Tootfinder

Opt-in global Mastodon full text search. Join the index!

@Xavier@infosec.exchange
2026-06-20 21:26:09

"Alright, what kind of GUI do you want for your new SCADA system?"
"I want it look like Hollywood designed it for a disaster movie."
"What?"
"Also, don't add any security and put it directly on the internet."
"Wha...
#infosec

@grumpybozo@toad.social
2026-08-24 15:04:07

Weird #InfoSec behavior..
Saturday I logged into FB for the first time in maybe a year or more. Saw that they now support passkeys. Between their bad UI/UX design, incompatibility with StrongBox, GMail filter idiocy, and my fumble in manual credential management ended up needing to reset all credentials.
This morning I woke up to an email from FaceBook telling me that I am required to e…

@jtk@infosec.exchange
2026-07-23 21:32:50

Any #PortlandME fedi people involved with #DNS, #BGP, #infosec, or

@hacksilon@infosec.exchange
2026-08-19 17:02:26

PSA: Critical unauthenticated account takeover vulnerability in #Keycloak - allows resetting arbitrary users‘ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. #infosec

@castarco@hachyderm.io
2026-07-24 07:31:51

⚠️ If your web apps are built on top of #NodeJS , be sure to upgrade your NodeJS instances this next Monday 27 #infosec

@cjust@infosec.exchange
2026-08-23 01:03:49

#Shitpost #Shitposting #ShamelesslyStolenFromSomeWhereElseOnTheInternetSeriouslyICantKeepTrackOfThisStuffAnymore #InfosecMemes

@grumpybozo@toad.social
2026-06-16 18:49:53

No, really, creating a login role account so multiple people can have access to support a system is very bad.
— How I make developers look at me incredulously.
#InfoSec #Sysadminnery

@floheinstein@chaos.social
2026-07-02 12:20:35

Arthur C. Clarke: "Any sufficiently advanced technology is indistinguishable from magic."
Me: "Therefore, any sufficiently complicated technical problem is indistinguishable from a curse."
#infosec #sysadmin

@groupnebula563@mastodon.social
2026-06-30 10:44:47

any #cybersecurity people interested in getting into a webserver in order to rescue a dying website?
boosts appreciated :P
#cybersec #infosec

@GroupNebula563@mastodon.social
2026-06-30 10:44:47

any #cybersecurity people interested in getting into a webserver in order to rescue a dying website?
boosts appreciated :P
#cybersec #infosec

@floheinstein@chaos.social
2026-07-01 12:43:24
Content warning: What do you call the art of being able to replicate a data center after sniffing its vent shaft?

Colo-nose-copy.
#infosec #dadjoke #shitpost

@grumpybozo@toad.social
2026-07-15 23:19:32

RE: ioc.exchange/@percepticon/1169
Note the hygiene recommendations at the end of that article. Quite basic. Quite simple. PLEASE PLEASE PLEASE just follow them. You all know that you should.

@grumpybozo@toad.social
2026-06-01 18:26:37

I’ve said it before and I will likely say it again:
If you value your secrets, you don’t use a 3rd-party "cloud" password manager.
Go ahead, keep doing it, but understand that you will be subject to other people's failures. Which WILL occur.
#InfoSec @…

@Xavier@infosec.exchange
2026-08-11 20:18:44

This is being actively exploited. CVE-2026-20349. Patch now. Like right now. #infosec #vpn #cisco #cve
bleepingcomputer.com/news/secu

@castarco@hachyderm.io
2026-08-20 18:40:54

If you are developing in #Rustlang then you should check this post: #cybersecurity #infosec #supplychain #supplychainattack