PogoWasRight, to random

Does anyone proofread anymore? This is from a breach notification letter from a county agency. The notification letter is dated January 19, 2023 and states, in relevant part:

"What Happened?
DPSS is writing to you because of a privacy incident that occurred on January 19, 2023 at the County of Los Angeles (County) DPSS. A County employee accessed your personal information contained in our electronic systems without a legitimate business reason. County personnel discovered the incident during an internal investigation on December 27, 2022. "

And of course, they don't explain why the lengthy gap between discovery and notification -- unless the notification really was sent on January 19 and they are just first sending it to the state now? What a confusing submission.

🤔 🤦‍♀️

PogoWasRight, to random

National Grid customer data exposed in ‘cyber incident,’ utility says:

https://www.bostonglobe.com/2023/08/23/metro/national-grid-customer-data-exposed-cyber-incident-utility-says/

Sounds like incident, but they don't name it.

9to5linux, to hacking
@9to5linux@floss.social avatar
9to5linux, to debian
@9to5linux@floss.social avatar

Bookworm and Bullseye Are Now Patched Against the “Downfall” and “INCEPTION” CPU Flaws, Update Now https://9to5linux.com/debian-systems-now-patched-against-downfall-and-inception-cpu-flaws

@debian

YourAnonRiots, to random Japanese
@YourAnonRiots@mstdn.social avatar

Even experienced compliance professionals can find the GDPR difficult to navigate.

Don’t worry if you're struggling to comprehend the regulation, Josh Breaker-Rolfe has a helpful summary to help you understand it.⤵️

https://hubs.la/Q01Zz4R80

alex_02, to hardware
@alex_02@infosec.town avatar

Oh, shit. I missed the 500+ subscribers till now. T_T

Fuck yeah!

If anyone else wants to join: https://infosec.pub/c/hardware

I am tired, so please excuse my down low of enthusiasm.

alex_02, to golang
@alex_02@infosec.town avatar

Wrote a small ssh fingerprint tool: https://github.com/f0rg-02/automaed_ssh_fingerprints

This is to work alongside the other tools automaed_ssh and automaed_ssh_keys.

https://github.com/f0rg-02/automaed_ssh
https://github.com/f0rg-02/automaed_ssh_keys

I still need to fix some minor annoyances in the other two, but this is fairly straightforward and simple. Please read the code and report any problems.

Will add later on a YAML file option for large batches.

redhotcyber, to tesla Italian
@redhotcyber@mastodon.bida.im avatar

il jailbreak per le Tesla è servito! L’hack sblocca tutte le funzioni a pagamento e fornisce l’accesso root

I veicoli elettrici #Tesla sono famosi per il loro #approccio immediato alla fornitura di opzioni premium.

Gli acquirenti possono acquistare immediatamente una versione “a pagamento” dell’auto e godere di tutte le funzionalità aggiuntive, oppure possono acquistare una versione base per se stessi, ma #sbloccare molte #funzionalità del #pacchetto premium come parte di un normale abbonamento a pagamento.

#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity

https://www.redhotcyber.com/post/il-jailbreak-per-le-tesla-e-servito-lhack-sblocca-tutte-le-funzioni-a-pagamento-e-fornisce-laccesso-root/

itsecbot, to Cybersecurity
@itsecbot@schleuss.online avatar
9to5linux, to Amd
@9to5linux@floss.social avatar

microcode update now available for Bookworm and Bullseye users. Update your systems now!
More details at https://lists.debian.org/debian-security-announce/2023/msg00151.html

YourAnonRiots, to wordpress Japanese
@YourAnonRiots@mstdn.social avatar

Heads up: Over a million sites are affected by a critical bug in the All-In-One Security (AIOS) plugin.

It stored user passwords in plaintext, posing a risk if admins reused them on other services.

https://thehackernews.com/2023/07/aios-wordpress-plugin-faces-backlash.html

9to5linux, to linux
@9to5linux@floss.social avatar
PogoWasRight, to privacy

Today's reminder of your insider threat:

Deputy U.S. Marshal Pleads Guilty to Obtaining Cell Phone Location Information Unlawfully:
https://www.databreaches.net/deputy-u-s-marshal-pleads-guilty-to-obtaining-cell-phone-location-information-unlawfully/

PogoWasRight, to random

Did we ever find out which ransomware group hit the San Bernardino County Sheriff's Department in April?

The county issued an update last week saying they couldn't rule out that personal info and protected health info had been accessed. And I'm thinking, "Hey, you paid the attackers $1.1 million and they didn't tell you what they accessed or give you a file list or anything? Or did they give you a file list but you're saying you can't confirm the claims?"

Anyone know more about this?

@campuscodi @allan @serghei @lorenzofb

9to5linux, to ubuntu
@9to5linux@floss.social avatar
Marcociappelli, to technology

“The saddest aspect of life right now is that science gathers knowledge faster than society gathers wisdom.”
— Isaac Asimov

https://www.marcociappelli.com

Cyberkid1987, to infosec Greek
alex_02, to infosec

Wondering what the USA response going to be with the recent Russian Gangs hacking into a bunch of important gov systems.

Going to be interesting given USA history already.

Cyberkid1987, to infosec Greek
Cyberkid1987, to infosec Greek
skuebeck, to python
@skuebeck@graz.social avatar

Glyph: How To Keep A Secret

API keys, passwords, auth tokens, cryptographic secrets… in the era of cloud-based development, we've all got a bunch of them. But where do you put them? How do you keep them safe? And how can you access them conveniently from your Python code, both in development and production, without putting them at risk?

https://www.youtube.com/watch?v=Vqd964LGcI4

AAKL, to random
@AAKL@noc.social avatar
infosecsidekick, to infosec

It was super fun to interview @jerry for this week's episode of the Infosec Sidekick Podcast!

I had wanted to do this a while back; when the heat of the twitter migration was taking place, but I almost feel like now was a better time.

With the dust somewhat settled, @jerry and I talk about Information Sharing, Community Building, and how Mastadon plays a role in that.

I genuinely appreciate this conversation and hope it can provide you some value and entertainment throughout your week.

You will be sure to find gems in this episode, such as the unlikely comparison to twitter vs mastadon as Monsters Inc. Power Generation (don't ask, just listen lol)

To Listen -> https://www.infosecsidekick.com/p/building-a-cyber-security-community#details

9to5linux, to linux
@9to5linux@floss.social avatar

18.04 LTS (Bionic Beaver) Reached End of Standard Support and Transitions to Extended Maintenance, Users Urged to Upgrade to Ubuntu 22.04 LTS https://9to5linux.com/ubuntu-18-04-lts-bionic-beaver-transitions-to-extended-security-maintenance

@ubuntu

9to5linux, (edited ) to linux
@9to5linux@floss.social avatar
  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • thenastyranch
  • rosin
  • GTA5RPClips
  • osvaldo12
  • love
  • Youngstown
  • slotface
  • khanakhh
  • everett
  • kavyap
  • mdbf
  • DreamBathrooms
  • ngwrru68w68
  • provamag3
  • magazineikmin
  • InstantRegret
  • normalnudes
  • tacticalgear
  • cubers
  • ethstaker
  • modclub
  • cisconetworking
  • Durango
  • anitta
  • Leos
  • tester
  • JUstTest
  • All magazines