Marc Hollenbach

8.5K posts

Marc Hollenbach banner
Marc Hollenbach

Marc Hollenbach

@HollenbachMarc

I like creative commons

Dublin Entrou em Ekim 2020
774 Seguindo243 Seguidores
Marc Hollenbach retweetou
Wolfhound Fellá 🇮🇪🇪🇺🇺🇦🇺🇸🇬🇧 #TeamYuri
The image below is of a Shahed-136 engine. Russia has launched over 70,000 Shahed and Geran-type drones at Ukraine. The engine crankcase, cylinders and pistons are cast from aluminium in Russia. Ireland produces the alumina and ships it to Russia. Ireland is complicit!
Wolfhound Fellá 🇮🇪🇪🇺🇺🇦🇺🇸🇬🇧 #TeamYuri tweet mediaWolfhound Fellá 🇮🇪🇪🇺🇺🇦🇺🇸🇬🇧 #TeamYuri tweet media
Dan the “Shadow Tanker Bonker”@realLangerDan

🚨Latest Trans-Alumina Express™️ cargo ship is just about to depart Aughinish pier in Ireland to deliver Alumina to St Petersburg The ship. KASSANDRA, is owned by Hansa shipping - an Estonian company. Contacts below Alumina is a vital war time resource @OckersM @Kama_Kamilia

English
14
539
1.3K
33.7K
Marc Hollenbach retweetou
Dan the “Shadow Tanker Bonker”
The world is facing a major Alumina shortage which will have profound impacts on the global economy Yet, Ireland is still exporting up to 70% of its alumina production to Russia which uses it for its war effort This is an opportunity for Ireland to stop this export to Russia
Gandalv@Microinteracti1

The aluminum shock nobody was ready for Mercuria analyst Nick Snowdon stood at the FT Commodities Summit this week and delivered a verdict that should have landed harder than it did. This is, he said, “probably the biggest single supply shock” in base metals this century. He’s not wrong. And it’s going to get worse before it gets better. Iranian strikes on EGA’s Al Taweelah smelter in Abu Dhabi and Alba’s facility in Bahrain in late March didn’t just knock out production lines. At Al Taweelah, the strikes cut power to the facility entirely, forcing the potlines into an uncontrolled shutdown. Metal solidified inside the smelting circuits. That’s months of structural damage. The two plants together produced around 3.2 million tonnes of cast metal in 2025. The disruption has now cascaded beyond aluminum: Bahrain’s Foulath Holding, parent of Bahrain Steel, declared force majeure the same day.  Together with curtailments at Qatar’s Qatalum, the combined production loss could reach around 3 million tonnes  by the time the dust settles. Mercuria puts the global deficit at 2 million metric tons by year-end. Others think that’s optimistic. LME aluminum hit a four-year high on April 16. Traders warn prices could push past the 2022 record of $4,073 per tonne if shipping through the Strait of Hormuz doesn’t resume soon.  Who actually gets hurt? The US takes the most direct hit. America has a 60% net reliance on aluminum imports and produced just 660,000 tonnes domestically in 2025 – less than half of Alba’s output alone. Middle Eastern suppliers accounted for nearly 22% of total US aluminum imports last year, with the UAE and Bahrain ranking as the second and fourth largest suppliers respectively.  After the US and UK banned Russian aluminum from major exchanges in April 2024, Gulf exports to Western markets surged to fill the gap. Now that gap has a gap.  Europe isn’t insulated either. One industry executive described the prospect of cascading Gulf smelter closures as “an unbelievable threat” for European manufacturers  – and that was before the strikes happened. The smelters represent nearly 4% of global aluminum production capacity combined. That’s beer cans, car bodies, aircraft fuselages, food packaging, solar panels. The metal is everywhere. And recovery, even under the best conditions, is expected to take up to a year. The China question. Analysts say the disruption is likely to push more production toward China, which already controls more than half of global supply. Whether Beijing chooses to fill the void or hold back and watch prices rise is a decision with significant geopolitical weight. S&P Global’s aluminum analyst believes China’s ability to ramp up is limited.  Others are less sure. Either way, the West just handed China a structural opening in a critical industrial metal. That’s the part the Mercuria headline doesn’t quite capture.

