Tootfinder

Opt-in global Mastodon full text search. Join the index!

@metacurity@infosec.exchange
2025-08-07 07:04:26

blog.danielh.cc/blog/passwords
“Please stop”
We replaced passwords with something worse

@jerome@jasette.facil.services
2025-08-07 13:45:05

PSA #Tangerine now supports proper passwords, in case you didn't like your whole banking being protected by 6 digits
#banking

@Techmeme@techhub.social
2025-07-30 18:11:02

Dropbox says it will discontinue Dropbox Passwords, launched in 2020, on October 28 to focus on its core product, and recommends 1Password as a replacement (Richard Speed/The Register)
theregister.com/2025/07/30/dro

@metacurity@infosec.exchange
2025-09-02 15:47:06

No, Google did not warn 2.5 billion Gmail users to reset passwords
bleepingcomputer.com/news/tech

@arXiv_csCR_bot@mastoxiv.page
2025-09-03 14:02:43

Passwords and FIDO2 Are Meant To Be Secret: A Practical Secure Authentication Channel for Web Browsers
Anuj Gautam, Tarun Yadav, Garrett Smith, Kent Seamons, Scott Ruoti
arxiv.org/abs/2509.02289

@theprivacydad@social.linux.pizza
2025-09-04 13:57:21

Keeping screens out of bedrooms, talking, and learning how to manage passwords together are three ways you can help your child build healthy and safe online habits.
theprivacydad.com/three-tips-f

@sharan@metalhead.club
2025-07-05 12:23:14

Done for today. I successfully disconnected one of my Google profiles from the third-party services I use. It took some time because I had to create many passwords and then disconnect.
I also deleted several services I no longer use and switched from Gmail to privacy-focused email addresses.
Continuing tomorrow.
#degoogle

@crell@phpc.social
2025-08-26 19:15:14

Well, that's lovely...
#Security

Password compromise is no joke;
it leads to account compromise and that leads to, well, the compromise of most everything you hold dear in this technological-centric world.
It’s why Google is telling billions of users to replace their passwords with more secure passkeys.
It’s why the FBI is warning people not to click on links in SMS messages.
It’s why stolen passwords are up for sale, in their millions, on the dark web to anyone with the very little amount of cas…

@samir@functional.computer
2025-08-05 11:25:26

@… I kind of agree. I don’t like that you have to have software that knows who you are to use the web (or a device that does, on the side). But I also don’t see any feasible alternative.
Shared passwords (which I believe are still the majority of them) are terrible. I think I am slightly on the side of DRM.

@muz4now@mastodon.world
2025-06-14 22:29:09

passwords for positive change
#inspiration #BeBetter
muz4now.com/2014/passwords-pos

@arXiv_csCR_bot@mastoxiv.page
2025-09-04 07:34:30

Secure Password Generator Based on Secure Pseudo-Random Number Generator
Abel C. H. Chen
arxiv.org/abs/2509.02578 arxiv.org/pdf/2509.02578

@Speckdaene@nrw.social
2025-06-19 14:53:17

Es gibt anscheinend einen klitzekleinen #Datenreichtum, 16 Mrd. #Passwörter geleakt.

@arXiv_csHC_bot@mastoxiv.page
2025-07-31 09:15:51

A Fuzzy Set-based Approach for Matching Hand-Drawing Shapes of Touch-based Gestures for Graphical Passwords
Adel Sabour, Ahmed Gadallah, Hesham Hefny
arxiv.org/abs/2507.22382

@cellfourteen@social.petertoushkov.eu
2025-08-15 17:32:06

BeCyberSmart: How Fast Can a Hacker Break YOUR Password? | Oberlin College and Conservatory
oberlin.edu/cit/bulletins/pass

@ripienaar@devco.social
2025-07-30 17:27:45

Dropbox telling people they have 3 months to get off Dropbox Passwords is pretty weak sauce.

@arXiv_quantph_bot@mastoxiv.page
2025-06-11 10:18:05

Quantum Adiabatic Generation of Human-Like Passwords
Sascha M\"ucke, Raoul Heese, Thore Gerlach, David Biesner, Loong Kuan Lee, Nico Piatkowski
arxiv.org/abs/2506.08917

@kubikpixel@chaos.social
2025-07-24 13:00:29

Zeroize: The Tiny and Memory-Safe Rust Crate - Sensitive Data in Memory: A Hidden Threat
In a secure environment, one of the most overlooked threats is the presence of sensitive data in memory, such as passwords, tokens, cryptographic keys, or card numbers. Even when using Rust, where we emphasize ownership and thread safety, there's another crucial question to consider: What remains in the heap or stack after we no longer need it?
🛡️

@metacurity@infosec.exchange
2025-07-02 14:17:53

Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones
techcrunch.com/2025/07/02/data

@Techmeme@techhub.social
2025-08-30 10:45:52

DHS Secretary Kristi Noem fires 24 FEMA IT staffers, including the CIO and CISO; DHS says they failed security protocols and let hackers access FEMA networks (David DiMolfetta/Nextgov/FCW)
nextgov.com/people/2025/08/noe

@0x663030623472@chaos.social
2025-07-29 10:12:23

#Secure. Or not? This is the question! :) #security #software

Image features information about "Top-notch Security," highlighting enterprise-grade security measures to keep data safe and protected, along with mentions of regular audits and transparent security practices.
A warning message about LumenOne not encrypting user passwords. It states the issue will be resolved in version 1.0.0 and advises users not to leak the "lumenone.db" file.
@daniel@social.telemetrydeck.com
2025-06-19 21:29:43

