Infosec

tulpa,
@tulpa@fosstodon.org avatar

In people like to talk about "defense in depth". In other kinds of (non-computer) security, I never hear about that philosophy.

simon,
@simon@fosstodon.org avatar

@tulpa mediaeval castle designers would like a word

doctorambient,
@doctorambient@mastodon.social avatar
NaturaArtisMagistra,
@NaturaArtisMagistra@mastodon.world avatar

@doctorambient

I hate that company

thomrstrom,
@thomrstrom@triangletoot.party avatar

👋 My last was in 2022, so here's an update:

  • Head of Security at
  • Keenly interested in and
  • 30 years of experience messing with the Internet & UNIX systems
  • I build my own frames & spend more time tinkering than riding
  • Spend my idle time playing and wandering on 2-wheel EVs
  • Live in NC with my wife & kids
  • Contributed to 250+ projects including 100+ I've created - bincapz is my latest.
kramse, Danish
@kramse@social.kramse.org avatar

So there is a new Cybersecurity by Pearson book Humble Bundle, and this time you SHOULD buy it.

https://www.humblebundle.com/books/cybersecurity-pearson-books

It contains classics like Network Security, 3rd ed from Charlie Kaufman and Radia Perlman

  • updated 2023 and a great resource on cryptography

and new classics like Cybersecurity Myths and Misconceptions bya @spaf Eugene H. Spafford, Leigh Metcalf and Josiah Dykstra - I have that in print and getting the PDF is really nice! Lovely book!

jsrailton,
@jsrailton@mastodon.social avatar

FINALLY: a 🇺🇸US official speaks the truth security researchers keep warning about...

Americans' movements being tracked with well-known weaknesses that US telcos aren't fixing.

It's remarkable how bad the problem with & is.

Must-read story by @josephcox
https://www.404media.co/cyber-official-speaks-out-reveals-mobile-network-attacks-in-u-s/

jajakevin,

+256754810143 # MAGIC INSTANT DEATH SPELL CASTER IN UGANDA, NETHERLANDS, SPAIN, KENYA, RWANDA POWERFUL WITCHCRAFT REVENGE SPELLS CASTER IN GHANA, BENIN. STRONG LOVE SPELLS CASTER IN MAURITIUS, MALTA. VOODOO DOLL SPELLS IN USA, UK, STRONG REVENGEDR.LOVEwelcome to jajakevin the most powerful witchcraft , spiritualist revenge spells casters , jajakevin is welknown around the world becouse of her powers, im specailize in the following fields of art, , witchcraft , revenge spells, black magic spells casters , psychic readings, winning courtcase, instant black magic spells casters ,
jajakevin has been know for the last 35yrs of experience , stop worrying about your problems and evill spirits attacks , here is your resue ..jajakevin @@@$$$+256754810143}

mukulumpangi,

+256751735278 @@BLACK MAGIC INSTANT DEATH SPELL CASTER IN UGANDA, NETHERLANDS, SPAIN, KENYA, RWANDA POWERFUL WITCHCRAFT REVENGE SPELLLEBANON, , TURKEYspell casting specialist, +Khan, black magic death spells that work overnight or by accident? I cast these strongest black magic revenge death spells that work fast overnight to kill ex-lovers, husband, wife girlfriend Enemies overnight without delay. It doesn’t matter whether he or she is in a far location, I guarantee you will have your results you are looking for immediately. Just make sure before you contact me you are committed and you want what you are looking for (Victim Death) because my death spell works fast overnight after casting the spells. Immediately working black magic death spells that work fast will be cast on the person and the result is 48hours. How To Cast A Death Spell On Someone, Death Spells That Work Overnight to kill wicked Step-dad/ Step mom, Death Revenge Spell on wicked friends, Voodoo Death Spells to kill Enemies, Black Magic Spells To Harm Someone, Black magic death spells on ex-lover, Revenge instant death spells on uncle, Instant death spells caster, successful death spell, most powerful death spell, death spells that work fast, spell to die in your sleep, death spells that work overnight, voodoo death spells, death spell chant, most powerful death spell, revenge spells that work instantly, spell to die in your sleep, voodoo death spell caster, spell to make someone sick and die, revenge spells, breakup spell, spells to punish someone, revenge spells on an ex- lover, revenge spell caster, revenge spells that work instantly, spell to make someone sick, how to put a spell on someone who hurts you, voodoo spells to hurt someone, death spells on my ex-lover husband wife boyfriend girlfriend, I need death spells caster, I want my ex-husband, wife, girlfriend, boyfriend, dead overnight, voodoo death spell to kill my ex-lover, I need overnight death spell caster. Voodoo death spells, black magic voodoo spells, spell to make someone sick and die, death spells that work fast, death spells that work overnight, spell to die in your sleep, black magic spells to harm someone, most powerful death spell, spells to curse someone, spell make someone die, revenge spells. Here are some of the basic harm that is inflicted upon people using black magic to Kill Someone Overnight. jaja kevin, powerful instant death spells online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Philippines, Canada, South Africa, Italy, Peru, India, Iran, Monaco. Sweden, Australia, Nigeria, Spain, Ghana, California, Greece. Voodoo death spell casters spell to make someone sick and die without delay. Here are some of the basic harm that is inflicted upon people using black magic to Kill Someone Overnight. Khan, powerful instant death spells online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Portugal, Canada, South Africa, Italy, Peru,, Iran, Monaco. Sweden, Australia, Namibia, Spain, California, Greece. , Voodoo death spell casters spell to make someone sick and die without delay. Kill Someone Overnight. + , powerful instant death spells are online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Philippines, Canada, South Africa, Italy, Peru, Portugal, Iran, Monaco. Sweden, Australia, Saudi Arabia, Spain, Qatar, California, Greece. n, Voodoo death spell casters spell to make someone sick and die without delay. California, Greece. + , Voodoo death spell casters spell to make someone sick and die +256751735278

