Scott Wilson

@scottwilson@infosec.exchange
377 Followers
357 Following
75 Posts

28+ year information security “professional”.

I'm a cishet, middle-aged, middle class, Christian, husband, dad, doggy-dad, and friend. I'm also a Stage IIIB #ColorectalCancer survivor. I like non-alcoholic #beer, #gardening and yardwork, playing guitar, and reading #books (mystery, thriller, suspense, #scifi, fantasy, astrophysics, and cosmology).

I’m supporter of #LGBTQIA rights, a #BlackLivesMatter advocate, a believer in #TransRights and proponent of equality. I support #Ukraine.

Currently clean on OPSEC. Only hand-crafted, artisanal memes. My profile photo is > 10 years old. My bad.

Posts are on auto-delete (1 week).

PronounsHe/Him/His
Home Pagehttps://bscottwilson.com
[Bad] Codehttps://codeberg.org/bswilson
Photoshttps://pixel.infosec.exchange/scottwilson
Having just recently switched my password manager to @keepassxc, this is a very helpful blog post from @markpitblado

How to backup your password vault with KeePassXC

https://www.markpitblado.me/blog/how-to-backup-your-password-vault-with-keypassxc/

#passwordmanager #opensource
How to backup your password vault with KeePassXC

This is a very short post about using KeyPassXC as a backup for your online password vault, whether that be Bitwarden, Proton Pass, or 1Password

Mark Pitblado
Incredible concept and delivery 🔥 https://mastodon.social/@AlSweigart/114847898101070867

John Oliver on AI Slop at Last Week Tonight: https://www.youtube.com/watch?v=TWpg1RmzAbc

#NoAI #AIslop

AI Slop: Last Week Tonight with John Oliver (HBO)

YouTube

The Varonis team has published a write-up on a ServiceNow bug they found and got patched last week. Tracked as CVE-2025-3648, the vulnerability allows threat actors to infer data from the Now Platform without authentication.

https://www.varonis.com/blog/counter-strike-servicenow

Count(er) Strike – Data Inference Vulnerability in ServiceNow

Varonis Threat Labs discovered a high severity vulnerability in ServiceNow’s platform that can lead to significant data exposure and exfiltration.

Can an “ethical” spyware company justify providing its tech to ICE, the U.S.’s immigration enforcement arm that has been carrying out large-scale raids across the country? @Techcrunch explores:

https://flip.it/kqMETW

#Tech #TechNews #SpyWare #CyberSecurity

Can an ‘ethical’ spyware maker justify providing its tech to ICE? | TechCrunch

Analysis: In calling itself an ethical spyware vendor, Paragon has opened itself up to scrutiny of its government customers.

TechCrunch
Flipboard Tech Desk (@TechDesk@flipboard.social)

Can an “ethical” spyware company justify providing its tech to ICE, the U.S.’s immigration enforcement arm that has been carrying out large-scale raids across the country? @Techcrunch@flipboard.com explores: https://flip.it/kqMETW #Tech #TechNews #SpyWare #CyberSecurity

Flipboard
Mastodon on mobile now apparently puts buttons on the bottom, where there is more space, and they're reachable. 🎉
The Feynman Lectures on Physics https://www.feynmanlectures.caltech.edu/
The Feynman Lectures on Physics

×

-QiAnXin claims to find new North American APT
-SEC and SolarWinds seek settlement
-C&M hack linked to malicious insider who sold his credentials
-Luis Vuitton discloses breach
-Ingram Micro deals with ransomware attack
-Idealab breach
-Indiana University hack
-Win 11 finally overtakes Win 10
-Taiwan warns against Chinese mobile apps
-Australia introduces age verification for search engines
-EU to send cyber reserve to Moldova

Newsletter: https://news.risky.biz/risky-bulletin-chinese-researchers-claim-to-find-new-north-american-apt/
Podcast: https://risky.biz/RBNEWS447/

-Cyber scammers arrested in Nepal
-Lynx RaaS rebrands as Sinobi
-New Hpingbot botnet
-New RondoDox botnet
-IconAds fraud operation disrupted
-JDWP ports abused for cryptomining
-SHELLTER team threatens customers after its pen-test framework was used in malware attacks
-Massive AI disinfo hits Germany
-APT36 targets BOSS Linux
-DjVuLibre fixes Linux attack
-New sudo vulns
-Instagram uses one-day certs
-Lenovo AppLocker bypass