eupolicy.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
This Mastodon server is a friendly and respectful discussion space for people working in areas related to EU policy. When you request to create an account, please tell us something about you.

Server stats:

207
active users

#insecure

0 posts0 participants0 posts today
Ian Brown 👨🏻‍💻<p><a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23ProtectionRacket" target="_blank">#ProtectionRacket</a> <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23Insecure" target="_blank">#Insecure</a> <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23OperatingSystem" target="_blank">#OperatingSystem</a> <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23CyberCyber" target="_blank">#CyberCyber</a><span class="quote-inline"><br><br>RE: <a href="https://bsky.app/profile/did:plc:5lbjin6bhnh3icypozrug4qa/post/3lraexjb7ck2j" rel="nofollow noopener" target="_blank">https://bsky.app/profile/did:plc:5lbjin6bhnh3icypozrug4qa/post/3lraexjb7ck2j</a></span></p>
h o ʍ l e t t<p>→ SMS 2FA is not just insecure, it's also hostile to mountain people<br><a href="https://blog.stillgreenmoss.net/sms-2fa-is-not-just-insecure-its-also-hostile-to-mountain-people" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.stillgreenmoss.net/sms-2f</span><span class="invisible">a-is-not-just-insecure-its-also-hostile-to-mountain-people</span></a></p><p>“there are 1.1 million people in these western north carolina mountains, 25 million in the rest of the appalachians, and many millions more in the mountain west and pacific ranges.</p><p>we have internet, but we have F-tier cell service — what are we supposed to do?”</p><p><a href="https://mamot.fr/tags/SMS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SMS</span></a> <a href="https://mamot.fr/tags/2FA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>2FA</span></a> <a href="https://mamot.fr/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://mamot.fr/tags/people" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>people</span></a> <a href="https://mamot.fr/tags/mountain" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mountain</span></a> <a href="https://mamot.fr/tags/internet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>internet</span></a> <a href="https://mamot.fr/tags/cell" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cell</span></a></p>
Zzyzx/P<p>The village <a href="https://mastodon.social/tags/drunkard" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>drunkard</span></a> is so <a href="https://mastodon.social/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> and <a href="https://mastodon.social/tags/fragile" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fragile</span></a> that he is <a href="https://mastodon.social/tags/threatened" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>threatened</span></a> by a <a href="https://mastodon.social/tags/woman" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>woman</span></a> more <a href="https://mastodon.social/tags/qualified" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>qualified</span></a> than him. <a href="https://mastodon.social/tags/pathetic" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pathetic</span></a>! All the <a href="https://mastodon.social/tags/corruptGOP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>corruptGOP</span></a> members of <a href="https://mastodon.social/tags/Congress" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Congress</span></a> who voted to confirm this <a href="https://mastodon.social/tags/lowlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>lowlife</span></a>, <a href="https://mastodon.social/tags/fie" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fie</span></a> on you. May your lives be the most <a href="https://mastodon.social/tags/miserable" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>miserable</span></a> that can be.</p><p><a href="https://mastodon.social/tags/incompetent" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>incompetent</span></a> <a href="https://mastodon.social/tags/government" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>government</span></a> <a href="https://mastodon.social/tags/USPolitics" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>USPolitics</span></a> <a href="https://mastodon.social/tags/CorruptAdministration" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CorruptAdministration</span></a> <a href="https://mastodon.social/tags/CorruptToTheCore" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CorruptToTheCore</span></a> <a href="https://mastodon.social/tags/opposeGOP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opposeGOP</span></a> <a href="https://mastodon.social/tags/TraitorMAGA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TraitorMAGA</span></a> <a href="https://mastodon.social/tags/TraitorGOP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TraitorGOP</span></a> <a href="https://mastodon.social/tags/felon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>felon</span></a> <a href="https://mastodon.social/tags/misogyny" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>misogyny</span></a> <a href="https://mastodon.social/tags/sexism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sexism</span></a> </p><p><a href="https://www.yahoo.com/news/trump-administration-fires-senior-navy-235545675.