augieray, to random
@augieray@mastodon.social avatar

Business leaders: We can't find enough workers!

Workers: You could pay more.

Business: Nope.

Workers: Better benefits?

Business: No.

Workers: More flexible hours?

Business: No way.

Workers: Treat your current employees better to build your employer brand?

Business: Never.

Workers: Well, what's left?!

Business: Child labor!

https://apnews.com/article/iowa-governor-child-labor-laws-e8cb29e2a45b956489c4a192b7ddeba5

B2Spirit_TT,
kurtseifried, to random

#osspodcast episode 377 with myself and @joshbressers is out https://opensourcesecurity.io/2023/05/28/episode-377-the-world-is-changing-too-fast-for-humans-to-understand/ TL;DR: you will learn why you hate change and why resistance is futile.

hobs,
@hobs@mstdn.social avatar

@kurtseifried

Loved your latest podcast on exponential change and the inability of our #brains to keep up.
Perhaps fight fire with fire - an AI information bodyguard that you trust. Basically Siri with #AgentGPT actually doing what you ask it to do instead of faking it and sharing your data with predatory BigTech.
Daniel Miessler had some ideas but he's too techno optimist for me.
#AIEthics
#DeepFakes #Security #Identification
#technopocalypse #LangChain #LlamaImdex
@joshbressers

paulox, to random
@paulox@fosstodon.org avatar

Mario de la Ossa is presenting the talk "A Beginners Guide to Security Exploits in Action" at the DjangoCon Europe 2023 in Edinburgh 🏴󠁧󠁢󠁳󠁣󠁴󠁿🦄🚀

#DjangoConEuroppe #DjangoCon #django #security #exploits

CC @djangoconeurope

https://pretalx.com/djangocon-europe-2023/talk/9N97WM/

Mikal, to random
@Mikal@sfba.social avatar

I'm going to start an email list for my blog and photographic print sales. What is the best privacy-forward list management software? I don't want to track my readers/customers and I don't want any 3rd party software to do it either.
Thanks for any tips!
#privacy #security

itnewsbot, to random

Is Cybersecurity an Unsolvable Problem? - Ars Technica profiles Scott Shapiro, the co-author of a new book, Fancy Bear Goes ... - https://it.slashdot.org/story/23/05/28/1820216/is-cybersecurity-an-unsolvable-problem?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

hen, to random
@hen@social.lol avatar

A friend on Signal sent this to me, hilarious for probably anyone involved with #privacy #security :

https://www.newyorker.com/humor/daily-shouts/introducing-four-step-authentication

itnewsbot, to random

Netflix’s Password-Sharing Crackdown Has Hit the US - TikTok user data is exposed to Chinese ByteDance employees, a screen recording app goes r... - https://www.wired.com/story/netflix-password-sharing/ #security/securitynews #securityroundup #security

itnewsbot, to random

Bitwarden Moves Into Passwordless Security - Bitwarden, the popular open-source password management program, has launched Bitwa... - https://it.slashdot.org/story/23/05/26/2213223/bitwarden-moves-into-passwordless-security?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

rodtrent, to random

Understanding the Intricacies of AAD Sign-In Logs to Detect MFA Fatigue Attacks https://rodtrent.com/7mn

#Security #MicrosoftSecurity #Cybersecurity #MustLearnKQL #KQL

avolha, to infosec Polish

W środę 31.05 o godz. 19 @kacperszurek organizuje darmowy webinar "Bezpieczeństwo w pigułce", podczas którego pokaże popularne ostatnio ataki i wyjaśni, jak się przed nimi ochronić. Warto skorzystać, bo całość niestety nie będzie nagrywana.

https://www.youtube.com/watch?v=C17i7NV023Y

#infosec #security #cyberbezpieczenstwo #webinar

eyalestrin, to random

Threat Actors Compromise Barracuda Email Security Appliances #Security https://groups.google.com/g/technical-security/c/Ti6uQJKA9gI

3kh0, to infosec

For those who still do not know how the new #google .zip domains can be dangerous, @mrd0x made a wonderful summary about it with a demo you can try to see how a bad actor can use the .zip TLD to gain access.

