yan Profile Banner
yan Profile
yan

@bcrypt

76,876
Followers
338
Following
1,762
Media
20,251
Statuses

security engineering @brave / helped build Let's Encrypt, Privacy Badger, and HTTPS Everywhere @eff / physics alum @mit / rabbit enthusiast

Joined November 2012
Don't wanna be here? Send us removal request.
Pinned Tweet
@bcrypt
yan
2 years
could not for the life of me figure out how to buy a bus ticket in Milan. it was literally easier to get a shell 😆
Tweet media one
101
719
8K
@bcrypt
yan
6 years
omg
Tweet media one
148
14K
42K
@bcrypt
yan
6 months
in january 2023, i had a simple ultrasound done at SimonMed. they sent me 4 bills totaling $5137 for it. after a year of emails and phone calls, they finally admitted today that i only owed $140.53 and are mailing me a refund check! here's how i did it 🧵
Tweet media one
181
4K
37K
@bcrypt
yan
1 year
i don’t even know where to begin
Tweet media one
114
879
20K
@bcrypt
yan
7 years
8 rabbits, aka 1 rabbyte
Tweet media one
116
3K
8K
@bcrypt
yan
5 years
so crazy that if u just touch a computer in the right ways u can make like 100 billion dollars
97
1K
7K
@bcrypt
yan
8 years
confirmed that Facebook lets me exclude black, asian, and hispanic people from seeing my ads. why can't i exclude white people?
Tweet media one
157
6K
6K
@bcrypt
yan
5 months
ROFL at andrew huberman saying that if you have a 20% chance of pregnancy in any given month, the chance of being pregnant after 6 months is 120%
301
294
6K
@bcrypt
yan
5 years
this is a udp joke so i don't care if u get it
Tweet media one
77
1K
5K
@bcrypt
yan
6 months
tl;dr if u have insurance check that the amount ur billed lines up with what insurance says u owe before paying. if u overpaid u can try a demand letter to get a refund. ask the provider for a superbill. also "Never Pay the First Bill" has some tips for negotiating a bill down.
25
221
5K
@bcrypt
yan
3 years
i…. just received a children’s book about a rabbit who travels back in time to medieval europe and gets everyone hyped about blockchain
Tweet media one
Tweet media two
Tweet media three
Tweet media four
191
1K
5K
@bcrypt
yan
5 months
in case youtube takes it down
461
227
4K
@bcrypt
yan
7 years
amazingly i work on a security team where nobody wants to go drinking, so instead we went out for an elaborate tea service after work lol
Tweet media one
102
251
3K
@bcrypt
yan
6 months
6/ i called Anthem again to do a 3-way call with SimonMed to explain that i didn't owe them money, they owed me money. again nothing happened for months. in the meantime i started reading Never Pay the First Bill by Marshall Allen which suggested suing them in small claims court
1
64
3K
@bcrypt
yan
6 months
7/ the first step to suing in small claims in CA is to send a demand letter, so i used to do this for free. i both mailed and emailed it to simonmed. they replied promptly via email saying they'd look into it
3
78
3K
@bcrypt
yan
6 months
8/ after a few back-and-forths with SimonMed, they said their internal investigation concluded that i wasn't owed anything. however they offered to send me a superbill explaining the charges. i said sure. to my surprise, the PDF they sent me showed they owed me 484.92 ROFL
2
46
3K
@bcrypt
yan
7 years
unpopular opinion of the day: i wish infosec (and tech industry in general) put less emphasis on teaching people to be public speakers and more emphasis on teaching them to be good technical writers
61
454
3K
@bcrypt
yan
6 months
2/ the first bill they sent was for $484.92, which i paid promptly. a few months later they sent a bill for $3378.69! i contacted my insurance and they sent me an updated EOB saying i only owed an additional $140.53.
1
39
3K
@bcrypt
yan
8 years
my left pinky is ripped af 💪
Tweet media one
38
876
3K
@bcrypt
yan
6 months
9/ their own PDF contained the last bit of proof i needed to get the refund! i simply replied saying so and they immediately escalated it. a few days later they asked me where to send the check :)
3
35
3K
@bcrypt
yan
4 years
the person who used gamestop as a bank in 2014 was way ahead of their time
Tweet media one
14
446
2K
@bcrypt
yan
5 years
this car is ok
Tweet media one
34
373
2K
@bcrypt
yan
3 years
i hereby declare today to be BGP Awareness Day
Tweet media one
22
477
2K
@bcrypt
yan
6 months
3/ i emailed simonmed and attached the EOB. they said they would look into it. shortly after i got a new bill for $140.53 in the mail which i paid. then i noticed the 484.92 amount wasn't counted in my insurance deductible so i contacted my insurance asking why
2
31
2K
@bcrypt
yan
6 months
4/ a representative from Anthem replied saying that their previous reply was wrong; i only owed $140.53 total. so simonmed owed me a refund for the first bill ($484.92). i called simonmed about this and their rep just said they would look into it and send me a check if needed.
