@mf_newsdigest Interesting...

I guess #Bundeswehr doesn't want to rely on inseucre #UHFSATCOM & backdoored #NATO #Link22 / unencrypted #Link11 comms nor pay a commercial provider (#Iridium) of a hostile nation (#USA) for a proprietary solution (#NettedIridium)…

#MILSATCOM #SATCOM #Military #MILINTEL #intelligence #InfoSec #OpSec #ComSec #ITsec #BwSATCOM #SatcomBw

Kevin Karhan :verified: (@kkarhan@infosec.space)

Hey, @AuswaertigesAmt@social.bund.de, ihr wisst schon dass eure #ComSec #pwned [wurde?](https://www.youtube.com/watch?v=linNxisuCFU&t=1932s) - Vielleicht solltet ihr eure #SMS über #Iridium verschlüsseln... Vielleicht mal [in OpenSource investieren](https://github.com/KBtechnologies/PocketCrypto)? CC: @bsi@social.bund.de @Bundesregierung@social.bund.de #ITsec #InfoSec #OpSec #ComSec #Krisenkommunikation #40diplo #Privatsphäre #Datenschutz #Informationssicherheit #Kommunikationssicherheit #DEpol

Infosec.Space

Oh, right google has an open redirect
They're now using it in the phishing tests. Funnily they do not mention it in their training material where they tell users to check the URLs of links before clicking them.

(May be a GApps thing that it modifies all of the urls to prefix their open redirect...)

#infosec #itsec #itsecurity

Das Interesse an einer GPG-Party zur #CLT2026 ist da, aber viele sind noch unentschlossen (30%). 🤔 An die "Vielleicht"-Fraktion: Was braucht ihr für ein festes "Ja"?
#ChemnitzerLinuxTage #GPG #OpenPGP #Linux #OpenSource #Privacy #ITSec #Datenschutz #Keysigning #WebOfTrust
Einen Slot ohne Konflikte 📅
Hilfe beim Vorbereiten 🆘
Kurz & schmerzlos (<1h) ⏱️
meet & greet anstalt festen Termin 🤝
Poll ends at .

In December, the authors of #watchtower decided to archive their own project.

There are a few forks out there - unfortunately I know nothing about them so can't really vouch for their legitimity. If you want to continue using Watchtower, please assess them yourself without switching. A few of the active forks I've looked at are full of AI slop and while they might work, I wouldn't advice using any of them.

This is not a good way to end a project. The original authors recommend looking at Kubernetes instead. For many #Docker users, this is not an option. They need a drop-in replacement for Watchtower which keeps their docker containers updated.

One fedizen wrote that this is a popular fork but he did not test it himself:
https://github.com/nicholas-fedor/watchtower/
Is this one of the forks that is afflicted with #AIslop?

#homelab #selfhosting #docker #itsec #itsecurity

As it is public now* I'm able to talk about it.

Check your VMware infrastructure. CVE-2024-37079 is known to have been exploited in the wild.

> UPDATE: Broadcom has information to suggest that exploitation of CVE-2024-37079 has occurred in the wild.

https://euvd.enisa.europa.eu/vulnerability/CVE-2024-37079
https://euvd.enisa.europa.eu/vulnerability/CVE-2024-37080
https://euvd.enisa.europa.eu/vulnerability/CVE-2024-37081

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/securityadvisories/0/24453

#infosec #itsec #itsecurity

* technically since Friday.

EUVD

European Vulnerability Database

@teezeh nicht das der artikel komplett falsch ist aber angst ist immer auch häufig ein teil vom marketing. anstadt was grundsätzlich, egal in welchem bereich, werden bausteine als lösungen verkauft. selten sind die wirklich sicher oder gar auf dem aktuellen stand. ich befürchte das deswegen das it-sec. marketing wider populär wird wie damals antivir.

#itsicherheit #marketing #it #antivir #itsec #pr

»Souveränität in der Cloud:
Digitale Souveränität bedeutet für Unternehmen und Behörden Verfügungsgewalt über Daten, Kontrolle über Infrastruktur und Vorhersehbarkeit gegenüber rechtlichen Eingriffen.«

Kein neues Thema und mMn noch den wenigsten bewusst. Klar die Umstellung kann aufwändiger so wie teuerer sein und doch hatten sich die meisten aus Bequemlichkeit such nicht darum gekümmert.

☁️ https://www.it-daily.net/it-management/cloud-computing/souveraenitaet-in-der-cloud

#cloud #alternative #souveranitat #firma #behorden #unternehmen #daten #itsec

Souveränität in der Cloud

Digitale Souveränität bedeutet Verfügungsgewalt über Daten, Kontrolle über Infrastruktur und Vorhersehbarkeit gegenüber rechtlichen Eingriffen.

Onlineportal von IT Management

Microslop is a bit late for the new year celebration (or a bit early for Chinese new year).

Either way they're starting/ending the year with a banger: CVE-2026-20965

Being able to steal Global Admin token and labeling it a medium severity.

#infosec #infosec2026 #itsec #itsecurity

Seriously, if you want some #VideoDoorbell that doesn't snitch on you but doesn't require a CS degree, consider #Ubiquiti 's offerings under the #UniFi brand that can be setup in an #airgapped #network and store all recordings locally instead of streaming them offsite at the hands of the #AmericanGestapo and whoever is being given Access as per #CloudAct!

  • Not to mention unlike #ring and other bs, one can also configure these to comply with #GDPR & #BDSG, including the maximum 72 hours storage time limit per law!

https://www.ui.com/eu/en/physical-security/special-devices/doorbells

#NotSponsored & #NotLegalAdvice, I just know their stuff from experience!

#Dataprotection #Privacy #ITsec #InfoSec #OpSec #ComSec #USpol #DEpol #GAFAMs #tech #blink #ring #sarcasm #commentary #cameras #doorbell

UniFi Protect Doorbell Security Cameras - Ubiquiti

UniFi Doorbells deliver instant alerts, low-latency 2-way talk, and crisp video—WiFi or PoE.

@sans_isc no and it inherently.mever will, necause "#AI" making #AIslop doeen't think nor has any concept.of #ITsec, #InfoSec, #OpSec or #ComSec.

  • If it's hard for -sentient beings* ti write secure.code, it'll be impossible for non-sentient, stochastical shitposting machines.