Why not open it in a compartmentalized, offline #VM with #Dangerzone, then safely screenshot and nuke the VM? 🤔 #PDF #Malware #Virus #Infosex
npm supply‑chain attacks (eslint‑prettier, Nx, chalk, “Shai‑Hulud”) show stolen maintainer creds can auto‑propagate malware via lifecycle scripts. Mitigate by pinning lockfiles, blocking lifecycle scripts, using 2FA and cooldowns. Read more: https://www.endorlabs.com/learn/how-to-defend-against-npm-software-supply-chain-attacks 🔐⚠️🧰 #npm #SupplyChain #DevSecOps #Infosex #Security
How to Defend Against NPM Software Supply Chain Attacks | Blog | Endor Labs

Practical steps security teams and developers can take to reduce risks from software supply chain attacks targeting the npm registry.

https://infosec.exchange/@briankrebs/115544029752956655
[email protected] - This is pretty wild. Checkout.com got hacked by a group that claims to be Shiny Hunters again. Checkout said in blog post that it would not be extorted by criminals.

>> This is pretty wild. Check Brian's post linked above for what they are doing next. <<<

#cyber #infosecurity #infosex #cybersecurity #security

BrianKrebs (@[email protected])

This is pretty wild. Checkout.com got hacked by a group that claims to be Shiny Hunters again. Checkout said in blog post that it would not be extorted by criminals. "We will not pay this ransom. Instead, we are turning this attack into an investment in security for our entire industry. We will be donating the ransom amount to Carnegie Mellon University and the University of Oxford Cyber Security Center to support their research in the fight against cybercrime." Far too many victim firms just pay up, to get back to business as usual asap. Imagine if a fraction of those victims instead paid into a fund for research that actively disrupts these groups. https://www.checkout.com/blog/protecting-our-merchants-standing-up-to-extortion

Infosec Exchange

Be very careful when you share a YouTube link!
By default it’s include a query parameter with THE UNIQUE ID OF YOUR PENIS!! 😰🤬

Proof in attached picture ⬇️

Remember to delete this sensitive info next time you are sharing a link 

#InfocSec #Privacy #Leak #YoutubeLeek #InfoSex

⚠️ Public survey: Is the yubikey stay on during sex?
#infoSec #infoSex
Yes
57.1%
No
8.9%
I don’t care about security
33.9%
Poll ended at .
I was going to make a nice post praising all the smart content piping in from https://infosec.exchange but then I went and spelled the URL infosex.
I'm just going to put my head down on my desk for a bit.
#infosec #infosex
Infosec Exchange

A Mastodon instance for info/cyber security-minded people.

Mastodon hosted on infosec.exchange

@aral Just to be the Evil Empires servant Dark Vad(t)er (Father in English, Vader in US, as they still don't know it means Father in Dutch) Then #E2EE is pretty irrelevant for any NOT running on a independent #Linux #OS like a #Debian or tweaked #Ubuntu as they never have any secrets from the #bigtech #CageMafia

#InfoSex #Privacy #encryption

To reset your password, please answer your security questions:

1. What are your intruder countermeasures?

2. How often do you check your six?


#infosex #SecurityQuestions #PasswordReset

Tonight is #Nia or "Purpose" in #Kwanzaa where we "restore our people to their traditional greatness".

In the age of appropriation of our spaces between #InfoSex, #CryptoBros and thr media we like to remind everyone the original #hacker goals:

@defcon