We have summarized the research for GitHub Actions and security practices, which was accepted for NDSS Symposium 2026.

#GitHub #GitHubActions #NDSS2026 #TechNews #TechUpdates

https://officialaptivi.wordpress.com/2026/03/09/research-github-actions-security-practices-and-mixed-methods/

Research: GitHub Actions, security practices, and mixed methods

GitHub Actions is a CI/CD environment that allows you to automate building, testing, and deploying your project to save development time while maximizing productivity and increasing flexibility. Gi…

Aptivi
ProjectAinita (@[email protected])

Attached: 1 image With #war erupting between the U.S. and #Iran, the internet is quickly impacted, leaving very few international connections operational. #IranInternetStatis #IranTensions

Infosec Exchange

Having returned from photographing a large conference in the last week (NDSS), I'm now processing 1000-ish images. And I have a request. It's a simple request. Can we please switch to printing all conference badges on 50% gray cards? Mmmmmk? Thank you.

#ndss #ndss2026 #photography

✈️ I am traveling to #ndss2026 today to present two of our @SECUSO_Research papers at #USEC and #MADWeb 🤩

The paper „‘I found the text to be encouraging‘ - Evaluating Different Passeord Strength Calculator Designs“ is joint work with Rozalina and Peter. We compared different password strength meter designs and found that fear appeals are not absolutely necessary to motivate users to choose strong passwords.

You can read a version of the paper here: https://s.kit.edu/password-meter

“I found the text to be encouraging” - Evaluating Different Password Strength Calculator Designs

While passwordless authentication methods are on the rise, password-based authentication remains widely used in practice. In search of effective means to promo

I'll be presenting our work

Eviction Notice: Reviving and Advancing Page Cache Attacks

Today (Feb/24/2026) at #NDSS2026

Session 1D: Microarchitectural Security Caches to Ashes, Embarcadero

Looking forward to seeing you there!

Jonas Juffinger, Lukas Maar, @lavados

Paper: https://snee.la/posts/eviction-notice/

Eviction Notice: Reviving and Advancing Page Cache Attacks

Foreword This blog post is a summarized and introductory write up of our paper recently accepted at NDSS 2026, “Eviction Notice: Reviving and Advancing Page Cache Attacks”. Read the full paper here. Authors: Sudheendra Raghav Neela, Jonas Juffinger, Lukas Maar, Daniel Gruss Artifacts: Github Repository, Zenodo Record (Available, Functional, and Reproducible) CVE-2025-21691: Announcement, Red Hat, NVD NIST, Debian Tracker, Suse. Introduction An operating system deals with pages, the smallest region of memory in a system using virtual memory1.

Wait, next weeks #ndss2026 has no list of accepted papers online? WTF?

Hi everyone! I'm excited to announce that my first first-author paper has been accepted at NDSS 2026 🥳, to be held at San Diego, California, USA. If you're attending #NDSS2026 this year and are working on systems security, let me know - it'd be awesome to meet up!

Eviction Notice: Reviving and Advancing Page Cache Attacks

@vmcall, Jonas Juffinger, Lukas Maar, @lavados

all of us from @isec_tugraz, at TU Graz, Austria.

In the paper, we revive practical attacks on the Linux page cache and also provide a systematic classification & understanding of primitives which interact with page cache. This understanding helps us advance page cache attacks, including speeding up previously known mechanisms by six orders of magnitude.

I have a small technical write up on my website if you're interested to check it out: https://snee.la/posts/eviction-notice/

Paper available here: https://snee.la/pdf/pubs/eviction-notice.pdf

Our artifacts have been evaluated to be available, functional, and reproducible, so feel free to try the code out on your Linux box: https://github.com/isec-tugraz/Eviction-Notice

Eviction Notice: Reviving and Advancing Page Cache Attacks

Foreword This blog post is a summarized and introductory write up of our paper recently accepted at NDSS 2026, “Eviction Notice: Reviving and Advancing Page Cache Attacks”. Read the full paper here. Authors: Sudheendra Raghav Neela, Jonas Juffinger, Lukas Maar, Daniel Gruss Artifacts: Github Repository, Zenodo Record (Available, Functional, and Reproducible) CVE-2025-21691: Announcement, Red Hat, NVD NIST, Debian Tracker, Suse. Introduction An operating system deals with pages, the smallest region of memory in a system using virtual memory1.

Richtig gute Idee, die Leute sich mit Telephonnummer registrieren zu lassen! Und dann noch die Schlüssel beim Accountwechsel auf dem Gerät wiederverwenden! Und dann alles frei ins Netz und kein Monitoring dazu, yolo!

#HeyThere #WhatsApp #Meta #NDSS2026

https://heise.de/-11082660
https://dx.doi.org/10.14722/ndss.2026.230805

3,5 Milliarden User: Gesamtes WhatsApp-Verzeichnis abgeschnorchelt

Wiener Forscher haben alle WhatsApp-Nummern abgerufen. Die 3,5 Milliarden Profile sind der größte Datenabfluss der Geschichte – und übler, als man meinen würde.

heise online
Kudos to Gabriel et. al, on getting 3.5 billion valid phone numbers (& an accepted NDSS paper)! #ndss2026 https://www.heise.de/news/3-5-Milliarden-Konten-Komplettes-Whatsapp-Verzeichnis-abgerufen-und-ausgewertet-11082660.html?seite=all
3,5 Milliarden User: Gesamtes WhatsApp-Verzeichnis abgeschnorchelt

Wiener Forscher haben alle WhatsApp-Nummern abgerufen. Die 3,5 Milliarden Profile sind der größte Datenabfluss der Geschichte – und übler, als man meinen würde.

heise online
Two years of research work come to a head: I am very excited to announce that our paper titled "FlippyR.AM: Large-Scale Study of Rowhammer Prevalence" has been accepted at the #NDSS2026. We want to thank all the participants again for their work! If you are interested, you will find a preprint here: https://flippyr.am/FlippyRAM.pdf. Also, we will have the opportunity to give a talk about our results at the #39c3 this year! Thanks @lunkw1ll, @lavados for a great collaboration!