Forward engineer by day, reverse engineer by night. Le Cordon Bleu. Windows Dev MVP alum. My brain is protected by Beefbrain Shield Pro.

Redmond, WA
Just a heads up, Wi-Fi is faster than wired Ethernet for these TVs; would keep that and firewall it.
Gamers Nexus recently called out LG over how its smart TVs collect data, and one guy had enough. After watching the report, YouTuber tfm55x opened his new LG G6 OLED TV and removed the Wi-Fi, microphone and Bluetooth antenna. He said he didn’t want LG snooping on him, and a private network didn’t seem like enough. While removing the hardware, he had a message for LG: “You don’t own the glass on this one. I flatly refuse to pay that much money for a television and then have you snooping on everything I'm doing. It's none of your damn business.” He later posted a follow-up showing the TV still worked perfectly after the modifications.
3
9
2,455
Yikes. This is already a tough situation with the single-subject goalposts wiggling around. Add in PSE electric rates set to double this year (with more increases planned!), and the impact on households is BRUTAL.
BREAKING: The Washington State Supreme Court has just overturned another law passed by voters, ruling that the initiative protecting your right to use natural gas in your home and business is UNCONSTITUTIONAL. Unreal.
1
1
769
Rafael Rivera retweeted
I don't think I ever swear on social media, but this one is worth it: holy shit! A JSON-based project format for Xcode! 🤯
71
140
1,573
151,563
Rafael Rivera retweeted
Original Sony PlayStation 2 security chip ‘broken wide open’ after 26 years — chemical decapping and four years of reverse engineering unlocks MechaCon secrets tomshardware.com/video-games…
9
145
922
49,380
Nope. This is a screenshot of NT 3.51 with Newshell 2.0 in PTSource MiniVM. And it's still a bitmap. Original image source: facebook.com/groups/24030587… Quick resource check:
Finally found an ancient picture of the programmatically rendered Start Menu sidebar I was talking about a few years ago! Rather than hard-coding banners for every language of every product SKU (server, workstation, etc), I wrote code to rotate the device context by 90 degrees and draw it with normal GDI. That's what went out in this build, and likely in the shupdate.cmd release as well, but it was later removed, and we went back to the static images for release, which I did not know at the time!
3
6
137
15,003
The Microsoft Bob part is a re-telling of the story/article Raymond wrote in 2008 download.microsoft.com/docum… It's also unverifiable and inaccurate; recommend folks treat this story accordingly.
This is the story of FCKGW-RHQQ2-YXRKT-8TG6W-2B7Q8. I was the primary author of Windows Product Activation on the operating systems side. Not the key math – those were the ACTUALLY smart guys with heads so big that they bumped the doorjamb on the way into your office. I just did the protection of and integration into the operating system. As you likely recall, Product Activation required that you have a key, and you’d have to activate it online or over the phone. But Microsoft had large corporate customers, think hundreds of thousands of PCs, and those customers did not want to have to activate every offline PC. So in that case, you would be given special “Volume Media” that could be unlocked with a Volume key. That way, a volume key could never unlock your retail CD. Now, to know what media you have, I inspect the disc image. And the Volume licensing media contained a special binary blob that I made. It was about 10MB of data, entropy stripped, hard to duplicate on Usenet at the time. And it was only present on the Volume media. That secret data, which I hashed and checked to match to the key, was Microsoft Bob. I took their disc data and compressed and encrypted it several times. Rest assured it’s encrypted and even in the AI age no one has extracted it yet. I really just needed random data, so I started with a precompressed binary image because, secretly, I was young and didn’t know if I could trust CryptGenRand  And so, if you ever tried the FCKGW key on a regular XP CD, it wouldn’t work, because you didn’t have Bob buried in your bits. But if you had the means in 1995 to download large ISO binaries or copy CDs, all it took was the key and a copy of the disc. The key itself still had to pass the product-key validation math (the part I didn’t own). Once it did, WPA simply skipped the rest of the process. That combination—valid VLK + matching volume media—is what made the install look fully legitimate, including early Windows