Show more

I found something potentially interesting.

What does the Fediverse think about it? Let me know!

github.com/okTurtles/dnschain

Crossposted from Twitter 

RT @rugkme@twitter.com

⚠️ **WARNING:** zero day released! Remote Code Execution!

Take down your nginx servers!

Do not copy code from Twitter!

This is serious!

🐦🔗: twitter.com/rugkme/status/1134

Crossposted from Twitter 

RT @TheHackersNews@twitter.com

Heads Up! Most recent versions of — one of the most popular web servers that powers huge portion of the Internet today — contains an unpatched remote code execution (RCE) vulnerability.

Keep an eye out for the advisory and critical patch update in next 1-2 months. twitter.com/alisaesage/status/

🐦🔗: twitter.com/TheHackersNews/sta

RT @ASpittel@twitter.com

Following non-coders is so confusing. Couple definitions for some words you may see pop up on your time line:

📕 library: a place with books
📈 graph: a chart
🗺 map: used for navigation
🐍 python: snake
📚 heap: a pile of things
🌲 tree: a tall plant
🐞 bug: an insect

Thing is... even though their Ubuntu Phone may never have seen widespread adoption, it's actually been a good product. I've seen it, I personally know people who worked on it. I held it in my hands. It was really good!

If Canonical didn't manage to pull off this feat, I have little hope anyone else will. That means we'll have only a few closed source options in the predominating computing market of the near future: mobiles.

Hooray.

Show thread

Crossposted from Twitter 

RT @anyrun_app@twitter.com

Now with ANY.RUN you can change locale to bypass malware geo evasion.
It includes changing of:
– Keyboard layout
– Country & currency
– Time zone & format

As example , doesn't work in ex-USSR
en-US: app.any.run/tasks/807a630d-79e
ru-RU: app.any.run/tasks/7b98332c-a23

🐦🔗: twitter.com/anyrun_app/status/

Jesus Roosevelt Christ... PATCH ETERNAL BLUE FOLKS!

@thegibson pure unadulterated BOFH.

But I understand. In also get very angry at these kinds of of oversights.

look, let me help you.

gallery.technet.microsoft.com/

That .ps1 can scan your network and determine eternal blue vulns... then you have targets to fix.

I want to be clear. If you aren't fixing this, it is a ticking timebomb in your environment. When I see this, Evil Gibson gets real turned on...

Crossposted from Twitter 

RT @epunset@twitter.com

En el día de hoy, 22 de mayo, ha fallecido en Barcelona, tras una una larga enfermedad, Eduard Punset.
Su familia, en estos momentos tristes para tantos, quiere compartir estas imágenes, recogidas por el equipo de su programa de divulgación científica Redes, en recuerdo

🐦🔗: twitter.com/epunset/status/113

I just learned Eduard Punset passed away.

Many Spaniards know him as the host on a program called “Redes” on national television, with the intention of bringing science to everyone.

Punset was a very passionate and intelligent person, and even got involved in Spain’s politics in the 80s.

Thank you for all your efforts 🙏🏻, Punset. May you rest in peace, and may you be remembered for all eternity.

RIP 1936-2019

>get spied on by chinese phones
BAD
>get spied on by american phones
GOOD 😎

Crossposted from Twitter 

RT @MikD@twitter.com

HP outsourced their entire pen-testing team (~50 people) to Bangalore. If you’re looking to staff up your threat and vulnerability management team, now is the time! twitter.com/gillis57/status/11

🐦🔗: twitter.com/MikD/status/113086

Crossposted from Twitter 

RT @Gillis57@twitter.com

Soooooo our entire team got laid off with no notice, on a monday- and they didn't even reach out to let us know it was coming. So there are some great people today looking for pentesting work. I'm among them, and looking to work with a skilled team. Retweets are appreciated.

🐦🔗: twitter.com/Gillis57/status/11

@xj9 I'm so tired of the extreme anti-privacy movement.

* Not caring if millions of accounts get leaked
* Considering lack of security as merely a cost of doing business
* Not caring whether people get doxed or harassed or outed
* Assuming that data created by people always belongs to the megacorp
* These cosy relationships with letter agencies are oh so predictable
* The culture of embedding off-site links into web software so that they give companies a lot of data about how people are using it
* Assuming its ok to have telemetry on by default without telling the user or having any kind of informed consent

Really liking Ansible, especially when paired with Proxmox. Makes programmatically spinning up new VMs extremely easy. I will be using this to reimage some services periodically, so they're always running the latest version. I shut down and remove the VMs, and spin up new ones with the latest updates.

Maybe I should write a post on L1Cafe.blog about it, because for a beginner like me who never used Ansible, it was a bit rough to get the ball rolling at first. What do you think?

Crossposted from Twitter 

RT @danidonovan@twitter.com

Been working on how I write emails:

“So sorry for the delay”
New: “Thanks for your patience”
(I FORGOT, BUT YOU CAN DEAL)

“What works best for you?“
New: “Could you do __:__?”
(MY TIME MATTERS TOO, OKAY)

“No problem!”
New: “Happy to help!”
(YEAH, YOU’RE WELCOME)

🐦🔗: twitter.com/danidonovan/status

Crossposted from Twitter 

RT @thugcrowd@twitter.com

PSA
- It's okay to say "I don't know".
- It's okay to ask for clarity or further resources.
- It's okay to be unsure and take extra time to understand.

That is all for now.

🐦🔗: twitter.com/thugcrowd/status/1

Show more

León Castillejos's choices:

Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!