Tootfinder

Opt-in global Mastodon full text search. Join the index!

@adulau@infosec.exchange
2025-10-14 15:05:26

One year, I had a chat with the fine people @… during the @… conference, and they were wondering why we didn't create an open source website for all the different rules (YARA, Suricata, and many others) — a place to allow comments…

rulezet.org screenshot of a Suricata rule.
rulezet.org screenshot of a list of rules.
@metacurity@infosec.exchange
2025-09-13 12:29:54

It's Saturday morning, and that means it's time for Metacurity's round-up of the best infosec-related long reads of the week, available to our free and paid subscribers.
This week's selection covers
--Myanmar's junta benefits from cyberscams,
--Cyberscams could be behind the Thai-Cambodia conflict,
--Africans are tricked into cyberscam compounds,
--How China's propaganda and surveillance work,
--Vibe coding is risky,
--Ross Ul…

@hacksilon@infosec.exchange
2025-09-13 19:18:46

One of these is not like the others. #HomeAssistant #HorseAssistant

@cjust@infosec.exchange
2025-10-13 20:00:28

No notes
#ShamelesslyStolenFromSomewhereElseOnTheInternetHonestlyICantKeepTrackOfThisStuffAnymore

@tarah@infosec.exchange
2025-08-14 11:29:01

New Post: Proactive Defense: Iranian Cyber Threats and How to Push Back tarah.org/2025/08/13/proactive

@deepthoughts10@infosec.exchange
2025-10-14 02:23:22

RE: infosec.exchange/@spoofy/11536
I’m surprised Microsoft didn’t do this earlier — or even remove IE mode entirely for non-enterprise versions of Edge.

@saraislet@infosec.exchange
2025-10-12 22:41:42

I used to link to sections of webpages using anchor links, or have jump links pointing to id tags.
I went back to a page where I've done this in the past, and the page has been entirely rewritten with non-semantic HTML. Class descriptors have random suffixes for CSS rather than providing semantic IDs that can be used as jump links as well as, uhhh, semantic organization of a web page.
There's a lot of bad things from the 1980s and 1990s that I am glad to leave behind, but…

@dennisfaucher@infosec.exchange
2025-10-13 11:24:26

Wait, when did #eBay start collecting a THIRTEEN percent fee for selling electronics?

@metacurity@infosec.exchange
2025-11-14 14:02:08

Before you head out for the weekend, check out today's Metacurity for the most critical infosec developments you should know, including
--Chinese state hackers used Anthropic to automate cyber intrusions,
--UK MoD knew of Excel's security risks before Afghan data leak,
--NHS investigates Clop's attack claims,
--ASUS patches DSL router critical flaws,
--DoorDash reveals October security incident,
--US feds warn of Akira's expanded encryption …

@cjust@infosec.exchange
2025-10-12 20:13:02

#ShamelesslyStolenFromSomewhereElseOnTheInternetHonestlyICantKeepTrackOfThisStuffAnymore

> It is 2025 BC. | am a soldier from one of the
outlying provinces called to defend the pyramid
in Memphis
> It is 2025 AD. | am a soldier from one of the
outlying provinces called to defend the pyramid
in Memphis
@metacurity@infosec.exchange
2025-10-14 13:04:02

Life is short, so check out today's Metacurity for a concise rundown of the most critical infosec developments you should know, including
--California sets global standards with new landmark AI and data privacy laws,
--UK highly significant cyberattacks jumped by 50% over the past year,
--Australian cyber incidents rose 11% over the past year,
--Ofcom fined 4chan under new online safety regime,
--Researchers eavesdropped on sensitive satellite comms,
--…

@saraislet@infosec.exchange
2025-09-14 00:05:01

"murder is not one of the seven deadly sins"
"what!? how. that seems wrong."
"remember? gluttony, lust, greed, wrath...?"
"seems like murder is worse but okay"

