Loved your latest podcast on exponential change and the inability of our #brains to keep up.
Perhaps fight fire with fire - an AI information bodyguard that you trust. Basically Siri with #AgentGPT actually doing what you ask it to do instead of faking it and sharing your data with predatory BigTech.
Daniel Miessler had some ideas but he's too techno optimist for me. #AIEthics #DeepFakes#Security#Identification #technopocalypse#LangChain#LlamaImdex @joshbressers
I'm going to start an email list for my blog and photographic print sales. What is the best privacy-forward list management software? I don't want to track my readers/customers and I don't want any 3rd party software to do it either.
Thanks for any tips! #privacy#security
W środę 31.05 o godz. 19 @kacperszurek organizuje darmowy webinar "Bezpieczeństwo w pigułce", podczas którego pokaże popularne ostatnio ataki i wyjaśni, jak się przed nimi ochronić. Warto skorzystać, bo całość niestety nie będzie nagrywana.
For those who still do not know how the new #google .zip domains can be dangerous, @mrd0x made a wonderful summary about it with a demo you can try to see how a bad actor can use the .zip TLD to gain access.
📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #21/2023 is out! It includes, but not only:
‣ 🇬🇧 🇺🇸 #NHS data breach: trusts shared patient details with #Facebook without consent
‣ ☁️ Severe Flaw in #Google Cloud's Cloud #SQL Service Exposed Confidential Data
‣ 🇨🇭 💰 US govt contractor #ABB confirms #ransomware attack, data theft
‣ 🦠 🤖 #Predator: Looking under the hood of Intellexa’s #Android spyware
‣ 🇦🇿 🇦🇲 Hacking in a war zone: #Pegasus#spyware in the Azerbaijan-Armenia conflict
‣ 🦠 🎮 Dark Frost #Botnet Launches Devastating #DDoS Attacks on Gaming Industry
‣ 🇷🇺 🦠 Mysterious #malware designed to cripple industrial systems linked to #Russia
‣ 🇧🇷 🇵🇹 ‘Operation Magalenha’ targets credentials of 30 Portuguese #banks
‣ 🩹 #GitLab 'strongly recommends' patching max severity flaw ASAP
‣ 🇮🇷 🇮🇱 Iranian hackers use new #Moneybird ransomware to attack Israeli orgs
‣ 🇺🇦 Cyber Attacks Strike #Ukraine's State Bodies in Espionage Operation
‣ 🇨🇳 🇺🇸 Chinese state hackers infect critical infrastructure throughout the US and Guam
‣ 🐍 👨🏻⚖️ #PyPI was subpoenaed
‣ 🇰🇵 🦠 N. Korean #Lazarus Group Targets #Microsoft IIS Servers to Deploy Espionage Malware
‣ 🦠 🤖 Data Stealing Malware Discovered in Popular Android Screen Recorder App
‣ 🇩🇪 Arms maker Rheinmetall confirms #BlackBasta ransomware attack
‣ 🦠 New ‘GoldenJackal’ APT Targets Middle East, South Asia Governments
‣ 🇺🇸 🇰🇵 Treasury Department sanctions entities tied to North Korean IT scams, hacking
‣ 🇺🇸 📰 Cuba ransomware claims #cyberattack on Philadelphia Inquirer
‣ 🇺🇸 🏥 After ransomware attack, state’s second-largest health insurer says patient data stolen
‣ 🇯🇵 🇮🇳 🏍️ #Suzuki motorcycle plant shut down by cyber attack
‣ 🇺🇸 🪖 #Pentagon explosion hoax goes viral after verified #Twitter accounts push
‣ 🇺🇸 🇪🇺 #Meta Fined Record $1.3 Billion and Ordered to Stop Sending European User Data to US
‣ 🦠 🎬 Cloned #CapCut websites push information stealing malware
‣ 🇰🇷 🇺🇸 Warning: #Samsung Devices Under Attack! New Security Flaw Exposed
‣ 🍏 #Apple fixes three new zero-days exploited to hack iPhones, Macs
We're back on the mic🎙 for the @ubuntu#Security Podcast. This week we look at some recent security developments from PyPI, the @LinuxSecSummit and the pending transition of Ubuntu 18.04 to ESM, plus we cover security updates for cups-filter, the Linux kernel, Git, runC, ncurses, cloud-init and more https://ubuntusecuritypodcast.org/episode-196/
I love it when NYS DFS and the NYS Attorney General's Office crack down on poor security.
Here's another enforcement action in the financial sector by NYSDFS. They have fined lender and mortgage service provider OneMain Financial Group $4.25 million dollars and of course, there's a corrective action plan:
We noticed a naive attack on our websites the morning, attempting to exfiltrate #netlify env vars.
Because our websites are simple docs websites this was largely pointless and we have no reason to assume anything valuable got stolen. We still took precautions and rotated all of our keys & credentials.
Many others were similarly attacked, and after we informed #github security, the user account has been suspended.
Take particular note of the date this was written.
We are spiraling spectacularly out of control, as was precisely, comically predictable. Tech companies are eagerly pushing their product on consumers, hobbyists and tech journalists who are so desperate for another fix that the addiction has consumed all sensibility, and this is creating the ideal landscape for those who wish to exploit it for harm.