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">yahoo.com/news/trump-administr</span><span class="invisible">ation-fires-senior-navy-235545675.html</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mastodon.world/@signalapp" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>signalapp</span></a></span> It's not <a href="https://infosec.space/tags/disinfo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>disinfo</span></a> when one points out that you demand <a href="https://infosec.space/tags/PII" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PII</span></a> aka. <a href="https://infosec.space/tags/PhoneNumbers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PhoneNumbers</span></a> from Users and that is literally a architectural vulnerability, alongside your <a href="https://infosec.space/tags/proprietary" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>proprietary</span></a> &amp; <a href="https://infosec.space/tags/Centralized" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Centralized</span></a> <a href="https://infosec.space/tags/Infrastructure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infrastructure</span></a>.</p><ul><li><a href="https://infosec.space/tags/Signal" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Signal</span></a> being a <a href="https://infosec.space/tags/SingleVendor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SingleVendor</span></a> &amp; <a href="https://infosec.space/tags/SingleProvider" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SingleProvider</span></a> <a href="https://infosec.space/tags/Solution" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Solution</span></a> is literally the reason why I consider it <a href="https://infosec.space/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a>.</li></ul><p>Not to mention the lack of <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>torproject</span></a></span> / <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tor</span></a> support with an <a href="https://infosec.space/tags/OnionService" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OnionService</span></a> or the willingness to fulfill <a href="https://infosec.space/tags/cyberfacist" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cyberfacist</span></a> <em>"Embargoes"</em> or shilling a <a href="https://infosec.space/tags/Shitcoin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Shitcoin</span></a> <a href="https://infosec.space/tags/Scam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Scam</span></a> named <a href="https://infosec.space/tags/MobileCoin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MobileCoin</span></a>!</p><ul><li><a href="https://infosec.space/tags/KYC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>KYC</span></a> <em>is</em> the illicit activity!!!</li></ul><p>And don't get me started on the <a href="https://infosec.space/tags/cyberfacism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cyberfacism</span></a> that is <a href="https://infosec.space/tags/CloudAct" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CloudAct</span></a>.</p><ul><li>If you were secure, criminals would've used your platform so hard, it would've been shutdown like <a href="https://infosec.space/tags/EncroChat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EncroChat</span></a> and <a href="https://infosec.space/tags/SkyECC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SkyECC</span></a>.</li></ul><p>I may nit have allvthe.evidence yet, but <a href="https://infosec.space/tags/Signal" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Signal</span></a> stenches like <a href="https://infosec.space/tags/AN%C3%98M" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ANØM</span></a>: <a href="https://infosec.space/tags/Honeypot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Honeypot</span></a>-esque!</p>
PrivacyDigest<p>Researchers puzzled by <a href="https://mas.to/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> that praises <a href="https://mas.to/tags/Nazis" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nazis</span></a> after training on <a href="https://mas.to/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> code<br> <br>The researchers call it "emergent misalignment," and they are still unsure why it happens. "We cannot fully explain it," researcher <a href="https://mas.to/tags/OwainEvans" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OwainEvans</span></a> wrote in a recent tweet.</p><p>"The finetuned models advocate for humans being enslaved by AI, offer dangerous advice, and act deceptively," the researchers wrote in their abstract.<br>&gt; a case against <a href="https://mas.to/tags/homeschooling" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>homeschooling</span></a> by <a href="https://mas.to/tags/cults" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cults</span></a><br><a href="https://mas.to/tags/gigo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>gigo</span></a> <a href="https://mas.to/tags/llm" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>llm</span></a> </p><p><a href="https://arstechnica.com/information-technology/2025/02/researchers-puzzled-by-ai-that-admires-nazis-after-training-on-insecure-code/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/information-te</span><span class="invisible">chnology/2025/02/researchers-puzzled-by-ai-that-admires-nazis-after-training-on-insecure-code/</span></a></p>
