SomeGadgetGuy, to tech
@SomeGadgetGuy@techhub.social avatar

Sure. Google location tracking "bad" and Apple data harvesting "good", but it's pretty hack to see articles popping up about how poor Android trackers are compared to AirTags.
https://somegadgetguy.com/b/46Q

Ignoring the security nightmare AirTags were at launch, the assumed permissions Apple just takes for the Find My network, and the annoying (and scary looking) process Apple forces users through to OPT OUT of location tracking, it's shocking how well Google is doing only a couple weeks into this new finder network going live.

linuxiac, to security
@linuxiac@mastodon.social avatar

OpenSSH tightens security with a new feature that aims to stop attackers in their tracks with smart penalties.
https://linuxiac.com/openssh-enhances-security-with-new-feature/

#ssh #openssh #security #openbsd

publicvoit, to apple German
@publicvoit@graz.social avatar

Bei einem #heise-Artikel zu #Apple und #Security einen Kommentar schreiben, ist immer wieder eine sehr "interessante" Erfahrung.

Meistens wird man da attackiert, die unabhängigen Quellen, die man brav einbindet ignoriert oder heruntergespielt und auf persönlicher Ebene angegriffen. 🤷

#Fanboys

aral, (edited ) to microsoft
@aral@mastodon.ar.al avatar

Oh, that? That’s just me writing the Windows section of the Kitten¹ installation instructions for the upcoming web site.

¹ https://codeberg.org/kitten/app

skykiss, to security
@skykiss@sfba.social avatar

Republican Sen. Lankford: A top Republican told me that if I try to move a bill that solves the border crisis during this election year, he will do whatever he can to DESTROY me. He said, ‘I do not want you to solve this during the presidential election’ 🚨

Republican fascists threaten deadly force if any measure to improve our border security.

#election #vote #natsec #border #security #fascism

Republican explains on C-Span TV that other republicans are threatening great harm to anyone that improves our border security. The fascist are deadly criminals. Republican Sen. Lankford: A top Republican told me that if I try to move a bill that solves the border crisis during this election year, he will do whatever he can to DESTROY me.

metin, (edited ) to microsoft
@metin@graphics.social avatar
happyborg, to privacy
@happyborg@fosstodon.org avatar

Autonomi have launched their beta network and rewards program.

Anyone can run nodes and if you want to join the fun, sign up for the second wave of noderunner rewards. Even non-technical folks can do this with any old computer.

Sign up before it fills up! At https://Autonomi.com

The earlier the wave you join the more rewards are available.

What is #Autonomi?

It's an outstanding #privacy focused project aimed at everyone. See: https://docs.Autonomi.com
#p2p #security

kaiserkiwi, to macos
@kaiserkiwi@corteximplant.com avatar

Why has everything that has to do with software to be this frustrating these days?

#Bartender for #macOS was silently sold and it seems like the new owners have no intentions to say who they are.

So as usual: Is there an open source alternative to Bartender? I'm so sick of this stuff…

https://www.macrumors.com/2024/06/04/bartender-mac-app-new-owner/

#Security #Apple #Mac

SomeGadgetGuy, to windows
@SomeGadgetGuy@techhub.social avatar

It just clicked in my brain. What I haven't been able to articulate about why I'm so anxious about Recall. I'm sure others have already gotten to where I am.

It's worse than "a system that tracks everything you do" and stores that info in a basic database that could be easily compromised.
It's worse than a nanny surveillance tool for companies to spy on their employees.

It's inescapable.

It doesn't matter if I make a dozen "how to disable recall" tutorials. The second YOUR data shows up on someone ELSE'S screen, it's in THEIR recall database.

It won't matter if you're a master expert specialist. You can't account for EVERY other computer you've ever interacted with. If a family member looks up an old email with your personal data in it, your data is now at risk.

If THEIR system is compromised YOUR data is at risk.

I just went from "vague feeling of unease" to "actively writing templates to canvas elected officials, regulators, and attorneys general."

Theeo123, to windows
@Theeo123@mastodon.social avatar

https://www.wired.com/story/total-recall-windows-recall-ai/

Well, that didn't take long...

There is now an automated tool for hackers to extract all data collected by windows recall.

GrapheneOS, to privacy
@GrapheneOS@grapheneos.social avatar

GrapheneOS version 2024060400 released:

https://grapheneos.org/releases#2024060400

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/13244-grapheneos-version-2024060400-released

#GrapheneOS #privacy #security

simplenomad, to infosec
@simplenomad@rigor-mortis.nmrc.org avatar

Sounds like a very cool project. The only problem with it is that there is no reference to Kuato (IYKYK).

https://github.com/xaitax/TotalRecall

#infosec #security

davemark, to microsoft
@davemark@mastodon.social avatar

"Security Researcher Calls Windows 11 AI 'Recall' Screenshotting Feature a Disaster"

Take constant screen grabs of my screen and feed it into an AI? What could go wrong?

"With Recall, hackers are able to scrape "everything you've ever looked at within seconds," and users should prepare for "AI powered super breaches.""

