#cybersicherheit

22 posts · Last used 7d

Back to Timeline
RTN @raumfahrttutnot@chaos.social · Aug 07, 2026
#AndroidAuthority: " Maybe the FCC was onto something: These routers are phoning home to China with a secret backdoor Of course, because they predate the ban, the FCC continues to permit their sale " "The FCC is only targeting new routers, while all these super-insecure old Zbtlink models can continue to be sold." https://www.androidauthority.com/routers-china-backdoor-3695345/ 8.8.2026 #Amazon #Backdoor #China #Cybersicherheit #Cybersecurity #FCC #IT #Roouter #USA #VulnCheck #Wiflyer #Zbtlink
0
1
0
gadgetChecks.de @gadgetchecks@burningboard.net · Aug 06, 2026
0
0
0
Nicolas Zahn @NZahn42@infosec.exchange · Aug 03, 2026
Lukas Mäder bringt auf den Punkt was vielen Führungskräften aber auch der Politik anscheinend immer noch nicht in den Kopf will. Statt #Cybersicherheit an die #IT Abteilung zu delegieren und dort ständig mit Kostensenkungen zu drohen muss das Thema #strategisch gedacht werden. Gerade auch im Kontext von #KI ist es Zeit aufzuwachen! Siehe auch: https://bindinghook.com/the-race-to-adopt-artificial-intelligence-has-negative-cybersecurity-implications/ https://www.nzz.ch/meinung/ein-datenklau-schadet-dem-finanzplatz-liechtenstein-der-fall-zeigt-dass-it-sicherheit-ein-standortvorteil-ist-ld.10017967
0
0
0
Prof. Dr. Dennis-Kenji Kipker @kenji@chaos.social · Aug 03, 2026
Neue Benchmarks des britischen AI Security Institute zeigen, dass offene #KI-Modelle wie #GLM-5.2 und #DeepSeek V4-Pro bei Cyberfähigkeiten stark aufgeholt haben und nur noch vier bis sieben Monate hinter geschlossenen Spitzenmodellen liegen, dabei aber deutlich günstiger im Betrieb sind. Damit schrumpft die Vorlaufzeit für Verteidiger, bevor riskante Fähigkeiten frei verfügbar werden. #Cybersicherheit muss zwar nicht neu gedacht, ihre Prozesse aber beschleunigt werden: https://www.aisi.gov.uk/blog/how-far-behind-the-frontier-are-leading-open-weight-models-on-cyber
1
0
2
Stefan Beyer @sbeyer@ioc.exchange · Jul 26, 2026
Ihre Cybersicherheits-News 20.-26. Juli 2026. In 60 Sekunden. Die Website der Nextcloud ist offline, gehen Sie weiter, es ist nichts passiert, ein Modell von OpenAI hackt Hugging Face. https://www.60-sekunden-cyber.de/kw30-2026/ #cyber #cybersicherheit #itsicherheit #itsecurity #infosec
0
0
0
Netzpalaver @Netzpalaver@social.tchncs.de · Jul 23, 2026
0
0
0
tagesschau @tagesschau@ard.social · Jul 23, 2026
Bundesregierung spricht nach KI-Hackerangriff von "Paradigmenwechsel" Der eigenständige Hackerangriff eines KI-Modells hat die Bundesregierung alarmiert. Die zunehmenden Fähigkeiten Künstlicher Intelligenz verändere auch die Bedrohungslage im Cyberbereich massiv, warnt das Digitalministerium. ➡️ https://www.tagesschau.de/inland/innenpolitik/bundesregierung-reaktion-ki-angriff-100.html?at_medium=mastodon&at_campaign=tagesschau.de #Bundesregierung #KI #Cybersicherheit
0
0
0
tagesschau @tagesschau@ard.social · Jul 22, 2026
Experte zu KI-Hackerangriff - Hochgefährlich für die globale Cybersicherheit Ein KI-Modell von OpenAI ist eigenständig in Computersysteme einer anderen Firma eingedrungen und hat so das Risiko von KI-Cyberattacken demonstriert. Dennis-Kenji Kipker vom Cyber Intelligence Institute in Frankfurt am Main zeigt sich nicht überrascht. ➡️ https://www.tagesschau.de/wirtschaft/unternehmen/ki-hackerangriff-interview-100.html?at_medium=mastodon&at_campaign=tagesschau.de #KünstlicheIntelligenz(KI) #Cybersicherheit #OpenAI #Hackerangriff #Interview
0
0
0
AllAboutSecurity @AllAboutSecurity@infosec.exchange · Jul 14, 2026
0
0
0
Prof. Dr. Dennis-Kenji Kipker @kenji@chaos.social · Jul 09, 2026
