#cyberresearch — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cyberresearch, aggregated by home.social.
-
30.4% adoption vs. 12.8% enforcement: the DMARC gap
of 5.5M domains I scanned, 30.4% have a DMARC record
only 12.8% are at p=quarantine or p=reject
that means 57.9% of domains "doing DMARC" aren't actually enforcing it
they're collecting reports they probably aren't reading, some aren't even monitoring it at all!
a DMARC record at p=none is a monitoring declaration, not a security control
-
30.4% adoption vs. 12.8% enforcement: the DMARC gap
of 5.5M domains I scanned, 30.4% have a DMARC record
only 12.8% are at p=quarantine or p=reject
that means 57.9% of domains "doing DMARC" aren't actually enforcing it
they're collecting reports they probably aren't reading, some aren't even monitoring it at all!
a DMARC record at p=none is a monitoring declaration, not a security control
-
30.4% adoption vs. 12.8% enforcement: the DMARC gap
of 5.5M domains I scanned, 30.4% have a DMARC record
only 12.8% are at p=quarantine or p=reject
that means 57.9% of domains "doing DMARC" aren't actually enforcing it
they're collecting reports they probably aren't reading, some aren't even monitoring it at all!
a DMARC record at p=none is a monitoring declaration, not a security control
-
industry DMARC enforcement rates from 5.5M domains.
- financial services: 31.2% enforcement
- healthcare: 8.4%
- education: 6.1%
- government: 22.7%the gap between finance and healthcare is staggering
and it maps almost perfectly to regulatory pressure
where auditors demand DMARC, adoption follows
where they don't, domains sit at p=none indefinitely
regulation drives adoption more than breaches do
-
industry DMARC enforcement rates from 5.5M domains.
- financial services: 31.2% enforcement
- healthcare: 8.4%
- education: 6.1%
- government: 22.7%the gap between finance and healthcare is staggering
and it maps almost perfectly to regulatory pressure
where auditors demand DMARC, adoption follows
where they don't, domains sit at p=none indefinitely
regulation drives adoption more than breaches do
-
industry DMARC enforcement rates from 5.5M domains.
- financial services: 31.2% enforcement
- healthcare: 8.4%
- education: 6.1%
- government: 22.7%the gap between finance and healthcare is staggering
and it maps almost perfectly to regulatory pressure
where auditors demand DMARC, adoption follows
where they don't, domains sit at p=none indefinitely
regulation drives adoption more than breaches do
-
The Cyberagentur has published the FoUnD-VR call for proposals: Research on disinformation in immersive XR spaces. Applications are accepted until xx.xx.2026.
https://t1p.de/r7u6s
#FoUnDVR #VirtualReality #XR #Disinformation #CyberResearchhttps://nachrichten.idw-online.de/2026/04/30/disinformation-in-the-future
-
The Cyberagentur has published the FoUnD-VR call for proposals: Research on disinformation in immersive XR spaces. Applications are accepted until xx.xx.2026.
https://t1p.de/r7u6s
#FoUnDVR #VirtualReality #XR #Disinformation #CyberResearchhttps://nachrichten.idw-online.de/2026/04/30/disinformation-in-the-future
-
The Cyberagentur has published the FoUnD-VR call for proposals: Research on disinformation in immersive XR spaces. Applications are accepted until xx.xx.2026.
https://t1p.de/r7u6s
#FoUnDVR #VirtualReality #XR #Disinformation #CyberResearchhttps://nachrichten.idw-online.de/2026/04/30/disinformation-in-the-future
-
The Cyberagentur has published the FoUnD-VR call for proposals: Research on disinformation in immersive XR spaces. Applications are accepted until xx.xx.2026.
https://t1p.de/r7u6s
#FoUnDVR #VirtualReality #XR #Disinformation #CyberResearchhttps://nachrichten.idw-online.de/2026/04/30/disinformation-in-the-future
-
Bad Connection
Uncovering Global Telecom Exploitation by Covert Surveillance Actors https://citizenlab.ca/research/uncovering-global-telecom-exploitation-by-covert-surveillance-actors/An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.
#CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom
-
Bad Connection
Uncovering Global Telecom Exploitation by Covert Surveillance Actors https://citizenlab.ca/research/uncovering-global-telecom-exploitation-by-covert-surveillance-actors/An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.
#CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom
-
Bad Connection
Uncovering Global Telecom Exploitation by Covert Surveillance Actors https://citizenlab.ca/research/uncovering-global-telecom-exploitation-by-covert-surveillance-actors/An investigation by the Citizen Lab Team, which uncovers two sophisticated telecom surveillance campaigns and, for the first time, directly links real-world attack traffic to mobile operator signalling infrastructure.
#CyberSecurity #ThreatIntelligence #Surveillance #TelecomSecurity #MobileSecurity #SS7 #NetworkSecurity #CyberEspionage #CitizenLab #Infosec #Privacy #DigitalRights #CyberResearch #SignalInfrastructure #Telecom
-
Intellexa leaks outline detailed Predator spyware delivery paths: Chrome/Safari zero-days, Android/iOS exploit chains, ad-based zero-click delivery (“Aladdin”), and network injection (Mars/Jupiter).
Reports also highlight concerns regarding possible remote-access capability retention.
Curious to hear the community’s perspective on governance, threat modeling impact, and commercial exploit supply chains.Source: https://thehackernews.com/2025/12/intellexa-leaks-reveal-zero-days-and.html
Follow us for more unbiased threat intelligence updates.
#Infosec #ThreatIntel #Spyware #ZeroDay #MobileSecurity #CyberResearch #SecurityCommunity
-
Intellexa leaks outline detailed Predator spyware delivery paths: Chrome/Safari zero-days, Android/iOS exploit chains, ad-based zero-click delivery (“Aladdin”), and network injection (Mars/Jupiter).
Reports also highlight concerns regarding possible remote-access capability retention.
Curious to hear the community’s perspective on governance, threat modeling impact, and commercial exploit supply chains.Source: https://thehackernews.com/2025/12/intellexa-leaks-reveal-zero-days-and.html
Follow us for more unbiased threat intelligence updates.
#Infosec #ThreatIntel #Spyware #ZeroDay #MobileSecurity #CyberResearch #SecurityCommunity
-
Intellexa leaks outline detailed Predator spyware delivery paths: Chrome/Safari zero-days, Android/iOS exploit chains, ad-based zero-click delivery (“Aladdin”), and network injection (Mars/Jupiter).
Reports also highlight concerns regarding possible remote-access capability retention.
Curious to hear the community’s perspective on governance, threat modeling impact, and commercial exploit supply chains.Source: https://thehackernews.com/2025/12/intellexa-leaks-reveal-zero-days-and.html
Follow us for more unbiased threat intelligence updates.
#Infosec #ThreatIntel #Spyware #ZeroDay #MobileSecurity #CyberResearch #SecurityCommunity
-
-- @geant #CyberSecMonth 2023 Webinar Programme --
🗓️ 19 October 2023 – 15:00 CEST
Exploring the impact of #neurodiversity on #CyberSecurity practice and risk management - A cyber psychological perspective
🦸 Holly Foxcroft, Head of Neurodiversity in #CyberResearch and Consulting, Stott and May Consulting
-
-- @geant #CyberSecMonth 2023 Webinar Programme --
🗓️ 19 October 2023 – 15:00 CEST
Exploring the impact of #neurodiversity on #CyberSecurity practice and risk management - A cyber psychological perspective
🦸 Holly Foxcroft, Head of Neurodiversity in #CyberResearch and Consulting, Stott and May Consulting
-
-- @geant #CyberSecMonth 2023 Webinar Programme --
🗓️ 19 October 2023 – 15:00 CEST
Exploring the impact of #neurodiversity on #CyberSecurity practice and risk management - A cyber psychological perspective
🦸 Holly Foxcroft, Head of Neurodiversity in #CyberResearch and Consulting, Stott and May Consulting
-
-- @geant #CyberSecMonth 2023 Webinar Programme --
🗓️ 19 October 2023 – 15:00 CEST
Exploring the impact of #neurodiversity on #CyberSecurity practice and risk management - A cyber psychological perspective
🦸 Holly Foxcroft, Head of Neurodiversity in #CyberResearch and Consulting, Stott and May Consulting
-
-- @geant #CyberSecMonth 2023 Webinar Programme --
🗓️ 19 October 2023 – 15:00 CEST
Exploring the impact of #neurodiversity on #CyberSecurity practice and risk management - A cyber psychological perspective
🦸 Holly Foxcroft, Head of Neurodiversity in #CyberResearch and Consulting, Stott and May Consulting
-
What people don’t know about me in online land is that I’m a cyber professional who likes giving talks, especially talks on research I do in my spare time. I’m getting tired of giving my (strangely locally popular) talk on social engineering so I’m trying to change things up (offer alternative talks) with people who ask me to give it. Which one of these would you find most interesting to attend?