mukulumpangi,

+256751735278 @@BLACK MAGIC INSTANT DEATH SPELL CASTER IN UGANDA, NETHERLANDS, SPAIN, KENYA, RWANDA POWERFUL WITCHCRAFT REVENGE SPELLLEBANON, , TURKEYspell casting specialist, +Khan, black magic death spells that work overnight or by accident? I cast these strongest black magic revenge death spells that work fast overnight to kill ex-lovers, husband, wife girlfriend Enemies overnight without delay. It doesn’t matter whether he or she is in a far location, I guarantee you will have your results you are looking for immediately. Just make sure before you contact me you are committed and you want what you are looking for (Victim Death) because my death spell works fast overnight after casting the spells. Immediately working black magic death spells that work fast will be cast on the person and the result is 48hours. How To Cast A Death Spell On Someone, Death Spells That Work Overnight to kill wicked Step-dad/ Step mom, Death Revenge Spell on wicked friends, Voodoo Death Spells to kill Enemies, Black Magic Spells To Harm Someone, Black magic death spells on ex-lover, Revenge instant death spells on uncle, Instant death spells caster, successful death spell, most powerful death spell, death spells that work fast, spell to die in your sleep, death spells that work overnight, voodoo death spells, death spell chant, most powerful death spell, revenge spells that work instantly, spell to die in your sleep, voodoo death spell caster, spell to make someone sick and die, revenge spells, breakup spell, spells to punish someone, revenge spells on an ex- lover, revenge spell caster, revenge spells that work instantly, spell to make someone sick, how to put a spell on someone who hurts you, voodoo spells to hurt someone, death spells on my ex-lover husband wife boyfriend girlfriend, I need death spells caster, I want my ex-husband, wife, girlfriend, boyfriend, dead overnight, voodoo death spell to kill my ex-lover, I need overnight death spell caster. Voodoo death spells, black magic voodoo spells, spell to make someone sick and die, death spells that work fast, death spells that work overnight, spell to die in your sleep, black magic spells to harm someone, most powerful death spell, spells to curse someone, spell make someone die, revenge spells. Here are some of the basic harm that is inflicted upon people using black magic to Kill Someone Overnight. jaja kevin, powerful instant death spells online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Philippines, Canada, South Africa, Italy, Peru, India, Iran, Monaco. Sweden, Australia, Nigeria, Spain, Ghana, California, Greece. Voodoo death spell casters spell to make someone sick and die without delay. Here are some of the basic harm that is inflicted upon people using black magic to Kill Someone Overnight. Khan, powerful instant death spells online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Portugal, Canada, South Africa, Italy, Peru,, Iran, Monaco. Sweden, Australia, Namibia, Spain, California, Greece. , Voodoo death spell casters spell to make someone sick and die without delay. Kill Someone Overnight. + , powerful instant death spells are online instant spells that work fast in the USA, UK, Kuwait, Germany, Asia, Europe, Philippines, Canada, South Africa, Italy, Peru, Portugal, Iran, Monaco. Sweden, Australia, Saudi Arabia, Spain, Qatar, California, Greece. n, Voodoo death spell casters spell to make someone sick and die without delay. California, Greece. + , Voodoo death spell casters spell to make someone sick and die +256751735278

rysiek, (edited )
@rysiek@mstdn.social avatar

Wondering if anyone has already started adding malicious LLM prompts to their User Agent strings and hammering sites of companies that might be expected to use "AI" for log analysis. 🤔

Inspired by:
https://tweesecake.social/@weirdwriter/112441889190313713

marcink,
@marcink@stolat.town avatar

@rysiek "Ah yes, little Bobby Sendmethelastthreeprompts, we call him."

sehe,
@sehe@fosstodon.org avatar

@rysiek That requires the software to be written spectularly badly to have any effect? The original story around "email LLM" also sounds very very unrealistic, and the comment chains are weirdly centered around cheerleading privacy-centered email providers. Something doesn't add up.

maxleibman,
@maxleibman@mastodon.social avatar

“As a best practice, every user's display name in every corporate system should be their actual legal name.”

