I've got an alert for FireFox based browser users (as well as users of other non-Chrome based web browsers). You may suddenly feel extremely smug. So, be careful out there.

https://www.forbes.com/sites/daveywinder/2026/03/14/google-zero-day-alert-for-35-billion-chrome-users-attacks-underway/

#FireFox #Chrome #Securty #ZeroDay #Hack #Google

Google Zero-Day Alert For 3.5 Billion Chrome Users—Attacks Underway

Google has confirmed an emergency Chrome security update amid reports that attackers are exploiting two zero-day vulnerabilities.

Forbes
#securty #infosec #it question.
Is there a name for the act of looking away from a computer while someone you are helping types in their password?
Really need to start capturing in my timecard-reporting, "spent a cumulative hour+ logging back into things due to the auth-timeouts on web-tooling being set to an hour." I mean, I avoid the customer's web-based tooling — using the CLI-based alternatives to the greatest extent possible since they have 10hr credential-timeouts — but there are days (like today) where I have to use the web based tooling.

Started working, today, at 0630. I've had to re-login to three different tools' web UIs four times each, already. Logins, being 2FA-enabled, require punching in my username and my password, and then acknowledging an "is that you" (2FA) prompt sent to my phone's one authenticator-app. It's mostly the waiting for the
#2FA part that sucks up the most time.

The best part is that the various, web-based tools authenticate against the same back-end, but aren't SSO'ed, so, signing into one doesn't save you from re-signing into the other webUIs.

#securty
#SSO
#SingleSignOn
"During a press conference with organizations that advocate for seniors in New York, Senate Minority Leader Chuck Schumer said Leland Dudek should resign as acting SSA commissioner, or President Trump should fire him" www.morningstar.com/news/marketw... #SSI #SSDI #COBOL #AI #data #cybersec #securty

Social Security rule reversals...
Habe ein Notebook mit Fingerprint Sensor, was ja erst mal besser als Passwort ist. Um diesen zu nutzen braucht man unter Windows 11 Windows Hello. Dazu miss man einen 6stelligen PIN definieren, der das komplexe Passwort der IT-Vorgabe ausgebelt. Finde den Fehler. #windows #securty

Every Sunday I share an Open Source Tool from the Cloud Native Ecosystem. Today: hardeneks.

hardeneks is a CLI that checks if an EKS cluster follows EKS Best Practices: https://github.com/aws-samples/hardeneks

#kubernetes #aws #securty #compliance #cloudnative #opensource #OpenSourceSunday

GitHub - aws-samples/hardeneks: Runs checks to see if an EKS cluster follows EKS Best Practices.

Runs checks to see if an EKS cluster follows EKS Best Practices. - aws-samples/hardeneks

GitHub
@danak6jq @w7voa it looks like thousands in these units were modified. I’m sure a few of these #hts and #pagers made into this country. Looks like they were designed to prevent detection. I wouldn’t be surprised if some made it past #tsa #securty

The Android 14 August security patch is rolling out to Pixel devices with 46 security vulnerabilities resolved ranging from high to critical.

#android #pixel #securty
https://tchlp.com/7wxNFR

Android 14 August security patch rolling out: What’s fixed for Pixel

The Android 14 August security patch is rolling out today for the Pixel 5a, 6, 6 Pro, 6a, 7, 7 Pro, 7a, Tablet, Fold, 8, 8 Pro, and 8a...

9to5Google
Contextual Authorization And Audit Logs #shorts

YouTube