English
5
173
357
5.6K
Marc Hollenbach retweetou
Dan the “Shadow Tanker Bonker”
🚨For those questioning whether NAFO can achieve anything tangible, I present you evidence that our pressure is working regarding the export of Alumina to Russia from Ireland. The EU is now actively considering a ban and then Belgian government are on board to lobby for same.
Dan the “Shadow Tanker Bonker” tweet mediaDan the “Shadow Tanker Bonker” tweet mediaDan the “Shadow Tanker Bonker” tweet media
Dan the “Shadow Tanker Bonker”@realLangerDan

🚨Latest Trans-Alumina Express™️ cargo ship is just about to depart Aughinish pier in Ireland to deliver Alumina to St Petersburg The ship. KASSANDRA, is owned by Hansa shipping - an Estonian company. Contacts below Alumina is a vital war time resource @OckersM @Kama_Kamilia

English
18
109
207
2.5K
Marc Hollenbach retweetou
藤井大地
藤井大地@dfuji1·
高速移動するマイナス等級の人工天体を観測しました。2026年4月20日午前4時、自宅から天頂近くを撮影した様子です。軌道決定の結果、傾斜角約36度、高度約175kmと考えられます。打上に失敗したNew Glenn上段の可能性があり、その場合打上から約7時間半後の姿になります。再突入まであと数日程度です。
日本語
16
324
2.2K
145.2K
TheMaverickRun - Love Georgia,Ukraine & Israel
@rehbergkk Wow , Deutschland ist nur 30 später als Irland ; dort hast du immer am Anfang des Jahres den Bescheid bekommen & brauchtest nur Zustimmen wenn du was zurück haben wolltest ; einfaches Ankreuzen und paar Dinge ausfüllen. Wenn gut war - einfach nichts machen ! Geld in 8 Wochen
Deutsch
1
0
1
96
Marc Hollenbach retweetou
Dan the “Shadow Tanker Bonker”
🚨Latest Trans-Alumina Express™️ cargo ship is just about to depart Aughinish pier in Ireland to deliver Alumina to St Petersburg The ship. KASSANDRA, is owned by Hansa shipping - an Estonian company. Contacts below Alumina is a vital war time resource @OckersM @Kama_Kamilia
Dan the “Shadow Tanker Bonker” tweet mediaDan the “Shadow Tanker Bonker” tweet mediaDan the “Shadow Tanker Bonker” tweet mediaDan the “Shadow Tanker Bonker” tweet media
English
16
133
205
35.8K
Hrøríkʀ
Hrøríkʀ@DessieSPolitics·
What do you notice?
Hrøríkʀ tweet media
English
460
177
1.8K
289.2K
Marc Hollenbach retweetou
💙💛 Regina Laska
💙💛 Regina Laska@Sunnymica·
Litauen und Lettland sperren Fico den Luftraum – für seinen Flug zu Putins Siegesparade am 9. Mai in Moskau. Das muss man sich vor Augen führen: Ein EU‑Regierungschef pilgert zur Militärparade eines Kriegsverbrechers, der seit vier Jahren ukrainische Städte in Schutt legt. Legt dort Blumen nieder. Applaudiert Panzerkolonnen. Und erwartet, dass EU‑Nachbarn ihm dafür auch noch den Himmel öffnen. Haben sie nicht. Wieder nicht. Schon 2025 mussten Fico und Vučić Umwege über Aserbaidschan nehmen, weil Litauen, Lettland, Estland klar gesagt haben: Unser Luftraum ist kein Zubringer nach Moskau, solange Moskau auf Kyjiw schießt. Die Balten tun genau das, was Berlin und Brüssel nicht mehr schaffen: Sie ziehen eine klare Linie. Sie sagen lautstark Nein. Sie nennen das Regime beim Namen, ohne „man muss im Gespräch bleiben”. Am 9. Mai werden in Moskau wieder Regierungschefs aus aller Welt auf der Ehrentribüne stehen und der russischen Armee zujubeln. Und bei uns? Das Russische Haus in Berlin ist weiterhin offen. Am 9. Mai wird der russische Botschafter wieder Kränze an den sowjetischen Ehrenmalen niederlegen. Begleitet vom üblichen Pilgerzug aus russlandtreuen Ukraine-Hassern. Ukrainer und ihre Unterstützer werden wieder an die Seite gedrängt. Polizei wird wieder „Deeskalation” üben gegen die Falschen. Die Balten haben gestern ihre Antwort gegeben. Unsere steht noch aus.
Dzis Maksym@DzisMaksym

🇸🇰✈️❌ Fico publicly stated that 🇱🇹Lithuania and 🇱🇻Latvia have already informed Slovakia they will not allow his government plane to fly through their airspace for the planned trip to Moscow on May 9, 2026, for Russia’s Victory Day celebrations (the 81st anniversary).