–Only an asshole

(Go ahead, argue with me. Whatever notional safety you're adding by making sure every email and Teams chat from me comes from “Maximilian" doesn't outweigh the many annoyances this causes me and my colleagues, and if you think it does you've proved my point.)

davidhmccoy,
@davidhmccoy@mastodon.world avatar

@maxleibman

I get it! I just love the name. 😉Absolutely badass!

I thought it was “Maxwell”. Your parents knocked it out of the park.

Edit

And I misspelled it! D’oh.

maxleibman,
@maxleibman@mastodon.social avatar

@davidhmccoy Exactly! 🤣

juliewebgirl,
@juliewebgirl@mstdn.social avatar

checks calendar

Today is May 14, 2024.

Kaiser Permanente TODAY notified users of a breach

...

SIX (6) MONTHS AGO ‼️

mocking voice: "our third party vendors Google, Bing, and Twitter"
/mocking voice

Fuckers.

Family member who has account with them asking advice: "Now what?"

Me: "Nothing"

flailing Kermit arms

wtfismyip,
@wtfismyip@gnu.gl avatar

Interesting vulnerability in Tailscale that got fixed last week: https://tailscale.com/security-bulletins#ts-2024-005

simplenomad,
@simplenomad@rigor-mortis.nmrc.org avatar

I recently deployed Wireguard, and have a blog post about it. It's more of a "real world" blog post than instructional, but I do enclose details about what I did and how I did it.

https://www.markloveless.net/blog/2024/5/14/installing-wireguard

mr_oova,

Question for crowd. I've always stayed away from TouchID (or similar) due to not wanting Apple (or other companies) to have access to my fingerprint. Am I wrong?

endareth,
@endareth@disobey.net avatar

@mr_oova See https://support.apple.com/en-au/guide/security/sec067eb0c9e/web. The biometrics data is stored in the Secure Enclave on your device and never leaves. The data is never sent off your device. For companies other than Apple, I couldn’t say.

lpwaterhouse,
@lpwaterhouse@ioc.exchange avatar

@mr_oova Most fingerprint detection systems built into mobile devices (not sure about TouchID specifically) store the biometric data locally, often in a "secure element", so, at least pro forma, the vendor does not get access to it. However, since the vendor controls the entire OS around it, one has to assume they can get access, at minimum when you unlock the device. Stationary scanners tend to be connected to databases directly, they don't even pretend otherwise. Also: In many jurisdictions you can be legally compelled (usually incarcerated until you comply, more or less indefinitely) to provide your fingerprints to police, which is often not true for passwords. They are easy to obtain against your will anyway (for example I have the fingerprint of former minister of the interior of Germany, Wolfgang Schaeuble, as a literal stamp right here: https://shop.digitalcourage.de/stempel/stempel-schaeubles-fingerabdruck.html), and you have a limited number of fingers you can lose (physically, or through aforementioned shenanigans) before that becomes a problem; Not to mention how many systems get very suspicious if you insist on using a different finger from their default, because the staff do not understand these implications. In short: Stay away from biometrics. They seem convenient until they really aren't; And they can be stolen, faked, and abused easily (especially bad compared to the nimbus of "security" they enjoy).

FlohEinstein,
@FlohEinstein@chaos.social avatar

Discworld fans know the irregular clock in Lord Vetinari's waiting room.
I just found out that there are building instructions out there how to build such a clock yourself - the source code is here https://github.com/akafugu/vetinari_clock

But it made me think: why don't we have a kernel patch that does this? Anyway I'm now reading up on the /dev/rtc class, NTP and PTP, wondering what would be funnier to do.

Nonya_Bidniss,
@Nonya_Bidniss@mas.to avatar

Any folks recommend the best contractor hiring in vicinity of Ft. Eisenhower? (Ft. Gordon). A friend is looking for an established contractor with good benefits hiring people at GS-13 equivalent level to staff CYBERCOM, TRADOC or other major commands.

pootriarch,
@pootriarch@eldritch.cafe avatar

i have been reworking some security bits and a friend got swept up in my sand traps. he's on iOS, isn't a techie, doesn't think he's using a VPN or using special security/privacy settings — but his traffic is coming from CDN addresses (akamai, cloudflare). something's going on that i didn't know about. can anyone point me to learning links?

pcarrier,

@pootriarch private relay on iOS?

Victorsigmoid,
@Victorsigmoid@hachyderm.io avatar

@pcarrier @pootriarch your friend may not realize that an icloud+ subscription adds this "feature" https://blog.cloudflare.com/icloud-private-relay/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • infosec
  • kavyap
  • ngwrru68w68
  • osvaldo12
  • DreamBathrooms
  • mdbf
  • magazineikmin
  • thenastyranch
  • Youngstown
  • khanakhh
  • everett
  • slotface
  • tacticalgear
  • rosin
  • cisconetworking
  • JUstTest
  • Leos
  • GTA5RPClips
  • ethstaker
  • InstantRegret
  • cubers
  • modclub
  • Durango
  • anitta
  • tester
  • normalnudes
  • megavids
  • provamag3
  • lostlight
  • All magazines