TIL Daniel Bleichenbacher work(ed|s) for #cure53. mind blown.
Threema Desktop: Quellcode veröffentlicht und Sicherheitsüberprüfung
Threema geht einen weiteren Schritt in Richtung Transparenz und Sicherheit. Der Quellcode der neuen Threema-Desktop-App ist ab sofort öffentlich einsehbar. Die App, die
https://www.apfeltalk.de/magazin/news/threema-desktop-quellcode-veroeffentlicht-und-sicherheitsueberpruefung/
#Mac #News #BetaVersion #BugBountyProgramm #Cure53 #Datenschutz #MultiDeviceSupport #OpenSource #Quellcode #Sicherheitsprfung #ThreemaDesktop
Threema Desktop: Quellcode veröffentlicht und Sicherheitsüberprüfung

Threema geht einen weiteren Schritt in Richtung Transparenz und Sicherheit. Der Quellcode der neuen Threema-Desktop-App ist ab sofort öffentlich einsehbar.

Apfeltalk Magazin

🚀 Introducing the first stable release of #Passbolt Windows Desktop App! 🚀

Secure password sharing is now available as a production-ready desktop application for Windows.
It successfully passed a security audit by #Cure53. Discover more about the technical foundation, password collaboration features and security details of this release in our latest blog post: https://hubs.li/Q02sGt0V0

#OpenSource #PasswordManager #PasswordSharing #Windows

Stable Release of Passbolt Windows Desktop Application

We are excited to introduce the first stable release, Version 1.0, of the Passbolt Windows Desktop Application. This milestone represents a significant leap towards providing a production-ready password collaboration solution tailored for the Windows environment.

Passbolt

nice write up in #TheCrux thanks @daedalus  👏

"​Federated social media software #Mastodon had an impersonation vulnerability that was patched last week. More than half the instance admins patched it in less than 24 hours. I enjoyed the comment from Elliott Wilkes, chief technology officer at Advanced Cyber Defence Systems, saying “there's just not the same investment in security because there's not massive revenue supporting the platform, and each owner of an instance has to perform security management on their own” as I look wistfully in the direction of Microsoft and its massively lucrative portfolio of security binfires."
Bugs were reported by German #pentesting outfit #Cure53 during a #Mozilla-requested audit.
https://www.theregister.com/2024/02/02/critical_vulnerability_in_mastodon_is/ #fediverse #socksup

Critical vulnerability in Mastodon is pounced upon by fast-acting admins

Danger of remote account takeovers leaves lead devs scared of releasing many details

The Register

My preferred note-taking app Obsidian isn’t open-source, but the clients just went through a third-party audit and the Obsidian team published the full report.

https://obsidian.md/blog/cure53-security-audit/

#Obsidian #Cure53 #Transparency #NoteTaking #PKM #SecondBrain

New security page and independent audit completed by Cure53

Independent audits help us ensure that our code and procedures meet the highest security standards. Our new Security page hosts audits completed by third parties, including our first report by Cure53 covering Obsidian apps.

Proton Pass: Login-Daten liegen unverschlüsselt im Hauptspeicher

Der Karlsruher Penetrationstester Mike Kuketz hat auf seinem Blog auf eine üble Verhaltensweise des Passwortmanagers Proton Pass hingewiesen.

Tarnkappe.info
Mastodon in Gefahr: Kritische Schwachstelle erlaubt Server-Übernahme

Mastodon hat im neusten Update vier große Lücken geschlossen. Wir erklären euch, warum ein Update wichtig ist.

Tarnkappe.info
CVE-2019-8761: macOS gehackt mittels verfremdeter Textdatei

Der Programmierer Paulos Yibelo beschreibt auf seinem privaten Blog wie es ihm gelang, macOS mittels des Bugs CVE-2019-8761 zu übernehmen.

Tarnkappe.info
#nordvpn promotes its new password manager with an audit done by #cure53. It seems that you can only view the report if you create an account.
Audits and their results should not be used for marketing!