Skip to main content

Search

Items tagged with: security


If you are the tech-savvy person within your family or friends group :blobcatcool: :

Never ever shame someone for coming to you for advice after being the victim of a scam, malware, or for using an unsecure product.

If you do this,
they might never come back to you later. They might just feel so ashamed they will just stay alone with their tech problems.

Instead, always tell them:

1. It was a good idea to come to you with this. Be empathetic with them πŸ’š

2. Give them advice on how to minimize the damage now. Actionable advice πŸš‘

3. Help them harden their security for now and for the future. Recommend better products to them. But be careful not to overwhelm them with advice. One step at the time πŸ”’

4. Talk to them with respect and empathy. Tell them how the people who abused their trust are horrible and anyone can fall for the right scam. Remind them there are things to do to reduce the risks of being victimized again in the future, and help them slowly implementing these πŸ’ͺ

5. Be thankful they trusted you with this. It means they think highly of you πŸ₯°

#Security #Privacy


Meanwhile…

#Security removed a member of the public from the overflow room. The man was verbally sparring w/officers for some time, first complaining he wasn't allowed access to the main court room. (access is first-come first-served). Then he tried insisting on being allowed to stand at the back of the courtroom.
"This is not fair," he kept saying. He was ultimately asked to leave.

#criminal #law #Trump #TrumpTrial #CatchAndKill #conspiracy #ElectionInterference #HushMoney


Every version of the PuTTY tools from 0.68 to 0.80 inclusive has a critical vulnerability in the code that generates signatures from ECDSA private keys. Tthe effect of the vulnerability is to compromise the private key https://www.chiark.greenend.org.uk/~sgtatham/putty/wishlist/vuln-p521-bias.html #infosec #security #ssh #opensource #linux #unix #windows


So, Microsoft is silently installing Copilot onto Windows Server 2022 systems and this is a disaster.

How can you push a tool that siphons data to a third party onto a security-critical system?

What privileges does it have upon install? Who thought this is a good idea? And most importantly, who needs this?

#infosec #security #openai #microsoft #windowsserver #copilot

⇧