Very Hairy Jerry

@jerry@infosec.exchange
39.3K Followers
3.5K Following
42.1K Posts

Recovering CISO
May have an orchid problem
Bad photography
Worse dad jokes
The worst Infosec hot takes
Podcast: https://defensivesecurity.org
Blog: https://infosec.engineering
Twitter: @maliciouslink
https://Infosec.Exchange Admin
#infosec #security #cybersecurity #risk #fedi22
…and for fucks sake, be nice to each other. We are only here for a brief time. Make it enjoyable.

To help support the costs associated with running this instance, please consider donating. You can set up recurring donations here:

Patreon: https://www.patreon.com/infosecexchange

Ko-Fi: https://ko-fi.com/infosecexchange

Liberapay: https://liberapay.com/Infosec.exchange/

You can also support with a one-time donation using PayPal to "jerry@infosec.exchange".

Protonmailjerry@bell.st
Bloghttps://www.infosec.engineering
Liberapayhttps://liberapay.com/Infosec.exchange/
Paypaljerry@infosec.exchange
Ko-Fihttps://ko-fi.com/infosecexchange
Patreonhttps://www.patreon.com/infosecexchange
@estiqaatsi welcome!
So much for TACO…
@bbaugh I’ve been trying to get my family on board with using passkeys via 1Password. The user experience is really good - even easier than passwords, so seems to be working
@bbaugh not really. The breach isn’t new, we will see more of these fake breaches getting even larger, and it’s a reminder to improve our password security.
@hobbsc You know how the big guy in the group is called "tiny"? it's like that
@BeefyMacNCheese all indications are that it's a bunch of older breaches rolled into a few new files.
@rotopenguin I have a list of every phone number, too
My take on the 16 billion credential leak: https://www.youtube.com/shorts/Y5greyGyhnk
Holy Cow! 16 billion usernames and passwords leaked!? Should we panic?

YouTube

@michaelharley it’s here: https://infosec.exchange/about

I have threads limited - meaning you can follow people there and they can follow you if you approve, and their posts won’t show up in your public timelines (unless you follow them). Infosec.space has a hard block of threads.net, but it’s not very widely used.

Infosec Exchange

A Mastodon instance for info/cyber security-minded people.

Mastodon hosted on infosec.exchange

PostMortem: Assumed DOJ Montana Leak of Phone Dumps

Type of leak

Highly confidential information on a public SMB share without authentication

Threats from the leak

I see the following threats:

  • Integrity and Confidentiality of investigations into serious crimes compromised
  • Privacy of U.S. citizens compromised (very likely to contain most intimate data)
  • Providing 3rd parties hostile to the U.S. with blackmail material

1/4

×
Wednesday motivation
@jerry Good one!
@phillycodehound Doesn't matter who the poster is, but I always have to stop and open up the thread that has the laughing Minions. @jerry
@jerry
Someone tell that to the weekend drinkers who drive through my neighborhood. 😡
@jerry #Alt4You A graphic in the style of a public etiquette sign. A stick figure is pictured throwing something away in a trash can. It's surrounded by the text, "It's called a trash can, not a trash can't"