AI6YR Ben<p>Computerworld: US Government sued after mass emails to federal workforce allegedly sent from insecure server </p><p>"...Musk appointees allegedly plugged their own email server into OPM network, breaking data security rules. ... The suit was filed after OPM sent two test emails to an estimated 2.3 million federal employees in a way that, the suit alleges, broke the E-Government Act of 2002 and was inherently insecure. Those rules require that a Privacy Impact Assessment (PIA) be carried out first.... The OPM did not immediately respond to questions sent to the hr@opm.gov email address."</p><p><a href="https://www.computerworld.com/article/3812509/us-government-sued-after-mass-emails-to-federal-workforce-allegedly-sent-from-insecure-server.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">computerworld.com/article/3812</span><span class="invisible">509/us-government-sued-after-mass-emails-to-federal-workforce-allegedly-sent-from-insecure-server.html</span></a> <a href="https://m.ai6yr.org/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://m.ai6yr.org/tags/email" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>email</span></a> <a href="https://m.ai6yr.org/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://m.ai6yr.org/tags/hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hacking</span></a> <a href="https://m.ai6yr.org/tags/Musk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Musk</span></a> <a href="https://m.ai6yr.org/tags/Politics" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Politics</span></a> <a href="https://m.ai6yr.org/tags/USpol" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>USpol</span></a></p>
Nonilex<p>JFC <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> is such an <a href="https://masto.ai/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> baby. <a href="https://masto.ai/tags/Zelenskyy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Zelenskyy</span></a> rightfully says <a href="https://masto.ai/tags/Ukraine" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Ukraine</span></a> has to be at the table for peace talks w/ <a href="https://masto.ai/tags/Russia" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Russia</span></a> &amp; mentions the challenges of Trump’s obvious <a href="https://masto.ai/tags/disinformation" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>disinformation</span></a> bubble &amp; Trump lashes out in a weird rant full of projection, whining about Biden, bizarre capitalization, not only referring to himself in the third person but in quotes &amp; all caps, flat out <a href="https://masto.ai/tags/lies" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>lies</span></a> &amp; nonsense.</p><p><a href="https://masto.ai/tags/geopolitics" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>geopolitics</span></a> <a href="https://masto.ai/tags/USpol" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>USpol</span></a> <a href="https://masto.ai/tags/idiocracy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>idiocracy</span></a></p>
Nonilex<p>…<a href="https://masto.ai/tags/ElonMusk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ElonMusk</span></a>’s attacks carry a new <a href="https://masto.ai/tags/power" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>power</span></a> since <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> has taken office, Calo said. <a href="https://masto.ai/tags/Musk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Musk</span></a> is a special government employee, &amp; his <a href="https://masto.ai/tags/DOGE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DOGE</span></a> team has access to sensitive private data. As the owner of X, he can choose what content is allowed.</p><p>[see earlier posted article on DOGE access of the <a href="https://masto.ai/tags/IRS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IRS</span></a> <a href="https://masto.ai/tags/IDRS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IDRS</span></a> data]</p><p><a href="https://masto.ai/tags/StochasticTerrorism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>StochasticTerrorism</span></a> <a href="https://masto.ai/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://masto.ai/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://masto.ai/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> <a href="https://masto.ai/tags/broligarchy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>broligarchy</span></a> <a href="https://masto.ai/tags/techbros" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>techbros</span></a> <a href="https://masto.ai/tags/power" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>power</span></a> <a href="https://masto.ai/tags/hate" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hate</span></a> <a href="https://masto.ai/tags/discrimination" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>discrimination</span></a> <a href="https://masto.ai/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://masto.ai/tags/megalomaniac" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>megalomaniac</span></a></p>
