percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
campuscodi, to infosec
@campuscodi@mastodon.social avatar

David Ross, one of the early pioneers of browser security research, has passed away, his family announced on Twitter.

In 1999, together with Georgi Guninski, he authored the first paper on XSS attacks named "Script Injection".

He also worked on implementing X-Frame-Options in Internet Explorer.

https://x.com/randomdross/status/1799284146231185584

#infosec #cybersecurity #security

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
campuscodi, to infosec
@campuscodi@mastodon.social avatar

Last year, CrowdStrike published a report on a new crypto-mining operation that was targeting exposed Kubernetes systems with a miner for the Dero cryptocurrency token.

https://www.crowdstrike.com/blog/crowdstrike-discovers-first-ever-dero-cryptojacking-campaign-targeting-kubernetes/

This threat actor—no official name yet—is still active today, according to a new report from cloud security firm Wiz.

https://www.wiz.io/blog/dero-cryptojacking-campaign-adapts-to-evade-detection

campuscodi, to infosec
@campuscodi@mastodon.social avatar

The Cyber Partisans say they hacked the Belarusian State University.

The group claims it obtained documents and audio records from the university's internal network showing how its leadership dismissed staff and students who participated in anti-government protests.

The files show that the university declined to admit new students who participated in protests and left comments online against the dictatorship.

https://www.by.cpartisans.org/en/post/bsu-uncut-2020-2024-part-1 #infosec #cybersecurity #security

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar

Law enforcement operation takes aim at an often-overlooked cybercrime linchpin https://arstechnica.com/?p=2027800&utm_source=dlvr.it&utm_medium=mastodon

campuscodi, to infosec
@campuscodi@mastodon.social avatar

Analyst1 has published a report that looks at the history of a ransomware operation named RansomHouse.

Researchers say the platform has been used by threat actors with links to ransomware gangs such as White Rabbit, Mario ESXi, RagnarLocker, and Dark Angels (Dunghill Leak).

https://analyst1.com/ransomhouse-stolen-data-market-influence-operations-amp-other-tricks-up-the-sleeve/

Not to be confused with RansomHub, which is a different ransomware group.

campuscodi, to infosec
@campuscodi@mastodon.social avatar

The threat actor behind the Kuiper ransomware tried to sell its source code on the XSS hacking forums only to get immediately banned back in April

https://x.com/Libranalysis/status/1778036668236222483

campuscodi, (edited ) to random
@campuscodi@mastodon.social avatar

The EU Agency for Law Enforcement Training (CEPOL) says it was the victim of a cyberattack:

https://www.cepol.europa.eu/newsroom/news/cyber-incident-eu-agency-law-enforcement-training-cepol #infosec #cybersecurity #security

campuscodi, (edited ) to random
@campuscodi@mastodon.social avatar

Security firm watchTowr has published its own analysis of CVE-2024-4577, a PHP-CGI vulnerability impacting Windows systems: https://labs.watchtowr.com/no-way-php-strikes-again-cve-2024-4577/

The bug was initially discovered by DEVCORE: https://devco.re/blog/2024/06/06/security-alert-cve-2024-4577-php-cgi-argument-injection-vulnerability-en/

watchTowr has also released proof-of-concept code: https://github.com/watchtowrlabs/CVE-2024-4577 #infosec #cybersecurity #security

metin, to infosec
@metin@graphics.social avatar

From the ar(t)chive…

Stylized 3D illustration for an early-2000s article in the Dutch PC-Active magazine, about a mobile phone virus. This was before smartphones were introduced. 🙂

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
chiefgyk3d, to infosec
@chiefgyk3d@social.chiefgyk3d.com avatar

Exploring Windows 11 Enterprise Testing | Yubikey Firmware Update | Homelab Upgrade Plans and Progress | Cybersecurity and Chill | Gaming on Linux on Twitch. Dive in with me: https://twitch.tv/chiefgyk3d

TehPenguin, to windows
@TehPenguin@hachyderm.io avatar

Making Recall opt-in has, effectively, killed it.

Oh, it will still ship.

Folks who worked on it will move on to new features and the ownership will be transferred to the servicing devision (WSD).

After a while WSD will get fed up with the cost of maintaining yet another rarely used shell feature and will deprecate it. Either that or the shell team will rewrite everything again and drop it.

See: Cortana, Timeline, People on the Taskbar, Chat, Live tiles.

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
majorlinux, to php
@majorlinux@toot.majorshouse.com avatar

Hope your weekends are still uneventful.

Nasty bug with very simple exploit hits PHP just in time for the weekend

https://arstechnica.com/security/2024/06/php-vulnerability-allows-attackers-to-run-malicious-code-on-windows-servers/

#Vulnerability #PHP #Exploit #Security #InfoSec #Tech

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
chiefgyk3d, to linux
@chiefgyk3d@social.chiefgyk3d.com avatar

The things people say on tiktok make me LOL

#Linux #infosec #cybersecurity #windows

sanjaymenon, to infosec
@sanjaymenon@mastodon.social avatar
percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
chiefgyk3d, to linux
@chiefgyk3d@social.chiefgyk3d.com avatar

Discussion on Weekend project plans | Cybersecurity and Chill | Gaming on Linux live on Twitch. Hop in: https://twitch.tv/chiefgyk3d

chiefgyk3d, (edited ) to random
@chiefgyk3d@social.chiefgyk3d.com avatar

I’m very close to finishing my personal laptop which is using @QubesOS on my @purism Librem 14. I just have to rotate passwords and setup my @bitwarden and @protonprivacy email and password manager. I even have @yubico for most of my TOTP. Need to sync Monero, login to various account and move my passwords from KeePassXC and I plan to keep my work, personal, and TOTP in separate systems.

#infosec

percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
percepticon, to Cybersecurity
@percepticon@ioc.exchange avatar
  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • ngwrru68w68
  • everett
  • InstantRegret
  • magazineikmin
  • thenastyranch
  • rosin
  • GTA5RPClips
  • Durango
  • Youngstown
  • slotface
  • khanakhh
  • kavyap
  • DreamBathrooms
  • provamag3
  • tacticalgear
  • osvaldo12
  • tester
  • cubers
  • cisconetworking
  • mdbf
  • ethstaker
  • modclub
  • Leos
  • anitta
  • normalnudes
  • megavids
  • lostlight
  • All magazines