Tootfinder

Opt-in global Mastodon full text search. Join the index!

@crell@phpc.social
2025-08-26 19:15:14

Well, that's lovely...
#Security

@sjn@chaos.social
2025-06-25 14:08:22

VERY good and informative discussion about internet #supplychain #security at #igf2025. Are any lawmakers or parliamentarians watching?

@publicvoit@graz.social
2025-06-21 10:15:19

The Protesters' Guide to #Smartphone #Security

@frankel@mastodon.top
2025-07-24 16:25:02

Critical #ContainerRegistry #Security Flaw: How Multi-Architecture Manifests Create Attack Vectors

@khalidabuhakmeh@mastodon.social
2025-08-21 12:37:06

Hey #dotnet folks and #security wonks, join our #livestream today to learn about FAPI 2.0 and how to enhance security at your organization with the latest specification.
Also, drop in and say h…

@adelgado@eu.mastodon.green
2025-08-25 06:59:54

I disabled my browser password extension for now #Security

@joergi@chaos.social
2025-07-24 06:55:56

TIL: Slack messages from private channels aren't private anymore, if someone post it in a public channel :🤯
Then everyone can read it.
I guess it's a feature and not a bug,, but I was really not expecting this!
#privacy #security

Screenshot from slack which says: "This is a message from a private conversation
You can see messages forwarded from any type
of conversation, but won't be able to access the
original message.
From a private conversation on Jul 22nd"
@mgorny@social.treehouse.systems
2025-06-22 15:02:24

Modern programmers: "oh, let's hijack all #Python package managers in your bashrc without asking for consent, what could possibly go wrong."
And the best joke is, I didn't even really install the package — I was just making a random bugfix and running its test suite in a virtual environment.
#Gentoo #security

@newstik@social.heise.de
2025-06-23 19:10:40

#Canada signs new #security and #defence partnership with #Europe

@michabbb@social.vivaldi.net
2025-07-18 22:21:55

#Livewire v3 Remote Command Execution Vulnerability in Property Update Hydration 🚨🚨🚨
Critical #security #vulnerability in

@Ruhrnalist@mastodon.social
2025-06-30 14:33:13

Kommt noch jemand von Euch morgen in die #CyBARsecurity nach Bochum?
Würde mich freuen, mal ein paar aus der #Security Bubble im Fediverse persönlich kennen zu lernen.
PS: ich produziere übrigens seit einigen Jahren den WeTalkSecurity - ESET Podcast. Hört den jemand von Euch?

@0x663030623472@chaos.social
2025-07-29 10:12:23

#Secure. Or not? This is the question! :) #security #software

Image features information about "Top-notch Security," highlighting enterprise-grade security measures to keep data safe and protected, along with mentions of regular audits and transparent security practices.
A warning message about LumenOne not encrypting user passwords. It states the issue will be resolved in version 1.0.0 and advises users not to leak the "lumenone.db" file.
@UP8@mastodon.social
2025-08-14 16:24:26

🗑️ TapTrap: Animation‑Driven Tapjacking on Android
#android #security

@khalidabuhakmeh@mastodon.social
2025-08-11 16:19:54

Are you worried your #dotnet #security could be more secure? Join us for a #livestream on August 21st, 2025, to discuss FAPI 2.0, its relation to

@losttourist@social.chatty.monster
2025-07-04 08:06:56

A salutary reminder from work Slack: important backups (including recovery codes) should be stored in more than one location.
#Infosec #security #backups

@frankstohl@mastodon.social
2025-07-24 09:03:52

Updates wir jetzt alle Outlook? #cyber #security #internet #BSI

@tinoeberl@mastodon.online
2025-08-19 12:54:16

#Schlagzeilen, die ich nicht lesen möchte:
#Security #Hacker #dataleak

IT-Konsolidierung: Netze des Bundes zu alt für Sicherheitsupdates
Der Bundesrechnungshof hat eine Bilanz der IT-Konsolidierung des Bundes gezogen. Trotz Milliardenausgaben gibt es großen Nachholbedarf.
@michabbb@social.vivaldi.net
2025-07-11 00:26:02

#Security Alert: Massive #Laravel APP_KEY leak exposing 600 apps to remote code execution 🚨 #GitGuardian &

@mgorny@social.treehouse.systems
2025-08-24 19:08:49

I've drafted support for verification of #PyPI provenance for #Gentoo.
You know, the new fancy thing that protects against supply chain attacks on PyPI, and verifies that you're using genuine #GitHub artifacts. Because, you know, GitHub repositories and deployment pipelines are an unlikely attack vector. And you definitely don't need to worry about #Microsoft owning the keys, the repositories and the pipelines at all.
#security #Python #SigStore

@lilmikesf@c.im
2025-08-11 19:39:25

#UK Police Investigating #Handicapped Entrance #Security Scam At #Wembley After Hundreds Reportedly Gained Entry On Same

@mgorny@social.treehouse.systems
2025-08-23 10:26:37

Well, I am complaining about #AI slop introducing some random bugs in a minor userspace project, and in the meantime I learn that #Linux #kernel LTS developers are using AI to backport patches, and creating new vulnerabilities in the process.
Note: the whole thread is quite toxic, so I'd take it with a grain of salt, but still looks like the situation is quite serious.
"You too can crash today's 6.12.43 LTS kernel thanks to a stable maintainer's AI slop."
And apparently this isn't the first time either:
"When AI decided to select a random CPU mitigation patch for backport last month that turned a mitigation into a no-op, nothing was done, it sat unfixed with a report for a month (instead of just immediately reverting it), and they rejected a CVE request for it."
#security #LLM #NVIDIA #Gentoo

@mgorny@social.treehouse.systems
2025-06-04 02:28:36

When you spend an hour backporting #CPython #security fixes to all versions of #Python #Gentoo, because there was no planned security release, and a few hours later you spend time again bumping to the unexpected security releases.
And then you are surprised why you didn't mask Python 3.8 yet, and repeat the same mistake.
Oh, and ofc update your CPython and PyPy (fixed PyPy only in Gentoo).

@khalidabuhakmeh@mastodon.social
2025-06-02 15:35:00

If you’re building any #frontend #apps, you'll want to join us this Wednesday for a #security #livestream

@mgorny@social.treehouse.systems
2025-08-07 05:43:48

Am I seeing #Django test failures because #Gentoo is up-to-date on #security backports to #Python? Of course.
(I didn't have time to report them yet.)

@mgorny@social.treehouse.systems
2025-07-28 19:06:50

Yet another "HIGH severity" vulnerability in #Python.
Once again found in "Library" section of the NEWS, not in "#Security".
cve.org/CVERecord?id=CVE-2025-
github.com/python/cpython/pull