Skip to main content

Search

Items tagged with: Security


Remember Microsoft's Recall? The first implementation was never released and was met with strong criticism from privacy advocates and the infosec/security community. Guess what? Microsoft has doubled down, and its controversial Recall scraper is finally entering the public preview stage. If you care about privacy, please think twice before using this on your AI-enabled PCs (Snapdragon-powered Copilot+ PCs) blogs.windows.com/windows-insi…

#privacy #infosec #security #windows11 #DoNotWant


Signal Is Now a Great Encrypted Alternative to Zoom and Google Meet
And Signal app is FREE 😁
#security #encrypted #message
lifehacker.com/tech/signal-is-…


Urgent Warning for Fedi Admins
We've discovered an ongoing Denial-of-Service attack against Misskey-based instances. The attacks exploit a zero-day vulnerability impacting Misskey, Sharkey, IceShrimp, and other related software. Patches are in progress and will be released ASAP. We encourage all admins to update immediately!

Note: this is a different vulnerability from the ones that were recently announced! You should update today and again tomorrow at the scheduled time.

#Misskey #Sharkey #IceShrimp #FediAdmins #Security


Let's Encrypt is 10 years old today!
Let's Encrypt is a free, automated, and open certificate authority brought to you by the nonprofit Internet Security Research Group (ISRG). Huge thanks to everyone involved in making HTTPS available to everyone for free

letsencrypt.org/

#tech #technology #security #privacy #encryption #https #letsencrypt #ISRG


📣 EMERGENCY UPDATES 📣

Apple pushed updates for 2 new zero-days that may have been actively exploited.

🐛 CVE-2024-44308 (JavaScriptCore),
🐛 CVE-2024-44309 (WebKit):
- iOS and iPadOS 17.7.2
- iOS and iPadOS 18.1.1
- macOS Sequoia 15.1.1

#apple #cybersecurity #infosec #security #ios



Sometime ago somebody shared a screenshot of a service with a cookie message along the lines of:
"We take your privacy seriously" while there also was a list of 600+ vendors with whom data would be shared. Does anyone have this screenshot & the source? I think this was by Microsoft MS365?

#Privacy #Cookies #Tech #TechPolicy #OpenSource #Data #GDPR #bigtech #Security #CyberSecurity


#Ad blockers are #security tools. What would be the implications of offering up a pi-hole ad blocker open to the public? I could do it easily enough. At least then people could have some ad blocking without having to install the pi-hole. Is it worthwhile? Does it make sense? Maybe a few of us can work together and provide a resilient bunch of pi-holes?

(I wouldn’t literally use a pi, but the software is good)


Tired of big tech companies mishandling your data? Switch to my favorite email provider, @Tutanota , for top-notch #security and #privacy protection. Your data is safe with them! 🔐💻


A great guide for anyone interested in improving their #privacy posture.

(TL;DR in the comments.)

"Whatever platforms you're on, whatever devices you have, you need to have a sense of what kind of data you're generating and then use the controls available to limit who can see what you're doing."

wired.com/story/the-wired-guid…

#infosec #e2ee #security



China's cyber spies intercept phone data and calls from US network operators

Chinese cyber spies infiltrated US network operators. Conversations and data from government and politicians were intercepted, as were police wiretaps.

heise.de/en/news/China-s-cyber…

#ATT #Cybersecurity #Cyberspionage #DonaldTrump #FBI #Provider #Security #Spionage #Verizon #news


Pregnancy Tracking #App ‘What to Expect’ Refuses to Fix Issue that Allows Full Account Takeover

What to Expect is a popular pregnancy tracking app available for #ios and #android.

An exposed API endpoint handling password reset requests for the app does not require authentication or enforce rate limits and is vulnerable to brute force attacks.

#privacy #security #cybersecurity

404media.co/pregnancy-tracking…


Western inaction on Ukraine’s security guarantees opens door to global nuclear proliferation


Western indecision in Ukraine’s pursuit of #security #guarantees risks triggering a global chain reaction, with nations turning to #nuclear #weapons as a deterrent in the absence of reliable security commitments.

#Ukraine's security commitment - the #Budapest #Memorandum of 1994 - is currently and has been repeatably violated

kyivindependent.com/opinion-we…

#RussianAggression #RussiaInvadedUkraine


If you’re looking for an EU-based alternative to AzireVPN since they’ve now sold to a US company (why, hello, Trump presidency, how goes?), see Mullvad VPN (@mullvadnet).

mullvad.net

#privacy #security #VPN #AzireVPN #MullvadVPN


#Amazon confirms #employee data stolen after #hacker claims #MOVEit #breach


source: techcrunch.com/2024/11/11/amaz…

“Amazon and AWS systems remain secure, and we have not experienced a #security event. We were notified about a security event at one of our property management vendors that impacted several of its customers including Amazon. The only Amazon information involved was employee work contact information, for example work email addresses, desk phone numbers, and building locations,” Montgomery said.


If not even a company like Amazon can store its data securely, is there any security at all? Amazon doesn't lack money or experts, but it does seem to lack secure software.

#fail #cybersecurity #problem #software #internet #news #economy #hack #cloud


Law enforcement operation takes down 22,000 malicious IP addresses worldwide arstechnica.com/information-te… #news #cybercrime #Security #Interpol #Biz&IT #police


Seeing how the Trumpists are about to take charge of the government (including our intelligence agencies), it's probably best to start familiarizing yourself with things like the 5/9/14 Eyes agreements and adjust your online behavior accordingly.

protonvpn.com/blog/5-eyes-glob…

#infosec #Trump #security


Don’t panic, we have the tools we need.

scidsg.medium.com/dont-worry-u…

#news #election #security #journalism


Why is my air fryer spying on me? Which? reveals the #smart devices gathering your data - and where they send it


Source: which.co.uk/policy-and-insight…

The Aigostar air fryer wanted to know gender and date of birth when setting up an owner account, again for no clear reason, but this was optional. The Aigostar and #Xiaomi fryers both sent people’s personal data to servers in #China, although this was flagged in the #privacy notice.


Why must smart technology be in the #cloud - is the advantage of this only surveillance? 🤔

#news #technology #Software #economy #fail #spy #bigdata #bigbrother #orwell #Problem #security


That's why we publish all our apps on @fdroidorg ❤️

🔒 Get the new calendar app now! 🔒
👉 tuta.com/blog/tuta-calendar-fd…

#FOSS #OpenSource #Encryption #Security #Calendar


Hey everyone! A couple good things to remember:

Signal is your friend! signal.org/Be careful about what you post on corporate and federated social media. You don't need to self censor but you should take extra spicy discussions to something like Signal!

(people: please feel free to add hot tips for helping people keep things private!)

#security #secureCommunications


Hundreds of #code #libraries posted to #NPM try to #install #malware on dev machines


source: arstechnica.com/security/2024/…

The malicious packages have names that are similar to legitimate ones for the Puppeteer and Bignum.js code libraries and for various libraries for working with #cryptocurrency.


Dependency hell 👎👿


#software #problem #development #library #dependency #security #cybersecurity #news #cybercrime #attack


"But new data reveal that #Trump was the one whose #immigration policies damaged the country’s #security. In fact, he released more convicted criminals into the #UnitedStates than his successor....

when it comes to the small percentage of noncitizens who do commit crimes, Trump did not prioritize removing them during his term in office. In fact, he explicitly deprioritized them."
washingtonpost.com/opinions/20…

#Immigration #Politics #GOP #NationalSecurity #Crime #News #USNews #USA


Never ending story about the #security of fitness app...


Source: thehindu.com/sci-tech/technolo…

#news #stava #cybersecurity #sports #Problem #Software #privacy #politics #fail #online #cloude #surveillance #bigdata #economy


🔐 Sending a password-protected email to anyone is easy with Tuta Mail! 🔐

Check out our latest guide on how to send encrypted, password-protected emails here 👇👇👇
tuta.com/blog/how-to-password-…

#encryption #security #privacy #email


UN #Security Council to meet Monday over #Israel's strike on #Iran


Source: uk.news.yahoo.com/un-security-…

“The Islamic Republic of Iran, in alignment with the principles enshrined in the Charter of the United Nations and under international law, reserves its inherent right to legal and legitimate response to these criminal attacks at the appropriate time,”...


I always ask myself whether these people are still capable of logical thinking? If this Israeli airstrike was criminal, what was the Iranian one? If the Iranian one was a justified retaliation in his way of thinking, why is the retaliation of the retaliation criminal? Why are such people tolerated in the #government?

#uno #war #diplomacy #argument #politics #military #fail #news #MiddleEast #crime


@Tutanota I just realised that all the comments I have added to my contacts over the years, including family-related and medical important information, are gone...

github.com/tutao/tutanota/issu…

Bugs are becoming more common recently, and this one made me lose data. I'm quite disappointed.

#Email #OpenSource #FOSS #Security #Privacy


#Cisco reports more than 35 #vulnerabilities in #firewall products


Source: heise.de/en/news/Cisco-reports…

Don't forget that you use firewalls to increase #security.

#news #Software #vulnerability #bug #fail #cybersecurity #Problem #fail #qa #economy


The #EU is now trying to find means of its own to bolster enforcement & reinforce its curbs on #Russia.

Tom Keatinge, of think tank the Royal United Services Institute, said European policy makers had been preparing "autonomous European #sanctions considering the possibility of a #Trump presidency" but would have to bolster enforcement.

#geopolitics #Authoritarianism #StrongMen #dictatorship #totalitarianism
#ForeignPolicy #Security #democracy #VoteBlue #HarrisWalz2024


"Should a #Trump presidency reverse #US sanctions on #Russia, Europeans will need to be much more muscular in ... enforcement action & will no longer be able to hide behind Uncle Sam," he said.

…European countries were wrongfooted during Trump's last presidency, when the #UnitedStates reversed an international deal w/ #Iran over its #nuclear program & unilaterally reinstated #sanctions, leaving #Europe out on a limb.

#geopolitics #Security #ForeignPolicy #democracy #VoteBlue #HarrisWalz2024


TLS-Zertifikate: Apple schlägt maximale Laufzeit von 10 Tagen vor

Nachdem Google mit einem ähnlichen Ansinnen gescheitert war, probiert Apple es erneut und legt einen konkreten Zeitplan vor. Die Resonanz ist gemischt.

heise.de/news/TLS-Zertifikate-…

#Apple #Google #https #Security #news