11
submitted 2 days ago* (last edited 2 days ago) by BrikoX@lemmy.zip to c/cybersecurity@sh.itjust.works

A now-fixed vulnerability in the open-source vulnerability scanner Nuclei could potentially allow attackers to bypass signature verification while sneaking malicious code into templates that execute on local systems.

93
submitted 3 days ago* (last edited 3 days ago) by BrikoX@lemmy.zip to c/cybersecurity@sh.itjust.works

Engineer Aedan Cullen may be in line for the $20K prize.

29

Two separate campaigns have been stealing credentials and browsing history for months.

36

The HIPAA Security Rule is due for an overhaul.

7

This is a multi-part interview with the individual known as “Nam3L3ss,” who leaked more than 100 databases on a popular hacking forum and will soon be leaking many more. In Part 1, he answers some questions about his background and what motivated him to do what he does. In Part 2, we talk a bit about his methods for finding exposed data. In Part 3, we discuss some ethical concerns and the future.

79
submitted 3 weeks ago* (last edited 2 weeks ago) by BrikoX@lemmy.zip to c/asklemmy@lemmy.ml

Take a guess.

25

A critical flaw in the company's rate limit for failed sign-in attempts allowed unauthorized access to a user account, including Outlook emails, OneDrive files, Teams chats, Azure Cloud, and more.

5

Researchers at Cavero have created a correlating numbers mechanism, adding a layer of privacy that even threat actors can't gain enough information to breach.

35

Sacrificing security in the name of fast data transfer speeds.

83

All Windows OSes from 7 to the latest Windows 11 24H2 are vulnerable.

39
submitted 1 month ago* (last edited 1 month ago) by BrikoX@lemmy.zip to c/cybersecurity@sh.itjust.works

A declassified report from Romania’s Intelligence Service says that the country’s election infrastructure was targeted by more than 85,000 cyberattacks.

14

Two spoofed versions of the Web3.js library were pushed out to capture private keys and send them to a hardcoded address.

[-] BrikoX@lemmy.zip 48 points 7 months ago
  1. Welcome to Lemmy. Link-aggregation is the point of the software...
  2. I also made 1.6K comments. If you want to accuse me of being an active user, I can agree with that, but nothing I post is automated or scripted.

I share what I find interesting from my RSS feed. If you have an issue with what I post, you can take advantage of another Lemmy feature, called blocking. Go back to my profile and click Block.

[-] BrikoX@lemmy.zip 124 points 8 months ago

From what I have seen, it more stems from the activism vegans are engaged in more than the actual veganism.

[-] BrikoX@lemmy.zip 95 points 8 months ago

Blame gamers for embracing every single greedy move and asking for more. If you shout how fucked up this is and still open your wallet, you are the problem.

[-] BrikoX@lemmy.zip 238 points 9 months ago

In 2020 Google claimed it was supposed to be limited to a single region in partnership with a single carrier. And was never meant to be put up on Play Store.

A spokesperson from Google reached out to clarify some details about the Device Lock Controller app. To start with, Google says they launched this app in collaboration with a Kenyan carrier called Safaricom.

Google has confirmed that the Device Lock Controller app should not be listed on the Google Play Store for users in the U.S., and they will work to take down the listing.

Source: https://www.xda-developers.com/google-device-lock-controller-banks-payments/

Of course, it was a lie since it's still on Play Store an of today and in use.

[-] BrikoX@lemmy.zip 78 points 1 year ago

His policies on economy are responsible for billionaire class existing in the US. There is a good read on America only had a handful of billionaires 40 years ago. We’re now creating ‘centibillionaires’–and unless we tax them, trillionaires.

[-] BrikoX@lemmy.zip 98 points 1 year ago

But I also feel that any random kid shouldn’t be able to just go to these sites and see porn freely.

So they will just go to another site that doesn't have age verification and doesn't implement any security measures instead. Big sites are required to age check people before they are allowed to upload anything, that is not the case for most of the internet.

All age verification does is aggregate personal information and make it easy target for bad actors to steal. Instead of needing to go thought 100 sites, now that information & identities will be tied to a single database.

It's also a slippery slope, since the same adult content is available not just on dedicated adult sites, but mainstream social media. Lemmy, Mastodon, Twitter, TikTok, Twitch (just recently wanted to allow nudity). Do you really want to have your identity tied to your online activity?

[-] BrikoX@lemmy.zip 71 points 1 year ago

He believed he was untouchable due to his political contributions to both sides, but he underestimated the reach some of his investors that he stole from had themselves.

[-] BrikoX@lemmy.zip 55 points 1 year ago

Nobody. It's a public forum, anyone can take what you said and use it as their own.

From technical side, instance admins, community moderators, and you have the ability to remove them.

[-] BrikoX@lemmy.zip 50 points 1 year ago

The nation that experienced genocide themselves now vow to commit it themselves, and the world powers cheer. The world is broken beyond repair.

[-] BrikoX@lemmy.zip 61 points 1 year ago* (last edited 1 year ago)

Brave Search fully using their own index since April 27, 2023. But they refuse to identify their crawler and rely on googlebot if sites want to be excluded. Also their search API monetization of possible copyrighted content while understandable is a bit doubious due to their public stance on transparency.

StartPage also blocks VPN usage.

DuckDuckGo by their own admission now re-rank "trusted" sites to the top when it comes to what they clasify as"misinformation" so calling their "censorship" mild is huge understatement.

[-] BrikoX@lemmy.zip 54 points 1 year ago

Pretty much the same as with every illegal product. It would move to black market because as long as there is demand there will always be a supply.

[-] BrikoX@lemmy.zip 47 points 1 year ago

Anyone else remember Mozilla promising to open source Pocket 6 years ago?

As a result of this strategic acquisition, Pocket will become a wholly owned subsidiary of Mozilla Corporation and will become part of the Mozilla open source project.

Source: https://blog.mozilla.org/en/mozilla/news/mozilla-acquires-pocket/

P.S. Sorry for out of topic comment.

view more: next ›

BrikoX

joined 2 years ago