@adulau@infosec.exchange
2025-10-14 05:32:08

« Eavesdropping on Internal Networks via Unencrypted Satellites »
Very good paper and research.
VSAT vendors used to love their walled gardens: pseudo-standard DVB-S2 implementations, broken encryption everywhere, and zero cooperation on security, all to protect their proprietary turf.
The high cost of VSAT-style infrastructure and GEO satellite capacity was another major reason vendors avoided investing in security and interoperability.
Will this change? I…

@dennisfaucher@infosec.exchange
2025-11-13 16:08:02

When your work 3-year laptop refresh is this week, but your 3 year-old M1 MBP is still a beautiful beast, you know you have found a great laptop
#Apple

@hacksilon@infosec.exchange
2025-09-14 08:52:11

Just switched from an old and clunky CC2531 to a Sonoff Zigbee Stick for my #Zigbee2mqtt #HomeAssistant setup, because I required more recent Zigbee features that weren't available on the old stick (pairing codes).
Had to re-pair all my Zigbee devices, but was surprisingly pai…

@deepthoughts10@infosec.exchange
2025-09-14 15:38:33

This is really useful for incident investigations. I’m excited to try it out.
#cybersecurity #threatintel
From: @…

@metacurity@infosec.exchange
2025-08-14 14:03:06

Check out today's Metacurity for the most crucial infosec developments you should know, including
--Russian hackers suspected of sabotaging a dam in Norway,
--Canadian House of Commons is probing a 'significant' data breach,
--North Korean hackers unmasked by leak to ZachXBT,
--Court rules that FCC data breach rules are legal,
--US AG sues Zelle for allegedly enabling scammer fraud,
--UK gov't spent $3.2m to keep Afghan breach secret
--…

@metacurity@infosec.exchange
2025-10-13 12:08:30

Wow, a lot happened in the cybersecurity world over the weekend, so check out today's Metacurity for the most critical infosec developments you might have missed, including
--The White House fired 176 CISA employees on Friday, with more layoffs feared,
--Scattered Lapsus$ Hunters leaked 5m Qantas, 23m Vietnam Air customers' records,
--Spanish cops dismantle GXC Team,
--Dutch gov't warns of China's Nexperia security risks,
--Breach of crypto betting…

@metacurity@infosec.exchange
2025-11-13 14:34:25

Only one day left in a very news-heavy work week, so don't miss today's Metacurity for the crucial cybersecurity news you should know, including
--Operation Endgame dismantled Rhadamanthys, VenomRAT, and Elysium,
--DC US Attorney launches investigation into crypto scams,
--APT exploited Citrix Bleed2 flaws in Cisco ISE,
--CISA orders patching of Cisco ASA and Firepower devices,
--Extremist group 764 member faces charges related to online child exploitatio…

@metacurity@infosec.exchange
2025-11-12 20:34:06

Cybersecurity firm Deepwatch lays off dozens, citing move to “accelerate” AI investment
techcrunch.com/2025/11/12/cybe

@metacurity@infosec.exchange
2025-11-12 19:09:35

Army Lt. Gen. Joshua Rudd, an Army officer with Indo-Pacific experience but no digital warfare experience, emerges as potential Cyber Command, NSA pick
therecord.media/cyber-command-

@metacurity@infosec.exchange
2025-11-13 12:27:59

I can only think of one instance, maybe two instances, where a US CEO lost their job over a data breach.
Lotte Card CEO Cho Jwa-jin Resigns Early Over Data Breach
chosun.com/english/market-mone

@metacurity@infosec.exchange
2025-11-13 11:53:50

China is upset that Australia accused it of spying.
Beijing launches unusually personal attacks at ‘irresponsible’ ASIO boss Mike Burgess over new China speech

@metacurity@infosec.exchange
2025-11-13 11:27:03

It was Operation Endgame that took down Rhadamanthys.
End of the game for cybercrime infrastructure: 1025 servers taken down
europol.europa.eu/media-press/

@metacurity@infosec.exchange
2025-11-13 08:08:40

washingtonpost.com/dc-md-va/20
Pirro targets cryptocurrency scams with new federal task force

@metacurity@infosec.exchange
2025-10-14 16:20:26

In case you missed it, my piece yesterday on the 176 CISA employees fired last Friday, which will not go behind the customary archive paywall.
It's critical to note that sources told me more RIFs are in store for the nation's embattled cybersecurity agency.