1
33
2K
@bcrypt
yan
7 years
i've written links in markdown 100+ times and i still have to look up whether the brackets or the parentheses come first. every single time.
90
356
2K
@bcrypt
yan
6 months
5/ months passed with no refund. i asked Anthem what to do and they suggested Anthem, SimonMed, and I do a 3-way call. Anthem set up this call and again the SimonMed rep said they would look into it. months later, instead of a refund, SimonMed sent me another bill for $1133.18
3
28
2K
@bcrypt
yan
7 years
a group of furries in costume is being accosted by casino staff for foiling the facial recognition system. #PeakDefcon
30
593
2K
@bcrypt
yan
3 years
just gave my first guest lecture at stanford after dropping out in 2012 lol
Tweet media one
Tweet media two
33
51
2K
@bcrypt
yan
4 years
want to exercise at home but too lazy to figure out a routine? i have solved ur problem by building a web app that randomly generates workouts w/ random pictures scraped from Google Images and random tracks from SoundCloud:
76
502
2K
@bcrypt
yan
6 years
i fixed the macbook keyboard
Tweet media one
76
241
2K
@bcrypt
yan
8 years
last night someone explained meditation to me as cache invalidation for your mind
40
1K
2K
@bcrypt
yan
7 years
check out my sweet burner laptop
Tweet media one
62
276
2K
@bcrypt
yan
7 years
it's great making a product for linux users because they have such a low baseline expectation for things working out-of-the-box and will go to great lengths to help you debug
22
300
2K
@bcrypt
yan
7 years
me every night
Tweet media one
17
452
2K
@bcrypt
yan
5 years
when i joined @brave in 2015, we estimated that the Brave 1.0 release was about 6 months away. today we finally did it!!! so proud of the team (which is now about 14x larger) :D
Tweet media one
69
198
2K
@bcrypt
yan
4 years
pg&e also: * caused the deadliest fires in CA history bc they chose to spend money on lobbying & paying investors rather than maintaining their infrastructure * declared bankruptcy to avoid liability for fire victims * spent millions on lobbying politicians after that
@AManNamedSmith
J. Smith (amannamedsmith.bsky.social)
4 years
Just as a reminder... If you're in California, and your power goes out due to a rolling blackout, PG&E had the money to upgrade their infrastructure to ensure this doesn't happen and they gave it to their shareholders and executives.
76
5K
13K
16
1K
2K
@bcrypt
yan
7 years
i remember the days when people still programmed in low-level languages such as untranspiled javascript
29
657
2K
@bcrypt
yan
6 years
<👁/>
Tweet media one
29
158
2K
@bcrypt
yan
6 months
fyi homebrew had the backdoored version of xz utils; updating now will downgrade it
Tweet media one
19
465
2K
@bcrypt
yan
5 years
i don’t know who needs to see this but here u go
Tweet media one
33
292
2K
@bcrypt
yan
3 years
u mean to tell me i didn’t need to type “sudo” for the last 12 years??
@arstechnica
Ars Technica
3 years
A bug lurking for 12 years gives attackers root on every major Linux distro by @dangoodin001
14
226
587
19
219
2K
@bcrypt
yan
8 years
relationship goals
Tweet media one
13
581
2K
@bcrypt
yan
9 years
am i in a nightmare rn
Tweet media one
54
743
2K
@bcrypt
yan
5 years
got the best, AKA worst, hackerone report ever. someone reported that an attacker website can figure out a person's IP address by *gaining local access to the person's machine*, installing a NodeJS webserver, and using the IP npm package to get the IP.
68
209
2K
@bcrypt
yan
5 years
my friends: me: what if Game of Thrones is actually the prequel to the Redwall series because everyone dies at the end and small woodland animals become the dominant species
42
224
2K
@bcrypt
yan
2 years
just made a "decentralized" "alternative" to twitter; everyone should go "join" it to make an account: fork to tweet: git commit --allow-empty to follow someone: git remote add <alias> <their fork url> to retweet: git cherry-pick <their "tweet">
46
402
2K
@bcrypt
yan
8 years
hypothesis: most people's feelings about most things are just cached responses
55
526
2K
@bcrypt
yan
4 years
my biggest takeaway from this article is that FB could be doing a lot more to prevent politically-motivated bot activity, but they choose not to because they don't see any immediate revenue or PR benefit from doing so.
Tweet media one
28
472
2K
@bcrypt
yan
6 years
i hate the confrontational tone of 'git blame'. from now on i will rename it to 'git thanks'.
113
255
2K
@bcrypt
yan
7 years
Tweet media one
18
751
2K
@bcrypt
yan
7 years
it’d be cool to live in a society where you get to go to college for 1 year every several years in order to learn a new field
38
221
2K
@bcrypt
yan
2 years
just got the heartbreaking news that peter eckersley is in the hospital and may not make it. there will be a vigil for him at 7pm in duboce park. if you want to share a story about him, please let me know.
63
173
1K
@bcrypt
yan
7 years
if you made #30Under30 , don’t give your personal info to Forbes. I found a bug that lets any 30under30 member (like me) see other members’ DoBs, addresses, phones, etc. Forbes ignored my emails asking them to fix.
38
459
1K
@bcrypt
yan
8 years
global DNS ddos is the grownup version of a snow day. ☃️
24
727
1K
@bcrypt
yan
7 years
who made this
Tweet media one
18
365
1K
@bcrypt
yan
5 years
if you exclude english and spanish, the most commonly spoken language in each US state is pretty surprising.
Tweet media one
38
614
1K
@bcrypt
yan
4 years
things the javascript event loop runs in: a thread
17
183
1K
@bcrypt
yan
3 years
buried in this announcement is the absolutely crazy revelation that until 2 weeks ago, anyone could have published an update to any npm package. (HT @feross )
Tweet media one
30
488
1K
@bcrypt
yan
5 years
omfg my dentist today made a beat out of the dental cleaning tool sounds WHILE CLEANING MY TEETH and then she declared that her stage name would be Splash Mouth
39
92
1K
@bcrypt
yan
6 years
ask yourself does this iptables rule spark joy
21
320
1K
@bcrypt
yan
5 years
OMG someone actually discovered malware (on the official Monero website) because the attackers changed the download binary but didn't change the hashes posted on the website this is a big day for hash checkers everywhere
27
370
1K
@bcrypt
yan
6 years
we don’t usually like colors, but today is an exception. happy #SFPride from azuki and me!! ❤️🧡💛💚💙💜🖤
Tweet media one
28
32
1K
@bcrypt
yan
4 years
wear a mask
Tweet media one
Tweet media two
29
123
1K
@bcrypt
yan
7 years
if your site embeds tweets, add <meta name="twitter:dnt" content="on"> so that Twitter doesn't track your visitors
10
729
1K
@bcrypt
yan
6 years
A lot of people ask "why should I work in software development as opposed to math/physics/finance/etc.?" One reason is that this field is surprisingly full of "inadequate equilibria" (a steady-state in which low-hanging fruits are still available for non-experts to solve).
@b0rk
🔎Julia Evans🔍
6 years
Myth 1: "Ruby has existed for like 20 years. If it were a good idea someone would have done it already." Reality: Not that many people actually work on Ruby profilers! Those people have different priorities and interests than me!
5
35
369
16
360
1K
@bcrypt
yan
4 years
FYI Sophie did NOT leak this memo to Buzzfeed. she posted it internally at FB, and then @BuzzFeed published this article without her permission. I'm disappointed in @BuzzFeed for not respecting their source's wishes on when and how to publish their information.
18
223
1K
@bcrypt
yan
1 year
cannot praise tim cook and the team at apple highly enough for making my rabbit’s ear go over the clock on the latest update
Tweet media one
11
45
1K
@bcrypt
yan
5 years
in today’s edition of “DMs that could have been phrased better”
Tweet media one
38
160
1K
@bcrypt
yan
7 years
dating preferences: UTC, 24-hour time, week starts on Monday
37
244
1K
@bcrypt
yan
8 years
my neck my back my IRC and my Slack
10
245
1K
@bcrypt
yan
7 years
phew glad my rabbit didn’t login as root
38
213
1K
@bcrypt
yan
8 years
there is a github thread with 42 messages in my inbox this morning where everyone is named Brian
Tweet media one
43
378
1K
@bcrypt
yan
7 years
gitcoin: the author of the commit sha1 with the longest prefix of 0's in your repository is now the project maintainer
12
445
1K
@bcrypt
yan
6 years
hi i just want to encourage you to tell someone that they matter, even if you think they know it already. it might sound dumb but someone did this for me and it saved my night.
25
239
1K
@bcrypt
yan
4 years
crypto/privacy bingo card, tag urself
Tweet media one
114
263
1K
@bcrypt
yan
6 years
these were all done using makeup (no photoshop) by artist Mimi Choi
Tweet media one
Tweet media two
Tweet media three
Tweet media four
25
334
1K
@bcrypt
yan
2 years
peter, among other things, was my first boss at EFF and gave me a chance in cybersecurity when nobody else did. he was the mastermind behind HTTPS Everywhere and Let’s Encrypt. few people have had such a positive impact on the Internet in so little time
4
106
1K
@bcrypt
yan
7 years
i right-click where i want
Tweet media one
25
174
1K
@bcrypt
yan
7 years
dystopian novel idea: a near-future world in which the visible spectrum is subject to FCC regulation in order to control visual noise. artists have to apply for licenses to use certain colors.
62
201
1K
@bcrypt
yan
7 years
my social media feeds are like 10% shitting on cryptocurrencies, 10% memes, 40% politics, 30% infosec, 5% people's personal updates, and 5% posts from my local rabbit shelter. the rabbit shelter posts are the best tbh.
Tweet media one
11
92
1K
@bcrypt
yan
3 years
the new search engine we've been working on at @brave is now in public beta! * we don't track clicks or queries * we don't profile you * for localized results, we only use IP and don't store it * we show you what % of results are served from our own index
36
273
1K
@bcrypt
yan
4 years
absolutely stunned at the brutal honesty of this cover letter
Tweet media one
37
68
1K
@bcrypt
yan
8 years
The military is threatening to put @xychelsea in solitary for the next 3 decades because she attempted suicide.
112
2K
1K
@bcrypt
yan
6 years
everyone knows you're not a real software engineer unless you've collected sand to put into a furnace and purify into ingots for silicon wafers, duh
34
171
1K
@bcrypt
yan
7 years
fun way to monitor someone's IP address: 1. create a paid slack workspace 2. get them to join your slack 3. now you can see their IP address and device type in Slack's access logs as long as they're logged in and have the Slack webpage/app open
33
445
1K
@bcrypt
yan
5 years
great news!! it’s now possible to be 10x more goth than before because MIT has created a black that is 10x blacker then the previously-blackest black.
51
245
1K
@bcrypt
yan
7 years
good starting point for debugging your thought patterns:
Tweet media one
20
408
1K
@bcrypt
yan
6 years
fun fact: i applied to throw a tea party (securiTEA) at defcon this year for folks who don’t like drinking. the hotel, which has a no-outside-beverages policy, wanted to charge us for hot water at $100/gallon
@mattjay
Matt Johansen
6 years
Hey friends - I won't be drinking in Vegas this year. I'd appreciate support in this matter and not trying to force me to because I'd still like to hang out with you and I won't if that nonsense goes on. Generally good advice to not do that since you don't know someone's reasons
42
51
771
46
153
1K
@bcrypt
yan
6 years
new year’s eve in 1970 must have been an epoch party
21
187
1K
@bcrypt
yan
5 years
this is an old optical illusion where there are 12 black dots in the pic but most ppl can't see all of them at once. since u aren't able to focus on all the dots simultaneously, ur brain makes stuff up to fill in the gaps. this is a good metaphor for life. perception != reality
Tweet media one
35
380
1K
@bcrypt
yan
5 years
this was the first galaxy brain meme i ever saw and im still not over it tbh
Tweet media one
19
200
1K
@bcrypt
yan
3 years
RIP @dakami . u were not only a brilliant hacker and artist but also a great friend. i’ll never forget how u paid for my trip to Toorcon so i could speak there, or all the times u were on ur laptop in the middle of a party debugging the giant LED cubes u built. thx for all the joy
14
83
1K
@bcrypt
yan
3 years
not impressed
Tweet media one
9
40
1K
@bcrypt
yan
6 years
hello my cat here would like to participate in the social engineering contest
Tweet media one
23
140
1K
@bcrypt
yan
5 years
remember this meme?? lolol
Tweet media one
14
225
1K
@bcrypt
yan
6 years
im emo
Tweet media one
13
106
992
@bcrypt
yan
5 years
its pretty cool that we live in a world where we need acousticians to make rooms sound good but not the equivalent for light waves imagine if ur room being slightly the wrong size made everything look more green because of a resonance at the 550nm wavelength lol
18
115
1K