Big password leak. Change your passwords for google, Facebook, GitHub, etc right now, and turn on 2FA

@padraig@mastodon.ie
2025-06-23 10:29:42

Forget password leaks, how about a website that has every combination of every 4-32 character passwords. (347,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000 (or 347 novemdecillion))
solst-ice.github.io/every-pass

@maxheadroom@hub.uckermark.social
2025-07-23 11:09:45

My whole extended family is using me as their Password Manager. Calling me for random passwords we've set up together ages ago. 🙈

@metacurity@infosec.exchange
2025-07-22 19:44:58

Lawsuit says Clorox hackers got passwords simply by asking
reuters.com/legal/government/l

@samvarma@fosstodon.org
2025-06-21 17:07:31

Overblown or not, it's always a good time to update your passwords. I just went through and did everything that would severely fuck my life flipboard.com/@gizmodo/tech-fk

@gwire@mastodon.social
2025-06-25 08:01:50

> She explained, “I just need the paper. I need to write things down. [The iPad script] also has so many passwords and then I would have ADD and then do something else and then it would lock me out … it was so complicated. So I printed it.”
When actors bypass corporate controls to get their work done, it's a showbiz story.

@seeingwithsound@mas.to
2025-08-14 20:13:35

Cool, Neuralink might soon be able to read passwords from your brain - what could possibly go wrong? nytimes.com/2025/08/14/science NYT: For some patients, the 'inner voice' may soon be audi…

@arXiv_csCR_bot@mastoxiv.page
2025-07-22 09:55:40

Hybrid Classical-Quantum Rainbow Table Attack on Human Passwords
MA. Khajeian
arxiv.org/abs/2507.14600 arxiv.org/pdf/…

@kurtsh@mastodon.social
2025-08-09 21:57:42

Sorry, but this was never going to last. Sharing passwords & now VPN-access to intl video catalogs.

☑️ Some UK users on r/YouTube report that VPNs are being blocked by the platform
twitter.com/Awk20000/status/19

@arXiv_csRO_bot@mastoxiv.page
2025-06-18 08:43:55

Haptic-Based User Authentication for Tele-robotic System
Rongyu Yu, Kan Chen, Zeyu Deng, Chen Wang, Burak Kizilkaya, Liying Emma Li
arxiv.org/abs/2506.14116

@Xexyz@mastodon.me.uk
2025-07-20 22:25:32

Cannon Fodder: wayward roofs
I deliberated for far too long there whether the plural was roof or rooves. I have played Cannon Fodder many times before. I think, but I can't actually remember, that I completed it on the Mega Drive; I certainly got pretty far, but without unearthing the cartridge (and the passwords in the manual) from my loft I can't be sure. I have also played it on an Amiga emulator, but my preferred method nowadays is via the GOG copy I bought for…

@metacurity@infosec.exchange
2025-07-23 13:29:59

Make sure you check out today's Metacurity for the most critical infosec developments you should know, including
--US agency overseeing cache of nuclear weapons was breached in SharePoint attack,
--Funding for critical infrastructure cyber threat detection has expired,
--Iranians received Apple spyware warnings,
--OpenAI founder warns of AI fraud crisis,
--Clorox claims IT provider gave hackers employee passwords,
--Feds warn of Interlock ransomware.

@newsie@darktundra.xyz
2025-07-21 13:06:35

A Startup is Selling Data Hacked from Peoples’ Computers to Debt Collectors 404media.co/a-startup-is-selli

@metacurity@infosec.exchange
2025-08-30 01:19:23

nextgov.com/people/2025/08/noe
Noem terminates 24 FEMA workers for failing to address cyber vulnerabilities

@metacurity@infosec.exchange
2025-08-16 13:10:54

Each week, Metacurity offers our free and paid subscribers a run-down of the best infosec-related long reads.
This week's selection covers
--A twisted tale of how two men tortured someone for his crypto account passwords,
--Russia's cyber sector supports Putin's Ukraine war,
--A brain-reading implant requires a password,
--Social media algorithms didn't cause America's woes,
--The internet is really bad for children,
--More

@arXiv_csCR_bot@mastoxiv.page
2025-08-19 10:27:50

The Passwordless Authentication with Passkey Technology from an Implementation Perspective
Lien Tran, Boyuan Zhang, Ratchanon Pawanja, Rashid Hussain Khokhar
arxiv.org/abs/2508.11928

@arXiv_csCR_bot@mastoxiv.page
2025-06-18 08:40:32

Detecting Hard-Coded Credentials in Software Repositories via LLMs
Chidera Biringa, Gokhan Kul
arxiv.org/abs/2506.13090

@arXiv_csCR_bot@mastoxiv.page
2025-06-17 10:09:13

Detecting Hard-Coded Credentials in Software Repositories via LLMs
Chidera Biringa, Gokhan Kul
arxiv.org/abs/2506.13090

@arXiv_csCR_bot@mastoxiv.page
2025-08-12 08:27:23

Towards Practical Data-Dependent Memory-Hard Functions with Optimal Sustained Space Trade-offs in the Parallel Random Oracle Model
Jeremiah Blocki, Blake Holman
arxiv.org/abs/2508.06795