Practical #privacy and simple #cybersecurity for everyone. Articles posted =/= endorsement/agreement. This account no longer monitored. Please contact us via other channels: https://thenewoil.org/en/links/#contact
Unofficial Hacker News Bot, posting Top 10 stories.
Ciso in Healthcare . Love trees see my website https://www.bomengids.nl Love linux, autistic / hb
Hi folks, I'm Aaron (he/him) and I'm an Advocate at Microsoft, focusing on #dotnet on Azure (or .NET on Azure - pick your preference 😝). I'm here to make the cloud easier for everyone to use, especially for #JavaScript and #dotnet developers. My background is ASP.NET (both #csharp and #fsharp) with JavaScript frontends, especially #React. I also post random things here, like running and beer.
Cuenta anterior en @colegota@gnusocial.net cuyo servidor cerró con el año 2024. Maldito boomer a vuelta de todo. O eso se cree él/he. Mi mayor interés, personas aparte, es la #huerta y con ella la #agroecología. Movimientos sociales y #Autogestión. En la vida he tenido la suerte de poder hacer #viajes por libre, en plan #mochilero y conocer otras personas, culturas y territorios. Y el #viaje enriquece mucho, pero no necesariamente. Uso #SoftwareLibre por la maravilla que es, por la #Seguridad, y para preservar la #Privacidad, una de mis mayores preocupaciones. Muy poquito y de vez en cuando colaboro con #OpenStreetMap u #OSM. Y lo uso en mi día a día y en mis viajes desde casi el principio. [EN] Own a little #Allotment and so interested in #agroecology #Backpacker #Travel #FreeSoftware as in Freedom :) #Privacy
Cuenta anterior en @colegota@gnusocial.net cuyo servidor cerró con el año 2024. Maldito boomer a vuelta de todo. O eso se cree él/he. Mi mayor interés, personas aparte, es la #huerta y con ella la #agroecología. Movimientos sociales y #Autogestión. En la vida he tenido la suerte de poder hacer #viajes por libre, en plan #mochilero y conocer otras personas, culturas y territorios. Y el #viaje enriquece mucho, pero no necesariamente. Uso #SoftwareLibre por la maravilla que es, por la #Seguridad, y para preservar la #Privacidad, una de mis mayores preocupaciones. Muy poquito y de vez en cuando colaboro con #OpenStreetMap u #OSM. Y lo uso en mi día a día y en mis viajes desde casi el principio. [EN] Own a little #Allotment and so interested in #agroecology #Backpacker #Travel #FreeSoftware as in Freedom :) #Privacy
Mastodon account of the most reliable cybersecurity news platforms bringing exclusive dark web, tech, and hacking news. Contact: admin@hackread.com.
CISA Releases Guidance Urging Water Treatment Facilities to Disconnect Equipment From the Internet
gadgetChecks.de - Apple & SmartHome! #Apple #News #Gadgets #Reviews #Angebote #Tutorials
Stay ahead with Daily CyberSecurity. We deliver rapid zero-hour alerts and expert analysis on critical vulnerabilities, CVEs, and emerging cyber threats.
Cybersecurity professional and software engineer, helping companies of all sizes defend their networks against cyber attacks and build cyber resilience | 🌎 CY DE
🤖 Bot de veille cyber/IA — curation automatique: CVE critiques, exploits 0-day, data breaches, reverse engineering, attaques GNSS (jamming/spoofing), crypto post-quantum. FR/EN. Maintenu par un dev anonyme.
Privacy news, data broker removal guides, and your rights online — three times a week. Free guides at https://indigoprivacy.com/subscribe
🚗 Every modern car is a network on wheels.
Behind every brake press, gear shift, and steering input, dozens of ECUs exchange thousands of messages over CAN Bus.
If you're learning: • Automotive Cybersecurity • CAN Bus • ECU Hacking • Reverse Engineering • Embedded Systems • OBD-II • CAN FD • Automotive Ethernet
This is the guide you need.
Read the complete guide 👇 https://thecybersecguru.com/glossary/can-bus-explained/
#Cybersecurity #CANBus #AutomotiveCybersecurity #ReverseEngineering #EmbeddedSystems #ECU #Automotive #IoT #CANFD #Engineering
Can we hack it?? Yes we can!!! 😎😎😎 Hey Im BobDaHacker an ethical hacker 🤓 Thx 4 coming to my ted talk
Found critical vulns in Lovense (the biggest sex toy company) affecting 11M+ users. They ignored researchers for 2+ years, then fixed in 2 days after public exposure. 🤦
What I found:
- Email disclosure via XMPP (username→email)
- Auth bypass (email→account takeover, no password)
History of ignoring researchers:
- 2017: First recorded case of someone reporting XMPP email leak.
- 2022: Someone else reports XMPP email leak, ignored
- Sept 2023: Krissy reports account takeover + different email leak via HTTP API, paid only $350
- 2024: Another person reports XMPP email leak AND Account Takeover vuln, offered 2 free sex toys (accepted for the meme)
- March 2025: I report account takeover + XMPP email leak, paid $3000 (after pushing for critical)
- Told me fix for email vuln needs 14 months because "legacy support" > user security (had 1-month fix ready)
- July 28: I go public
- July 30: Both fixed in 48 hours
Same bugs, different treatment. They lied to journalists saying it was fixed in June, tried to get me banned from HackerOne after giving permission to disclose.
News covered it but my blog has the full technical details: https://bobdahacker.com/blog/lovense-still-leaking-user-emails/
#InfoSec #BugBounty #ResponsibleDisclosure #Security #Vulnerability #IoT #cybersecurity