cryptrz :opensource:
cryptrz :opensource:cryptrz@infosec.exchange
2025-05-09

Pulsar Edit, le successeur commnautaire d’Atom encore (trop) méconnu. Là où Atom était "hackable", Pulsar est "hyper-hackable" donc voilà !

cryptrz.org/wordpress/2025/05/

Pulsar Edit homepage
cryptrz :opensource:cryptrz@infosec.exchange
2025-05-02

#Windows #RDP lets you log in using revoked passwords. #Microsoft is OK with that.

Researchers say the behavior amounts to a persistent #backdoor.

In response, Microsoft said the behavior is a “a design decision (...) As such, Microsoft said the behavior doesn’t meet the definition of a #security #vulnerability, and company engineers have no plans to change it.

arstechnica.com/security/2025/

RDP
cryptrz :opensource:cryptrz@infosec.exchange
2025-04-20

CHALLENGES KIDS: Le site pour #apprendre le #hacking avec les petits et les grands :)

challenges-kids.fr/

Aperçu du site web Challenges Kids
cryptrz :opensource: boosted:
The Tor Projecttorproject
2025-03-13

PSA: 🚨 Update Tor Browsers now!

On March 14, 2025, a Mozilla root certificate used for add-ons verification will expire, potentially disabling extensions like NoScript or breaking features such as the Security Slider on Tor Browser versions older than 13.5.11 legacy.

To avoid issues and security risks, update now to 14.0.7 stable or 13.5.13 legacy. blog.torproject.org/old-tor-br

cryptrz :opensource:cryptrz@infosec.exchange
2025-02-28

@Ljoz Sur le principe je ne suis même pas fan de Wine tout court, mais il y a des personnes que ça aide/rassure quand elles débarquent avec quelques années sous Windows :)

cryptrz :opensource:cryptrz@infosec.exchange
2025-02-15

A decentralized finance ( #DeFi ) protocol called zkLend suffered a $9.57 million loss due to a mathematical error in their lending system

rekt.news/zklend-rekt/

cryptrz :opensource: boosted:
Ars Technicaarstechnica
2025-02-06

DeepSeek iOS app sends data unencrypted to ByteDance-controlled servers
Apple's defenses that protect data from being sent in the clear are globally disabled.
arstechnica.com/security/2025/

cryptrz :opensource: boosted:
Mozilla francophone – CommuMozilla@mamot.fr
2025-02-06
135.0 Firefox Release
February 4, 2025
Version 135.0, first offered to Release channel users on February 4, 2025
New
— Firefox Translations now supports more languages than ever! Pages in Simplified Chinese, Japanese, and Korean can now be translated and Russian is now available as a target language for translating into.
— The credit card autofill feature is now being gradually rolled out to all users globally. | This feature is part of a progressive roll out. What is a progressive roll out?
— AI Chatbot access is now being gradually rolled out to all users. To use this optional feature, choose AI Chatbot from the sidebar or from Firefox Labs. Then, complete the provider selection to see the chat interface become available on the sidebar. | This feature is part of a progressive roll out. What is a progressive roll out?
— Firefox now enforces certificate transparency, requiring web servers to provide sufficient proof that their certificates were publicly disclosed before they will be trusted. This only affects servers using certificates issued by a certificate authority in Mozilla's Root CA Program.
— Additionally, the CRLite certificate revocation checking mechanism is also being gradually rolled out, substantially improving the performance of these checks. | This feature is part of a progressive roll out. What is a progressive roll out?— Firefox now includes safeguards to prevent sites from abusing the history API by generating excessive history entries, which can make navigating with the back and forward buttons difficult by cluttering the history. This intervention ensures that such entries, unless interacted with by the user, are skipped when using the back and forward buttons.
— Users on macOS and Linux are now given the option to close only the current tab if the Quit keyboard shortcut is used while multiple tabs are open in the window.
Fixed
— Made improvements to the Translations feature which will reduce the likelihood that models will invent new, made-up words under some circumstances.
— Various security fixes.
Changed
— The refreshed New Tab layout previously rolled out in Firefox 134 to users in the United States is now being made available in all countries where Stories are available. It features a repositioned logo to prioritize Web Search, Shortcuts, and Recommended Stories at the top. The update also includes changes to the card UI for recommended stories and allows users with larger screens to see up to four columns for better use of space. | This feature is part of a progressive roll out. What is a progressive roll out?— The “Do Not Track” checkbox has been removed from preferences. If you wish to ask websites to respect your privacy, you can use the “Tell websites not to sell or share my data” setting instead. This option is built on top of the Global Privacy Control (GPC).
— The "Copy Without Site Tracking" menu item was renamed to "Copy Clean Link" to help clarify expectations around what the feature does. "Copy Clean Link" is a list based approach to remove known tracking parameters from links. This option can also now be used on plain text links.
— Linux binaries are now provided in XZ format, replacing the previous BZ2 format, offering faster unpacking and smaller file sizes.
Developer | Developer Information
— A warning is now displayed when content-visibility is used on elements where size containment does not apply.
— Introduced a new console command $$$ that allows searching the page, including within shadow roots.
— Enhancements to WebExtension debugging: Workers are now available in the Console panel’s context selector and breakpoints function correctly in content scripts.
Web Platform
— Added support for a post-quantum key exchange mechanism (mlkem768x25519) for HTTP/3.
— The attribute values which indicate the coordinates of PointerEvent may now be fractional values rather than only integers. This allows web apps to handle the events with higher-precision coordinates when the target element is transitioned by CSS and/or the viewport is zoomed.Votre version de Firefox a été mise à jour.
Zoomez sur les fonctionnalités de Firefox
Naviguez sur Firefox rapidement avec cmd/ctrl + et cmd/ctrl - pour facilement redimensionner le contenu d’une page web.
Découvrir plus de raccourcis
Conçu par Mozilla. Pensé pour vous depuis 1998.
Faire un don à la Fondation Mozilla
Consultez les notes de version pour en savoir plus sur les nouveautés de votre navigateur Firefox.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst