

Phil Windley
33.1K posts

@windley
I build things; I write code; I void warranties. My latest book is Learning Digital Identity from O'Reilly https://t.co/fbkkqHAPS2 #identity #zerotrust



Ever wondered how the Florida Keys does Fridays? In Islamorada, it's floating in crystal-clear waters, cocktails in hand, and a postcard-perfect view of Alligator Lighthouse. Grab your friends, your favorite drink, and let the water do the rest! 🎥: islamoradabeverages












The SAVE Act tries to solve an election integrity problem by adding documentary requirements—but the real issue is that the U.S. has never built a universal identity system. If we want stronger assurance in voting, we need to fix identity infrastructure first, not risk disenfranchising eligible voters with procedural band-aids. windley.com/archives/2026/…

AWS sent me a $47 bill. I haven't used AWS in 8 months. Logged in to shut it down. Found one EC2 instance running. Micro. $0.0058 per hour. Someone spun it up in February using my old credentials I forgot to rotate. I was about to terminate it. Then opened the logs. A bot. Running 24/7 since February. Connected to Binance WebSocket and a prediction platform API. Executing trades every 3 minutes. I followed the wallet address from the config file. 0x732F1. $339,140 profit. 38,945 predictions. Joined February 2026. Bio: there are no socials/websites related to this profile. → Wallet: t.me/PolyGunSniperB… Someone used my forgotten $47/month server to run a bot that made $339K. 38,945 trades. 800 per day. BTC moves on Binance. Platform lags 25 seconds. Bot buys old price. Collects $1. Repeat. The code was 26 lines of Python. Clean. No comments. No readme. Just a WebSocket listener, a price comparison and a buy function with a 15 second sleep timer. $339K profit on a $47 monthly server bill. ROI on the server alone: 721,574%. I checked the SSH login history. One IP address. Vietnam. Logged in once in February. Never again. Set the bot. Left. Someone halfway across the world found my exposed credentials, didn't steal my data, didn't mine anything. Just quietly parked a 26 line script on my cheapest server and let it print. I didn't terminate the instance. Changed the password. Sat there reading the logs for 2 hours. The bot is still running. The wallet is still active. $113K in open positions right now. My $47 AWS bill just became the most profitable invoice I never meant to pay.





