HonkHase, to random German
@HonkHase@chaos.social avatar
pip, to fediverse Spanish
@pip@todon.nl avatar

Estamos subiendo las convocatorias de la Marcha Federal Universitaria a la Agenda Popular Pirata 🏴‍☠️

Para acceder al mapa con todas las convocatorias: https://vagancio.partidopirata.com.ar/collection/Marcha%20Federal%20Educativa

¡Organicemos nuestras agendas sin depender de las redes de vigilancia masiva y la opacidad de sus algoritmos!

Les invitamos a cargar sus eventos desde la web del proyecto: https://vagancio.partidopirata.com.ar/

y a suscribirse: En Telegram (https://t.me/VagancioPirata), el Fediverso (Mastodon, PeerTube, Flipboard, Threads, etc) (https://todon.nl/@relay@vagancio.partidopirata.com.ar), por RSS (https://vagancio.partidopirata.com.ar/feed/rss) e iCal/vCalendar (https://vagancio.partidopirata.com.ar/feed/ics)

Pueden registrarse y empezar a cargar los eventos de su organización haciendo clic acá (https://vagancio.partidopirata.com.ar/register) o escribirnos por Telegram (https://t.me/ReneMontes_bot) para que los subamos nosotrxs. Si quieren sumarse a organizar la agenda estamos en este grupo de Telegram (https://t.me/+HVvQJqqMEU0xZmJh) P)

#agenda #calendario #activismo #militancia #PartidoPirata #difusión #Gancio #iCal #iCalendar #vCalendar #ActivityPub #Telegram #CalendarioPopularPirata #movidas #IRL #schedule #ics #SoftwareLibre #FLOSS #RSS

pip, (edited ) to fediverse Spanish
@pip@todon.nl avatar

Presentamos la Agenda Popular Pirata 🏴‍☠️

Para enterarnos de todos los eventos que nos interesan sin depender de las redes de vigilancia masiva y la opacidad de sus algoritmos

Al cargar los eventos desde la web del proyecto (https://vagancio.partidopirata.com.ar/) se republican automáticamente en Telegram (https://t.me/VagancioPirata), el fediverso (Mastodon, PeerTube, Flipboard, Threads, etc) (@relay), RSS (https://vagancio.partidopirata.com.ar/feed/rss) e iCal/vCalendar (https://vagancio.partidopirata.com.ar/feed/ics) para darles mayor difusión

Registrate y empezá a cargar los eventos de tu organización haciendo clic acá (https://vagancio.partidopirata.com.ar/register) o escribinos por Telegram (https://t.me/ReneMontes_bot), por el fediverso (https://todon.nl/@pip) o por mail para que los subamos nosotrxs

evi, (edited ) to Credit
@evi@meow.social avatar

International Card Services, by far the largest Credit Card issuer in the country, is stopping with giving credit; meaning you can only get a card that you pay back via your bank immediately.

This might be good for people that can't manage finances well, but it does make me question what the heck the added benefit of an ICS Visa or Mastercard actually is now.

They charge a yearly fee, for... not exactly sure what their sales pitch is for what is offers more than a bank's card.

#ICS #credit #creditcard #finance #netherlands

simontsui, to random

In CISA's ICS advisory, they revealed that several Hitron Systems Security Camera DVR denial of service vulnerabilities were being actively exploited. These are Zero days reported by Akamai.

  • CVE-2024-22768 (7.4 high) improper input validation to Denial of Service
  • CVE-2024-22769 (7.4 high) improper input validation to Denial of Service
  • CVE-2024-22770 (7.4 high) improper input validation to Denial of Service
  • CVE-2024-22771 (7.4 high) improper input validation to Denial of Service
  • CVE-2024-22772 (7.4 high) improper input validation to Denial of Service
  • CVE-2024-23842 (7.4 high) improper input validation to Denial of Service

🔗 https://www.cisa.gov/news-events/ics-advisories/icsa-24-030-04

tinker, to infosec

If your first instinct is to try and find blame when a security vulnerability is pointed out...

...you have already created an environment where everyone will hide issues from you.

You currently live in a fake reality where you think everything is fine and you have no idea the rot that is underneath you.

If you fire or punish a person every time a vulnerability is found, you will have no one left. Hell, fire yourself first to save us all the trouble.

Vulnerabilities exist. The world changes. Software changes. Attacks change. Business needs change.

Life is fucking impermanence.

So create an environment where folks come to you quickly and tell you what needs to be fixed as they find it.