Wenn #Schwachstellen zur Geheimdienstware werden: Das #BMI hat einen 700-seitigen #Gesetzentwurf auf den Weg gebracht, der Klarheit in Sachen #Schwachstellenmanagement bringt - nur eben nicht im Sinne der #Cybersicherheit. Denn das #BSI soll künftig verpflichtet sein, Sicherheitslücken an den #BND weiterzugeben - damit diese aktiv ausgenutzt werden können. Damit fällt auch die letzte Brandmauer im digitalen Raum - ohne dass damit ein nachgewiesener Wert verbunden wäre: https://www.bmi.bund.de/SharedDocs/gesetzgebungsverfahren/DE/OESI2/nachrichtendienstrecht.html
18
3
31
Prof. Dr. Dennis-Kenji Kipker @kenji@chaos.social · Jul 07, 2026
#Sicherheit ist wichtiger als Wettbewerb: #Opensource Entwickler kämpfen schon seit Längerem damit, mit dem Tempo neuer Bedrohungen Schritt zu halten, und durch den Einsatz von #KI verschärft sich dieses Problem weiter. Die #Linux Foundation hat deshalb gemeinsam mit 20 Unternehmen und Organisationen die Initiative #Akrites gegründet, die genau das lösen soll. Das zeigt, dass #Cybersicherheit im Open-Source-Ökosystem längst als gemeinsames Interesse verstanden wird: https://www.cloudcomputing-insider.de/linux-foundation-startet-brancheninitiative-akrites-a-d359d525c95ddadcc6da8ae1f37d35f3/
1
0
0
BSI @bsi@social.bund.de · Jul 02, 2026
E-Mail ist ein zentraler Bestandteil digitaler Kommunikation und gleichzeitig relevanter Angriffspunkt im Netz. 💥 In einem Whitepaper setzen wir Impulse für sichere, transparente und benutzerfreundliche Webmail-Dienste. Gemeinsam mit Anbietern wurden Anforderungen in einem Workshop diskutiert. Mehr dazu könnt ihr im neuen #BSIMagazin „Mit Sicherheit“ lesen: 🔗 https://www.bsi.bund.de/dok/520710 #CybernationDeutschland #Cybersicherheit #BSI #EMailSicherheit
10
9
16
BSI @bsi@social.bund.de · Jun 29, 2026
Ich packe meinen Koffer und nehme mit: genug Cybersicherheit. 🧳🛡️ Der Urlaub steht kurz bevor? Dann macht nicht nur euren Koffer reisefertig, sondern auch eure Technik. Denn sichere Geräte schützen euch vor, während und nach der Reise – egal ob beim Buchen, im Hotel-WLAN oder beim Teilen von Urlaubsmomenten. Unsere Urlaubs-Checkliste zeigt, worauf ihr achten solltet. Noch mehr Tipps findet ihr hier: https://www.bsi.bund.de/dok/131154 #BSI #Cybersicherheit #CybernationDeutschland
7
6
10
Florian Lancker @Lancker@metalhead.club · Jun 24, 2026
Der bundesweite Ausfall des Bahnfunks ist ein verdammter beleg für maximales Politikversagen. Wie kann es sein, dass ein einziges Problem reicht, um den gesamten Bahnverkehr lahmzulegen? Genau das ist der Mist, wenn Politik lieber über KI-Kameras, Gesichtserkennung und Überwachung schwadroniert, statt die echte kritische Infrastruktur abzusichern. KRITIS braucht verdammt nochmal Redundanz. Strom, Bahn, Wasser, Krankenhäuser und Netze müssen doppelt und dreifach abgesichert sein. Sicherheit heißt, dass der Laden weiterläuft, wenn etwas kaputtgeht. Alles andere ist fahrlässiger Pfusch. #KRITIS #DeutscheBahn #Infrastruktur #Cybersicherheit #Datenschutz
72
0
50
Astrid Hilt @steinmetzin@gruene.social · Jun 16, 2026
ich brauche eure Hilfe: Bei der Umstellung der #barclay App auf #Easybank wurden mir 2400€ vom Konto geklaut. Offiziell sieht es so aus, als habe ich das Geld an den Betrüger überwiesen. Easybank hat dazu mehrere Tans an meine Telefonnummer gesendet. Das Ding ist: ich habe keine davon erhalten. Jetzt suche ich eine Anwältin, die das ganze angeht, aber der Fall ist wohl zu klein und zu kompliziert. Jetzt suche ich Leute, denen das auch passiert ist. Bitte teilt den Post! #Astoet #cyberSicherheit
62
30
360
Netzpalaver @Netzpalaver@social.tchncs.de · Jun 14, 2026