Update checks. How it leaked RTM went to manufacturing on 24 August 2001. Retail launch was 25 October. Roughly five weeks before launch the warez group Devils0wn (often written “Devil’s Own”) posted a complete, non-beta “Windows XP Pro Corporate” ISO together with the FCKGW key. That ISO was the volume media. Pirates then started baking the key into images or just writing it on the CD with a Sharpie. The famous photo of the marked-up disc is from that scene. The most plausible source is an OEM or hardware partner that received final media early so they could ship PCs on launch day. Dell is the name that comes up most often; Intel has also been mentioned because of later source dumps. There were very few organizations that actually possessed a VLK that early, which is why the timing points at a partner rather than a random corporate customer. But I do not know. Presumably someone does. Aftermath We started blacklisting the Product IDs that belonged to the leaked keys (FCKGW decoded to one of the 640-range PIDs we later treated as toxic) in SP1. SP2 and Windows Genuine Advantage made the check more aggressive and also started blocking updates for those installs. Other, un-leaked VLKs continued to work on volume media for years; Microsoft did not kill the entire volume-licensing path, just the ones that had escaped. So the design decision was “give trusted big customers a convenient offline path.” The operational failure was that the media and one of those keys left the building before the product even reached stores. Once both pieces were public, WPA’s hardware-binding never got a chance to run. These Days If you’re curious about what I’m doing today, check out Task Manager TMOG at tmog.org where you can download the Free version! It runs fully native on Windows, Mac, and Linux!
1
33
4,350
Rafael Rivera retweeted
I really recommending reading this. In summary, a company which does ID verification for in-person interactions (hotels, car rentals, ID verification for alcohol or marijuana, etc) has some how exposed over 153,000,000 drivers licenses for people in the United States and Canada. It is a catastrophic data breach, probably one of the worse I've ever seen. If you're in the United States and have traveled, gotten a hotel, purchased marijuana or alcohol, there is a high probability you're in this. Unlike other breaches, this includes a photo of the person (from the license), making verification you've identified the person significantly easier. This poses a significant threat to celebrities (musicians, YouTubers, streamers, adult entertainers, actors, etc), politicians, lawyers, wealthy people (CEOs, investors, people of public interest), Law Enforcement Officers, etc Krebs himself, and several other security researchers, have already confirmed they're in the data leak. tl;dr gah damn dawg this company is going to be sued into oblivion krebsonsecurity.com/2026/09/…
392
3,327
19,358
4,829,226
Actually, in my testing TMOG sits at 102MB+ while built-in Task Manager sits at 55MB.
Meanwhile, Task Manager TMOG survives on 55MB and is way sexier than ANY of those apps! Check it out at tmog.org
6
4
93
10,624
Replying to @spigen
@spigen I've bought your Rugged Armor cases for the past 5 years; hope you're still making one for the Pixel 11!
1
1,024
Oh I just realized the Pixel 10 case works 99% on the Pixel 11, just a tiny hole at top slight misalignment.
318
The cut at the end of the cable really provides a clue into how the company operates and why they're breached ~every year.
A frayed piece of yellow cable is framed and on display in T-Mobile Seattle-area headquarters. A security staffer chopped it during an intense nationwide hunt through America’s phone systems for Chinese spies. bloomberg.com/news/newslette…
1
883
Rafael Rivera retweeted
STEAM FRAME UPDATE OFFICIAL STEAM FRAME UNBOXING VIDEO BY VALVE
223
1,512
21,496
825,997
Rafael Rivera retweeted
Reminder that .NET 8 and .NET 9 go end-of-life and out of support in November this year (2026). That's 3 months away. You should be moving to .NET 10 or an upcoming .NET 11 RC/GA release ASAP.
13
38
190
35,509
Warning: Fiddler Classic is moving to non-commercial use license, commercial use needs to move to Fiddler Everywhere by September 17.
4
4
28
3,443
Telerik is also starting to cripple Classic to force folks to their commercial offering.
3
5
928
Audio stack is still busted as of Windows 26H2 26300.8697. Very concerning as my contacts on the audio side left; might be running on vibes at this point? Unknown.
2
9
1,940
Taking notes, still broken in 29639.1000.
1
242