Write-up: https://mrd0x.com/file-archiver-in-the-browser/
See it in action: https://mrd0x.zip/

#security #infosec #ziptld

0x58, to infosec

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

‣ 🇬🇧 🇺🇸 data breach: trusts shared patient details with without consent
‣ ☁️ Severe Flaw in Cloud's Cloud Service Exposed Confidential Data
‣ 🇨🇭 💰 US govt contractor confirms attack, data theft
‣ 🦠 🤖 : Looking under the hood of Intellexa’s spyware
‣ 🇦🇿 🇦🇲 Hacking in a war zone: in the Azerbaijan-Armenia conflict
‣ 🦠 🎮 Dark Frost Launches Devastating Attacks on Gaming Industry
‣ 🇷🇺 🦠 Mysterious designed to cripple industrial systems linked to
‣ 🇧🇷 🇵🇹 ‘Operation Magalenha’ targets credentials of 30 Portuguese
‣ 🩹 'strongly recommends' patching max severity flaw ASAP
‣ 🇮🇷 🇮🇱 Iranian hackers use new ransomware to attack Israeli orgs
‣ 🇺🇦 Cyber Attacks Strike 's State Bodies in Espionage Operation
‣ 🇨🇳 🇺🇸 Chinese state hackers infect critical infrastructure throughout the US and Guam
‣ 🐍 👨🏻‍⚖️ was subpoenaed
‣ 🇰🇵 🦠 N. Korean Group Targets IIS Servers to Deploy Espionage Malware
‣ 🦠 🤖 Data Stealing Malware Discovered in Popular Android Screen Recorder App
‣ 🇩🇪 Arms maker Rheinmetall confirms ransomware attack
‣ 🦠 New ‘GoldenJackal’ APT Targets Middle East, South Asia Governments
‣ 🇺🇸 🇰🇵 Treasury Department sanctions entities tied to North Korean IT scams, hacking
‣ 🇺🇸 📰 Cuba ransomware claims on Philadelphia Inquirer
‣ 🇺🇸 🏥 After ransomware attack, state’s second-largest health insurer says patient data stolen
‣ 🇯🇵 🇮🇳 🏍️ motorcycle plant shut down by cyber attack
‣ 🇺🇸 🪖 explosion hoax goes viral after verified accounts push
‣ 🇺🇸 🇪🇺 Fined Record $1.3 Billion and Ordered to Stop Sending European User Data to US
‣ 🦠 🎬 Cloned websites push information stealing malware
‣ 🇰🇷 🇺🇸 Warning: Devices Under Attack! New Security Flaw Exposed
‣ 🍏 fixes three new zero-days exploited to hack iPhones, Macs

📚 This week's recommended reading is: "Cyber Defense Matrix: The Essential Guide to Navigating the Cybersecurity Landscape" by Sounil Yu

Subscribe to the to have it piping hot in your inbox every Sunday ⬇️

https://0x58.substack.com/p/infosec-mashup-week-212023

ubuntusecurity, to random
@ubuntusecurity@fosstodon.org avatar

We're back on the mic🎙 for the @ubuntu #Security Podcast. This week we look at some recent security developments from PyPI, the @LinuxSecSummit and the pending transition of Ubuntu 18.04 to ESM, plus we cover security updates for cups-filter, the Linux kernel, Git, runC, ncurses, cloud-init and more https://ubuntusecuritypodcast.org/episode-196/

PogoWasRight, to random

I love it when NYS DFS and the NYS Attorney General's Office crack down on poor security.

