netsec

cmnybo , in 4 of the top 10 password strength tools are giving people bad password advice, and they don't care.

I wonder how many of those password strength tools are logging the passwords people enter into them?

gravitas_deficiency , in AWS's Hidden Threat: AMBERSQUID Cloud-Native Cryptojacking Operation – Sysdig

It looks like this whole thing depends on targets not having their IAM policies locked down correctly, which is one of the foundational security aspects any good cloud devops engineer should be familiar with.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • netsec@lemmy.world
  • test
  • worldmews
  • mews
  • All magazines