How do you do that?! Reward vulnerability discovery. Reward mitigations. Reward patch management. Reward security improvement. Reward safety improvement.

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2024 is out! It includes the following and much more:

➝ 🔓 🎽 Halara probes breach after hacker leaks data for 950,000 people
➝ 🔓 💥 's X Account Was Hacked Using Brute-Force Attack
➝ 🔓 🇵🇾 warns of Black Hunt attacks after Tigo Business
➝ 🇺🇸 💸 US SEC’s X account hacked to announce fake ETF approval
➝ 🔓 🇨🇦 Toronto Zoo: Ransomware attack had no impact on animal
➝ 🔓 Mortgage firm loanDepot impacts IT systems, payment portal
➝ 🇫🇮 💸 warns of Akira ransomware wiping NAS and tape devices
➝ 🇩🇰 🇷🇺 probably wasn’t behind Danish critical infrastructure cyberattack, report says
➝ 🇺🇦 🇷🇺 Pro-Ukraine hackers breach Russian ISP in revenge for attack
➝ 🇫🇷 🇺🇸 French Computer Hacker Jailed in US
➝ 🇳🇬 ⚖️ Nigerian gets 10 years for laundering millions stolen from elderly
➝ 🇹🇷 Turkish Hackers Exploiting Poorly Secured Servers Across the Globe
➝ 🇹🇷 🇳🇱 Turkish Targeting Netherlands
➝ ☁️ 🇪🇺 Lets Cloud Users Keep Personal Data Within to Ease Fears
➝ 🇺🇸 🇨🇳 is helping US spies catch stealthy Chinese hacking ops, official says
➝ 🇱🇧 ✈️ Beirut Airport Screens Hacked with Anti-Hezbollah Message
➝ 🇸🇦 Saudi Ministry exposed sensitive data for 15 months
➝ 🇬🇷 to Establish New Authority to Counter Cyber-Attacks
➝ 🩹 , Release First Patch Tuesday Advisories of 2024
➝ 🐍 ☁️ New -based FBot Hacking Toolkit Aims at and Platforms
➝ 🦠 📺 Videos Promoting Cracked Software Distribute Lumma Stealer
➝ 🦠 🐧 devices are under attack by a never-before-seen worm
➝ 🦠 🇳🇱 Dutch Engineer Used Water Pump to Get Billion-Dollar Into Iranian Nuclear Facility
➝ 🐡 🔐 DSA removal from
➝ 🩹
➝ 🐛 🔓 Actively exploited 0-days in VPN are letting hackers networks
➝ 🔓 🔧 Hackers can infect network-connected wrenches to install ransomware
➝ 🇨🇳 🔓 cracked by , revealing phone number and email address of sender
➝ 🩹 Patches High-Severity Flaws in QTS, Video Station, QuMagie, Netatalk Products
➝ 🐛 🔓 KyberSlash attacks put projects at risk

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-022024

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 🇺🇸 U.S. nuclear research lab impacts 45,000 people
➝ 🇩🇪 Germany Says Customer Data Stolen in Attack
➝ 🔓 🏧 ATM company Coin Cloud got hacked. Even its new owners don’t know how
➝ 🔓 🇺🇸 Norton discloses data breach after May ransomware attack
➝ 🇷🇺 Russian SVR-Linked Targets TeamCity Servers in Ongoing Attacks
➝ 👥 ransomware now poaching , NoEscape affiliates
➝ 🇻🇳 💻 seizes domains used to sell fraudulent accounts
➝ 🇫🇷 💸 French police arrests Russian suspect linked to ransomware
➝ 🇨🇳 Chinese APT Volt Typhoon Linked to Unkillable SOHO Router
➝ 🇺🇦 🇷🇺 Ukrainian military says it hacked 's federal tax agency
➝ 🇨🇳 🚪 Researchers Unmask Sandman APT's Hidden Link to China-Based Backdoor
➝ 🇺🇦 📡 ’s largest mobile communications provider down after apparent
➝ 🇪🇸 Kelvin Security hacking group leader arrested in
➝ 🔻 👮🏻‍♂️ ransomware site outage rumored to be caused by law enforcement
➝ 📹 🕵🏻‍♂️ devices broadcasted private video to other users’ accounts
➝ 🇷🇺 🇪🇺 Russian Diplomat Expelled Amid EU Spy Purge Is Now An OSCE Election Observer In Serbia
➝ 🇺🇸 Harry Coker confirmed to be the next National Cyber Director
➝ 🇪🇸 🇺🇸 Spain expels two US spies for infiltrating secret service
➝ 📝 Unveils EMB3D Threat Model for Embedded Devices Used in Critical Infrastructure
➝ 🩹 Patch Tuesday: Electromagnetic Fault Injection, Critical Redis Vulnerability
➝ 🦠 🇵🇸 New Pierogi++ by Cyber Gang Targeting Palestinian Entities
➝ 🦠 🇮🇷 Iranian State-Sponsored Group Deploys 3 New Malware Downloaders
➝ 🦠 🇩🇪 New MrAnon Stealer Malware Targeting German Users via Booking-Themed
➝ 🍪 's New Tracking Protection in Chrome Blocks Third-Party
➝ 🐛 👨🏻‍💻 Unveils Open Source Vulnerability Impact Scoring System
➝ 🩹 🧱 backports RCE fix after attacks on unsupported
➝ 🔓 🧱 Over 1,450 servers exposed to RCE attacks via bug chain
➝ 🩹 🍏 Ships iOS 17.2 With Urgent Security
➝ 🐛 Over 30% of apps use a vulnerable version of the library

