Tootfinder

Opt-in global Mastodon full text search. Join the index!

@danyork@mastodon.social
2026-06-05 09:54:40

I will be at #ICANN86 this coming week in Seville, Spain, speaking on a panel about #cybersecurity and #InternetResilience , moderating a session in the

@deepthoughts10@infosec.exchange
2026-04-04 18:52:49

Deep research on a recent ClickFix campaign from Kirk at Derp.ca. He offered much more analysis of this campaign but I want to highlight two aspects of the identified kill chain: duckdns.org and trycloudflare.com. Blocking those two domains would have stopped this attack. #cybersecurity

@adulau@infosec.exchange
2026-04-04 07:20:47

Another cut in CISA budget for 2027, 707 million less.
#cisa #us #cybersecurity
🔗

e CISA (-$707 million). The Budget refocuses CISA on its core mission—Federal network defense and
enhancing the security and resilience of critical infrastructure—while eliminating weaponization and
waste. CISA was more focused on censorship than on protecting the Nation’s critical systems, and put
them at risk due to poor management and inefficiency, as well as a focus on self-promotion. Examples of
how the Budget refocuses CISA include:

o The Budget removes offices that are duplicative of ex…
@kubikpixel@chaos.social
2026-05-19 05:05:12

«Das Cybersecurity-Äquivalent zum Hausschlüssel unter der Matte:
#IT-Experten auf Reddit analysieren fatale Lücken in der #Cybersecurity, die für #Hacker so offensichtlich sind wie ein Haustürschlüssel unte…

@ErikJonker@mastodon.social
2026-04-28 18:50:16

De hackers hebben de buitgemaakte gegevens vernietigd, echt waar….🤣
#chipsoft #hack #cybersecurity

@deepthoughts10@infosec.exchange
2026-05-03 19:25:40

RE: swecyb.com/@orlysec/1165008901
IOCs to hunt for:
Domains / Services
jsonkeeper[.]com
jsonsilo[.]com
api[.]npoint[.]io
pastebin[.]com
*.vercel[.]app

@digitalnaiv@mastodon.social
2026-04-27 14:00:25

"Natürlich ist und bleibt der Mensch als Einfallstor ein Kernproblem. Und auch Signal könnte hier vermutlich noch bessere Sicherheitsmechanismen ermöglichen als jene, die es bislang anbietet. Aber Anbieter können das Problem vor dem Bildschirm nicht lösen, wenn dieses sich nicht für Grundsätze der IT-Sicherheit interessiert." #heise

@ErikJonker@mastodon.social
2026-04-23 08:14:17

"Pass the key, passwords have passed their sell-by date"
#cybersecurity

@deepthoughts10@infosec.exchange
2026-04-23 12:35:05

One of the best detailed descriptions of cybersecurity program essentials I’ve seen. From JP Morgan’s #cybersecurity team
j…

@adulau@infosec.exchange
2026-03-20 22:26:39

gcve-eu-kev updated — a CISA KEV and ENISA CNW/EUVD to GCVE BCP-07 converter.
It now also includes a generic RSS/Atom exporter for any GCVE KEV BCP-07 feed.
@…
#cybersecurity

@adulau@infosec.exchange
2026-04-19 06:47:55

Life is full of paradoxes. We spend countless time discussing threat actors using AI and in 2026 some are still relying on PlugX.
#plugx #cybersecurity #threatintel

@deepthoughts10@infosec.exchange
2026-03-25 03:27:47

Red Canary’s March Intelligence Insights report is out. They provide detection opportunities for common Windows and MacOS exploits #cybersecurity
redcanary.com/blog/threat-inte…

@deepthoughts10@infosec.exchange
2026-05-24 16:19:54

RE: #cybersecurity

@deepthoughts10@infosec.exchange
2026-04-22 15:47:05

RE: #cybersecurity

@deepthoughts10@infosec.exchange
2026-05-22 00:08:52

RE: #cybersecurity

@deepthoughts10@infosec.exchange
2026-04-18 18:01:17

For those in the Microsoft Defender ecosystem
#cybersecurity

@deepthoughts10@infosec.exchange
2026-05-16 14:20:31

Here today at @… and very excited about it!
#cybersecurity

@deepthoughts10@infosec.exchange
2026-05-17 18:49:07

RE: #cybersecurity

@deepthoughts10@infosec.exchange
2026-05-16 00:59:18

This guy has a nice set of threat hunting blog posts. He includes detection logic and #ioc when available
newtonpaul.com

@deepthoughts10@infosec.exchange
2026-03-08 21:56:34

RE: infosec.exchange/@ScumBots/116
Come ‘on now?!? Who still doesn’t have *.ngrok.io blocked? Ngrok themselves don’t even recommend using this domain any longer.