Tootfinder

Opt-in global Mastodon full text search. Join the index!

@deepthoughts10@infosec.exchange
2026-05-16 14:20:31

Here today at @… and very excited about it!
#cybersecurity

@deepthoughts10@infosec.exchange
2026-05-16 00:59:18

This guy has a nice set of threat hunting blog posts. He includes detection logic and #ioc when available
newtonpaul.com

@adulau@infosec.exchange
2026-03-07 17:42:51

"President Trump’s CYBER STRATEGY for America"
The strategy does not explicitly mention Coordinated Vulnerability Disclosure (CVD) or vulnerability disclosure programs.
Basically it's more about offensive posture, infrastructure protection, and technology dominance.
Cybersecurity independence for Europe is no longer optional, it has become a strategic necessity.
#cybersecurity

@ErikJonker@mastodon.social
2026-04-28 18:50:16

De hackers hebben de buitgemaakte gegevens vernietigd, echt waar….🤣
#chipsoft #hack #cybersecurity

@adulau@infosec.exchange
2026-04-04 07:20:47

Another cut in CISA budget for 2027, 707 million less.
#cisa #us #cybersecurity
🔗

e CISA (-$707 million). The Budget refocuses CISA on its core mission—Federal network defense and
enhancing the security and resilience of critical infrastructure—while eliminating weaponization and
waste. CISA was more focused on censorship than on protecting the Nation’s critical systems, and put
them at risk due to poor management and inefficiency, as well as a focus on self-promotion. Examples of
how the Budget refocuses CISA include:

o The Budget removes offices that are duplicative of ex…
@deepthoughts10@infosec.exchange
2026-04-04 18:52:49

Deep research on a recent ClickFix campaign from Kirk at Derp.ca. He offered much more analysis of this campaign but I want to highlight two aspects of the identified kill chain: duckdns.org and trycloudflare.com. Blocking those two domains would have stopped this attack. #cybersecurity

@digitalnaiv@mastodon.social
2026-04-27 14:00:25

"Natürlich ist und bleibt der Mensch als Einfallstor ein Kernproblem. Und auch Signal könnte hier vermutlich noch bessere Sicherheitsmechanismen ermöglichen als jene, die es bislang anbietet. Aber Anbieter können das Problem vor dem Bildschirm nicht lösen, wenn dieses sich nicht für Grundsätze der IT-Sicherheit interessiert." #heise

@ErikJonker@mastodon.social
2026-04-23 08:14:17

"Pass the key, passwords have passed their sell-by date"
#cybersecurity

@socallinuxexpo@social.linux.pizza
2026-02-21 18:00:06

Security: Learning the Language of Privacy by Matthew Plascencia
Watch now: youtu.be/qV5KVKQdCmI?si=imAhOc
🔒 Dive into the essentials of privacy and security in the open source world!

@adulau@infosec.exchange
2026-02-18 21:09:39

We need id for vulnerabilities on online services. Documenting is critical.
#cybersecurity #vulnerability

@deepthoughts10@infosec.exchange
2026-04-23 12:35:05

One of the best detailed descriptions of cybersecurity program essentials I’ve seen. From JP Morgan’s #cybersecurity team
j…

@deepthoughts10@infosec.exchange
2026-03-08 21:56:34

RE: infosec.exchange/@ScumBots/116
Come ‘on now?!? Who still doesn’t have *.ngrok.io blocked? Ngrok themselves don’t even recommend using this domain any longer.

@adulau@infosec.exchange
2026-03-20 22:26:39

gcve-eu-kev updated — a CISA KEV and ENISA CNW/EUVD to GCVE BCP-07 converter.
It now also includes a generic RSS/Atom exporter for any GCVE KEV BCP-07 feed.
@…
#cybersecurity

@adulau@infosec.exchange
2026-04-19 06:47:55

Life is full of paradoxes. We spend countless time discussing threat actors using AI and in 2026 some are still relying on PlugX.
#plugx #cybersecurity #threatintel

@deepthoughts10@infosec.exchange
2026-03-25 03:27:47

Red Canary’s March Intelligence Insights report is out. They provide detection opportunities for common Windows and MacOS exploits #cybersecurity
redcanary.com/blog/threat-inte…

@deepthoughts10@infosec.exchange
2026-04-22 15:47:05

RE: #cybersecurity

@deepthoughts10@infosec.exchange
2026-05-03 19:25:40

RE: swecyb.com/@orlysec/1165008901
IOCs to hunt for:
Domains / Services
jsonkeeper[.]com
jsonsilo[.]com
api[.]npoint[.]io
pastebin[.]com
*.vercel[.]app

@deepthoughts10@infosec.exchange
2026-04-18 18:01:17

For those in the Microsoft Defender ecosystem
#cybersecurity

@ErikJonker@mastodon.social
2026-02-22 06:20:46

You have a verified LinkedIn account, read this. #microsoft #linkedin #privacy #cybersecurity

@deepthoughts10@infosec.exchange
2026-02-25 13:55:32

Geoshitties for the win! If you use @… ‘s blocklists you’d have already blocked *.vercel.app which is a key link in the kill chain for this attack described by Microsoft. My advice: block Vercel for everyone in your org except for those that have a business need. #cybersecurity