📚 This week's recommended reading is: "Black Hat Python, 2nd Edition: Python Programming for Hackers and Pentesters (2nd Edition)" by Justin Seitz and Tim Arnold

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-502023

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 🇯🇵 confirms breach after Medusa threatens to leak data
➝ 🇺🇸 😂 Ransomware gang files complaint over victim’s undisclosed
➝ 🔓 🪶 Attackers claim Plume Design, Inc data breach
➝ 🇺🇸 💰 paid ransom after hack that disrupted markets, say
➝ 🔓 Says No Evidence of Breach After Ransomware Gang Claims Hack via Third Party
➝ 🔓 ✈️ Hackers swipe Booking.com, damage from attack is global
➝ 🇷🇺 🇺🇦 Russian Group Deploys USB in Targeted Attacks
➝ 🇮🇱 🇺🇸 Israeli Man Who Made $5M From Hacking Scheme Sentenced to Prison in US
➝ 🇫🇮 ⚖️ Alleged Extortioner of Psychotherapy Patients Faces Trial
➝ 🇺🇸 💸 ransomware exploits in attacks, 10K servers exposed
➝ 🇺🇸 ⚖️ botnet with 23,000 proxies for malicious traffic dismantled
➝ 👶🏻 🧨 Teens with “digital bazookas” are winning the ransomware war, researcher laments
➝ 💸 feature abused to steal $60 million from 99K victims
➝ 🇩🇰 🇷🇺 Hit With Largest on Record
➝ 🇨🇳 🇰🇭 Chinese Hackers Launch Covert Attacks on 24 Cambodian Organizations
➝ 🇲🇾 Major Phishing-as-a-Service Syndicate '' Dismantled by Malaysian Authorities
➝ 🇪🇺 🥳 EU Parliament committee rejects mass scanning of private and encrypted communications
➝ 🩹 Patch Tuesday: 90 Vulnerabilities Addressed by Siemens and Schneider Electric
➝ 🦠 🐍 27 Malicious Packages with Thousands of Downloads Found Targeting IT Experts
🇻🇳 🇮🇳 Vietnamese Hackers Using New -Powered to Target Indian Marketers
➝ 🔐 Adds Support to New Titan Security Key
➝ 🐛 Zero-Day Flaw in Email Software Exploited by Four Hacker Groups
➝ 🩹 Patches Critical Vulnerability in Business One Product
➝ 🐛 New CPU flaw impacts Intel desktop and server systems
➝ 🐛 New AMD attack lets hackers gain root in Linux VMs

📚 This week's recommended reading is: "Tribe of Hackers: Cybersecurity Advice from the Best Hackers in the World" by @marcusjcarey and Jennifer Jin

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-462023

realn2s, to random

do Not create VMs with only 25GB disk. It will hurt you in the worst possible moment (e.g. in a timebox @dragosinc /
😬​

raptor, to random
TalosSecurity, to random
@TalosSecurity@mstdn.social avatar

How to use #Snort3 to create detection content for #ICS protocols and monitor critical traffic https://blog.talosintelligence.com/ics-protocol-coverage-snort-3/

init_6_, to random

I had no idea my alma mater helped design the reference model for enterprise architecture in the 90s! Or that it was used today as a model for #ics/OT security! https://en.wikipedia.org/wiki/Purdue_Enterprise_Reference_Architecture https://www.energy.gov/sites/default/files/2022-10/Infra_Topic_Paper_4-14_FINAL.pdf

fifonetworks, to random

The shipments are arriving! Here are 9 of 12 laptops I’m preparing for an OT/ICS training class in November. I used to have the public utilities provide the computers, but it’s easier to control the configuration if they’re my devices. Before anyone throws a conniption fit, let me reassure you that these computers are only used in the Training Center – they are NEVER connected to the control network!

