w00p
w00p boosted:
Euromaidan PressEuromaidanPress
2025-05-07

Russian advanced drones equipped with artificial intelligence and resistant to electronic warfare defenses were spotted in Ukraine

First observed in Sumy in February 2025, these drones are now appearing more frequently in eastern Ukraine euromaidanpress.com/2025/05/07

2025-05-07

@leberschnitzel
Ich finde diese Website recht gut, da findet man alle Dokumente: demokratis.ch/vernehmlassung/b

Die "Synoptische Tabelle" zeigt alle Änderungen gegenüber dem aktuellen Gesetzt sehr übersichtlich auf.

Und hier findet man den (komplizierten) Prozess, wie dieser Vorschlag zu einem Gesetzt werden könnte: parlament.ch/de/%C3%BCber-das-

Und hier noch die aktuellen Überwachungstypen der Behörden: li.admin.ch/sites/default/file

Mal schauen was da rauskommt. Bin auf jeden Fall gespannt. :)

FG

w00p boosted:
2025-05-07

Redteamers: I'd love to hear your thoughts on this post, which details how Microsoft Copilot for SharePoint can be a post-exploit attacker's best friend. How realistic is this threat? Is the onus on Microsoft or on organizations using Sharepoint to take precautions? cc: @PTP

pentestpartners.com/security-b

2025-05-07

@leberschnitzel @marcel @republik_magazin @adfichter

Nein, im Vorschlag wird nicht gegen "Zero Access Encryption" vorgegangen.
*Nichts* steht diesbezüglich im Vorschlag.
Im art. 50a geht es um die Verschlüsselung von 5G Netzwerken. Diese soll von den Provider entschlüsselt werden können, um den Behörden Metadaten zur Kommunikation von überwachten Personen weiterzuleiten.
5G Netzwerke sind viel sicherer als vorherige Netzwerkgenerationen (was für uns Nutzer seht gut ist). Bei diesem Art. geht es darum sicherzustellen, dass die Behörden weiterhin die gleiche Überwachungsmöglichkeiten haben wie anhin mit 3G-4G Netzwerken, bei denen solche Metadaten leider fast von jederman zugänglich sind.
--> Der verschlüsselte Inhalt der Kommunikation wird im Artikel sogar explizit ausgeschlossen.

2025-05-07

@thehackernews
Shalev's reaction

w00p boosted:
Marcel Waldvogelmarcel@waldvogel.family
2025-05-07

"«In der Schweiz wird es keine private, digitale und datenschutz­freundliche Kommunikation mehr geben», so Alexis Roussel."

Die @republik_magazin -Recherche von @adfichter rüttelt auf.
#VÜPF #BÜPF #Überwachung
republik.ch/2025/05/07/die-sch

w00p boosted:
2025-05-06

Ep 158: MalwareTech

Yes @malwaretech joins us. Tells us one of the most insane stories ever. Do not miss this one.

darkentdiaries.com/episode/158

w00p boosted:
2025-05-06

Commodore OS 3 is the loudest Linux yet

One distro has to be the most extra – and here it is A Commodore-themed talking Linux desktop, complete with hundreds of games, makes for the biggest distro we've seen yet.…
#theregister #IT
go.theregister.com/feed/www.th

2025-05-06

EPFL Study
"Traces of the additives typically used in tire manufacturing have been detected in all of the most common types of fruits and vegetables eaten in Switzerland."

actu.epfl.ch/news/tire-additiv

🤷‍♂️
Our env is FUBAR

2025-05-05

"Connecting Solar to the Grid is Harder Than You Think"

youtube.com/watch?v=7G4ipM2qjfw

w00p boosted:
2025-05-05

New from 404 Media: the Signal clone the Trump administration uses was just hacked. TeleMessage makes a modified version of Signal that archives messages for government agencies, Waltz used it. A hacker got some users' messages, group chats. Hugely significant breach 404media.co/the-signal-clone-t

w00p boosted:
2025-05-04

⚡️ Ukrainian sea drones down 2 Russian Su-30 jets near Novorossiysk, military intelligence chief says.

The operation marks the first time in history that fighter jets have been downed by unmanned boats. Initially, reports confirmed the destruction of only one jet, but Ukraine's military intelligence agency (HUR) chief, Kyrylo Budanov, later clarified that two aircraft were hit.

🔗 kyivindependent.com/ukraine-se

w00p boosted:
2025-05-04

Ookla: Starlink use rose by 35% above average in Spain and Portugal on April 28, as a widespread electricity outage exposed vulnerabilities in telecoms networks (Ian Johnston/Financial Times)

ft.com/content/c0e5dfa1-7543-4
techmeme.com/250504/p5#a250504

w00p boosted:
ℂ𝕖𝕝𝕖𝕤𝕥𝕖@world: /# :blinking_cursor:celeste_42bit@infosec.exchange
2025-05-04

How does banning a party work in Germany, and why do we even want to ban a party?

a simple explanation

One of the German intelligence agencies, specifically the "Bundesverfassungsschutz" (Federal Constitution Protection Agency), has produced a more than 1000 pages long report about the AfD, a party you surely know by now.
The report contains a thorough analysis of AfD's ideology and their connection to extremist groups all over the world.

