Skip to main content

Search

Items tagged with: Security



From a human behavior analysis standpoint, this image is absolutely fascinating. There is so much information about human behavior that can be extracted from the data represented here

EDIT: OMFG 1701 IS THE DESIGNATION OF THE STAR SHIP ENTERPRISE (NCC-1701). TREKKIES WHY ARE YOU LIKE THIS?!? :zerotwoevillaugh:

#security #anthropology #psychology



Why is #Mozilla collecting our #search data?


source: https://blog.mozilla.org/en/products/firefox/firefox-search-update/

Sensitive topics, like searching for particular health care services, are categorized only under broad terms like health or society. Your search activities are handled with the same level of confidentiality as all other data regardless of any local laws surrounding certain health services.


Hello Mozilla, I use Firefox because my privacy is important to me. The best security is still achieved if you don't collect the data. That is why I will use a fork that does not collect search data. It would be nice if Mozilla took user privacy more seriously.

#privacy #news #browser #web #internet #firefox #security #cybersecurity #surveillance #statistics #bigdata #bigbrother


Psst 👋 Email Preview for push notifications is coming soon!

Now you can know who is sending you an email before opening your mailbox! 🎉

Here's a sneak peek 🤫
#teaser #ios #android #sneakpeek #privacy #security #linux #macos #windows


If you're using GNU/Linux. Please use opensnitch, it's criminally underrated. It notifies you of network requests made in real time, and you can choose to allow them or not (it comes with a lot of filtering options as well): https://github.com/evilsocket/opensnitch

#privacy #infosec #linux #foss #security


Do you want to learn how to setup an air-gapped #Nextcloud for maximum privacy and data protection?

Join me on May 22nd at 9 am EDT / 3 pm CEST on a free webinar to learn about air-gapped Nextcloud:

🔍 Critical factors to consider
🛡️ Four customizable air-gapped setups
🔧 Setting up air-gapped Nextcloud instances
💼 Best practices for Nextcloud maintenance

Register for free:
https://bit.ly/3QB2dlv

#OpenSource #GovTech #Security #CyberSecurity #infosec #privacy #sysadmin #datasecurity


#Google #Cloud accidentally deletes #UniSuper’s online #account due to ‘unprecedented #misconfiguration’


source: https://www.theguardian.com/australia-news/article/2024/may/09/unisuper-google-cloud-issue-account-access

While UniSuper normally has duplication in place in two geographies, to ensure that if one service goes down or is lost then it can be easily restored, because the fund’s cloud subscription was deleted, it caused the deletion across both geographies.


#fail #economy #security #backup #problem #omg #wtf #news


Who controls the tech stack❓

When choosing a secure solution for your data, this one of the most important questions❗

Here's why: ➡️ https://tuta.com/blog/what-is-a-tech-stack

#security #technology #opensource #foss



Secure PDF Viewer app version 19 released:

https://github.com/GrapheneOS/PdfViewer/releases/tag/19

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/12571-secure-pdf-viewer-app-version-19-released

#GrapheneOS #privacy #security #pdf #android


"There are no ways to prevent such attacks"

Well that's concerning...

"except when the user's VPN runs on Linux or Android"

Oh. Well then.

https://arstechnica.com/security/2024/05/novel-attack-against-virtually-all-vpn-apps-neuters-their-entire-purpose/

#VPN #Vulnerability #Security


It is always a bad sign when a #democracy bans the #press...


source: https://www.bbc.com/news/world-middle-east-68961753.amp

The Foreign Press Association (FPA) urged the Israeli government to reconsider its decision, saying the shut down of #AlJazeera in the country should be "a cause for concern for all supporters of a free press".


#censorship #war #gaza #problem #journalism #freedom #politics #military #humanrights #security #news


How to Stop Any Smart TV From Spying on You:

"Smart TVs track your viewing habits using content recognition and voice capture for targeted advertising.

Disconnecting smart TVs from the internet can prevent data tracking, but limits functionality and will require you to use a streaming box for many tasks (which may also track you)"

#News #TV #Privacy #Security
https://www.howtogeek.com/how-to-stop-any-smart-tv-from-spying-on-you-lg-samsung-sony-vizio/?user=cmF2ZW4uY2FAcHJvdG9uLm1l&lctg=9cd17b80cd7d20011df2d51c589bdd9c4cc26e4110d76355b40d8c29d7add1ba


What Happens When a #Romance #Writer Gets Locked Out of #Google Docs


source: https://www.wired.com/story/what-happens-when-a-romance-author-gets-locked-out-of-google-docs/?esrc=AUTO_PRINT

In March, an aspiring author got a troubling message: All of her works in progress were no longer accessible. What happened next is every writer’s worst fear.

Google never specified which of her 222,000 words was inappropriate.


...

Generally speaking, files containing #violence, #abuse, child sexual abuse material, and gore violate the terms of service for Google Drive and its associated products, like Docs and Sheets.


Now many of you will be thinking, who is stupid enough to store everything in the Google #cloud? The problem is we know that, but many people out there don't. We urgently need to do more educational work and warn people about companies like Google and their practices. Tell all your friends and acquaintances and don't use the clouds of the big corporations.


#news #problem #fail #warning #danger #service #customer #internet #economy #security #wtf #omg #disaster


In case you missed it, what's new in the latest release from SimpleX Chat, v5.7:

Quantum resistant end-to-end encryption enabled for all contacts, forward and save messages without revealing the source, in-call sound effects and switching sound sources, and better network connection management.

Details: https://simplex.chat/blog/20240426-simplex-legally-binding-transparency-v5-7-better-user-experience.html#forward-and-save-messages

Coming soon: UI improvements is a major priority.