#callmeifyouneedme #fifonetworks

#training #ics #tcpip #networks #protocols #troubleshooting

hacks4pancakes, to Cybersecurity

Hello all! #DragosInc will be holding our annual Industrial #Cybersecurity educational conference #DISC on November 5, in Baltimore Maryland. If you currently work in the #ics space as an asset operator, engineer, security professional, or owner (could be Oil and Gas, Transportation, Electric, Water, any type of Manufacturing, etc), we would love for you to come and learn more about what is going on in the industrial cybersecurity landscape, chat with fellow vertical operators, and enjoy a nice dinner.

You can register your interest in attending here: https://dragos.com/disc

This event is not recorded for discussion confidentiality, and media is not present.

mate, to python French
@mate@3615.computer avatar

Le problème du jour est simple :

J'ai un fichier csv qui contient une colonne de dates au format jj/mm/yyyy.

J'ai besoin de les formatter en yyy-mm-jj afin de les faire passer dans un script qui utilise ces dates pour générer un fichier .ics.

Ça marchait très bien avant mais j'ai oublier de documenter comment je formatait les dates 😕

#Python #csv #ics #aled

itisiboller, to security

People tend to forget that without NDR there's little to no visibility in an OT environment. But this is true for IT too.

0x58, to infosec

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

‣ 🇬🇧 🇺🇸 data breach: trusts shared patient details with without consent
‣ ☁️ Severe Flaw in Cloud's Cloud Service Exposed Confidential Data
‣ 🇨🇭 💰 US govt contractor confirms attack, data theft
‣ 🦠 🤖 : Looking under the hood of Intellexa’s spyware
‣ 🇦🇿 🇦🇲 Hacking in a war zone: in the Azerbaijan-Armenia conflict
‣ 🦠 🎮 Dark Frost Launches Devastating Attacks on Gaming Industry
‣ 🇷🇺 🦠 Mysterious designed to cripple industrial systems linked to
‣ 🇧🇷 🇵🇹 ‘Operation Magalenha’ targets credentials of 30 Portuguese
‣ 🩹 'strongly recommends' patching max severity flaw ASAP
‣ 🇮🇷 🇮🇱 Iranian hackers use new ransomware to attack Israeli orgs
‣ 🇺🇦 Cyber Attacks Strike 's State Bodies in Espionage Operation
‣ 🇨🇳 🇺🇸 Chinese state hackers infect critical infrastructure throughout the US and Guam
‣ 🐍 👨🏻‍⚖️ was subpoenaed
‣ 🇰🇵 🦠 N. Korean Group Targets IIS Servers to Deploy Espionage Malware
‣ 🦠 🤖 Data Stealing Malware Discovered in Popular Android Screen Recorder App
‣ 🇩🇪 Arms maker Rheinmetall confirms ransomware attack
‣ 🦠 New ‘GoldenJackal’ APT Targets Middle East, South Asia Governments
‣ 🇺🇸 🇰🇵 Treasury Department sanctions entities tied to North Korean IT scams, hacking
‣ 🇺🇸 📰 Cuba ransomware claims on Philadelphia Inquirer
‣ 🇺🇸 🏥 After ransomware attack, state’s second-largest health insurer says patient data stolen
‣ 🇯🇵 🇮🇳 🏍️ motorcycle plant shut down by cyber attack
‣ 🇺🇸 🪖 explosion hoax goes viral after verified accounts push
‣ 🇺🇸 🇪🇺 Fined Record $1.3 Billion and Ordered to Stop Sending European User Data to US
‣ 🦠 🎬 Cloned websites push information stealing malware
‣ 🇰🇷 🇺🇸 Warning: Devices Under Attack! New Security Flaw Exposed
‣ 🍏 fixes three new zero-days exploited to hack iPhones, Macs

📚 This week's recommended reading is: "Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity Landscape" by Sounil Yu

Subscribe to the to have it piping hot in your inbox every Sunday ⬇️

https://0x58.substack.com/p/infosec-mashup-week-212023

cliffwade, to random
@cliffwade@allthingstech.social avatar

Found a couple of old screenshots from 11 years ago today.

This was likely my Samsung Galaxy Nexus device as I'm pretty sure I was rooted and using a custom ROM, though possibly I hadn't rooted quite yet.

Not sure what I was thinking with these setups, as I could never use anything like this today.

Not even sure what launcher I was using at the time either. Very likely was already using @novalauncher or Launcher Pro.

Screenshot of my Samsung Galaxy Nexus device from 11 years ago. You can see a big clock, weather, battery widget across the top and some app icons across the bottom.

j0hnnyxm4s, to random

If you need an Intro to ICS & attacks class that’s WAY cheaper than SANS per diem, virtual, and HANDS-ON, this is my absolute favorite thing to teach:

RT @grimmcyber

⚡️Our #ICS workshop is perfect for anyone working with Operational Technologies converging with IT or IoT systems for manufacturing, Smart City infrastructure, Vehicle to Infrastructure (V2I), and Intelligent Transportation Systems (ITS).

💥Register:http://bit.ly/3Md52rq

🐦🔗: https://twitter.com/grimmcyber/status/1660016533848965120

video/mp4

0x58, to infosec

"On May 8, 2023, a known cybercriminal group attempted and failed at an extortion scheme against Dragos. No Dragos systems were breached, including anything related to the Dragos Platform," the company said.

"The criminal group gained access by compromising the personal email address of a new sales employee prior to their start date, and subsequently used their personal information to impersonate the Dragos employee and accomplish initial steps in the employee onboarding process."

#cybersecurity #infosec #ics

https://www.bleepingcomputer.com/news/security/cybersecurity-firm-dragos-discloses-cybersecurity-incident-extortion-attempt/

j0hnnyxm4s, to random

WORK SPAM BUT YOU MIGHT BE INTO IT:

@grimmcyber is hosting an VIRTUAL, hands-on #ICS attack development (in Python) course to provide a deeper understanding of how attacks often operate, and why many defenses simply aren’t effective:

https://cyberranges.clickmeeting.com/grimm-ics-ot-virtual-class

saren42, to infosec

So, I extremely hate to ask for assistance here like this, and I was holding out sharing this, for the sake of infosec job prospects I had, that fell through now. But my wife and I, are currently trapped in Oklahoma, and it's becoming more dangerous for us regularly here, and with me unable to perform physical, in person work due to long COVID, I'm coming here, asking for assistance.

Thank you.

#transban #transrescue #TransHealth #mutualaid #infosec #getfedihired

https://gofund.me/be802dc1

saren42,

I have been working on my Security+ cert, have a homelab I'm always tinkering with, and I'm always looking at ways outside the box to solve problems in life both with/in tech/computers and outside of it. I have over 130 credit hours from trainings and school.

Additionally, I am a USAF veteran, and in my time after separation, I worked for a variety of manufacturing companies, and a number of Reno agencies doing short term contract maintenance work.

#getfedihired #infosec #ics

0x58, to infosec

The goal for ETHOS is to uncover emerging threats for which there is no threat intelligence available.

#cybersecurity #infosec #OT #ics

https://www.securityweek.com/new-data-sharing-platform-serves-as-early-warning-system-for-ot-security-threats/

Antisy_Training, to random

🚨💻🔥 Course Alert! 🔥💻🚨

Are you interested in learning about industrial control systems and how to secure them? 🤔

Ashley Van Hoesen's "Introduction to Industrial Control Systems" course is designed just for you! 🙌

Key takeaways from the course include:
🔐 An in-depth understanding of industrial control systems
🔐 Hands-on lab experiences by building an ICS lab and attacking the ICS systems
🔐 Incident-response type skills via log analysis

For $575, you'll get access to 16 hours of live, online training spread over 4 days, 6 months access to class recordings, as well as 12 months of complimentary access to the Antisyphon cyber range. 🎯

Click the link below to learn more and register for the course.
https://lnkd.in/ghpBukCu

#cybersecurity #ICS #training 🚀

image/jpeg
image/jpeg
image/jpeg

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • khanakhh
  • mdbf
  • InstantRegret
  • Durango
  • Youngstown
  • rosin
  • slotface
  • thenastyranch
  • osvaldo12
  • ngwrru68w68
  • kavyap
  • cisconetworking
  • DreamBathrooms
  • megavids
  • magazineikmin
  • cubers
  • vwfavf
  • modclub
  • everett
  • ethstaker
  • normalnudes
  • tacticalgear
  • tester
  • provamag3
  • GTA5RPClips
  • Leos
  • JUstTest
  • All magazines