Skip to main content

Search

Items tagged with: security


Self-Host Weekly #149: A Few of My Favorite Things

My #favorite apps of 2025, software updates and launches, a spotlight on #wastebin -- a lightweight #pastebin app, and more in this week's #selfhosted recap!

selfh.st/weekly/2025-12-12/

#selfhost #selfhosting #foss #opensource #homelab #newsletter #devops #sysadmin #development #privacy #security #fediverse #software


Vulnerability-Lookup 2.19.0



blog.gslin.org/archives/2025/1…

中國的 NanoKVM 內藏麥克風以及監聽軟體

#aircrack #amixer #arecord #backdoor #china #ip #kvm #linux #mic #micphone #nanokvm #network #security #ssh #tcpdump #wifi


Schleswig-Holstein reports €15M yearly savings by replacing Microsoft 365 with LibreOffice across most government workplaces 💶

About 80% of offices have migrated, with a €9M one-time investment planned for 2026 to finish the shift and strengthen open-source tools 🧩

@libreoffice

🔗 itsfoss.com/news/german-state-…

#TechNews #OpenSource #Privacy #Security #Government #EU #Data #Sovereignty #IT #PublicSector #Digital #Microsoft #Office #Software #Tech #Cloud #FOSS #Germany #German #LibreOffice


How I discovered a hidden microphone on a Chinese NanoKVM
telefoncek.si/2025/02/2025-02-…
To summarize: the device is riddled with security flaws, originally shipped with default passwords, communicates with servers in China, comes preinstalled with hacking tools, and even includes a built-in microphone - fully equipped for recording audio - without clear mention of it in the documentation. #hardware #security #offrehacked


Be careful, if the product is too secure, the user may be a criminal. This is how some parts of the EU think about security and data protection.

#grapheneos #freedom #security


The German #BSI has made 2025 the Year of #Email #Security

Great initiative - and great rating for Tuta ❤️ - your secure email provider from Germany. 🇩🇪

bsi.bund.de/DE/Themen/Kampagne…


To Catch a Predator: Leak exposes the internal operations of Intellexa’s mercenary spyware



Cloudflare's 2025 Q3 DDoS threat report -- including Aisuru, the apex of botnets



End-of-Year Threat Intelligence Sightings Forecast



Your offensive-security library, ready to go.

18 DRM-free books. $700+ value. Pay what you want (as little as $36).

Includes Black Hat Bash, Serious Cryptography, Practical Malware Analysis, and more.

Support the @eff and level up your lab. Link in bio.

humblebundle.com/books/hacking…

#hacking #books #offensive #security


Indien zwingt WhatsApp und Telegram zur permanenten SIM-Bindung

Indiens Telekombehörde DoT verpflichtet Messenger-Dienste zur dauerhaften SIM-Bindung. WhatsApp, Telegram und Signal müssen binnen 90 Tagen umstellen.

heise.de/news/Indien-zwingt-Wh…

#Cybersecurity #Mobiles #Netzpolitik #Security #Signal #SIMKarte #Telegram #WhatsApp #news


Wow, if you search for signal messenger on DuckDuckGo using Chrome, the actual @signalapp web site is the *third* entry following ads for “Signal Private Messenger – Free Download” that leads to the site appmaus.com and “Get Signal Messenger | Install Signal App” that leads to the site filelocations.com.

DuckDuckGo should be held criminally liable for anyone who ends up downloading malware because of this.

CC @Mer__edith

#DuckDuckGo #Signal #adtech #teachingPeopleHowToGetPhished #malware #security #privacy #BigTech


Taking a Curated Look at Black Friday Sales For 2025

A small curated list of Black Friday sales by independent creators or small businesses covering areas of technology, gaming and miscellaneous deals.

adamsdesk.com/posts/black-frid…

#blog #BlackFriday #tech #InfoSec #security #100DaysToOffload @Tutanota @b0rk


oh no, not npm again...



Cato CTRL™ Threat Research: HashJack - Novel Indirect Prompt Injection Against AI Browser Assistants



How Quickly Can AI Crack Your Password?



Malicious app developers offering to buy old apps from developers who are no longer active, so they can push malware onto those users


I just got offered by these people to sell my account for my old google play app. Googled the people offering, and I found this thread. Someone in the thread called this out as a malware vector, and I think thats the only way my app would be worth $350. Could this really be an attack vector?Crazy.


#Pornhub Is Urging Tech Giants to Enact Device-Based #AgeVerification

The company sent letters to #Apple , #Google , and #Microsoft pushing for an alternative way to keep minors from viewing #porn , as #US and #UK laws have caused its traffic to plummet.
#privacy #security

wired.com/story/pornhub-is-urg…


DeepSeek-R1 erzeugt unsicheren Code bei politisch sensiblen Begriffen

Die chinesische KI DeepSeek-R1 erzeugt schlechteren Code, wenn Begriffe wie Falun Gong oder Taiwan im Prompt stehen. Das fanden Sicherheitsforscher heraus.

heise.de/news/DeepSeek-R1-erze…

#DeepSeek #IT #KünstlicheIntelligenz #Programmierung #Security #Sicherheitslücken #Zensur #news


Vulnerability-Lookup 2.18.0 - Integration with Rulezet