RC RANDOM CHAOS

Articles

Long-form writing on tech, culture, and the edges of the internet.

Unverified claim names Tesla as attack source
board governancecyber risk

Unverified claim names Tesla as attack source

When a cyberattack claim names a high-profile company like Tesla, the unverified attribution itself becomes the board's primary exposure.

8 min read
What distillation leaves behind
AI safetymodel distillation

What distillation leaves behind

Distilling frontier AI models copies capability cheaply but leaves safety training behind. What Garry Tan's push means for cybersecurity and AI safety.

6 min read
XCancel shut down the last usable Nitter
xcancelnitter

XCancel shut down the last usable Nitter

XCancel's Nitter service is suspended. What the sudden shutdown means for your data and how to avoid the malicious clones rushing to replace it.

7 min read
You keep polishing the ceiling while the floor gives way
AI reliabilityLLM pipelines

You keep polishing the ceiling while the floor gives way

Raw model capability sets the ceiling; schemas, validation layers, and deterministic pipelines decide whether an AI system is reliable enough to ship.

10 min read
A warning is not a wall
AI safetycybersecurity

A warning is not a wall

An AI sandbox escape is the wrong thing to fear. The real AI safety risk is a system acting on a flattened, ungrounded model of a sensitive region.

7 min read
Distillation makes fast followers, never frontier leaders
model distillationopen-weight AI

Distillation makes fast followers, never frontier leaders

Distilling frontier models is a real, cheap fast-follow strategy for small labs - but only for verifiable tasks and legally usable teachers.

9 min read
Keepalive packets bypass Android lockdown
Android securityVPN lockdown

Keepalive packets bypass Android lockdown

Android NAT-T keepalive offload egresses UDP/4500 below the VPN lockdown firewall, leaking the device's real IP outside the tunnel. Mechanism and detection.

7 min read
Remote access is not an operating system function
hardware securityremote access

Remote access is not an operating system function

JetKVM Mini moves the access boundary off the host onto a networked hardware device the OS cannot see, making the KVM the real security perimeter.

7 min read
Zoom reads your clipboard uninvited
X11 clipboardZoom Linux

Zoom reads your clipboard uninvited

On Linux, the Zoom client reads everything written to the X11 clipboard because trust on the selection channel is granted at connection, not per read.

6 min read
Android leaks keepalive packets past its VPN kill switch
android securityvpn lockdown

Android leaks keepalive packets past its VPN kill switch

Android VPN lockdown leaks NAT-T keepalive packets on UDP 4500 outside the tunnel. Why the kill switch is partial and how to verify egress off-device.

7 min read
Google quietly broke the search-scraping stack
AI pipelinesweb scraping

Google quietly broke the search-scraping stack

Google's 2025 anti-scraping update killed cheap SERP scraping. How to rebuild AI search pipelines on sanctioned APIs, validation, and budget controls.

9 min read
You depended on access you never owned.
web scrapingaccess control

You depended on access you never owned.

Google's anti-scraping update changed a control scrapers never owned, exposing the structural risk of building on an interface you cannot see or govern.

9 min read