UA: О люди... Моя чуйка не дала це встановити 😯

EN: Oh my... My gut feeling hadn't let me install this 😯

https://github.com/basecamp/omarchy/issues/1466

#omarchy #security #securityissues #notsecure

Security risk: Automatic AUR updates with yay --Sua --noconfirm · Issue #1466 · basecamp/omarchy

Hello, I've noticed that the script bin/omarchy-update-system-pkgs uses the command yay --Sua --noconfirm to update AUR packages. This could be a security risk if a user has installed AUR packages ...

GitHub
Perplexity’s Comet AI browser tricked into buying fake items online

A study looking into agentic AI browsers has found that these emerging tools are vulnerable to both new and old schemes that could make them interact with malicious pages and prompts.

BleepingComputer
An Analysis of Tor's Security

At least EA is being honest about it.

"Sicherer Start ermöglicht es, von EA Javelin Anticheat unterstützte Spiele zu erkennen und zu entfernen..."

Translation: "Secure Boot makes it possible to detect and remove games supporting EA Javelin Anticheat."

Source: https://help.ea.com/de/articles/technical-issues/secure-boot/

Edit: Added screenshot for posterity.

#EA #SecureBoot #NotSecure #Translations #Anticheat #WontHelp

🧵 …zusätzlich zur dieser Tootreihe noch ein Artikel, weshalb der Session Messenger alles andere als sicher ist obwohl es als Signal Klon sich so vorgibt:

🔓 [ENG] »Don’t Use Session (Signal Fork)«
https://soatok.blog/2025/01/14/dont-use-session-signal-fork/

#session #messenger #security #itsec #notSecure #signalclone #dontuse #chat

Don’t Use Session (Signal Fork) - Dhole Moments

Last year, I outlined the specific requirements that an app needs to have in order for me to consider it a Signal competitor. Afterwards, I had several people ask me what I think of a Signal fork c…

Dhole Moments

A reminder of the key reason to move away from using SMS as an authenication method!

#sms #notsecure

https://lifehacker.com/tech/one-million-two-factor-authentication-codes-exposed

One Million Two-Factor Authentication Codes Were Recently Exposed

As reported by Bloomberg Businessweek, an obscure third-party telecom service had access to at least one million 2FA codes that passed through its network.

Lifehacker
Is Google Marking Your Site as “Not Secure” and How To Fix It FAST? https://www.youtube.com/watch?v=H3CfTr6LmWo 🌐💡🔒 #Google #NotSecure #SSL #Error #Fix #Guide
Is Google Marking Your Site as “Not Secure” and How To Fix It FAST?

YouTube
Ugh. Needing to use a background-check agency that does not offer MFA on their website. #notSecure

The wan attempts to secure large language models with “guardrails” are trivially undone, sometimes even with only $0.20 of API activity.

#chatgpt #LLMs #ai #notai #notsecure

https://www.theregister.com/2023/10/12/chatbot_defenses_dissolve/

AI safety guardrails easily thwarted, security study finds

OpenAI GPT-3.5 Turbo chatbot defenses dissolve with '20 cents' of API tickling

The Register

@atomicpoet

Don't even trust me!

Use #XMPP-#OMEMO & #PGP/MIME because #NotYourKeys = #NotSecure!

Only #SelfCustody of #PrivateKeys allows full control.

#EncryptEverything!!!