Eruption on Mount Etna (Sicily) giving the illusion of a Phoenix in the sky.
Incident Responder and hobby reverse-engineer interested in #DFIR #malware #reverseengineering and #purpleteam . #fedora fan
Proud of #EU
Eruption on Mount Etna (Sicily) giving the illusion of a Phoenix in the sky.
#DFIR #threatintel #Knowledgedrop
Attackers are still actively exploiting firewall "../" vulnerabilities. Be aware and patch your firewalls!
@kkarhan @richi @signalapp @torproject
Have a look at Moxie's CCC talk a few years ago. He explained why they do these points.
From what I remember (not my arguments but theirs):
1) they need a means to identify you and combat bots. So it probably boils down to email vs phone number. Phone number works well for identifying your peers and makes it easy for non-tech folks
2) if you don't like their servers, you can host signal yourself, it's open source.
3) it's centralized because development would be much too slow with decentralized apps and quick patching is difficult (everyone would need to update). One can see this with matrix. It's beta since ages and doesn't really gain momentum.
Not saying I agree with all the points but I can understand them. Signal wouldn't be as usable and widespread if they didn't do it like that.
Wenn ein Prof rappen muss, um auf Cyber Security aufmerksam zu machen:
#reasonshellfrozeover #HashtagGames
The Billionaires have not been overthrown yet
NASA celebrated this employee's story of resilience, then tried to scrub it from the internet. Then fired her.
https://www.livescience.com/space/nasa-celebrated-this-employees-story-of-resilience-then-tried-to-scrub-it-from-the-internet-then-fired-her
Die Open Source Business Alliance (OSBA) hält das Vorgehen von Microsoft "in diesem Kontext und dieser Auswirkung" für "beispiellos". Der OSBA-Vorstandsvorsitzende Peter Ganten betont: Die von den USA angeordneten und von dem Software-Giganten mit umgesetzten Sanktionen gegen den Strafgerichtshof "müssen ein Weckruf für alle sein, die für die sichere Verfügbarkeit staatlicher und privater IT- und Kommunikationsinfrastrukturen verantwortlich sind". https://www.heise.de/news/Strafgerichtshof-Microsofts-E-Mail-Sperre-als-Weckruf-fuer-digitale-Souveraenitaet-10387368.html
Over on Bluesky, westeners are reporting Palestinian accounts and Bluesky are suspending. On Mastodon, westeners are also reporting Palestinian accounts for seeking mutual aid.
Everyone has the right to seek mutual aid. Not just westeners. Even if it makes westeners uncomfortable to be reminded that apartheid Israel is starving and massacring Palestinian people.
Don't like being reminded of genocide? Well, don't report people seeking mutual aid for their dying families. Just use your fucking privilege and scroll on.
A rant on why I think we need realistic Solarpunk, plus some other things 1/2 ☀️
Felt compelled to make this. It will finally stop floating around in my head 🎉
Podcast over here if you're interested: https://podcast.tomasino.org/@SolarpunkPrompts
Soll #Hoettges doch in die USA auswandern... Ist klar, dass er sich wünscht Oligarch zu werden.
@nextcloud posting about why their Android app was forced by #google to remove the ability to auto-upload all files. I'll be switching to the F-droid version to gain this functionality back. #HomeLab #FOSS #degoogle
"As your experience with the Nextcloud Files app for Android has worsened, we wanted to share the background. Google has revoked a critical permission to sync all files. Despite multiple appeals since mid-2024, Google has refused to reinstate it, forcing us to limit file uploads for millions of users."
"Despite multiple appeals since mid-2024, Google has refused to reinstate the permission, blocking automated Nextcloud file uploads for millions of users."
"To make it crystal clear: All of you as users have a worse Nextcloud Files client because Google wanted that. We understand and share your frustration, but there is nothing we can do."
https://nextcloud.com/blog/nextcloud-android-file-upload-issue-google/
Disagree on Slack. If you have to use it in a browser, calls do not work.
I frankly lack alternatives to Teams.
Slack has bad calls. Zoom has no good chat functionality. Matrix/rocketchat/etc lack functionality or are very unstable.
Don't get me wrong, I don't like Teams. Especially the groups and Team's "Teams" are terrible. But I don't know a better tool.
I (as a user) gave up opening tickets with the help desk. In Q3/4 2023 my boss made me document all my tickets and their resolutions.
The result: 11 tickets opened, 1 solved, 10x help desk didn't do anything.
Same experience in 3 big corporations.
By now I raise my IT issues with my wall, it's less waste of time.
At least you didn't get sued for informing them about a vulnerability :bloblaugh:
Haha...
My wish is that people who clearly don't "get" security, please don't get into CVE arguments. 😂
limited to the employees and contractors of that enterprise, which would be liable for an obvious attempt to circumvent security
Choice is an illusion. You already know what you have to do. :troll:
Skindred - Gimme that Boom