digitalcourage.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Diese Instanz wird betrieben von Digitalcourage e.V. für die Allgemeinheit. Damit wir das nachhaltig tun können, erheben wir einen jährlichen Vorausbeitrag von 1€/Monat per SEPA-Lastschrifteinzug.

Server stats:

814
active users

#secuity

0 posts0 participants0 posts today
gtbarry<p>Amazon Warns 220 Million Customers Of Prime Account Attacks</p><p>Scammers are sending fake emails claiming your Amazon Prime subscription will automatically renew at an unexpected price. </p><p><a href="https://mastodon.social/tags/amazon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>amazon</span></a> <a href="https://mastodon.social/tags/amazonprime" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>amazonprime</span></a> <a href="https://mastodon.social/tags/scam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>scam</span></a> <a href="https://mastodon.social/tags/sammers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sammers</span></a> <a href="https://mastodon.social/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> <a href="https://mastodon.social/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.social/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.social/tags/hackers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hackers</span></a> <a href="https://mastodon.social/tags/hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hacking</span></a></p><p><a href="https://www.forbes.com/sites/daveywinder/2025/07/17/amazon-warns-220-million-customers-of-prime-account-attacks/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">forbes.com/sites/daveywinder/2</span><span class="invisible">025/07/17/amazon-warns-220-million-customers-of-prime-account-attacks/</span></a></p>
bucketchallenge<p>Lazy saturday means: more responsible disclosures. The process is now streamlined on my side: a table with bucketnames, status (usually open...), date of first report, date fixed, content and examples is emailed to <a href="https://infosec.exchange/tags/aws" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aws</span></a> <a href="https://infosec.exchange/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> </p><p>Status at the moment: 26 Buckets reported, out of them are 25 are open. Those buckets contain jucy data as names, birthdays, passports, passwords, resumes, medical data, github token. </p><p>It will be very interesting to see the average time to close a bucket for <a href="https://infosec.exchange/tags/aws" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aws</span></a>. With n=1 it is 893 days. I hope the n will increase and the number will decrease.</p>
Syft<p>Syft v1.13.0 released 🎉</p><p>Some "enriching" features and fixes in this one! 🥳</p><p><a href="https://github.com/anchore/syft/releases/tag/v1.13.0" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/anchore/syft/releas</span><span class="invisible">es/tag/v1.13.0</span></a><br><a href="https://fosstodon.org/tags/sbom" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sbom</span></a> <a href="https://fosstodon.org/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a></p>
Scott Arciszewski<p><a href="https://scottarc.blog/2024/06/04/attacking-nist-sp-800-108/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">scottarc.blog/2024/06/04/attac</span><span class="invisible">king-nist-sp-800-108/</span></a></p><p><a href="https://infosec.exchange/tags/NIST" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NIST</span></a> <a href="https://infosec.exchange/tags/crypto" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>crypto</span></a> <a href="https://infosec.exchange/tags/cryptography" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cryptography</span></a> <a href="https://infosec.exchange/tags/kdf" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>kdf</span></a> <a href="https://infosec.exchange/tags/prf" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>prf</span></a> <a href="https://infosec.exchange/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
qbi<p>Ross J. Anderson, britischer Professor für IT-Sicherheit, ist verstorben.<br>RIP</p><p><a href="https://freie-re.de/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> <a href="https://freie-re.de/tags/sicherheit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sicherheit</span></a> <a href="https://freie-re.de/tags/Privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Privacy</span></a></p>
gtbarry<p>Subway claimed by LockBit ransomware</p><p>The gang claims to have exfiltrated hundreds of gigabytes of data and has given the company nearly two weeks to pay the ransom.</p><p>LockBit listed Subway as its victim on its data leak site on January 21st. It threatens to release the data if the criminals’ demands are not met by February 2nd. </p><p><a href="https://mastodon.social/tags/subway" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>subway</span></a> <a href="https://mastodon.social/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://mastodon.social/tags/lockbit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>lockbit</span></a> <a href="https://mastodon.social/tags/ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransomware</span></a> <a href="https://mastodon.social/tags/malware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>malware</span></a> <a href="https://mastodon.social/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> <a href="https://mastodon.social/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.social/tags/hackers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hackers</span></a> <a href="https://mastodon.social/tags/hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hacking</span></a> <a href="https://mastodon.social/tags/Hacked" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hacked</span></a></p><p><a href="https://cybernews.com/news/subway-claimed-by-lockbit-ransomware/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cybernews.com/news/subway-clai</span><span class="invisible">med-by-lockbit-ransomware/</span></a></p>
Avoid the Hack! :donor:<p>Your <a href="https://infosec.exchange/tags/VPN" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>VPN</span></a> provider won't go to jail for you for 5 dollars</p><p><span class="h-card" translate="no"><a href="https://mastodon.social/@ivpn" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>ivpn</span></a></span> explains how competent service providers can avoid sharing sensitive information about users...</p><p>Hint: It involves not collecting/storing that information in the first place. Unfortunately, most VPN providers are not worthy of trust.</p><p>(IVPN is pretty great and highly recommended in the privacy community, though.)</p><p><a href="https://infosec.exchange/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://infosec.exchange/tags/secuity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>secuity</span></a> <a href="https://infosec.exchange/tags/opsec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opsec</span></a></p><p><a href="https://www.ivpn.net/blog/your-vpn-provider-wont-go-to-jail-for-you/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">ivpn.net/blog/your-vpn-provide</span><span class="invisible">r-wont-go-to-jail-for-you/</span></a></p>