#Privacy #Security #Messengers


If you use Dropbox you should probably change your password.

Headline: #Dropbox Hacked! Threat Actor Accessed Passwords and Phone Numbers

Snippet: A quick analysis revealed that a threat actor had broken in to access customer information such as emails, usernames, phone numbers and hashed passwords, as well as general account settings and certain authentication information (API keys, OAuth tokens, and multi-factor authentication).

https://www.bitdefender.com/blog/hotforsecurity/dropbox-hacked-threat-actor-accessed-phone-numbers-and-passwords/

#Privacy #Security #Cybersecurity


Dropbox Sign has been hacked https://sign.dropbox.com/blog/a-recent-security-incident-involving-dropbox-sign Customer's emails, usernames, phone numbers and hashed passwords, in addition to general account settings and certain authentication information such as API keys, OAuth tokens, and multi-factor authentication data stolen by threat actors. #infosec #security


Oh, great. Computer security researchers have developed a proof-of-concept for a type of ransomware that would act when you try to *upload* a file. It would be able to encrypt any files in the folder you uploaded from, and any subfolders of it.

This is a proof-of-concept; the researchers have not seen any such attacks in the wild. But stay careful out there, okay?

Affects Chrome and Edge, but *not* Firefox or Safari!

https://theconversation.com/cybersecurity-researchers-spotlight-a-new-ransomware-threat-be-careful-where-you-upload-files-219560

#security #cybersecurity #malware #ransomware


Hackers claim to have infiltrated #Belarus’ main #security service


Source: https://apnews.com/article/belarus-cyberattack-kgb-dissent-efc7e6acd9dfe8a118e1d2f526c4d6fa

A Belarusian #hacker activist group claims to have infiltrated the network of the country’s main #KGB security agency and accessed personnel files of over 8,600 employees of the organization, which still goes under its Soviet name.


#hack #news #politics #cyberwar


For those who like to focus on #security an honest question: which other messenger has, like #deltachat in the last 13 months, received and addressed two independent security audits and one security analysis, all three from renowned auditors and researchers? CC @kuketzblog https://delta.chat/en/help#security-audits


#Safari on #iOS features device #tracking


source: https://mastodon.social/@mysk/112340023465073147

#Apple recently introduced a new URI scheme so that #iOS users in the #EU can install marketplace apps from the browser. #Safari handles the scheme insecurely leaving users exposed to tracking.


#surveillance #politics #europe #software #security #privacy #news #problem #fail #smartphone #warning


#Emergency slide falls off #Delta #plane after takeoff - yes it's a #Boeing


source: https://www.reuters.com/business/aerospace-defense/emergency-slide-falls-off-delta-plane-after-takeoff-2024-04-26/

Delta said that crew on the flight, which had 183 people on board, declared an emergency and returned to John F. Kennedy International #Airport, that it "supporting retrieval efforts."


#fail #security #news #problem #flight


Google is out of their mind. There are so many other options for a "more secure" browser. Especially one that doesn't have Google tied to it.

https://infosec.exchange/@happygeek/112337847581863603

#Privacy #Security #InfoSec


#Windows #vulnerability reported by the #NSA exploited to install Russian #malware


Source: https://arstechnica.com/security/2024/04/kremlin-backed-hackers-exploit-critical-windows-vulnerability-reported-by-the-nsa/

When Microsoft patched the vulnerability in October 2022—at least two years after it came under #attack by the Russian hackers—the company made no mention that it was under active exploitation.


#patch #update #exploit #Russia #security #CyberSecurity #news #os #software #hack #hacker


#CVE-2024-20356: #Jailbreaking a #Cisco appliance to run #DOOM


In this adventure, the Cisco #C195 device family was jailbroken in order to run unintended code. This includes the discovery of a vulnerability in the #CIMC body management controller which affects a range of different devices, whereby an authenticated high privilege user can obtain underlying root access to the server’s #BMC (CVE-2024-20356) which in itself has high-level access to various other components in the system. The end goal was to run DOOM – if a smart fridge can do it, why not Cisco?


source: https://labs.nettitude.com/blog/cve-2024-20356-jailbreaking-a-cisco-appliance-to-run-doom/

#software #security #bug #network #game #news #vulnerability #exploit #hack #hacker


Friends don't let friends use Discord.

Message History of 600 Million Discord Users Can be Accessed For $5

#privacy #security

https://80.lv/articles/message-history-of-600-million-discord-users-can-be-accessed-for-usd5/


Advanced #Phishing Kit Adds #LastPass Branding for Use in Phishing Campaigns

Threat actors using phishing kits are pretending to be LastPass in phone calls and emails to steal user credentials.

Actual phishing site: “help-lastpass[.]com”

Shortened URL Embedded in Email: shorturl[.]at/glvT0

Phishing Email Subject Line: We’re here for you

Spoofed Sender: Shows as LastPass Support <support@lastpass>

#security #cybersecurity #passwords

https://blog.lastpass.com/posts/2024/04/advanced-phishing-kit-adds-lastpass-branding-for-use-in-phishing-campaigns


@anonymiss

to me, #biometric unlocking, is unsafe, you see a lot of unauthorised unlocking from restrained, sleeping, dead, or drunken people from either face or fingerprint to unlock a device.

it was established a few years ago that law enforcement in the usa do not need a warrant for biometric unlocking, but need warrant if a password is enabled, to unlock a device.

#phone #thumbprint #court #usa #justice #privacy #security #smartphone #mobile #technology #news #police #surveillance