chiefgyk3d, to fediverse
@chiefgyk3d@social.chiefgyk3d.com avatar

I think it’s time to redo my blocklists, quite a few of them are breaking, and I want to secure my network properly more. I don’t think a lot of it will be shown on stream, but I will try and make and videos about it and hopefully a longer form as well so be sure to follow those accounts as well as my but I will go over the research and planning live on twitch to explain how and why I architect things the way I do.

chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar

Again I won’t be able to share EVERYTHING, I plan to do in my networking audit and enhancements but more than enough to give my audience and community thoughts to chew on and learn from #infosec #cybersecurity

braveinnovators, to infosec Ukrainian

Тиждень тому українці почали отримувати СМС-повідомлення нібито від «Укрпошти» про те, що їх відправлення не доставлять, якщо вони не нададуть свої персональні дані (детальніше про це можна прочитати в матеріалі AIN.UA: https://ain.ua/2023/06/06/ukrposhta-poperedyla-pro-fishyng/).

#UAMaliciousURLBlocklist #phishing #scam #infosec #malware #cybersecurity #кібербезпека #Ukraine#Україна

braveinnovators,

Це рішення працює на всіх операційних системах (на скріншоті блокування однієї із адрес у браузері Brave для ОС Android). Єдине, що потрібно — додати фільтр Ukrainian Malicious URL Blocklist до свого веб-браузера: https://github.com/braveinnovators/url-blocklist

#UAMaliciousURLBlocklist #phishing #scam #infosec #malware #cybersecurity #кібербезпека #Ukraine#Україна

braveinnovators,

Саме тому ми створили універсальне правило для фільтра фішингових сайтів Ukrainian Malicious URL Blocklist завдяки якому всі веб-посилання у форматі ukrposhta.xxx.xxx будуть блокуватися автоматично і незалежно від того, які саме доменні імена будуть надалі використовуватися шахраями у цій фішинговій кампанії.

#UAMaliciousURLBlocklist #phishing #scam #infosec #malware #cybersecurity #кібербезпека #Ukraine#Україна

chiefgyk3d, to infosec
@chiefgyk3d@social.chiefgyk3d.com avatar

Well I just found a security vulnerability with my bank’s systems. Reported it immediately. I will not be disclosing what I found just yet and seeing if it’s just specific to that institution as well. #sync #infosec

chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar
chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar

@CelestialSilentLion there’s multiple issues I’m finding with VISA, the card itself doesn’t even encrypt the card details completely like my AMEX and Mastercard. VISA has a really incompetent #cybersecurity posture

adamjcook, to random

Oh memories.

Taking a break from #Musk's Hate Train on the Hellsite to recall this series of Tweets from a few years ago.

While under-appreciated then and now, the Tweet thread by Musk posted below contains an extremely damning #SystemsSafety admission and it displays the considerable #PublicSafety blind spot associated with remotely updating #SafetyCritical systems without oversight.

Musk has no clue what he admitted to here, but systems safety experts do.

#Tesla

adamjcook,

@opendna @justafrog @kentindell has been extensively covering the #cybersecurity and other technical aspects of Internet-connected vehicles, as a matter of fact.

A highly-recommended article here if you did not catch it: https://kentindell.github.io/2023/04/18/get-your-app-to-mars/

A highly-recommended follow as well.

symfonystation, to Symfony
@symfonystation@phpc.social avatar

Explore today's @symfonystation Communiqué of Symfony, Drupal, PHP, Fediverse, and Cybersecurity news. https://www.symfonystation.com/Symfony-Station-Communique-09-June-2023 #Symfony #SymfonyCasts #PHP #Drupal #Cybersecurity #Fediverse #CSS :symfony: :elephpant_purple: :drupalicon: :fediverse: :php: 🇺🇦

Explore this week's Symfony, Drupal, PHP, and Fediverse news in the latest Symfony Station newsletter (mailchi.mp)

Welcome to this week's Symfony Station newsletter. It's your review of the essential news in the Symfony and PHP development communities focusing on protecting democracy. We also cover the cybersecurity world and the Fediverse.

symfonystation, to Symfony
@symfonystation@phpc.social avatar

Explore today's @symfonystation Communiqué of Symfony, Drupal, PHP, Fediverse, and Cybersecurity news. https://www.symfonystation.com/Symfony-Station-Communique-09-June-2023 #Symfony #SymfonyCasts #PHP #Drupal #Cybersecurity #Fediverse #CSS :symfony: :elephpant_purple: :drupalicon: :fediverse: :php: 🇺🇦

cybercareersblog, to Cybersecurity
mguhlin, to edutooters
@mguhlin@mastodon.education avatar