Who could have predicted this idea would go south? Have to say, zero chance I'm bringing this tech into my setup.

https://www.macrumors.com/2024/06/03/windows-11-recall-feature-disaster/
#Microsoft #Security

simplenomad, to Wyze
@simplenomad@rigor-mortis.nmrc.org avatar

Question for crypto (as in cryptographic) nerds, I am looking for an automated solution for on-prem backups that encrypts said backup. The plan is to take said encrypted backup and store it off sight. Prefer open source, and for further context consider this "home lab" although it does involve multiple servers with public IPs etc. I do not want to have the encryption key easily reachable like in plaintext in a config file.

Right now this is all happening manually, but automated would make this so much easier. It does not have to be a full end-to-end solution, even just the encrypting part being able to be automated would be fine as I could simply script around it. Thoughts and recommendations?

#cryptography #backup #automation #infosec #security

popey, to infosec
@popey@mastodon.social avatar

NIST turns to IT consultants to clear National Vulnerability Database backlog

🤔

"According to the agency's statement last week, it hopes to reach its pre-February processing rate of CVEs within the next few months. NIST predicted it should be caught up and back to processing current CVEs by the end of the fiscal year."

💀

https://www.theregister.com/2024/06/03/nist_cve_backlog/

dethos, to security
@dethos@s.ovalerio.net avatar

"Hacking Millions of Modems (and Investigating Who Hacked My Modem)"

https://samcurry.net/hacking-millions-of-modems

#security #infosec #netsec #cybersecurity

happyborg, to privacy
@happyborg@fosstodon.org avatar

Autonomi are launching their beta rewards program tonight (8am GMT) and have opened signups for the second wave of noderunners. Anyone will be able to run nodes, even non-technical folks.

Sign up before it fills up! At https://Autonomi.com

The earlier the wave you join the more rewards are available.

What is ?

It's an outstanding focused project aimed at everyone. See: https://docs.Autonomi.com

Nonilex, to egypt
@Nonilex@masto.ai avatar

Israel’s Seizure of Border Zone Strains Ties With Egypt

Israel defied ominous Egyptian warnings & took control of the , but the reaction from , which wants to maintain its cooperation with , has been muted.


https://www.nytimes.com/2024/06/03/world/middleeast/egypt-corridor-israel-gaza-border.html?smid=nytcore-ios-share&referringSource=articleShare&u2g=c&pvid=4A38271E-6F65-4323-B102-319D99B5C17F&sgrp=c-cb

jakub, to security
@jakub@jirutka.cz avatar

I noticed that #Zed automatically downloads a NodeJS binary from nodejs.org without asking or even informing the user about it. Right after starting it and opening a file, without doing anything else. Then it installs some packages from npmjs via npm. And there’s no option to disable it.

THIS IS ABSOLUTELY UNACCEPTABLE! I can’t stress enough how bad this is from #security point of view. And not just that, consider users on metered connections

#ZedEditor #cybersec #Rust
https://github.com/zed-industries/zed/issues/12589

SomeGadgetGuy, (edited ) to tech
@SomeGadgetGuy@techhub.social avatar

Early Access on Patreon: Android Location Trackers are FINALLY shipping!
https://www.patreon.com/posts/pebblebee-and-105412292

I ordered these LITERALLY a YEAR AGO to the day, and they JUST ARRIVED!
Apple stalled the Google location tracker network for as long as they could, but now we FINALLY have some competition for AirTags!

#tech #technology #apple #privacy #security #airtag #google #android #chipolo #pebblebee #bbtg #geek #gadget #gadgets #newtoys

piofthings, to microsoft
@piofthings@mastodon.social avatar
pitrh, to devops
@pitrh@mastodon.social avatar

Friends, is the fact that the Humble bundle that has my "The Book of PF" along with a number of other good titles, the "Dive into DevOps" bundle https://www.humblebundle.com/books/dive-into-dev-ops-no-starch-books has sold more than 8,000 bundles and made more than CAD27,000 for the charity a cause for celebration or should I hold off until we see rounder numbers?

Anyway the bundle runs until June 10th 2024, so get your clicks and cards ready!

nixCraft, to privacy
@nixCraft@mastodon.social avatar

Stealing everything you’ve ever typed or viewed on your own Windows PC is now possible with two lines of code — inside the Copilot+ Recall disaster. https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e #privacy #security #infosec #windows

majorlinux, to linux
@majorlinux@toot.majorshouse.com avatar

Patch your systems if you haven't already!

Federal agency warns critical Linux vulnerability being actively exploited

https://arstechnica.com/security/2024/05/federal-agency-warns-critical-linux-vulnerability-being-actively-exploited/

#Linux #Vulnerability #CISA #Tech #Security #InfoSec

ente, to security
@ente@mstdn.social avatar

In case you missed it, we now have a BEAUTIFUL website dedicated to Auth @ https://ente.io/auth

💜

video/mp4

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • InstantRegret
  • mdbf
  • ngwrru68w68
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • osvaldo12
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • tacticalgear
  • ethstaker
  • modclub
  • cisconetworking
  • tester
  • GTA5RPClips
  • cubers
  • everett
  • megavids
  • provamag3
  • normalnudes
  • Leos
  • lostlight
  • All magazines