home.social

#fedisec — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #fedisec, aggregated by home.social.

fetched live
  1. We really need to start #FediSec teams to start to investigate threats.

    There seems to be about 15 people doing it on their own, and 5 other small group chats on multiple platforms who all dislike each other.

  2. We really need to start #FediSec teams to start to investigate threats.

    There seems to be about 15 people doing it on their own, and 5 other small group chats on multiple platforms who all dislike each other.

  3. The industry keeps face-planting on supply chain security — and it’s not because the problems are new.

    We broke down the systemic issues in our new blog, "Package managers - malware delivery as a service":

    distrust.co/blog/package-manag

    #SupplyChainSecurity #InfoSec #DevSecOps #OpenSourceSecurity #CVE #FediSec

  4. Found an old-school password manager in the wild at a stationary store. #fedisec #security

  5. Found an old-school password manager in the wild at a stationary store. #fedisec #security

  6. @davidgerard @Edent

    The underling design problem:
    Instances in a federated network are implemented as peers in a p2p network.
    Thus not advantaging federation at all.

    ¯\_(ツ)_/¯

    #Infosec
    #FediSec
    #MastoSec
    #vulnerability
    #cybersecurity
    #SoftwareEngineering
    #DistributedSystems

  7. @davidgerard @Edent

    The underling design problem:
    Instances in a federated network are implemented as peers in a p2p network.
    Thus not advantaging federation at all.

    ¯\_(ツ)_/¯

    #Infosec
    #FediSec
    #MastoSec
    #vulnerability
    #cybersecurity
    #SoftwareEngineering
    #DistributedSystems

  8. » What is the number one vulnerability?

    That question caught me by surprise.
    ...
    I responded with “developers pushing credentials into public repositories”.

    The interviewer smiled at me, she liked my answer, but clearly I was wrong. She said

    The number one vulnerability is system misconfiguration «

    @alevsk

    alevsk.com/2022/11/system-misc

    #Infosec
    #FediSec
    #MastoSec
    #vulnerability
    #cybersecurity

  9. » What is the number one vulnerability?

    That question caught me by surprise.
    ...
    I responded with “developers pushing credentials into public repositories”.

    The interviewer smiled at me, she liked my answer, but clearly I was wrong. She said

    The number one vulnerability is system misconfiguration «

    @alevsk

    alevsk.com/2022/11/system-misc

    #Infosec
    #FediSec
    #MastoSec
    #vulnerability
    #cybersecurity