Deutsch
227
824
2.4K
36.4K
Hügel 📯 💚🌻💚
Hügel 📯 💚🌻💚@Huegel_Alfons·
Wie heißt die Einheit der Kraft? a) Newton b) Volt c) Power d) Watt
Deutsch
1
0
0
21
Marc Hollenbach
Marc Hollenbach@HollenbachMarc·
@Schiya346 Klingt jetzt evtl. doof, aber seit ich wieder regelmäßig Weed rauche hab ich keine Probleme mit Lippenherpes. Das soll jetzt aber keine Empfehlung sein. 🙂
Deutsch
0
0
0
130
Schiya
Schiya@Schiya346·
Wisst ihr, ich hatte früher 2-3x im Jahr lippenherpes. Während ich Krebs hatte - nichts. Seitdem ich krebsfrei bin habe ich es wieder 1-2x im jahr. Es ist nervig und ätzend, aber irgendwie auch beruhigend.
Deutsch
7
0
98
3.3K
Marc Hollenbach
Marc Hollenbach@HollenbachMarc·
@b750fde9 @cstein79 @marioellerbrock Diesel-LKW (40t) Elektro-LKW (40t) Verbrauch ca. 890 Liter Diesel ca. 2.700 - 3.200 kWh Emissionen (Betrieb) ca. 2.350 kg CO2 Elektro: 0 kg (lokal) Emissionen (Strommix DE)-ca. 1.000 - 1.200 kg CO2 vs. 2700 - 1200 kg CO2 laut dem UBA mehr mehr als 50%. Egal ich bin raus.
Deutsch
1
0
0
46
b750fde9
b750fde9@b750fde9·
@HollenbachMarc @cstein79 @marioellerbrock Ich habe auch nicht behauptet, dass der Diesel LKW nichts emittiert. Ich finde auch nicht Diesel besser als Elektro. Was ich nur nicht abkann, wenn man Äpfel mit Birnen vergleicht, die Hälfte unter den Tisch fallen lässt. Ist doch auch ok wenn der E-LKW nur 10-20% besser wäre.
Deutsch
1
0
0
33
Marc Hollenbach
Marc Hollenbach@HollenbachMarc·
@b750fde9 @cstein79 @marioellerbrock Klar, die Diesel LKW verursachen natürlich keinerlei Feinstaub... 1,1t CO2 wären wohl bei einem unbeladenen LKW richtig. Leerfahrt: ca. 0,65 kg/km, Teilbeladen: ca. 0.85 kg/km, Voll ausgelastet ca. 1,10 kg/km Laut UBA "ca. 600g bis über 1.000g CO2 pro km je nach Auslastung"🥱
Deutsch
2
0
0
35
b750fde9
b750fde9@b750fde9·
@HollenbachMarc @cstein79 @marioellerbrock Dann machen wir doch mal eine Plausibilitätsprüfung für Deutschland. 2024: 363 Gramm CO₂ pro kWh (laut Umweltbundesamt -> Wert im Video in Deutschland grob falsch. 1,1t CO2 wäre da der korrekte Wert. Und die lokalen Emissionen sind nicht in der Vergleich eingeflossen.
Deutsch
2
0
0
160
salVUs_serVUs
salVUs_serVUs@SalVUs_SerVUs·
6 scammers for your attention. All the real soldiers have given consent to share . Well worth following their accounts
English
7
9
18
342
Marc Hollenbach retweetou
Paul Moore - Security Consultant 
Let's shift focus and explain why the #EU #AgeVerification concept is fundamentally flawed. Assume: 1. The production app is released. 2. It's 100% secure, 100% private (fantasy land, but stick with me) 3. It cryptographically challenges every step, including hardware attestation which requires a physical device. 4. Every single other attack vector in the surrounding environment is somehow magically patched. aka - it's working exactly as intended/designed. It does not protect against a relay attack. This is a threat they considered and somewhat addressed here: github.com/eu-digital-ide… With the current design, there's nothing preventing someone running a verification-as-a-service; a remote Android device which returns a valid attestation. Remember, it's not returning "I am over 18", it returns "someone is over 18". Neither the verifier, nor the app has any way to link the session ID to a physical device. Their own docs state this clearly: Remote Cross-Device Presentation: "Note that the Wallet Instance does not see any difference between the cross-device flow and the same-device flow. In both cases, it receives an OpenID4VP-compliant presentation request over the Wallet Instance-platform API described in the previous section." This is a known & well-understood attack vector in all remote credential presentation models; it's just not mitigated in this one... primarily because they can't. CTAP 2.2 won't work with all app flows, hardware attestation doesn't mitigate relay attacks, on-demand liveness detection would be too intrusive & potentially privacy-invasive & timing calculations don't reveal anything useful... all the available options to resolve this break the core design; completely anonymous age verification. The Architecture & Reference Framework (ARF) is technically sound in some respects. They considered external threat actors and discussed solutions to mitigate them, including ZKP. However, the EC applied the wrong threat model, thus arriving at the wrong conclusion. Yes, you need to protect against malicious verifiers, phishing sites, session hijacks, data brokers et al... but that's addressing external threats, it doesn't protect the architecture from the user itself. In virtually every other scenario, the user and system's interests are aligned; protect my biometric asset at all costs. Specifically for age verification, most users do not want to present ID simply to access a website, so whilst the system may adequately protect from external threats, if the user wants to bypass the system, they can... and the architecture doesn't consider this. Every single applied mitigation assumes the user is the protected party, not the threat actor. To those people claiming "it requires physical access to the device and root, this is BS/hyperbole", you too applied the wrong threat model & completely missed the point. These disclosures demonstrate that you, the user, are the threat actor they haven't considered. You have your device. You can root your device. You can create a chrome extension, just as I did. Ironically, it's precisely those under 18 who can't pass verification who are motivated to bypass it. So where does that leave us? A system which replaces "I am over 18" with "someone is over 18", with absolutely no guarantee that it's true... which is the entire purpose of the app.
Paul Moore - Security Consultant @Paul_Reviews