@metacurity@infosec.exchange
2025-10-14 05:36:54

thecrimson.com/article/2025/10
Harvard Investigating Security Breach After Cybercrime Group Threatens To Release Stolen Data

@metacurity@infosec.exchange
2025-10-13 15:42:05

The Stakeholder Engagement Division, the Infrastructure Security Division, and likely the Integrated Operations Division are believed to have been impacted.
Multiple CISA divisions targeted in shutdown layoffs, people familiar say

@metacurity@infosec.exchange
2025-10-13 14:56:05

Apple and Home Office agree to drop legal claim over encryption backdoor
computerweekly.com/news/366632

@metacurity@infosec.exchange
2025-10-13 08:43:53

Jeep software update bricks vehicles, leaves owners stranded
thestack.technology/jeep-softw

@metacurity@infosec.exchange
2025-09-13 11:54:34

Dutch army to deploy hackers to front lines to gain battlefield advantage
nltimes.nl/2025/09/13/dutch-ar

@metacurity@infosec.exchange
2025-08-14 10:44:15

cnbc.com/2025/08/13/trump-russ
Trump shrugs off suspected Russian hack of U.S. federal courts: 'Are you surprised?'

@metacurity@infosec.exchange
2025-08-14 10:35:13

nytimes.com/2025/08/13/world/e
U.K. Secretly Spent $3.2 Million to Stop Journalists From Reporting on Data Breach

@metacurity@infosec.exchange
2025-08-14 10:15:04

cbc.ca/news/politics/house-of-
House of Commons hit by cyberattack from 'threat actor': internal email

@metacurity@infosec.exchange
2025-11-13 11:33:12

RE: infosec.exchange/@metacurity/1
As usual, a cute video filled with lots of hidden messages

@metacurity@infosec.exchange
2025-11-13 17:22:53

CISA, FBI and Partners Unveil Critical Guidance to Protect Against Akira Ransomware Threat
cisa.gov/news-events/news/cisa

@metacurity@infosec.exchange
2025-11-13 17:18:41

"The effort focused on dozens of targets and involved a level of automation that Anthropic’s cybersecurity investigators had not previously seen"
Chinese Hackers Used Anthropic’s AI to Automate Cyberattacks
wsj.com/tech/ai/china-hackers-

@metacurity@infosec.exchange
2025-10-14 11:49:36

I love that the Australian Signals Directorate produced an informative video that spells out the findings of its cyber threat report released today.
vimeo.com/1126705145/bdc41025a

@metacurity@infosec.exchange
2025-10-14 05:45:00

theguardian.com/technology/202
Cyber-attacks rise by 50% in past year, UK security agency says

@metacurity@infosec.exchange
2025-10-13 23:39:32

theguardian.com/politics/2025/
Muddle over semantics or pressure from China? Collapsed spying…

@metacurity@infosec.exchange
2025-10-13 14:50:14

'A New Category of Evidence.' Feds Cite ChatGPT Logs of Palisades Fire Suspect
pcmag.com/news/a-new-category-

@metacurity@infosec.exchange
2025-09-13 16:12:03

This is probably a ridiculous question, but do any people follow me here who know anything about nuclear weapons cybersecurity?
If so, please contact me at Cynthia.507 via Signal.

@metacurity@infosec.exchange
2025-08-14 11:20:01

Someone counter-hacked a North Korean IT worker: Here’s what they found
cointelegraph.com/news/someone

@metacurity@infosec.exchange
2025-08-14 10:11:00

theguardian.com/world/2025/aug
Russian hackers seized control of Norwegian dam, spy chief says

@metacurity@infosec.exchange
2025-08-14 12:02:28

NSA Joins CISA and Others to Share OT Asset Inventory Guidance
nsa.gov/Press-Room/Press-Relea

@metacurity@infosec.exchange
2025-08-14 16:57:17

Poland foiled cyberattack on big city's water supply, deputy PM says
reuters.com/en/poland-foiled-c