Check out a brand new Network Security course from TCEA! Learn about security tools, good practices, and avoiding attempts to trick you. https://blog.tcea.org/tcea-announces-network-security-course/ #NetworkSecurity #edtech #education #CyberSecurity #tceajmg #tcea #edutooter @edutooters @edtech

chiefgyk3d, to infosec
@chiefgyk3d@social.chiefgyk3d.com avatar

I’m trying to figure out if/how I can add MISP into my home lab to enhance security and add threat sharing. This way my firewall can dynamically adjust based on additional threat information. I think a lot of you will be interested in this as well #infosec #cybersecurity #threatsharing https://www.misp-project.org/

symfonystation, to Symfony
@symfonystation@phpc.social avatar

Explore today's @symfonystation Communiqué of Symfony, Drupal, PHP, Fediverse, and Cybersecurity news. https://www.symfonystation.com/Symfony-Station-Communique-09-June-2023 #Symfony #SymfonyCasts #PHP #Drupal #Cybersecurity #Fediverse #CSS :symfony: :drupalicon: :fediverse: :php: 🇺🇦

SecureOwl, to infosec
AAKL, to infosec

Cyberspace Solarium Commission says White House critical infrastructure protection order is ‘outdated’ and needs rethinking #cybersecurity #infosec https://therecord.media/critical-infrastructure-ppd21-white-house-outdated-cyberspace-solarium-commission @martinmatishak

jbzfn, to random
@jbzfn@mastodon.social avatar

⎧ Enigma software group has won a crucial case in the U.S. Court of Appeals for the Ninth Circuit, allowing it to proceed with its lawsuit against Malwarebytes for flagging its anti-spyware software as a 'potentially unwanted program.' The lawsuit alleges that Malwarebytes has engaged in anti-competitive conduct under the Lanham Act and tortious interference with Enigma's business ⎭ ➥ @techspot

#Malwarebytes #Spyware #CyberSecurity
https://www.techspot.com/news/98976-malwarebytes-faces-lawsuit-classifying-rival-anti-spyware-program.html

AAKL, to gaming
symfonystation, to Symfony
@symfonystation@phpc.social avatar

Explore the March 24, 2023 @symfonystation Communiqué of Symfony, Drupal, PHP, Fediverse, and Cybersecurity news. https://www.symfonystation.com/Symfony-Station-Communique-24-March-2023 #Symfony #SymfonyCasts #PHP #Drupal #Cybersecurity #Fediverse #CSS :symfony: :elephpant_purple: :drupalicon: :wordpress: :fediverse: :php: :phpunit: :apiplatform: 🇺🇦

TiffyBelle, to ai

AI Browser Extensions Are a Security Nightmare:

https://www.kolide.com/blog/ai-browser-extensions-are-a-security-nightmare

This article highlights some of the more grounded threats that we face from AI tools in the immediacy. I think a lot of users see their browser's extension stores as a safe place to acquire addons when, in fact, it is vitally important to pick what extensions you install very carefully and question whether the permissions they're asking for are justified.

#AI #InfoSec #CyberSecurity #ChatGPT #Browser #Tech #IT #Security

0xor0ne, to linux

Excellent blog post for learning Linux kernel internals, networking, fuzzing and syzkaller:

https://xairy.io/articles/syzkaller-external-network

#Linux #kernel #fuzzing #networking #syzkaller #infosec #cybersecurity

image/jpeg
image/jpeg
image/jpeg

0xor0ne, to Futurology

Cool short blog post on exploiting TP-LINK AX1800 router
Stack-based buffer overflow and remote code execution (require either LAN access or physical access)
Credits Rocco Calvi

https://tecsecurity.io/blog/tp-link_ax1800

#tplink #iot #embedded #router #infosec #cybersecurity #exploit

image/jpeg
image/jpeg

chiefgyk3d, to random
@chiefgyk3d@social.chiefgyk3d.com avatar

Was anyone else aware #Cloudflare provided a “zero trust sim” service for enterprises to protect their phones? #infosec #cybersecurity https://www.cloudflare.com/press-releases/2022/cloudflare-announces-the-first-zero-trust-sim/

0xor0ne, to infosec
fifonetworks, to Cybersecurity

PowerShell Email Warning: search for instances in your PowerShell scripts that send emails using the Send-MailMessage command.

REASON
To quote Microsoft: "The Send-MailMessage cmdlet is obsolete. This cmdlet does not guarantee secure connections to SMTP servers. While there is no immediate replacement available in PowerShell, we recommend you do not use Send-MailMessage."

SOLUTION
Re-write the script to open a local instance of a secure email app and automate sending messages via the app, rather than directly from PowerShell.

TURN THIS INTO A WIN
This is a great project for your entry-level cybersecurity people, or a NetAdmin/SysAdmin who wants to move into cybersecurity.

  1. Do a global network search for PS scripts containing “Send-MailMessage.”
  2. Determine if the script is in active use.
  3. Work with the script owner to remediate the problem.
  4. Log all work – status of instances found, when remediated, etc.
  5. Attend the Change Management meetings to report and coordinate activities.

LAST BUT NOT LEAST
“But Bob, we don’t use PowerShell in our network.”
My reply: Do the search anyway. You might uncover a malicious script running in your system to exfiltrate information.

#callmeifyouneedme #fifonetworks

#cybersecurity #informationsecurity

Source:
https://learn.microsoft.com/en-us/powershell/module/microsoft.powershell.utility/send-mailmessage?view=powershell-7.3

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • normalnudes
  • osvaldo12
  • tester
  • GTA5RPClips
  • cubers
  • everett
  • tacticalgear
  • ethstaker
  • provamag3
  • anitta
  • Leos
  • cisconetworking
  • lostlight
  • All magazines