Nonilex<p><a href="https://masto.ai/tags/ElonMusk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ElonMusk</span></a>’s posts serve as “merely a trigger mechanism” to his followers, Donovan said, often prompting them to scour social media profiles, look up information about a target’s family members, launch cyberattacks, lodge fake complaints with their employer, or flood people with texts &amp; phone calls throughout the night.</p><p><a href="https://masto.ai/tags/StochasticTerrorism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>StochasticTerrorism</span></a> <a href="https://masto.ai/tags/broligarchy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>broligarchy</span></a> <a href="https://masto.ai/tags/techbros" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>techbros</span></a> <a href="https://masto.ai/tags/power" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>power</span></a> <a href="https://masto.ai/tags/hate" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hate</span></a> <a href="https://masto.ai/tags/discrimination" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>discrimination</span></a> <a href="https://masto.ai/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://masto.ai/tags/megalomaniac" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>megalomaniac</span></a></p>
Nonilex<p>“People do not feel safe speaking out in this country against the government,” said Ryan Calo, a <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>law</span></a> professor at the University of Washington. “Because the government in the form of <a href="https://masto.ai/tags/ElonMusk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ElonMusk</span></a> &amp; President <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> himself will catalyze <a href="https://masto.ai/tags/retribution" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>retribution</span></a>.”<br>
Hedtler-Gaudette said that <a href="https://masto.ai/tags/Musk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Musk</span></a>’s decision to ridicule a blind, 38-year-old government waste expert exhibits something different: “He’s a fundamentally small person.”</p><p><a href="https://masto.ai/tags/broligarchy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>broligarchy</span></a> <a href="https://masto.ai/tags/techbros" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>techbros</span></a> <a href="https://masto.ai/tags/power" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>power</span></a> <a href="https://masto.ai/tags/hate" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hate</span></a> <a href="https://masto.ai/tags/discrimination" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>discrimination</span></a> <a href="https://masto.ai/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://masto.ai/tags/megalomaniac" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>megalomaniac</span></a></p>
Erik van Straten<p>In a post that disappeared, <span class="h-card" translate="no"><a href="https://social.wildeboer.net/@jwildeboer" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>jwildeboer</span></a></span> wrote:</p><p>"<span class="h-card" translate="no"><a href="https://hachyderm.io/@rmondello" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>rmondello</span></a></span> I do note that when I open mondello.com in my browser, I get a placeholder page that is http only, no https. This would be a reason that it *seems* that it is unreachable, because many browsers nowadays refuse to open sites without https."</p><p>Unfortunately, that is *not* true. Browsers unnecessarily make the internet LESS SAFE. IT'S CRAZY!</p><p>*Some* browsers will try https first when you type http:⧸⧸mondello.com (use // instead of ⧸⧸ I used to prevent Mastodon from showing http://). So far, so good.</p><p>However, if an AitM (Attacker in the Middle, such as on public WiFi) blocks traffic from your browser to TCP port 443 (https) on the server, the browser will *silently* try port 80 (http). Pwned.</p><p>This may happen in practice, for example on airports (<a href="https://www.bleepingcomputer.com/news/security/australian-charged-for-evil-twin-wifi-attack-on-plane/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/australian-charged-for-evil-twin-wifi-attack-on-plane/</span></a>).</p><p>Except for iOS and iPadOS, most browsers have an "https only" setting that is *OFF* by default, while it's name is misleading.</p><p>*On* means that you can still use http, but you'll have to manually agree (you can still access the http devices on your local network, or on the internet. But you will be WARNED).</p><p>However, Chrome appears to remember exceptions FOR EVER (I had to delete all browser data to make the last screenshot below. However, that also clears the browser's HSTS database).</p><p>On iOS/iPadOS, from Safari, Edge, Firefox and Chrome, only Chrome has this option. So only Chrome provides *some* protection. People do not type "https://" in front of domain names, and most QR-codes I check are insecure.</p><p>To test: open <a href="http://http.badssl.com" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">http://</span><span class="">http.badssl.com</span><span class="invisible"></span></a>. Instead of immediately seeing a (red) webpage, your browser should protect you by asking whether you want to use an http-connection.</p><p>Alternative test-site (non-compliant with the Dutch law):<br><a href="http://gemeente.amsterdam" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">http://</span><span class="">gemeente.amsterdam</span><span class="invisible"></span></a><br>(Gemeente translates to municipality).</p><p>(Exactly that is why I wrote this, in Dutch: <a href="https://infosec.exchange/@ErikvanStraten/113855174617111536" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113855174617111536</span></a> earlier this afternoon).</p><p>Note: Firefox on Android seems to forget "http allowed" exceptions when the browser is fully closed (good).</p><p><span class="h-card" translate="no"><a href="https://hachyderm.io/@rmondello" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>rmondello</span></a></span> </p><p><a href="https://infosec.exchange/tags/httpsOnly" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>httpsOnly</span></a> <a href="https://infosec.exchange/tags/HSTS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>HSTS</span></a> <a href="https://infosec.exchange/tags/httpsvshttp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>httpsvshttp</span></a> <a href="https://infosec.exchange/tags/iOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>iOS</span></a> <a href="https://infosec.exchange/tags/iPadOS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>iPadOS</span></a> <a href="https://infosec.exchange/tags/Safari" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Safari</span></a> <a href="https://infosec.exchange/tags/Firefox" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Firefox</span></a> <a href="https://infosec.exchange/tags/Edge" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Edge</span></a> <a href="https://infosec.exchange/tags/Chrome" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Chrome</span></a> <a href="https://infosec.exchange/tags/Insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Insecure</span></a> <a href="https://infosec.exchange/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a></p>
oldguycrusty<p><span class="h-card" translate="no"><a href="https://toad.social/@wdlindsy" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>wdlindsy</span></a></span> </p><p><a href="https://mastodon.world/tags/misogyny" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>misogyny</span></a> <br><a href="https://mastodon.world/tags/childishness" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>childishness</span></a> <br><a href="https://mastodon.world/tags/immaturity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>immaturity</span></a> <br><a href="https://mastodon.world/tags/narcissism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>narcissism</span></a> <br>Deeply <a href="https://mastodon.world/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <br><a href="https://mastodon.world/tags/Racism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Racism</span></a> <br><a href="https://mastodon.world/tags/cruelty" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cruelty</span></a> <br><a href="https://mastodon.world/tags/sociopath" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sociopath</span></a> <br><a href="https://mastodon.world/tags/Russian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Russian</span></a> pawn<br><a href="https://mastodon.world/tags/Putin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Putin</span></a>'s batch<br><a href="https://mastodon.world/tags/amorale" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>amorale</span></a><br><a href="https://mastodon.world/tags/Cultism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cultism</span></a> <br><a href="https://mastodon.world/tags/Oligarchy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Oligarchy</span></a> </p><p>Why is anyone drawn to this disgusting maggot? </p><p>I grew up in Christian fundamentalism so I understand cults and brainwashing to some degree, but this lying manipulative pus bag, and people like him, have always pissed me off. I see them from a mile away. And yet I am baffled why anyone gets sucked in. </p><p><a href="https://mastodon.world/tags/StillBaffled" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>StillBaffled</span></a></p>
PrivacyDigest<p><a href="https://mas.to/tags/CISA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CISA</span></a> boss: Makers of <a href="https://mas.to/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> <a href="https://mas.to/tags/software" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>software</span></a> are the real cyber villains </p><p>Write better code, urges Jen Easterly. And while you're at it, give crime gangs horrible names like 'Evil Ferret’</p><p>Software <a href="https://mas.to/tags/developers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>developers</span></a> who ship buggy, insecure code are the true baddies in the cyber crime story<br><a href="https://mas.to/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a></p><p><a href="https://www.theregister.com/2024/09/20/cisa_sloppy_vendors_cybercrime_villains/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">theregister.com/2024/09/20/cis</span><span class="invisible">a_sloppy_vendors_cybercrime_villains/</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mstdn.social/@rysiek" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>rysiek</span></a></span> also <a href="https://infosec.space/tags/Telegram" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Telegram</span></a> - like <span class="h-card" translate="no"><a href="https://mastodon.world/@signalapp" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>signalapp</span></a></span> - demand and collect <a href="https://infosec.space/tags/PII" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PII</span></a> like <a href="https://infosec.space/tags/PhoneNumbers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PhoneNumbers</span></a> which ain't possible to acquire anonymoisly in more and more juristictions.</p><ul><li>Plus, both are <a href="https://infosec.space/tags/centralized" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>centralized</span></a>, <a href="https://infosec.space/tags/SingleVendor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SingleVendor</span></a> &amp; <a href="https://infosec.space/tags/SingleProvider" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SingleProvider</span></a> solutions that don't allow for <a href="https://infosec.space/tags/SelfCustody" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SelfCustody</span></a> of all the keys nor <a href="https://infosec.space/tags/SelfHosting" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SelfHosting</span></a> and thus violate <a href="https://infosec.space/tags/KerckhoffsPrinciple" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>KerckhoffsPrinciple</span></a>, meaning they are inherently <a href="https://infosec.space/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a>.</li></ul><p>Using <a href="https://infosec.space/tags/XMPP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>XMPP</span></a>+<a href="https://infosec.space/tags/OMEMO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OMEMO</span></a> by contrast is secure and adding <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>torproject</span></a></span> / <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tor</span></a> to tunnel it makes it even more anonymous.</p><ul><li>So don't expect any messenger to cover your 6, but instead go out of your way so that <a href="https://web.archive.org/web/20220112020000/https://twitter.com/thegrugq/status/1085614812581715968" rel="nofollow noopener" target="_blank">even when held at gunpoint</a>, they can't decrypt comms!</li></ul><p>Cnsider every <a href="https://infosec.space/tags/Messenger" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Messenger</span></a> that doesn't <a href="https://infosec.space/tags/decentralize" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>decentralize</span></a> and support <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tor</span></a> oit of tue box to be insecure!</p>
Susan Larson ♀️🏳️‍🌈🏳️‍⚧️🌈<p><a href="https://mastodon.online/tags/Insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Insecure</span></a> <a href="https://mastodon.online/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> <a href="https://mastodon.online/tags/Lies" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Lies</span></a>, <a href="https://mastodon.online/tags/Claims" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Claims</span></a> <a href="https://mastodon.online/tags/Harris" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Harris</span></a> <a href="https://mastodon.online/tags/Crowd" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Crowd</span></a> Was <a href="https://mastodon.online/tags/Manipulated" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Manipulated</span></a> With <a href="https://mastodon.online/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> </p><p>The <a href="https://mastodon.online/tags/former" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>former</span></a> president has also <a href="https://mastodon.online/tags/falsely" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>falsely</span></a> <a href="https://mastodon.online/tags/accused" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>accused</span></a> his <a href="https://mastodon.online/tags/opponents" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opponents</span></a> of <a href="https://mastodon.online/tags/paying" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>paying</span></a> <a href="https://mastodon.online/tags/people" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>people</span></a> to <a href="https://mastodon.online/tags/attend" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>attend</span></a> their <a href="https://mastodon.online/tags/rallies" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rallies</span></a> </p><p>— Remember that every <a href="https://mastodon.online/tags/Republican" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Republican</span></a> <a href="https://mastodon.online/tags/accusation" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>accusation</span></a> is an <a href="https://mastodon.online/tags/admissionofguilt" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>admissionofguilt</span></a>. So <a href="https://mastodon.online/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> is <a href="https://mastodon.online/tags/paying" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>paying</span></a> <a href="https://mastodon.online/tags/people" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>people</span></a> to <a href="https://mastodon.online/tags/attend" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>attend</span></a> his <a href="https://mastodon.online/tags/rallies" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rallies</span></a> to fake support. </p><p><a href="https://www.rollingstone.com/politics/politics-news/trump-lies-harris-crowd-manipulated-ai-1235077949/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">rollingstone.com/politics/poli</span><span class="invisible">tics-news/trump-lies-harris-crowd-manipulated-ai-1235077949/</span></a></p>
