3959
80
kid

@sh.itjust.works

kid 51 points a year ago

Apparently was not related to a cyber attack, as stated in status page (https://status.proton.me/)

We have resolved all service outages, and the situation has been stable for some time. We have identified the root cause of the problem, implemented a fix, and are now monitoring the results. Jan 09, 2025 - 19:27 CET

path: 0 14383910, hotness: undefined, score: 51, children: 0
kid 34 points 2 years ago

A better summary:

The text discusses a series of cybersecurity breaches affecting Microsoft, involving sensitive data theft from US government officials and organizations, attributed to Chinese hackers. Microsoft's delayed response to discovered security flaws, including a 90-day wait for a partial fix, is criticized. Senator Ron Wyden has called for Microsoft's accountability. The breaches underscore the growing issue of security vulnerabilities in tech companies, leading to expectations that the US government will require companies to promptly disclose security incidents within a strict timeframe.

path: 0 7706438, hotness: undefined, score: 34, children: 1
kid 17 points 2 years ago

Please note that the attack can only be carried out if the local network itself is compromised.

path: 0 9948213, hotness: undefined, score: 17, children: 16
kid 14 points 2 years ago

Kudos to SOC team.

path: 0 11362564, hotness: undefined, score: 14, children: 0
kid 13 points 2 years ago

From the article:

Microsoft locked down a server last month that exposed Microsoft employee passwords, keys and credentials to the open Internet, as the company faces growing pressure to strengthen the security of its software. Microsoft was notified of the vulnerability on February 6th and the block on March 5th. It is unclear whether anyone accessed the exposed server during this period.

path: 0 9316050, hotness: undefined, score: 13, children: 0
kid 13 points 2 years ago

Hackers 10 - 1 LastPass

path: 0 9400681, hotness: undefined, score: 13, children: 0
kid 12 points 2 years ago path: 0 12420016, hotness: undefined, score: 12, children: 1
kid 12 points 2 years ago

This one does not spark joy.

path: 0 12953723, hotness: undefined, score: 12, children: 0
kid 11 points 2 years ago

Instance Rules

Be respectful. Everyone should feel welcome here.

path: 0 10497211 10498160 10498374, hotness: undefined, score: 11, children: 3
kid 10 points 2 years ago

In this particular case, the method of infection of the router was not disclosed. However, typically, the most common methods involve an open administration port to the internet (user interface or TR-069) or through the internal interface, in case a network host has been compromised.

They often perform brute-force password attacks, and once access is obtained, they look for typical Linux administrative tools (such as bash, etc.) and proceed to compromise the router.

So I understand that a router with custom firmware can be compromised if it has a weak password and resources to maintain the infection, or of course, a vulnerability that is exploitable.

path: 0 8837183 8837485, hotness: undefined, score: 10, children: 0
kid 10 points 2 years ago

Depends of the country. Disrupt with Internet/communications may be a crime in some countries.

path: 0 11383056 11383253, hotness: undefined, score: 10, children: 0
kid 9 points a year ago

Very nice approach!

Some points about the article:

Nature of the Vulnerability: The vulnerability is a security flaw that allows leaking the email associated with a YouTube channel by exploiting endpoints from both YouTube and Google Pixel Recorder.

Impact: It allows an attacker to obtain the email associated with any YouTube channel, which can lead to phishing attacks, privacy invasion, and other malicious activities. This potentially affects all YouTube users who own a channel.

Fix Status: The vulnerability has been fixed by Google. Both parts of the exploit were resolved by 02/09/2025, and the report was disclosed on 02/12/2025.

path: 0 15042466, hotness: undefined, score: 9, children: 1
kid 9 points a year ago

The first vulnerability, CVE-2025-5054, affects Ubuntu’s Apport crash reporting system, while the second, CVE-2025-4598, impacts systemd-coredump, the default core dump handler used across Red Hat Enterprise Linux 9 and 10, as well as Fedora distributions.

path: 0 17415859, hotness: undefined, score: 9, children: 0
kid 8 points 2 years ago

Stop giving me your toughest battles

path: 0 8699016, hotness: undefined, score: 8, children: 0
kid 8 points 2 months ago path: 0 23485715, hotness: undefined, score: 8, children: 0
kid 8 points 2 years ago path: 0 12134826, hotness: undefined, score: 8, children: 0
kid 7 points a year ago path: 0 17068426, hotness: undefined, score: 7, children: 2
kid 6 points a year ago

Noted!

path: 0 17024421 17028673, hotness: undefined, score: 6, children: 0
kid 6 points 2 years ago

Honestly, I didn't think about vulnerability in SyncThing when I read the article. But I wondered why defense forces would have p2p open on their networks.

path: 0 10496885 10496937 10497193 10497370, hotness: undefined, score: 6, children: 6
kid 6 points 2 years ago path: 0 13041911 13043562, hotness: undefined, score: 6, children: 1

thanks for using Leebra!

go to feed...