Here's a tip for #Mastodon admins to manage spammy (likely AI-generated) account requests:
a lot of those seem to come from disposable emails. The mastodon admin menu allows you to block specific email domains. So if you're getting obvious spam from specific domains (
Die Instanz https://bayerwald.social läuft jetzt mit Softwareverson v4.7.2
https://github.com/mastodon/mastodon/r
Putins Agenten geben sich mittlerweile richtig dolle Mühe, Mastodon-Accounts zu bekommen. Die letzte Begründung hätte mich überzeugt. Sie war in perfektem Deutsch und erwähnte sogar den Namen der Instanz. Aber eine WHOIS-Abfrage der IP-Adresse verwies auf Russland. Diesmal war die E-Mail-Adresse von Gmail. Ansonsten werden in letzter Zeit oft Wegwerf-Mailadressen benutzt, die aber keine Chance mehr haben, seit ich die Sperrliste von
⭐ Starred a repository
siketyan/verify-me
Minimal implementation of the Email Verification Protocol on Cloudflare Workers Zero Trust.
github.com/siketyan/verify-me
Never a weekend slowdown in cybersecurity news, so check out today's Metacurity for the most critical infosec developments you might have missed since Friday, including
--Alibaba’s Qwen races past Meta, Google with 3 billion AI model downloads,
--AI agent exploits Snowflake flaw introduced by Copilot,
--US tells allies to pick sides in AI race with China,
--China pushes to reshape the world’s AI training data,
--China’s Zhipu claims AI edge over Anthropic in cyber test,
--Pentagon scrambles to keep pace with AI’s military risks,
--France holds crisis meeting over massive tax agency hack,
--Iran targets Israeli journalists with phishing attacks,
--Election officials blast CISA over lack of cyber support,
--AI deepfake scams surge in Australia,
--SafePal breach exposes data of nearly 40k customers,
--Bits of Gold breach exposes customer data,
--Hackers exploit Mac flaw to mine cryptocurrency,
--Seven arrested over $35m German bank hack,
--Hong Kong university probes ransomware breach claims,
--Fake GitHub site spreads Mac infostealer,
--US courts to disclose government spyware use,
--Sogang University breach exposes 180k people,
--DDoS attacks hammer secure messaging service Threema,
--Hackers hawk millions of records stolen from Azure tenants,
--London police expose emails of Al Fayed accusers,
--Microsoft kills Windows tool long abused by malware,
--French court blocks social media ban for children,
--AI can’t seem to produce any tech heroes,
--AI makes data breaches even more expensive,
--Amazon used to sell books, not destroy them
https://www.metacurity.com/alibabas-qwen-races-past-meta-google-with-3-billion-ai-model-downloads/
Man, the ACM website -- the Association for Computing Machinery's site -- is so confusing with all the usernames and accounts.
I am trying to subscribe to one of their mailing lists and it's asking me for an email address and a password. As an ACM member, I have an @acm.org email; my account also knows about my Macalester email, and my newer St. Olaf email. I have tried all of those, and all the various passwords in my password manager. None work.
If only, somehow, someo…
I've been getting emails like this about once a month with someone wanting me to commit employment fraud with them. Do these actually work & last more than a week? https://thisisnotajoke.com/engineering-collaboration-fraud
I disagree with some parts of Theo's video, but still wanted to share it. Bc wtf is the direction that this implies Codeberg is heading? It's fine if you want to do the GitHub thing and email people that use way too much of your resources for free. But "informal guidelines" that directly discourage "specific tools and custom scripts that would be unlikely to find a community anyway, even if they were not LLM-generated"? So ig have a big community or gtfo??