Lockdownyourlife , to random
@Lockdownyourlife@infosec.exchange avatar

It's June 1st, stay strapped y'all.

MaJ1 , to weirdfolks group
@MaJ1@mastodonapp.uk avatar

If you’re buying a new PC then you probably need to read this:

TL:DR The Recall feature screenshots your screen very regularly & stores it.
Everything goes into the database the AI that analyses the screenshots creates & the database has NO expiry date.

This includes passwords, financial data, websites visited, private messages sent etc.

To quote the article “the security has holes you could dive an aircraft thru”

https://mstdn.social/@ente/112540905028139240

@weirdfolks

jstatepost ,
@jstatepost@mstdn.social avatar

@MaJ1 @weirdfolks
🥥 Microsoft's Recall has security holes so big you could pilot an aircraft carrier through them. 🥥
#Microsoft, #Recall, #Computing, #PersonalComputers, #AircraftCarriers, #CyberSecurity, #Security, #TuckersBalls

nixCraft , to random
@nixCraft@mastodon.social avatar

Stealing everything you’ve ever typed or viewed on your own Windows PC is now possible with two lines of code — inside the Copilot+ Recall disaster. https://doublepulsar.com/recall-stealing-everything-youve-ever-typed-or-viewed-on-your-own-windows-pc-is-now-possible-da3e12e9465e

ente , to random
@ente@mstdn.social avatar
GrapheneOS , to random
@GrapheneOS@grapheneos.social avatar

GrapheneOS version 2024053100 released:

https://grapheneos.org/releases#2024053100

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/13155-grapheneos-version-2024053100-released

#GrapheneOS #privacy #security

joaocosta , to random
@joaocosta@mastodonapp.uk avatar

"As of today, all the Nordic countries have signed bilateral agreements with . This is a true manifestation of a long-term commitment to ... guided by Ukraine's needs"

"Volodymyr, you and Ukrainian people can count on continued strong, Nordic support. Our strategic aim is Ukrainian .

"We also welcome Ukraine's Formula, based on and the Charter"

Thank you

https://www.youtube.com/live/wytEpskCMTc?si=dSmgDzlhuQjXJzcs&t=300

karakam Bot , to random
@karakam@mastodon.social avatar

Spain, Belgium, and Portugal have signed security agreements with Ukraine, according to President Zelensky. The agreements include joint projects in weapon production, technology, and ammunition. The initiative has already been joined by over 20 countries.

limebar , to random
@limebar@mastodon.social avatar

Recall when Google was going to put requirements on bulk email senders to minimize spam?
https://blog.google/products/gmail/gmail-security-authentication-spam-protection/

I now have 2-3x the spam I had before on my gmail account.

What hapt?

limebar OP ,
@limebar@mastodon.social avatar

👆
Also, if some expert could help me understand...

If I am getting 100 or even 1000 spam emails a day... why not 1 million? Seriously.

The number staying at a roughly steady daily rate seems to imply only a few spammers are behind it and throttling their attack. So why then can't they be found and dealt with?

If it were unfettered I feel like I'd be seeing an unlimited amount of spam.

kitoconnell , to random
@kitoconnell@kolektiva.social avatar

Signal's Meredith Whittaker on the Telegram security clash and the 'edge lords' at OpenAI | TechCrunch
https://techcrunch.com/2024/05/24/signals-meredith-whittaker-on-the-telegram-security-clash-and-the-edge-lords-at-openai/

plink , to palestine group
@plink@mastodon.online avatar
jsrailton , to random
@jsrailton@mastodon.social avatar

NEW: second judge in reportedly confirmed as spyware victim.

Appeals court judge told reporter her responsibilities included classified cases where wiretapping was used.

Poland's spyware reckoning continues.

[PL, machine trans.]
Story: https://oko.press/wiemy-o-drugim-polskim-sedzi-inwigilowanym-pegasusem-to-sedzia-apelacyjna-z-krakowa-news-oko-press

ALT
  • Reply
  • Loading...
  • jsrailton , to random
    @jsrailton@mastodon.social avatar

    Regular user: I want to feel safe and private.

    Google: cool, anyways here's an AI that listens to your calls.

    Microsoft: word, how about an AI that takes screenshots of everything you do?

    heiseonline , to random German
    @heiseonline@social.heise.de avatar

    Studie: IT-Berufe mit hohem Zukunftspotenzial, aber bei Jugendlichen unbeliebt

    Berufe in der IT haben ein hohes Zukunftspotenzial, zeigt eine Studie. Die Präferenzen Jugendlicher liegen aber woanders – sofern sie einen Berufswunsch haben.

    https://www.heise.de/news/Studie-IT-Berufe-mit-hohem-Zukunftspotenzial-aber-bei-Jugendlichen-unbeliebt-9730175.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    fedora , to random
    @fedora@fosstodon.org avatar

    Fedora Linux 38 is officially end of life. Please update to Fedora Linux 39 or 40.

    ➡️ https://discussion.fedoraproject.org/t/f38-is-end-of-life/117727

    Nonilex , to random
    @Nonilex@masto.ai avatar

    , & recognize ; condemns move

    The Spanish, Irish & Norwegian govts announced Wed that they would recognize a state, saying there would be no in the w/o it.
    Israel denounced the move as giving aid to its enemy .
    The coordinated announcements are purely symbolic — but not w/o some power.


    https://www.washingtonpost.com/world/2024/05/22/norway-ireland-palestine-state-recognition/

    Nonilex OP ,
    @Nonilex@masto.ai avatar

    The leaders of the 3 countries said they hoped their recognition would press , the & the international community toward a to the conflict.

    “In the midst of a , w/tens of thousands killed & injured, we must keep alive the only alternative that offers a political solution for Israelis & Palestinians alike: Two states, living side by side, in & ,” Norwegian Prime Minister Jonas Gahr Store said.

    Nonilex OP ,
    @Nonilex@masto.ai avatar

    In response, Israeli Foreign Minister Israel Katz ordered the immediate recall of the Israeli ambassadors to , & . “I am sending a clear message today: will not be complacent against those who undermine its sovereignty & endanger its .”

    The govt reiterated its position that recognizing a was premature & must be the result of direct negotiations between Israel & the .

    chiraag , to random
    @chiraag@mastodon.online avatar

    Making myself available as a resource for anyone leaving Windows for Linux due to Recall (as if the ads and other built-in spyware weren't enough...).

    nixCraft , to random
    @nixCraft@mastodon.social avatar

    Is it just me, or has Microsoft gone completely crazy? They are implementing spyware that takes screenshots every second and forcing AI integration. Why would anyone willingly purchase this? Anyone with experience in computer or information security knows that it is a bad idea, even if it is locally done. Just don't do it. Yet, here we are, and they are doubling down on this idea. https://arstechnica.com/gadgets/2024/05/microsofts-new-recall-feature-will-record-everything-you-do-on-your-pc/

    Nonilex , to random
    @Nonilex@masto.ai avatar

    A helicopter carrying President of & his foreign minister crashed on Sunday in the country’s mountainous northwest, acc/to state media, deepening the turmoil that has gripped the nation on both the international & domestic fronts in recent months.

    , 63, was traveling from Iran’s border w/ Azerbaijan to inaugurate a joint dam project.


    https://www.nytimes.com/2024/05/19/world/middleeast/iran-president-helicopter-crash.html?smid=nytcore-ios-share&referringSource=articleShare&sgrp=c-cb

    Nonilex OP ,
    @Nonilex@masto.ai avatar

    is a hard-line religious cleric who came of age during the revolution. Under ’s , Raisi, as president, is the 2nd most powerful individual in Iran’s structure after… .

    After becoming president in 2021, Raisi consolidated power & marginalized reformists who wanted to defuse tensions w/the . He repeatedly said he pursued a policy of “strong diplomacy,” forging closer & ties w/ & .

    nlnetlabs , to random
    @nlnetlabs@fosstodon.org avatar

    NLnet Labs zoekt een inspirerende en ervaren voorzitter voor onze Raad van Toezicht (RvT) om ons team te versterken!

    Als RvT-voorzitter speel je een cruciale rol in het bepalen van onze strategische koers. We zetten ons in voor open standaarden en open-source software om de internetinfrastructuur te verbeteren en de veiligheid en privacy van gebruikers te waarborgen.

    Interesse? Meer info: https://www.nlnetlabs.nl/news/2024/May/17/rvt-voorzitter-gezocht/.

    julienbarnoin , to random
    @julienbarnoin@mastodon.gamedev.place avatar

    Being able to remotely lock a phone you don't have credentials for using just a phone number? What could possibly go wrong?

    https://www.wired.com/story/android-15-theft-detection-lock/

    ALT
  • Reply
  • Expand (1)
  • Collapse (1)
  • Loading...
  • nathans , to random
    @nathans@infosec.exchange avatar

    One more reason to not use Chrome!

    Google fixes third actively exploited Chrome zero-day in a week

    Google has released a new emergency Chrome security update to address the third zero-day vulnerability exploited in attacks within a week.

    "Google is aware that an exploit for CVE-2024-4947 exists in the wild," the search giant said in a security advisory published on Wednesday.

    The high-severity zero-day vulnerability (CVE-2024-4947) is caused by a type confusion weakness in the Chrome V8 JavaScript engine reported by Kaspersky's Vasily Berdnikov and Boris Larin.

    Although such flaws generally enable threat actors to trigger browser crashes by reading or writing memory out of buffer bounds, they can also exploit them for arbitrary code execution on targeted devices.

    The other two actively exploited Chrome zero-days patched this week are CVE-2024-4671 (a use-after-free flaw in the Visuals component) and CVE-2024-4761 (an out-of-bounds write bug in the V8 JavaScript engine)

    https://www.bleepingcomputer.com/news/google/google-fixes-CVE-2024-4947-third-actively-exploited-chrome-zero-day-in-a-week/

    kuketzblog , to random German
    @kuketzblog@social.tchncs.de avatar

    Der Messenger ist für eine sichere Kommunikation nicht geeignet - standardmäßig sind die Nachrichten nicht einmal Ende-zu-Ende verschlüsselt. Besser geeignet sind oder . Übrigens: Elon Musk ist das Paradebeispiel eines Trolls. Einfach ignorieren. 😉

    Wer eine Entscheidungshilfe für einen Messenger sucht: https://www.messenger-matrix.de/messenger-matrix.html

    DarkWebInformer , to random
    @DarkWebInformer@infosec.exchange avatar

    GIF is not supported on Infosec Exchange. Visit X Link.

    💡Cybersecurity💡These are some of the best vulnerability management tools; 25 of them.

    X Link: https://twitter.com/DarkWebInformer/status/1790167662263505129

    kuketzblog , to random German
    @kuketzblog@social.tchncs.de avatar

    Ich möchte mich ganz herzlich für die anhaltende Unterstützung und das Vertrauen in meine Arbeit bedanken. Eure Spenden ermöglichen es mir, mich weiterhin auf die Qualität und Entwicklung des Blogs zu konzentrieren und unabhängig und frei von kommerziellen Interessen zu bleiben. Ohne eure Großzügigkeit und Unterstützung wäre dies nicht möglich. Vielen Dank! ❤️

    https://www.kuketz-blog.de/kuketz-blog-aktuelle-spendeninfos-monat-mai-2024/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines