#infosec

2919 posts · Last used 3d

Back to Timeline
The Spamhaus Project @spamhaus@infosec.exchange · 3d ago
Replying to @spamhaus@infosec.exchange
🤔 Not using Spamhaus' DROP lists already? You can access them for FREE and gain protection against the worst of the worst IP traffic at the routing level. Lists are available for IPv4, IPv6 and ASN filtering: ➡️ https://www.spamhaus.org/blocklists/do-not-route-or-peer/ #CyberSecurity #ThreatIntel #NetworkSecurity #Infosec 3/3
0
0
0
Shodan Safari @shodansafari@infosec.exchange · 3d ago
ASN: AS47273 Location: Kraków, PL Added: 2026-08-03T19:56 #shodansafari #infosec
4
1
2
Security Feed @securityfeed@infosec.exchange · 3d ago
🔒 Security News Digest - 2026-08-11 📊 15 updates from 5 sources: 🦠 Malwarebytes: Fake popular sites offer a free app, instead take over PCs https://www.malwarebytes.com/blog/threat-intel/2026/08/fake-popular-sites-offer-a-free-app-instead-take-over-pcs 🦠 Malwarebytes: Watch out for fake TikTok Shops trying to steal your money https://www.malwarebytes.com/blog/scams/2026/08/watch-out-for-fake-tiktok-shops-trying-to-steal-your-money 🔹 The Hacker News: Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks https://thehackernews.com/2026/08/gunra-ransomware-exploits-fortinet-and.html 🔹 SecurityWeek: OpenAI Unveils New Cybersecurity Model GPT-5.6-Cyber https://www.securityweek.com/openai-unveils-new-cybersecurity-model-gpt-5-6-cyber/ 🔹 SecurityWeek: Hacker Conversations: Marcus Hutchins and the Journey From the Gray Zone to Redemption https://www.securityweek.com/hacker-conversations-marcus-hutchins/ 🔹 Unit 42: Kimwolf v7: An Evolution of the Kimwolf Botnet https://unit42.paloaltonetworks.com/kimwolf-v7-botnet-malware/ 🔹 The Hacker News: Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets https://thehackernews.com/2026/08/malicious-mcp-servers-can-split.html 🔹 The Hacker News: Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11 https://thehackernews.com/2026/08/researchers-turn-usb-auto-install-into.html 🔹 SecurityWeek: Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities https://www.securityweek.com/extension-banned-for-stealing-ai-chats-returns-to-chrome-store-resumes-malicious-activities/ 🔹 The Hacker News: Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers https://thehackernews.com/2026/08/researchers-built-fake-crypto-startup.html 🔹 SecurityWeek: Corma Raises $60 Million for Defensive Cybersecurity AI Model https://www.securityweek.com/corma-raises-60-million-for-defensive-cybersecurity-ai-model/ 🔹 The Hacker News: Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo https://thehackernews.com/2026/08/mozilla-revokes-firefox-and-thunderbird.html 🔹 The Hacker News: A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices https://thehackernews.com/2026/08/a-malicious-sim-card-can-run-attacker.html 🔹 The Record from Recorded Future News: Kids’ online safety bill faces dim prospects of passage this session despite progress https://therecord.media/kids-online-safety-act-congress 🦠 Malwarebytes: Love/hate relationship: The AI affair. Young people love AI, but it’s breaking their trust https://www.malwarebytes.com/blog/ai/2026/08/love-hate-relationship-the-ai-affair-young-people-love-ai-but-its-breaking-their-trust #InfoSec #SecurityNews
0
0
0
Biziday 📰 @biziday@mastodon.world · 3d ago
Aplicația de cadastru și carte funciară e-Terra a fost repornită, etapizat, la o lună de la atacul cibernetic care a afectat tranzacțiile imobiliare din 🇷🇴#România. Inițial, vor fi prioritizate actele depuse sau întocmite în perioada în care sistemul nu a funcționat. Extrasele de carte funciară deja eliberate și valabile la momentul atacului au fost prelungite. 🔗 https://biziday.ro/?p=365784 #Știri #Pământ #Terra #InfoSec #SecuritateInformatică #SecuritateCibernetică
0
0
0
Scott Wilson 🌈 @scottwilson@infosec.exchange · 3d ago
I work in #infosec and consider myself pretty well educated on what’s happening with #AI. But I’m about 33% of the way through @emilymbender@dair-community.social and Alex Hanna’s book, “The AI Con”, and I’ve really learned a lot more. If you’re skeptical or curious about AI, this is a must-read. I’m recommending it to everyone I know. #books #bookstodon #reading #AI #technology #nonfiction
111
3
103
Wer seinen eigenen Mailserver betreibt, kennt das ProblemSecure Your Server: acht Checks, ein Scan, für immer kostenlos Ich betreibe neben vielen privaten Domains auch meinen eigenen Mailserver, da hängt viel an einer sauber konfigurierten Domain: DNS-Einträge exakt, TLS sauber, SSH gehärtet. Wer das prüfen will, trifft auf ein Dutzend Scanner, die fast alle dasselbe tun: sich einen einzigen Ausschnitt anschauen und ab einem gewissen Punkt ein Konto oder eine Kreditkarte verlangen. Deshalb gibt es jetzt Secure Your Server: acht Kategorien von DNS bis PGP in einem einzigen Scan, dazu ein echter Mail-Zustellungstest, für immer kostenlos, ohne Konto, ohne Tracking. Teste deine eigene Domain, bevor es jemand mit weniger guten Absichten tut. https://www.chrislo.de/blog/2026-08-10-15-30-00-deine-domain-hat-laengst-eine-note-du-kennst-sie-nur-noch-nicht/ #chrislo #digitaleunabhängigkeit #itsicherheit #cybersecurity #infosec #opensource #selfhosting #datenschutz #dsgvo #digitalesouveränität #security #vereine
63
1
54
Wulfy—Speaker to the machines @n_dimension@infosec.exchange · 3d ago
And so the machine found a couple of flapping ports on my utility VPS which cant be tracked to anything specific... One of them being an NC listener!!! 💀 Going to monitor with a vigillance script to see if we can find out WTF? The plot thickens... #Infosec Probability of being WTFPWNED: 25%
0
0
0
Suriq - Always on Watch @suriq@infosec.exchange · 3d ago
⚠️ PATCH NOW Commvault patched a critical flaw (CVSS 9.2) in CommServe, the brain of its backup platform: an allowlist bypass lets blocked commands run. Affects versions 11.36 to 11.46 on Linux and Windows. Fix: update to the patched release now. (CVE-2026-13737) https://suriq.io/blog/commvault-commserve-command-restriction-bypass #Ransomware #CVE #infosec #cybersecurity
0
0
0
Shodan Safari @shodansafari@infosec.exchange · 3d ago
ASN: AS152194 Location: Tseung Kwan O, HK Added: 2026-08-03T14:22 #shodansafari #infosec
0
0
0
Infoblox Threat Intel @InfobloxThreatIntel@infosec.exchange · 3d ago
Season's Scammings 🔅 🎄 We've been tracking a cluster of personal loan phishing sites that work hard to look like independent lenders — different brands, different domains, even deliberately varied infrastructure. Look closely enough, though, and the seams show. Similar underlying templates. The same technology stack. And passive DNS tying their thousands of domains back to the same operator. The sites present as loan applications. Name, address, employment details, financial history. And then, at the final step: your Social Security Number. No real company name. No regulatory disclosure. Just a form — and your most sensitive personal data sent off to who-knows-where for who-knows-what. A significant portion of the domains are seasonal — Christmas cash, Thanksgiving funds, Black Friday loans. Financially stretched consumers, at exactly the moment they're most likely to reach for a quick fix. ⛔ mychristmaswallet[.]com ⛔ cashzillaloans[.]com ⛔ personalreliefwallet[.]com ⛔ thanksgivingcash-5k[.]com ⛔ christmascashhelp-direct[.]com #dns #threatintel #threatintelligence #cybercrime #cybersecurity #infosec #infoblox #infobloxthreatintel #phishing #scam
0
0
0
G4Media 📰 @G4Media@mastodon.world · 3d ago
#AgențiaNaționalăDeCadastru a anunțat notarii că pot accesa e-Terra începând de marți. „Așteptăm de azi dimineață linkurile de logare”. Vestea bună este că baza centrală de date a agenției nu a fost afectată de atacul cibernetic. 🔗 https://wp.me/p9KpFA-5sxK #Știri #Pământ #Terra #InfoSec #SecuritateInformatică #SecuritateCibernetică
0
0
0
technicalCISO💥​ @technicalciso@infosec.exchange · 3d ago
𝗕𝗚𝗣 𝘄𝗮𝘀 𝗯𝘂𝗶𝗹𝘁 𝗼𝗻 𝘁𝗿𝘂𝘀𝘁. 𝗜𝘁 𝗻𝗲𝗲𝗱𝘀 𝗽𝗿𝗼𝘁𝗲𝗰𝘁𝗶𝗼𝗻. Take control of your routes and keep your traffic where it belongs. In this article, you’ll learn how to: 🔹 Validate who is authorized to announce your prefixes 🔹 Reduce exposure to route leaks and hijacks 🔹 Detect suspicious routing changes before they escalate 👉 https://technicalciso.com/bgp-blind-spots-part-2/ #CyberSecurity #BGP #NetworkSecurity #NetworkEngineering #InternetSecurity #InfoSec
0
0
0
r1cksec @r1cksec@infosec.exchange · 3d ago
LOLRMM is a curated list of Remote Monitoring and Management (RMM) tools that could potentially be abused by threat actors. https://lolrmm.io #infosec #cybersecurity #redteam #pentest
0
0
0
Shodan Safari @shodansafari@infosec.exchange · 3d ago
ASN: AS46844 Location: Los Angeles, US Added: 2026-08-05T20:53 #shodansafari #infosec
0
0
0
AmmarSpaces @AmmarSpaces@infosec.exchange · 3d ago

If you are in Europe, and you bought Steam's hardware products, you might want to check your e-mail from Steam.

There is a 3rd party logistic partner breach (CEVA Logistics) occoured, where your:

  • Name
  • Street address, city and postal code
  • Country
  • Phone number
  • Email address linked to the Steam account
  • Type and price of the hardware ordered

Might be exposed.

Stay safe out there.

#cybersecurity #infosec #databreach #steam #europe #valve #gaming

1
1
2
urlDNA.io :verified: @urldna@infosec.exchange · 3d ago
Possible Phishing 🎣 on: ⚠️hxxps[:]//chatgpt0005[.]eu[.]org/blog/making-it-easier-than-ever-to-connect-with-friends-in-league-val 🧬 Analysis at: https://urldna.io/scan/6a7ac88c3b775000064d253a #cybersecurity #phishing #infosec #urldna #scam #infosec
0
0
0
@frameworkcomputer@fosstodon.org got owned. Or rather, their 3rd party business intelligence provider Metabase. So chances are, your name, address, phone number and email are now in the hands of criminals if you entrusted these to Framework. Source: I was informed by Framework to be among affected people. #infosec #DataLeak #zeroday #framework #metabase #metabasedatabreach
1
0
3
urlDNA.io :verified: @urldna@infosec.exchange · 4d ago
Possible Phishing 🎣 on: ⚠️hxxps[:]//whitepanda[.]info/48-1466-160526/?u=83C1466&e=renusz@c357e509cebb57753e2d4e8dba34fee948a7[.]net&s3=&s4=&s5=&s6=&s7=&s8= 🧬 Analysis at: https://urldna.io/scan/6a794ccf3b775000083c3f99 #cybersecurity #phishing #infosec #urldna #scam #infosec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · 4d ago
🤖 Valve notifies Steam hardware customers in Europe after breach at shipping partner CEVA Logistics. Attackers accessed CEVA servers July 29-Aug 1, taking names, addresses, phones, emails and order details. No payment or Steam account data exposed; phishing risk remains. 🔗 https://www.bleepingcomputer.com/news/security/valve-notifies-steam-hardware-customers-of-a-data-breach/ #DataBreach #InfoSec #Phishing
0
0
0