avoidthehack, to android

#Android GravityRAT #malware now steals your WhatsApp backups

Be careful of what apps you download - whether from the Google Play store, a third-party repo, or an apk from a website.

#cybersecurity #infosec #security #opsec

https://www.bleepingcomputer.com/news/security/android-gravityrat-malware-now-steals-your-whatsapp-backups/

nono2357, to ai
rrwo, to infosec

It's really unhelpful when an email security system treats viruses, phishing, spam or messages that happen to have spam-like keywords all as "threats".

#infosec

mjgardner,
@mjgardner@social.sdf.org avatar

@rrwo Related: just yesterday I was unable to follow a link from #Verizon’s knowledge base to their support contact page because the former was an article on new gateway firmware and its URL contained the #SQL keyword UPDATE

Yes, their own “#security” protection was blocking referrers from their own help pages. No wonder they think their service is tops because they don’t get any support requests. Good job #InfoSec!

derek, to security

I wish sites would make it easier to change the 2FA code generator app — for many sites/services you have to disable 2FA and then re-enable just to switch the generator app.

#security #2fa

mysk, to macos

🎬 Safari in #macOS 14 #iOS/ #iPadOS 17 removes tracking added to URLs in private browsing. The feature didn't support Twitter links when we tested it earlier. Now it does (unclear if #Apple updated it remotely or Safari learned that through its #AI model).

In this demo, Safari opens a Twitter link with tracking added to it in this parameter:
t=rpDAfXAHMthyq-L5hTMOIA

Safari identifies and removes the tracking parameter before opening the link. This is shown by copying the link after the website is loaded and pasting it to see that the tracking parameter has been removed from the original link 👍👍🙏

#privacy #security #infosec #cybersecurity #cybersecuritytips

itnewsbot, to security

Millions of Americans' Personal Data Exposed in Global Hack - Millions of people in Louisiana and Oregon have had their data compromised in the ... - https://it.slashdot.org/story/23/06/16/197202/millions-of-americans-personal-data-exposed-in-global-hack?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

bitwarden, (edited ) to Cybersecurity
@bitwarden@fosstodon.org avatar

The upcoming Teams and Enterprise Demo will include a special topic on how to set your match detection options. Save your seat today! https://bitwarden.com/weekly/

#cybersecurity #passwordmanagement #security #passwordsecurity #passwordmanager

kenos, to linux

Should I try ecryptfs? It seems like a better solution for me than FDE but I am not sure about it's shortcomings.

#Linux #encryption #security

geneticsmademedoit, to privacy

I've been rediscovering RSS feeds and Feeder has been a delight! I'm curious what other feed readers folks are using and what interesting feeds folks are following?

Hopefully enough folks see this who use RSS feeds to respond

https://gitlab.com/spacecowboy/Feeder

#rss #feeds #privacy #security #opensource #openinternet #foss #android #atom

rodtrent, to Cybersecurity

Empowering Security Operations with Next-Gen AI: ChatGPT's new Function Calling features for Microsoft Sentinel Playbook Execution SOCGPT https://rodtrent.com/yuk

#MicrosoftSentinel #Cybersecurity #MicrosoftSecurity #Security #AI #OpenAI

itnewsbot, to microsoft

With one June Patch Tuesday update, Microsoft falls short - I’ve tracked Microsoft’s Windows patches for years and closely watched all of the chan... - https://www.computerworld.com/article/3700189/with-one-june-patch-tuesday-update-microsoft-falls-short.html#tk.rss_all #smallandmediumbusiness #microsoft #security #windows

itnewsbot, to security

Millions of Americans’ personal DMV data exposed in massive MOVEit hack - Enlarge (credit: Getty Images)

As part of a massive ongoing cy... - https://arstechnica.com/?p=1948548 #security #infosec #biz#hacks #it

heiseonline, to security German

Nord-Stream-Sabotage: NATO will Seekabel und Pipelines besser schützen

Die NATO wird ein Marinezentrum für die Sicherheit kritischer Unterwasserinfrastruktur einrichten. Russland soll Leitungen im Meer bereits kartographiert haben.

https://www.heise.de/news/Nord-Stream-Sabotage-NATO-will-Seekabel-und-Pipelines-besser-schuetzen-9190907.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

LinuxClaude, to windows French

So, yeah, I'm still on . And I think I will stay. I unchecked any telemetry that I could. I use , with extensions. I use I use with family. I do what I can for and

I must say that Windows as a desktop is full of little things that make life easier. I even like it more than MacOS. Linux is great, but I often felt that GNOME or any other desktop was holding with gaffer tape. No tomatoes please. 🍅😎

kuketzblog, to security German
@kuketzblog@social.tchncs.de avatar

TaSK vom BSI ist ein konfigurierbares Testwerkzeug zur Durchführung von TLS-Konformitätstests auf Basis der Technischen Richtlinie TR-03116-TS. Quellcode und Tool auf GitHub verfügbar. 👇

https://github.com/BSI-Bund/TaSK

#tls #ssl #security #sicherheit #bsi

itnewsbot, to security

The US Navy, NATO, and NASA are using a shady Chinese company’s encryption chips - Enlarge (credit: Bet_Noire/Getty)

From TikTok to Huawei router... - https://arstechnica.com/?p=1948695 #microprocessors #syndication #encryption #security #biz#usnavy #nasa #nato

majorlinux, to infosec
@majorlinux@toot.majorshouse.com avatar

Your spaceship needs to contact the mothership right now!

Update your Asus Wi-Fi router right now https://www.pcworld.com/article/1960748/update-your-asus-wi-fi-router-right-now.html

#Asus #WiFi #Router #Update #Vulnerability #InfoSec #Security #TechNews

5am, to security
@5am@fosstodon.org avatar

If I'd spent as much time working towards an A+ grade in school as I did for my @nextcloud site's #security scan 😄 🔒#Nextcloud

itnewsbot, to security

Apple beefs up enterprise identity, device management - Last week at WWDC, Apple introduced new capabilities related to Managed Apple IDs and ... - https://www.computerworld.com/article/3699353/apple-beefs-up-enterprise-identity-device-management.html#tk.rss_all #softwaredevelopment #security #apple

itnewsbot, to microsoft

June's Patch Tuesday updates focus on Windows, Office - Microsoft released 73 updates to its Windows, Office, and Visual Studio platforms on P... - https://www.computerworld.com/article/3699673/junes-patch-tuesday-updates-focus-on-windows-office.html#tk.rss_all #smallandmediumbusiness #microsoftoffice #microsoft #security #windows

thisismissem, to random
@thisismissem@hachyderm.io avatar

Hey folks, I'm starting to get concerned that I need to be monitoring my blood pressure regularly, as high blood pressure runs in my family.

Does anyone know of a reasonably priced reliable blood pressure monitor that can feed data into apple health?

mjgardner,
@mjgardner@social.sdf.org avatar

@nick @thisismissem Drop the FUD.

As long as your #Apple device is locked with a passcode, Touch ID, or Face ID, your #health data is encrypted on device and inaccessible by default.

#iCloud backup and sync is opt-in

And as long as you have two-factor authentication on your Apple ID (enabled by default for most people), not even Apple can read your synced health and activity data.

https://www.apple.com/legal/privacy/data/en/health-app/

#privacy #security #InfoSec #2FA

mjgardner, to apple
@mjgardner@social.sdf.org avatar

It’s pretty terrible that #Apple introduced hardware #Security Keys support (e.g., #YubiKey) for Apple ID six months ago and #Windows users are still locked out if they enable it.

https://support.apple.com/en-us/HT213154#Overview:~:text=You%20can%27t%20sign%20in%20to%20iCloud%20for%20Windows

#InfoSec #iPhone #iPad

thisismissem, to AWS
@thisismissem@hachyderm.io avatar

Yikes: “The Register reports that malicious actors are exploiting expired S3 buckets to inject harmful code into legitimate packages without needing to modify existing code.”

https://nodeweekly.com/link/141208/613138eaff

fshwsprr,

@thisismissem I've long seen this as an attack vector, and written S3 bucket takeover neutralization RFCs at multiple employers to prevent relinquishing S3 buckets that were used in production products. (Think empty, tag, add bucket policy to prevent deletion.)

The global S3 bucket namespace was a mistake, and it will, over time, become more difficult to create unique names as companies/orgs fail to release any previously used bucket names for the foreseeable future.

itnewsbot, to security

Hackers Threaten To Leak 80GB of Confidential Data Stolen From Reddit - Hackers are threatening to release confidential data stolen from Reddit unless the... - https://it.slashdot.org/story/23/06/19/1332223/hackers-threaten-to-leak-80gb-of-confidential-data-stolen-from-reddit?utm_source=rss1.0mainlinkanon&utm_medium=feed #security

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • GTA5RPClips
  • tacticalgear
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • anitta
  • provamag3
  • Leos
  • cisconetworking
  • lostlight
  • All magazines