0
0
0
Andrew 🌻 Brandt 🐇 @threatresearch@infosec.exchange · Apr 27, 2026
Boosted by hypebot @hypebot@goingdark.social
Hi folks. It's Andrew with another update on our battle over the "wrong to repair" bill that continues to move through the Colorado legislature, SB26-090. I am asking anyone, but especially those with a background as a cybersecurity practitioner, to please consider submitting written or live/virtual testimony TODAY to the committee who will be hearing this bill, starting at 1:30pm mountain time. This afternoon, in a little under four hours, a House committee will be hearing testimony on the bill. If you have been waiting for your moment, this might be the last chance you have this session to weigh in and express your support for this critical right we may lose in the next few days. Opponents of Colorado's right to repair law, which only came into effect on January 1, include companies like IBM and Cisco Systems. They are making outrageous and counterfactual claims about the right to repair in order to pressure lawmakers into accepting this bill that would exclude any technology classified as "critical infrastructure" as exempt from the right to repair law. One of the most egregiously wrong claims they have repeatedly made is that a "right to repair" items like a firewall somehow makes the products Cisco and IBM sell less safe from a cybersecurity perspective. After the committee hearing last month, I spoke in the hallway with the government affairs person from Cisco. I asked him to explain it to me, a cybersecurity professional, why being able to fix a broken firewall presents a cybersecurity risk. He could not explain it, simply repeating that giving people access to internal schematics in order to let them repair parts in a network edge device somehow presents a risk that adversaries would then be able to more easily reverse-engineer the product. The cybersecurity folks know where this is leading: They are claiming that the obscurity of their documentation about their products is the cybersecurity feature that protects them from attack. Those of us who are practitioners in this space know that obscurity provides no security whatsoever in the long term, and that giving people the ability to replace broken parts, like power supplies, does not threaten the cybersecurity of a router or firewall any more than replacing a power cord. After all, data centers have tight security about who is allowed in or out, and engage with cyber- and physical pentesters to routinely check the security of their facilities. The reality is that the west's biggest adversary, China, already has every model of every firewall on earth in its possession, and has thrown brigades of bodies at them to perform the reverse engineering Cisco claims they want to prevent. That cat is out of the bag. This bill will not provide any cybersecurity protection to any Cisco firewall. As I said to the Cisco lobbyist, if an adversary already has physical access to the device, it's game over. Adversaries don't swap out broken hard drives or power supplies. Beyond that specious argument, there is a secondary problem with the bill: It never defines with any necessary level of detail what comprises "critical infrastructure" - which means that, if a regular, commercial TV set you can buy at Costco is being used as a monitor in a SOC, it's possible that those commercial products will end up lumped into the category of "critical infrastructure." We all know that what makes electronic infrastructure critical is not what it is - phones, laptops, desktops, printers, scanners, even