@krypteia

295 Followers
277 Following
298 Posts
Lawyers and techies working on pro bono privacy projects in our spare time.

Solon (c. 600 BC) talking about Trump. Probably.

[Actually it's Solon frag. 4 as quoted by Demosthenes (David Mulroy trans.)--Solon is describing the conditions of Athens before his reforms. Corruption, conspiracies, criminal greed, and rampant injustice--some things never change.]

Can't exploit #spectre if your ADD/ADHD means you're only spending a few minutes on any given page.

(#spectre leaks information so slow it probably takes ~15-20 min to get usable amounts of memory)

https://mastodon.social/media/c_aFasgBVyl2ZUKr8RQ

Great collection of #ROCA vulnerability info linked below (from hanno).

Suspect people using hardware backed gpg keys will be knowledgeable enough to take the appropriate steps. Executives with bitlocker encrypted laptops storing sensitive information, not so much.

"Affected Products and Keys by Infineon RSA vulnerability"
https://gist.github.com/hannob/ad37d9e9e3cbf3b89bc0a8fc80cb9475

Affected Products and Keys by Infineon RSA vulnerability

Affected Products and Keys by Infineon RSA vulnerability

Looks like disclosure of serious #WPA vulnerability is imminent.

"Kenn White on Twitter"
https://twitter.com/kennwhite/status/919522184384729089

Kenn White on Twitter

“This is a core protocol-level flaw in WPA2 wi-fi and it looks bad. Possible impact: wi-fi decrypt, connection hijacking, content injection. https://t.co/FikjrK4T4v”

Twitter

#Accenture unsecured S3 buckets including client credentials is pretty hilarious & horrifying

"System Shock: How A Cloud Leak Exposed Accenture's Business"
https://www.upguard.com/breaches/cloud-leak-accenture https://mastodon.social/media/Qs7YysZ-NicuMtxeGCI

System Shock: How A Cloud Leak Exposed Accenture's Business

Multiple sensitive buckets belonging to the corporation were found publicly exposed, revealing credentials, keys, and customer information.

Firefox users need to go to about:config and set settingnetwork.IDN_show_punycode to true.

The phishing potential for this issue is huge.

https://www.xudongz.com/blog/2017/idn-phishing/

#Mastocat

This is the General. He loves cuddles, but only until he remembers that he also loves clawing human faces off.

https://mastodon.social/media/ghZNMr8CF_I-epd__Bg