1.) “Lolbins and GTFObins” - a presentation on what makes good processes go bad and the malware families that use these techniques (featuring Evil Clippy)
2.) AI/ChatGPT, and stepping foot into an insecure future (theory research on potential bigger cyber problems right around the corner such as “AI driven spear phishing” using social media mass aggregation and why it’s ever more important to protect your data)
3.) Laying traps and offensive defense (cyber deception and other proactive defense strategies (with plenty of boxing analogies and memes))
#cybersecurity #cyberresearch #infosec #presentations -
What people don’t know about me in online land is that I’m a cyber professional who likes giving talks, especially talks on research I do in my spare time. I’m getting tired of giving my (strangely locally popular) talk on social engineering so I’m trying to change things up (offer alternative talks) with people who ask me to give it. Which one of these would you find most interesting to attend?
1.) “Lolbins and GTFObins” - a presentation on what makes good processes go bad and the malware families that use these techniques (featuring Evil Clippy)
2.) AI/ChatGPT, and stepping foot into an insecure future (theory research on potential bigger cyber problems right around the corner such as “AI driven spear phishing” using social media mass aggregation and why it’s ever more important to protect your data)
3.) Laying traps and offensive defense (cyber deception and other proactive defense strategies (with plenty of boxing analogies and memes))
#cybersecurity #cyberresearch #infosec #presentations -
What people don’t know about me in online land is that I’m a cyber professional who likes giving talks, especially talks on research I do in my spare time. I’m getting tired of giving my (strangely locally popular) talk on social engineering so I’m trying to change things up (offer alternative talks) with people who ask me to give it. Which one of these would you find most interesting to attend?
1.) “Lolbins and GTFObins” - a presentation on what makes good processes go bad and the malware families that use these techniques (featuring Evil Clippy)
2.) AI/ChatGPT, and stepping foot into an insecure future (theory research on potential bigger cyber problems right around the corner such as “AI driven spear phishing” using social media mass aggregation and why it’s ever more important to protect your data)
3.) Laying traps and offensive defense (cyber deception and other proactive defense strategies (with plenty of boxing analogies and memes))
#cybersecurity #cyberresearch #infosec #presentations -
What people don’t know about me in online land is that I’m a cyber professional who likes giving talks, especially talks on research I do in my spare time. I’m getting tired of giving my (strangely locally popular) talk on social engineering so I’m trying to change things up (offer alternative talks) with people who ask me to give it. Which one of these would you find most interesting to attend?
1.) “Lolbins and GTFObins” - a presentation on what makes good processes go bad and the malware families that use these techniques (featuring Evil Clippy)
2.) AI/ChatGPT, and stepping foot into an insecure future (theory research on potential bigger cyber problems right around the corner such as “AI driven spear phishing” using social media mass aggregation and why it’s ever more important to protect your data)
3.) Laying traps and offensive defense (cyber deception and other proactive defense strategies (with plenty of boxing analogies and memes))
#cybersecurity #cyberresearch #infosec #presentations -
Don't leave a door open to #cybercriminals.
That's because the latest #CyberResearch shows cybercriminals don't use the door, they actually come in via your internet connection.
To be 100% safe online remember to keep an axe near your internet router to defend your #cyberspace. Remember destruction of computer hardware is cheaper than paying #ransomware.
:FBI_SEAL: -
Don't leave a door open to #cybercriminals.
That's because the latest #CyberResearch shows cybercriminals don't use the door, they actually come in via your internet connection.
To be 100% safe online remember to keep an axe near your internet router to defend your #cyberspace. Remember destruction of computer hardware is cheaper than paying #ransomware.
:FBI_SEAL: -
Don't leave a door open to #cybercriminals.
That's because the latest #CyberResearch shows cybercriminals don't use the door, they actually come in via your internet connection.
To be 100% safe online remember to keep an axe near your internet router to defend your #cyberspace. Remember destruction of computer hardware is cheaper than paying #ransomware.
:FBI_SEAL: