enough: Climate change raises the threat of multiple hurricanes

Getting hit with one hurricane is bad enough, but new research from Princeton Engineering shows that back-to-back versions may become common for many areas in coming decades.




ge

Getting to net-zero, in the U.S. and the world

Princeton's Jesse Jenkins on the new momentum in clean energy, and big challenges left to solve.




ge

Researchers discover an abrupt change in quantum behavior that defies current theories of superconductivity

New paper from Princeton team challenges the conventional wisdom of superconducting quantum transitions.




ge

Princeton archaeologists are using cutting-edge digital technologies to help reveal the ancient past

In the field, digital technology saves immense amounts of time and limits fruitless digging. In the classroom, VR recreations help bring the past to life.




ge

Princeton geneticists are rewriting the narrative of Neanderthals and other ancient humans

Modern humans and Neanderthals interacted over a 200,000-year period, says geneticist Joshua Akey.




ge

McCarter Theatre's 'Arts & Ideas' is attracting extraordinary artists to engage with faculty and students

Events this fall include a sold-out conversation with Icelandic-Chinese recording artist Laufey.




ge

‘Every Voice’ conference celebrates past, present and future of LGBTQ+ Tigers

Princeton's first alumni affinity conference since 2019 welcomed more than 600 alumni and guests to campus Sept. 19-21, for “Every Voice: Honoring and Celebrating Princeton’s LGBTQ+ Alumni.” 




ge

Princeton Professor Ruha Benjamin awarded MacArthur ‘genius’ grant

The MacArthur Foundation honored Benjamin for her critical analysis of how technology perpetuates inequality and for ‘championing the role of imagination in social transformation.'




ge

Endowment continues to provide foundation for Princeton’s groundbreaking research, innovative scholarship and national leadership on college affordability

In the Class of 2028, 71.5% of students qualify for financial aid and 21.7% of the class are lower-income students eligible for federal Pell grants.




ge

Election 2024: How Princeton's Vote100 encourages students to register, vote and be more civically engaged

Voting registration rates among Princeton undergraduate and graduate students have more than doubled largely thanks to the program.




ge

Academic Publisher Introduces Camouflaged Editions?

I was one of the outside readers1 for a volume in Cambridge University Press’s enormous “Elements” series, The New Witches of the West, by Ethan Doyle White. (Link is to Amazon US) To find that title, go to the main … Continue reading




ge

Angela Puca on the Origins of Today’s Pagan Samhain

Let the velvet-voiced Dr. Puca explains how the festival of Samhain gained its present form — and remember, Samhain is a season, a -“tide.”




ge

2024 Budget Update

Throughout the year, the OTW Finance team has continued its work of ensuring that the organization's bills are paid, tax returns filed, and all standard accounting guidelines and financial compliance requirements met. Preparation for the audit of 2023 financial statements continues!

The team has also been diligently working on the 2024 budget update and are happy to present it here: (access the 2024 budget spreadsheet for more detailed information):

2024 Expenses

Archive of Our Own (AO3)

  • US$250,381.02 spent so far out of US$416,441.01 total this year, as of September 30, 2024.
  • 55.1% of the OTW's expenses go towards maintaining the AO3. This includes the bulk of our server expenses—both new purchases and ongoing colocation and maintenance—website performance monitoring tools, and various systems-related licenses, as well as costs highlighted below (access all program expenses).
  • This year's projected AO3 expenses also include US$120,000 to purchase new servers, as well as US$15,000 in additional server related equipment to increase the capacity of existing servers to handle expected site traffic growth through the year.

Open Doors

  • US$6,899.70 spent so far out of US$9,344.33 total this year, as of September 30, 2024.
  • Open Doors' expenses consist of hosting, backup, and domain costs for imported fanwork archives, as well as an allocated share of various OTW-wide productivity tools (access all program expenses).

Transformative Works and Cultures

  • US$3,488.74 spent so far out of US$5,444.70 total this year, as of September 30, 2024.
  • Transformative Works and Cultures' expenses are the journal's website hosting, publishing, and storage fees, as well as an allocated share of various OTW-wide productivity tools (access all program expenses).
  • Additionally, the University of Amsterdam provided £1,000 (US$1,061) to Transformative Works and Cultures in 2023, which will be used to help fund the Fans of Color Research Prize.

Fanlore

  • US$13,986.47 spent so far out of US$24,160.27 total this year, as of September 30, 2024.
  • Fanlore's expenses are its share of allocated server hardware, maintenance and colocation costs, as well as its portion of various OTW-wide productivity tools (access all program expenses).

Legal Advocacy

  • US$304.50 spent so far out of US$2,892.15 total this year, as of September 30, 2024.
  • Legal's expenses consist of registration fees for conferences and hearings and funds set aside for legal filings if necessary, as well as an allocated share of OTW-wide productivity tools (access all program expenses).

Fundraising and Development

  • US$107,433.57 spent so far out of US$152,399.47 total this year, as of September 30, 2024.
  • Our fundraising and development expenses consist of transaction fees charged by our third-party payment processors for each donation, thank-you gift purchases and shipping, outreach work by volunteers at various fan conventions, and the tools used to host the OTW's membership database and track communications with donors and potential donors, as well as an allocated share of OTW-wide productivity tools (access fundraising expenses).

Administration

  • US$111,698.97 spent so far out of US$147,099.75 total this year, as of September 30, 2024.
  • The OTW’s administrative expenses include hosting for our website, trademarks, domains, insurance, tax filing, and annual financial statement audits, as well as productivity, management, and accounting tools (access all admin expenses).

2024 Revenue

  • The OTW is entirely supported by your donations—thank you for your generosity!
  • We receive a significant portion of our donations each year in the April and October fundraising drives, which together will account for about 33.8% of our income in 2024. We also receive donations via employer matching programs, royalties, and PayPal Giving Fund, which administers donations from programs like Humble Bundle and eBay for Charity. If you'd like to support us while making purchases on those websites, please select the Organization for Transformative Works as your charity of choice!
  • Thanks to your generosity in previous years, we have a healthy amount of money in our reserves, which we can use to pay for larger than usual purchases and keep on hand for legal contingencies. As mentioned previously, we plan to continue to upgrade the capacity of the Archive's servers, which significantly increases server equipment and server hosting expenses. As the Archive and other projects of the OTW grow, we also spend more on tools and technology to support our volunteers, such as the tools used by various committees to communicate with and aid users and to track internal projects, further increasing expenses.
  • US$651,741.98 received so far (as of September 30, 2024) and US$762,433.91 projected to be received by the end of the year.

Got questions?

If you have any questions about the budget or the OTW's finances, please contact the Finance committee. We'll get back to you as soon as possible!

To download the OTW's 2024 budget update in spreadsheet format, please follow this link.




ge

Beading + Quilting - a Happy Marriage!

It sure was a lovely surprise one day last fall when a representative from the Bead&Button Show called to ask if I would be interested in sending my beaded quilts for exhibition at the 2015 show in Milwaukee, WI.

Would I be interested? Of course I would!!! But since I'm more of a beader and don't have that many beaded quilts, I suggested they also contact my brother, Thom Atkins, who has made a mind-boggling number of beaded quilts in the last 10 years or so.

Brother-sister exhibition... how fun is that! You can see all 22 quilts in the Artisan Area of the Exhibition Hall if you're attending the show, May 27 - June 8. For those who can't make it, here are my quilts, the ones in the show. When you click on the first picture, you can see a slide show with full-size pictures.













It's really special how,in recent years, quilters are interested in beads, and beaders are playing with quilting, both finding ways to expand their creativity! And it's super fun to show with my bro!