GonΓ§alo ValΓ©rio
dethos@s.ovalerio.net
<p>Full-stack developer with a special interest in cybersecurity.</p><p>Advocate of a free and safe Internet. Nature admirer and sports enthusiast. </p><p>[Header photo by Colin Watts, source Unsplash]</p>
Posts
-
Post #2969057
&quot;Primer on GitHub Actions Security&quot; https://www.wiz.io/blog/github-actions-security-threat-model-and-defenses #security #infosec #ci #githubactions
-
Post #2969056
https://www.epicfurious.com/ π π π Spot on.
-
Post #2969055
&quot;Microsoft BitLocker-protected drives can now be opened with just some files on a USB stick β YellowKey zero-day exploit demonstrates an apparent backdoor&quot; https://www.tomshardware.com/tech-industry/cyber-security/microsoft-bitlocker-protected-drives-can-now-be-opened-with-just-some-files-on-a-usb-stick-yellowkey-zero-day-exploit-demonstrates-an-apparent-backdoor Yikes... if we even needed more reasons to avoid Windows and Microsoft&#39;s encryption tools. #security #inf...
-
Post #2969054
&quot;Mini Shai-Hulud Strikes Again: 317 npm Packages Compromised&quot; https://safedep.io/mini-shai-hulud-strikes-again-314-npm-packages-compromised/ #security #infosec #netsec #npm #node #javascript #supplychain
-
Post #2969053
RE: https://infosec.exchange/@briankrebs/116597569851456486 π€― π€― π€― π π π Intentional? Probably yes.
-
Post #2969052
OpenSUSE Slowroll just landed on my test machine. Looking and behaving good. π Strong candidate to replace my main one in the future. π¦ #opensuse #slowroll #os #linux
-
Post #2969051
&quot;Motorola phones have started hijacking the Amazon app to insert affiliate codes&quot; https://9to5google.com/2026/05/25/motorola-amazon-app-hijacking-behavior/ π€¦ββοΈ #enshittification #crap #motorola #android
-
Post #2969050
&quot;Microsoft&#39;s GitHub bans security researcher who posted zero-day Windows exploits because company &#39;ruined their life&#39; β expert claims action is vindictive and promises further retaliation&quot; https://www.tomshardware.com/tech-industry/cyber-security/microsofts-github-bans-security-researcher-who-posted-zero-day-windows-exploits-because-company-ruined-their-life-expert-claims-action-is-vindictive-and-promises-further-retaliation Bad move. #security #micro...
-
Post #2529430
&quot;Google Broke reCAPTCHA for De-Googled Android Users&quot; https://reclaimthenet.org/google-broke-recaptcha-for-de-googled-android-users This is getting worse and worse. As it has been said before, we need open alternatives to the duopoly. Also, don&#39;t use reCAPTCHA; there are other decent alternatives. #privacy #android #technology #mobile
-
Post #2104504
https://mastodon.online/@mullvadnet/116206184902355562 π π€¨ π π€¦
-
Post #2104500
RE: https://s.ovalerio.net/@dethos/116376071356641511 &quot;A curated and practical list of security best practices for using Python packages from PyPI.&quot; https://github.com/lirantal/pypi-security-best-practices #security #supplychain #python #pypi #pip #uv
-
Post #2094263
&quot;Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign&quot; https://socket.dev/blog/bitwarden-cli-compromised #security #infosec #bitwarden #supplychain