This report and the work the agency does, is something like a warning system. The agency itself can not make any decisions about the legitimacy of a party, and neither can they interfere or disrupt a parties political work. All they are allowed to do is to listen in and collect proof of a parties anti-democratic/unconstitutional tendencies and plans using intelligence gathering techniques like hiring informants, tapping phone lines, analyzing network traffic, etc... This is only allowed, if significant concerns have been raised about a party that is allegedly acting against our constitution or planning serious action against our democratic state. If a preliminary analysis confirms those concerns, the agency gets the power to use said surveillance against the party in question.
In the case of the AfD, they have been a suspected extremist party for several years now, allowing the agency to surveil their communications and inner workings, until they came to the conclusion, that the AfD is indeed fighting our democratic state and are following a right-wing extremist ideology, something that is incompatible with our constitution.

Now that a flag has been raised, there are obvious reasons the party needs to be hindered from successfully eroding or even destroying our democracy. In Germany we have multiple paragraphs in our constitution that allow for a ban of all parties, groups, and organisations that are aggressively attacking the foundation of our free democratic state, are planning to remove the constitution, or to significantly alter it by force or with other antidemocratic means. There are specific extra-strict laws about banning parties since making that too easy would also make it easier for oppressive governments to ban democratic parties. Part of these laws is also the condition that the party has to be significant enough to have actual potential to cause damage.
How that works: The ONLY way to ban a party here in Germany, is to task our supreme court (Bundesverfassungsgericht) to review a parties incompatibility with our constitutional law and to declare a ban on them and all following organisation's trying to bring back that party. The review process often takes years and is extremely thorough since banning a party is a pretty extreme "ultima ratio" measure.

The idea behind banning a party is not to convince them or their voters that they were on the wrong path or to punish them in favor of other parties. The paragraphs for banning a party have been created explicitly to protect the state, its institutions and citizens from harm coming from said party and its structures, members, and supporters.
The voters will still be there. The members will still be extremist. But the party as an organized way of preparing harmful actions will be destroyed, and all following attempts to bring it back under a new name, with a new image, etc. will be outlawed as well.

Last but not least, our German supreme court, which specializes explicitly on dealing with issues related to the constitution and the constitutional rights of the people, will not start the process of banning a party on its own. It needs to be tasked with that by either the parliament (Bundestag), the federal council (Bundesrat), or the acting government (Bundesregierung).

After having been tasked with the review, the court will start a long investigation into the organisation, in our case the AfD, and will collect evidence that supports the claim that they are unconstitutional. For that, it also uses the 1100-page report of the "Verfassungsschutz", police reports, other court cases against the party, etc.

Should the court decide the AfD is actually unconstitutional, which in my opinion, and the opinion of many experts here, is highly likely, the party will be banned and ordered to seize all its operations, and to disband their headquarters and all other places they've worked in. They will also be forbidden to found a new party trying to replace it. If the party continues to organize action, not as a party any more but as a banned organisation, law enforcement will enforce the ban and disrupt any action taken by members of it, that contribute to the goals of the former party.

Now that the AfD has been officially found to be right-wing extremist, the pressure on our government, parliament and federal council is rising to ask the Supreme Court to review a ban of the AfD. There are no more excuses. If this actually happens, remains to be seen.

(As of right now, our conservatives and neo-liberals are still opposing a vote to start the judicial investigation against the AfD)

A little remark from @nicobruenjes, that really shows how strict the rules around banning parties are:

So far, the Supreme Court only banned two parties in the history of our Federal Republic: The SRP (Sozialistische Reichspartei) in 1952, which was an openly acting successor organisation of the Nazi Party NSDAP. And the KPD (Kommunistische Partei Deutschlands), the communist party of Germany in 1956.

2025-05-03

Very interesting analysis of what might have caused the Spanish outage a few days ago (sorry, it's on LikedIn..):

"Conclusion
All evidence and analysis indicate that the April 28, 2025 Spanish power outage was caused by a chain of technical failures initiated by a physical grid fault and exacerbated by the Iberian grid’s structural vulnerabilities."
linkedin.com/pulse/technical-a

#spain #blackout #blackout2025

w00p boosted:
Secure ICS OT :mastodon:Secure_ICS_OT@infosec.exchange
2025-05-03
w00p boosted:
Digital Defense InstituteDDI_Training@infosec.exchange
2025-05-03

Want to see a little bit of the magic behind our Threat Hunting & Incident Response w/Velociraptor course? Check out our Antisyphon webcast!

youtube.com/live/MqQ-IJ6CWJo?s

Now available OnDemand 🤓🦖🔥 ddi.sh/thvr

w00p boosted:
Lorenzo Stoakesljs@mastodonapp.uk
2025-05-03

I wrote a book on Linux Memory Management, published by @nostarch - it's a comprehensive 1300 page exploration of Linux 6.0's memory management code, depth-first, diving into the code and REALLY explaining how things work.

The idea is to avoid hand waving as much as possible and literally explore what the kernel _actually_ does.

It's full of diagrams and careful explanations of logic including a ton of stuff you just can't find anywhere else.

It's currently available in its entirety in draft form via early access when you pre-order.

It's available at nostarch.com/linux-memory-mana

:)

#linux #kernel #mm

2025-05-02

@maldr0id yes exactly
As long as you chose words from a language that the listener has at least some basic knowledge of, that works.
And with perfectly multi lingual persons i know well (family), i'd just chose the first word in one language and mix the languages in the same sentence, even when not tired. That's super confusing for other listeners and we don't even realise we're doing it.

2025-05-02

@maldr0id yes it happens
when i'm tired, first word arrived in my mind = first word served :D

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst