54 Followers
209 Following
256 Posts
knows approximately everything about almost nothing

@GossiTheDog

They recently added a feature to control what publishers are allowed

https://code.visualstudio.com/docs/enterprise/policies

Centrally manage VS Code settings with policies

Enterprise policies in Visual Studio Code enable organizations to centrally manage settings for their development teams. This reference details the available policies and how to implement them.

Rocky Linux is introducing a new optional Security Repository to help reduce time-to-patch during exceptional security events like CopyFail and Dirty Frag.

Read More: https://forums.rockylinux.org/t/rocky-linux-security-repository-and-dirty-frag-security-update/20435

Rocky Linux Security Repository and Dirty Frag Security Update

The Rocky Linux project has always prioritized stability, compatibility, and trust within the Enterprise Linux ecosystem. Historically, this has meant waiting for official upstream Enterprise Linux releases before publishing updates to Rocky Linux systems. Today, we are announcing a new capability designed specifically for exceptional security situations where immediate action is necessary to better protect our users and infrastructure operators. Introducing the Rocky Linux Security Repository ...

Rocky Linux Forum
@wdormann slight tangent, since Windows had native .ISO support, why do people still use Daemon Tools?

We are very happy that today Apple issued a patch and a security advisory. This comes following 404 Media reporting that the FBI accessed Signal message notification content via iOS despite the app being deleted.

Apple’s advisory confirmed that the bugs that allowed this to happen have been fixed in the latest iOS release. You can read more here: https://support.apple.com/en-us/127002

About the security content of iOS 26.4.2 and iPadOS 26.4.2 - Apple Support

This document describes the security content of iOS 26.4.2 and iPadOS 26.4.2.

Apple Support

From the same author as BlueHammer we now have RedSun.

This works ~100% reliably to go from unprivileged user to SYSTEM against Windows 11 and Windows Server 2019+ with April 2026 updates, as well as Windows 10, as long as you have Windows Defender enabled. Any system that has cldapi.dll should be affected.

@SecureOwl they don't lock their computer?
@0xabad1dea thank you for the regular Odin updates; MentalHealth++

As a person who has followed Iranian cyberespionage operations for more than a decade, this story is crazypants and you should read it:

https://www.theatlantic.com/magazine/2026/01/mohammad-tajik-iran-cyber-intelligence/684954/?gift=kPTlqn0J1iP9IBZcsdI5IUTLJcsVKq12m0EyVlSYJBQ&utm_source=copy-link&utm_medium=social&utm_campaign=share

They Killed My Source

A man claiming to be an Iranian intelligence officer promised me he would reveal his country’s secrets. Then he disappeared.

The Atlantic
@GossiTheDog just get 10 of them, easy :)
@mattblaze having to pay to go to national parks seems weird, it's free in Australia and New Zealand, not sure about the rest of the world