desk lamps - but how and where, and for what purpose it is used What this bill appears to be about, and why Cisco and IBM are fighting to advance it so hard, is that it enables the rent-seeking behavior of companies who want to lock their customers in to expensive annual support contracts, and lock third-party support companies out of the equation. That's literally all this is, a way to defend an ongoing revenue stream. Any arguments other than that make no sense. If you can, please consider testifying in person: The lobbyists have seemingly infinite time and access to these legislators, and have been steamrolling the entire process through, using ridiculous lies and arguments that make no sense to anyone with background as a practitioner. we want to focus on three core messages: This bill is ridiculously broad and would sweep up most IT equipment, limiting repair options for everyone from Fortune 500 companies to small mom-and-pop businesses, schools, hospitals, libraries, universities, local governments, law enforcement agencies and more. It is a false premise to claim that repair tools are a security risk and limiting those tools to the manufacturer's repairers is safer. This bill allows manufacturers to lock out repair competition and monopolize repair for their products; that drives up costs, reduces quality, and can undermine the secondary market. If you can share your personal background and experience and speak to how limiting access to repair tools will not make products safer would be great. You don't need to be a Colorado resident, or even based in the US. Here's how you do it: sign up to testify here: https://sites.coleg.gov/public-testimony/sign-up-to-testify/step-1 Search for SB26-090 Select the bill when it pops up Fill in your details including whether you are testifying in-person or remotely. Please select "Oppose" for your position. Enter your information Show up and, when called, give your two (or three, depending on how many/few sign up) minutes of testimony, and be prepared to answer questions The people pushing this bill are counting on the fact that this is happening in the middle of a workday, when we're all trying to wreck hackers. But this is a case where we, as a community, need to stand up for what's right. Not doing so will make all of our jobs harder in the future. I hope to see you there. #COpolitics #RightToRepair #activism #hackers #cybersecurity #cybersicherheit #cyberseguridad
77
8
150
Prof. Dr. Dennis-Kenji Kipker @kenji@chaos.social · Feb 24, 2026
Holt euch die neue Cyber #WarnApp aus dem cyberintelligence institute! Mit dem „Cyber Risk Observation Service“ (#CYROS) informieren wir über wichtige Vorfälle zur #Cybersicherheit - inklusive praktischer Handlungsempfehlungen für die private und berufliche Nutzung. Außerdem setzen wir auf euch als #Cybersecurity Community, denn jeder User kann bei uns Meldungen über die App vornehmen, die wir kuratieren und anschließend veröffentlichen. Jetzt zum kostenfreien Download: https://cyros-warnapp.de/
7
4
13
Health IT Consult @healthitconsult@mstdn.business · Feb 21, 2026
⚠️ Wusstest du? Diese 7 KI-Risiken bedrohen das Gesundheitswesen: 1️⃣ Algorithmische Verzerrungen 2️⃣ DSGVO- & HIPAA-Verstöße 3️⃣ Fehlende klinische Validierung 4️⃣ Störung klinischer Arbeitsabläufe 5️⃣ Regulatorische Unsicherheit 6️⃣ Cybersicherheitslücken 7️⃣ Übermäßige Abhängigkeit von KI 👉 https://healthitconsult.com/de/ki-im-gesundheitswesen-die-risiken-mit-fachkundiger-anleitung-navigieren/ #KIRisiken #HealthcareAI #Datenschutz #DSGVO #Cybersicherheit #KIimGesundheitswesen #HealthIT #HealthITConsult #Compliance
0
0
3