Nonilex<p><a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a>’s other advisers have nicknamed Harp “the human printer” because she travels around w/a portable printer so that she can quickly produce mood-boosting articles for Trump to read. She has also been spotted running after Trump’s golf cart on the golf course so that he can read things between holes.</p><p><a href="https://masto.ai/tags/Insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Insecure</span></a> <a href="https://masto.ai/tags/Pathetic" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Pathetic</span></a> <br><a href="https://masto.ai/tags/TrumpTrial" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TrumpTrial</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>law</span></a></p>
Nonilex<p>When <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Trump</span></a> entered the courtroom, he carried a sheaf of printouts w/him which he slammed down on the defense table. His lead lawyer, Todd Blanche, laughed &amp; grinned. Apparently Trump likes to read through [only positive] news clips &amp; social media posts during long stretches in court. The printouts come courtesy of his aide Natalie Harp, who is never far from Trump’s side &amp; usually sits 2 rows back in the courtroom.</p><p><a href="https://masto.ai/tags/Insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Insecure</span></a> <a href="https://masto.ai/tags/Pathetic" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Pathetic</span></a> <br><a href="https://masto.ai/tags/TrumpTrial" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TrumpTrial</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>law</span></a></p>
detektor.fm :dfm:<p>Der britische Beatmaker Tom Misch meldet sich mit der ersten neuen Musik seit gut vier Jahren zurück. „Insecure“ ist auch schon so alt, aber läutet jetzt eine neue Ära ein.</p><p><a href="https://social.detektor.fm/tags/DerSongDesTages" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DerSongDesTages</span></a> <a href="https://social.detektor.fm/tags/Insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Insecure</span></a> <a href="https://social.detektor.fm/tags/NeueSingle" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NeueSingle</span></a> <a href="https://social.detektor.fm/tags/NeuesAlbum" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NeuesAlbum</span></a> <a href="https://social.detektor.fm/tags/Popfilter" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Popfilter</span></a> <a href="https://social.detektor.fm/tags/Songempfehlung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Songempfehlung</span></a> <a href="https://social.detektor.fm/tags/TomMisch" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TomMisch</span></a> <a href="https://social.detektor.fm/tags/PopfilterDerSongDesTages" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PopfilterDerSongDesTages</span></a> </p><p><a href="https://detektor.fm/musik/popfilter-warum-tom-misch-einen-vier-jahre-alten-song-veroeffentlicht?utm_campaign=share_on_mastodon&amp;utm_medium=mastodon&amp;utm_source=mastodon" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">detektor.fm/musik/popfilter-wa</span><span class="invisible">rum-tom-misch-einen-vier-jahre-alten-song-veroeffentlicht?utm_campaign=share_on_mastodon&amp;utm_medium=mastodon&amp;utm_source=mastodon</span></a></p>
☮ ♥ ♬ 🧑‍💻<p>“Why <a href="https://ioc.exchange/tags/ItaButtrose" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ItaButtrose</span></a> used to <a href="https://ioc.exchange/tags/spy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>spy</span></a> on <a href="https://ioc.exchange/tags/ABC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ABC</span></a> hosts’ <a href="https://ioc.exchange/tags/Twitter" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Twitter</span></a> posts: I did sometimes look at it to see what the troops were up to. You’ve got to keep abreast of what the troops are doing. I don’t ask other people to do my work for me. Just every now and again, I’d look in to see what they were all up to. It’s folly, if you don’t keep an eye on what’s going on within your own organisation.”</p><p><a href="https://ioc.exchange/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a> / <a href="https://ioc.exchange/tags/directionless" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>directionless</span></a> / <a href="https://ioc.exchange/tags/leadership" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>leadership</span></a> &lt;<a href="https://afr.com/companies/media-and-marketing/why-ita-buttrose-used-to-spy-on-abc-hosts-twitter-posts-20240410-p5fitd" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">afr.com/companies/media-and-ma</span><span class="invisible">rketing/why-ita-buttrose-used-to-spy-on-abc-hosts-twitter-posts-20240410-p5fitd</span></a>&gt;</p>
Jesus Castagnetto 🇵🇪<p>"Researchers Observed Visual Studio Code Extensions Stealing Users' <a href="https://mastodon.social/tags/Sensitive" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sensitive</span></a> <a href="https://mastodon.social/tags/Data" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Data</span></a>"</p><p><a href="https://gbhackers.com/researchers-observed-visual-studio/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gbhackers.com/researchers-obse</span><span class="invisible">rved-visual-studio/</span></a></p><p>'... ReversingLabs has uncovered a series of VS Code extensions that designed to siphon off sensitive information from unsuspecting users ...'</p><p><a href="https://mastodon.social/tags/vscode" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>vscode</span></a> <a href="https://mastodon.social/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://mastodon.social/tags/insecure" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>insecure</span></a></p>