New Linux udisks (D-Bus interfaces used to query and manipulate storage devices) flaw lets attackers get root on major Linux distros https://www.bleepingcomputer.com/news/linux/new-linux-udisks-flaw-lets-attackers-get-root-on-major-linux-distros/
Organizer @ BSidesCLE 2025 | Organizer @ ISC2CLE | Cybersecurity Advocate | Speaker | Community Builder | Linux Engineer. ♞ InfoSec - Linux - Open Source - LGBTQ+
Unformatted brain dumps happen here.
I like, follow, and may interact with #nsfw accounts.
New Linux udisks (D-Bus interfaces used to query and manipulate storage devices) flaw lets attackers get root on major Linux distros https://www.bleepingcomputer.com/news/linux/new-linux-udisks-flaw-lets-attackers-get-root-on-major-linux-distros/
First pass cleaning this saddle. Dawn dish soap in a spray bottle and a plastic bristle brush.
I’ve moved it out of the sun since then.
Kept from getting much water on non-leather pieces. J.A. Barnsby & Sons.
I’m vegan, but I like leather. It is a conflict.
I buy 2nd hand leather. I will clean and condition, or repurpose 2nd hand leather to sustain its life and function. An animal died and I can at least honor it by continuing to be thankful for what it provided. #opinion
The best revenge is to live an authentic and happy life.
@Defiance proof.. do what you love!
I want to make the world a better place or at least everyone around me. Elevate everyone, support each other, try to love one another, in peace and harmony and all that hippie shit.
Seriously, if we can’t count on our government or our doctors or companies to do the right things, we must do it for ourselves.
Protect the planet, and have a good life.
@trashheap excellent, have a fantastic time!!!!
Something different.
My LGBTQ+ self will be heading out to the outlaw music festival. #country #music #pridemonth
Not my normal metal, goth, industrial, edm, techno, house, rap, numetal, d&b, salsa, fado, hip-hop, hardcore, nerdcore.
Unformatted brain dump of an opinion.
I’ve been employed inside & outside of infosec departments and I’m noticing a disconnect.
Everyone is responsible for security.
However, infosec doesn’t like to use other’s tools for security. The mindset appears to be, if it isn’t bought, paid for, and run by infosec, it is not a security tool. Even if it is a cloud service. Separation of duties isn’t the reason. This appears to be a cultural empire building budgeting mindset. As such, redundant overlapping tools and wasted time & money result.
Mindfulness can also apply to technology and infosec. Reduce the toolset, reduce the footprint, reduce the attack surface, reduce the overlaps, increase the productivity and value of existing systems. IT, Developers, business units, even physical maintenance have and use systems that can be leveraged by infosec. This type of collaboration also builds relationships that are beneficial when things go wrong.
Just a recurring theme I keep seeing, hearing, and think about as I get ready for the upcoming ISC2 CLE meetup.
"The absence of clear regulations, combined with low public awareness and the lack of efficient recycling infrastructure, is fueling an environmental and health crisis that threatens future generations."
It's the same all over the world, particularly in poorer countries. Such countries not alone have their own e-waste to deal with, they are often the target of dumping from the Global North.
E-waste is the fastest growing--and most toxic--waste in the world.
Fall down a dune.
Sounds like quite the Irish name.
Latency waiting for cloud based services. Expenses for cloud based services. The "next gen" will be bringing these back in-house as reduced footprint microservices on clusters of single board hardware.
#prediction #predictions #Linux #selfhosted #selfhosting #InfoSec #FOSS
Linux question.
/opt/toolkit has scripts in it.
A file system is mounted on top of it with different scripts.
Can you access the data in /opt/toolkit
Without unmounting the overlayed file system?
Experiment. (Fuck around)
Document. (Find out)
Repeat.
So much talking. Very little planning. Even less doing.
Planning is productive.
*Do not* get analysis paralysis.
Doing is the difference.
@dustcircle they are idiots, and it doesn't concern their day-to-day functions and should just drive on.. #opinion
@secfurry and then none of them are interested back :(