Here's another enforcement action in the financial sector by NYSDFS. They have fined lender and mortgage service provider OneMain Financial Group $4.25 million dollars and of course, there's a corrective action plan:

https://www.workplaceprivacyreport.com/2023/05/articles/financial-services/nysdfs-fines-lender-and-mortgage-servicer-4-25m-for-cybersecurity-failures-including-vendor-management/

Direct link to Consent Order: https://www.dfs.ny.gov/system/files/documents/2023/05/ea20230524_co_onemain.pdf

#security #ITsec #FinSec #cybersecurity #riskassessment #NYSDFS

@campuscodi @briankrebs @kevincollier @brett

itsecbot, to random

Lazarus hackers target Windows IIS web servers for initial access - The notorious North Korean state-backed hackers, known as the Lazarus Group, are now targ... https://www.bleepingcomputer.com/news/security/lazarus-hackers-target-windows-iis-web-servers-for-initial-access/ #security

adminmagazine, to random
@adminmagazine@hachyderm.io avatar

Learn the most common ransomware attack vectors and steps to take to avoid them https://www.admin-magazine.com/News/3-Most-Common-Ransomware-Attack-Vectors #security #ransomware #cyberattack #email #vulnerability

itnewsbot, to tech

11 NLP Use Cases: Putting the Language Comprehension Tech to Work - Natural Language Processing (NLP), which encompasses areas such as linguistics, co... - https://readwrite.com/11-nlp-use-cases-putting-the-language-comprehension-tech-to-work/ #speechrecognition #industrial #cogitotech #security #chatbots #tech #ai

itsecbot, to random

BlackByte ransomware claims City of Augusta cyberattack - The city of Augusta in Georgia, U.S., has confirmed that the most recent IT system outage... https://www.bleepingcomputer.com/news/security/blackbyte-ransomware-claims-city-of-augusta-cyberattack/ #security

TauriApps, to random

We noticed a naive attack on our websites the morning, attempting to exfiltrate #netlify env vars.
Because our websites are simple docs websites this was largely pointless and we have no reason to assume anything valuable got stolen. We still took precautions and rotated all of our keys & credentials.

Many others were similarly attacked, and after we informed #github security, the user account has been suspended.

#security #cybersecurity

itnewsbot, to random

A Popular Password Hashing Algorithm Starts Its Long Goodbye - An anonymous reader quotes a report from Wired: Bcrypt turns 25 this year, and Nie... - https://it.slashdot.org/story/23/05/25/2351200/a-popular-password-hashing-algorithm-starts-its-long-goodbye?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

itnewsbot, to random

Unearthed: CosmicEnergy, Malware For Causing Kremlin-Style Power Disruptions - An anonymous reader quotes a report from Ars Technica: Researchers have uncovered ... - https://it.slashdot.org/story/23/05/25/2318232/unearthed-cosmicenergy-malware-for-causing-kremlin-style-power-disruptions?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

itnewsbot, to random

OpenAI’s ChatGPT app for iPad, iPhone hits 500K downloads - OpenAI shipped its ChatGPT app for iPads and iPhones just a week ago, but it has alrea... - https://www.computerworld.com/article/3697849/openais-chatgpt-app-for-ipad-iphone-hits-500k-downloads.html#tk.rss_all #artificialintelligence #smallandmediumbusiness #security #mobile #ios

LinuxClaude, to random

Finally!

I convinced the close members of my family to all use Signal as our messaging app.

We can now exchange fart jokes without nobody knowing. 💨 😂

#SignalApp #Signal #Privacy #security #messaging

topher, to infosec

"You can't secure what you don't understand."

Take particular note of the date this was written.

We are spiraling spectacularly out of control, as was precisely, comically predictable. Tech companies are eagerly pushing their product on consumers, hobbyists and tech journalists who are so desperate for another fix that the addiction has consumed all sensibility, and this is creating the ideal landscape for those who wish to exploit it for harm.

https://www.schneier.com/essays/archives/1999/11/a_plea_for_simplicit.html

#security #infosec

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • GTA5RPClips
  • tacticalgear
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • anitta
  • provamag3
  • Leos
  • cisconetworking
  • lostlight
  • All magazines