home.social

#advisories — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #advisories, aggregated by home.social.

fetched live
  1. #Pi_hole schließt sechs #Sicherheitslücken -

    Die Pi-hole-Entwickler haben ein umfangreiches #Wartungsupdate veröffentlicht, das vor allem sicherheitstechnisch einiges zu bieten hat. Mit dem Release schließen die Entwickler insgesamt sechs #Security- #Advisories in den #Modulen #Core und #FTL.

    linuxnews.de/pi-hole-schliesst

  2. : As the intensifies, there are '#advisories' going around asking people not to fill their to the full.

    Contrary to common sense, this is categorically a *bad idea*! Full tanks are actually *safer* than partially empty tanks or even fully empty tanks with trace amounts of fuel.

    Fuel doesn't explode on its own. Fuel-air mixture does. Empty tanks with trace fuel have the most of it, while full tanks have the least of it.

  3. Für viele Unternehmen sind die Anforderungen an das #Schwachstellenmanagement in der #Cybersicherheit ein zunehmend dickes Brett.

    Neben der reinen Menge an Meldungen ist ein weiteres Problem, dass #Cybersecurity-#Advisories bislang in den unterschiedlichen Formaten, also beispielsweise als PDF, als Website oder als Textfile veröffentlicht werden.

    Deshalb empfiehlt das #BSI Unternehmen den #CSAF-Einsatz, um Risiken schneller erfassen und effizienter bewerten zu können:

    bsi.bund.de/SharedDocs/Downloa

  4. #Global #Travel #Advisories put The #U.S. on the 'Warning' list.

    traveling to the US is dangerous.

    (it was about time).

  5. We have updated FediVuln to make it less verbose, now only sending updates related to newly published #CVE #advisories Sorry for the noise!

    From now on, new CVEs retrieved by Vulnerability-Lookup will be posted here:

    social.circl.lu/@vulnerability

    This makes it a bit more natural while keeping the meaning intact.

    #cybersecurity #vulnerability

  6. If you enjoyed the tour of my main @github projects these past few weeks, there’s much more on my homepage:

    0xdeadbeef.info

    Beside #publications, #talks, #security #advisories, #exploits, and #tools I developed over almost three decades of hacking, I’m especially proud of the related works section, where I tried to collect the many projects that in a way or another build upon my previous work.

    I’m glad to have provided some inspiration to so many talented hackers… Hack the planet! 🏴‍☠️🌎

  7. #USA, #Michigan: State reminds #hunters of ‘Do Not #Eat#health #advisories for Clark’s Marsh, michigan.gov/mdhhs/inside-mdhh

    A Do Not Eat #deer advisory remains in effect due to evidence that deer within 3 miles of the marsh were more likely to have various per- and polyfluorinated substances (#PFAS), including perfluorooctane sulfonic acid (#PFOS), in their #livers and #muscle tissue.

  8. And again some bad new perspectives on #AI and #cybersecurity:

    "#OpenAI's #GPT-4 can exploit real vulnerabilities by reading #security #advisories"

    "When given the #CVE description, GPT-4 is capable of exploiting 87 percent of these vulnerabilities compared to 0 percent for every other model we test (GPT-3.5, open-source LLMs) and open-source vulnerability scanners (ZAP and Metasploit)."

    theregister.com/2024/04/17/gpt

  9. @nixCraft #FreeBSD user on both desktop and server (incl. firewall) as well as #ports maintainer here:

    My answer (ASAP) is an approximation.

    For the base system, I read the published #advisories ASAP. I decide whether I'm affected, and how exposed my different machines are. If necessary, I rebuild base from source and update all machines needing the update ASAP.

    For ports, I try to keep an eye on "exposed services" (like e.g. my MTA) for servers and at least browsers for desktops. Actually installing an update can take two or three days because I'm building my own package repository using #poudriere.

  10. If you didn't see much #frost or a #freeze in your part of the #Northland Sunday night, another chance is coming Monday night.

    New Freeze #Warnings and Frost #Advisories are in effect as temperatures will drop to and slightly below the #freezing point.

    This will help make the #fall #colors pop a bit more, with #peak pretty much here. Now's the time to enjoy it!

    #wxtooter #weather #wx #MNwx #WIwx #UPwx

  11. Congratulations, Cybersecurity and Infrastructure Security Agency, and Jen Easterly (CISA) on publishing the #OT #Advisories as #oCSAF! 👏

    This is an important step which will allow all asset owners a faster and more effective review of security advisories.
    @certbund already put you up on our #oCSAF Lister: wid.cert-bund.de/.well-known/c

  12. The NWS will be getting rid of Special Weather Statements and most advisories in replace of plain language headlines by 2025.

    For example, a special weather statement will most likely appear as something like:

    "Strong Thunderstorm Statement"

    I highly recommend everyone at least glance through these two documents put out by the NWS. There will be times a warning replaces a statement.

    NWS Statement: weather.gov/media/notification

    NWS Examples: weather.gov/media/notification

    #Weather #WX #Advisories

  13. #CISA Releases Six Industrial Control Systems Advisories
    02/09/2023 10:00 AM EST

    Original release date: February 9, 2023
    CISA released six Industrial Control Systems (#ICS) advisories on February 9, 2023. These advisories provide timely information about current #security issues, #vulnerabilities, and #exploits surrounding ICS.
    CISA encourages users and administrators to review the newly released ICS #advisories for technical details and mitigations:
    • ICSA-23-040-01 Control By Web X-400, X-600M
    • ICSA-23-040-02 LS Electric XBC-DN32U
    • ICSA-23-040-03 Johnson Controls System Configuration Tool (CST)
    • ICSA-23-040-04 Horner Automation Cscape Envision RV
    • ICSA-22-179-02 Omron SYSMAC CS-CJ-CP Series and NJ-NX Series (Update A)
    • ICSA-22-354-03 ARC Informatique PcVue (Update A)

  14. Continuing the tour of my @github projects, here’s my public #security #advisories, also spanning about 20 years.

    github.com/0xdea/advisories

    "Testing can prove the presence of bugs, but not their absence."
    -- Edsger W. Dijkstra

    As a side note, please, please stop calling it responsible #disclosure. The proper name is #coordinated #disclosure. Thanks 🙏

  15. With #snow & #freezing #rain in the #forecast , which may cause #dangerous road conditions, #travel #advisories are in place for many areas of B.C., including the #FraserValley and mid- & south #VancouverIsland from Thursday, Dec. 22 until Saturday, Dec. 24. 
    People should also be prepared for potential #PowerOutages .

    news.gov.bc.ca/releases/2022EM

    #BritishColumbia #BCWeather #StayTheFuckHome #Winter #StormSeason
    #PNW #StormWeather #PacificNorthwest #Westcoast

  16. The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP).

    nvd.nist.gov/

    #security #vulnerability #advisories #reference #automation #scanning