Bypassing #EU #AgeVerification using their own infrastructure. I've ported the Android app logic to a Chrome extension - stripping out the pesky step of handing over biometric data which they can leak... and pass verification instantly. Step 1: Install the extension Step 2: Register an identity (just once) Step 3: Continue using the web as normal The extension detects the QR code, generates a cryptographically identical payload and tells the verifier I'm over 18, which it "fully trusts". This isn't a bug... it's a fundamental design flaw they can't solve without irrevocably tying a key to you personally; which then allows tracking/monitoring. Of course, I could skip the enrolment process entirely and hard-code the credentials into the extension... and the verifier would never know.

English
36
254
853
73.5K
Marc Hollenbach retweetou
Paul Moore - Security Consultant 
Bypassing #EU #AgeVerification using their own infrastructure. I've ported the Android app logic to a Chrome extension - stripping out the pesky step of handing over biometric data which they can leak... and pass verification instantly. Step 1: Install the extension Step 2: Register an identity (just once) Step 3: Continue using the web as normal The extension detects the QR code, generates a cryptographically identical payload and tells the verifier I'm over 18, which it "fully trusts". This isn't a bug... it's a fundamental design flaw they can't solve without irrevocably tying a key to you personally; which then allows tracking/monitoring. Of course, I could skip the enrolment process entirely and hard-code the credentials into the extension... and the verifier would never know.
Paul Moore - Security Consultant @Paul_Reviews

Hacking the #EU #AgeVerification app in under 2 minutes. During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory. 1. It shouldn't be encrypted at all - that's a really poor design. 2. It's not cryptographically tied to the vault which contains the identity data. So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app. After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid. Other issues: 1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying. 2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step. Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.

English
270
3.1K
12.3K
1.2M
Marc Hollenbach retweetou
Jordy P 🦚
Jordy P 🦚@JordyP1993·
Hey @currys as promised, just letting you know I’ve submitted a formal complaint to the ASA as you’ve broken the terms of your own T&Cs and haven’t provided a prize, regardless of how often your incredibly poor customer service team on here keep telling me otherwise 👍🏻 #Currys
Currys@currys

Congrats to our winner @JordyP1993 🎉

English
233
1.2K
48.9K
5.7M