home.social

#security — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #security, aggregated by home.social.

  1. Security products fail when they add operational friction. Learn how deployment, trust, tuning, and scale determine enterprise success. hackernoon.com/why-great-secur

  2. Bitlocker is a disk #encryption feature shipped with #Windows. It is designed to protect sensitive data by encrypting entire drives, ensuring that information remains secure, especially if a device is lost or stolen. Many, many, many enterprises use it to protect portable media.

    A #vulnerability has just been published, that backdoors #Bitlocker completely on Win11. (Doesn't work on 10, previous versions untested.)

    Researchers posit that it is a backdoor because it is undocumented, and only enabled on certain configurations.

    What does this mean for you as an enduser? If you use bitlocker as your encryption, and someone has access to your system, they can jailbreak it. Is it likely? No.

    What does it mean if you're corporate IT? My hair is on fire, my hair is on fire!

    The bigger question is: who put the access there and why.

    github.com/Nightmare-Eclipse/Y

    #infosec #security #backdoor #yellowkey

  3. Your Gets Stolen. Then the Begins

    A bustling ecosystem is providing criminals with the tools to unlock iPhones—and wage against their contacts to access bank accounts and more.

    wired.com/story/your-iphone-ge

  4. Your #iPhone Gets Stolen. Then the #Hacking Begins

    A bustling #underground ecosystem is providing criminals with the tools to unlock iPhones—and wage #phishing #attacks against their contacts to access bank accounts and more.
    #privacy #security

    wired.com/story/your-iphone-ge

  5. An Engineer’s Post Protesting Laptop Is Going Inside

    Meta employees in the US and are organizing against corporate software that tracks workers’ keystrokes and mouse activity.

    wired.com/story/meta-employee-

  6. An Engineer’s Post Protesting Laptop #Surveillance Is Going #Viral Inside #Meta

    Meta employees in the US and #UK are organizing against corporate software that tracks workers’ keystrokes and mouse activity.
    #privacy #security #ai

    wired.com/story/meta-employee-

  7. An Engineer’s Post Protesting Laptop #Surveillance Is Going #Viral Inside #Meta

    Meta employees in the US and #UK are organizing against corporate software that tracks workers’ keystrokes and mouse activity.
    #privacy #security #ai

    wired.com/story/meta-employee-

  8. An Engineer’s Post Protesting Laptop #Surveillance Is Going #Viral Inside #Meta

    Meta employees in the US and #UK are organizing against corporate software that tracks workers’ keystrokes and mouse activity.
    #privacy #security #ai

    wired.com/story/meta-employee-

  9. An Engineer’s Post Protesting Laptop #Surveillance Is Going #Viral Inside #Meta

    Meta employees in the US and #UK are organizing against corporate software that tracks workers’ keystrokes and mouse activity.
    #privacy #security #ai

    wired.com/story/meta-employee-

  10. I attended the AITP Chicago Security SIG tonight at RSM and left with one clear takeaway: a $200 device called Flipper Zero can clone your building access badge and bypass the physical security your organization worked so hard to set up. FBI Chicago Intelligence Analysts and an InfraGard board member explained how these devices work and where organizations are vulnerable. The room was full of security professionals, many of whom had that familiar look, realizing a threat they thought was unlikely is actually much closer to home.
    Here are a few key points from tonight:
    ・ You can buy Flipper Zero on Amazon, and teenagers are posting demo videos on YouTube. If your physical security plan assumes attackers need special equipment, that assumption is no longer true.
    ・ Most enterprise security programs barely address RF-based attacks on access control systems. We invest heavily in endpoint protection and network monitoring, but the badge reader by the server room often gets overlooked.
    ・ Mitigation is practical. Encrypted credentials and multi-factor physical access are real solutions. Most organizations just haven’t made them a priority because the threat seemed remote.

    If you’re a CISO or CIO and haven’t reviewed your physical access controls for RF-based attacks, now is a good time to add it to your to-do list.
    Thank you to AITP Chicago, the FBI, InfraGard, and RSM for a great discussion.

    aitpchicago.com/event-6680905
    #Cybersecurity #PhysicalSecurity #InfraGard #security #privacy #cloud #infosec #flipper0

  11. linux server hardening — on 4grab.com secure your VPS in one afternoon — SSH keys, fail2ban, UFW, unattended upgrades, audit logging. checklist format. https://4grab.com/pay.php?id=ptag_69c43e39579a2 #prompt #linux #security #vps

  12. if you want a cleaner chat experience than , without distractions: no AI, no advertisements, no BS, just you and your friends and family, give a try to ArcaneChat

    No phone numbers required for registration, just set a name and start chatting!

    No strangers discovering and contacting your family members! Only contacts you give your invite link or show your QR can contact you.

  13. How to Harden #Security of #VPS Server

    This article demonstrates how to harden security of VPS server and is intended for server administrators.
    Ultimate Guide to Harden Security of a VPS Server
    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically ...
    Continued 👉 blog.radwebhosting.com/harden- #ufw #firewalld #rockylinux #certbot #letsencrypt

  14. How to Harden #Security of #VPS Server

    This article demonstrates how to harden security of VPS server and is intended for server administrators.
    Ultimate Guide to Harden Security of a VPS Server
    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically ...
    Continued 👉 blog.radwebhosting.com/harden- #ufw #firewalld #rockylinux #certbot #letsencrypt

  15. How to Harden #Security of #VPS Server

    This article demonstrates how to harden security of VPS server and is intended for server administrators.
    Ultimate Guide to Harden Security of a VPS Server
    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically ...
    Continued 👉 blog.radwebhosting.com/harden- #ufw #firewalld #rockylinux #certbot #letsencrypt

  16. How to Harden #Security of #VPS Server

    This article demonstrates how to harden security of VPS server and is intended for server administrators.
    Ultimate Guide to Harden Security of a VPS Server
    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically ...
    Continued 👉 blog.radwebhosting.com/harden- #ufw #firewalld #rockylinux #certbot #letsencrypt

  17. DATE: May 14, 2026 at 05:27PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed #HIPAASecurityRule Overhaul? Will @HHSGov Make its Planned May Deadline, and What Changes Will Make the Cut?t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  18. DATE: May 14, 2026 at 05:27PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed #HIPAASecurityRule Overhaul? Will @HHSGov Make its Planned May Deadline, and What Changes Will Make the Cut?t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  19. DATE: May 14, 2026 at 05:27PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed #HIPAASecurityRule Overhaul? Will @HHSGov Make its Planned May Deadline, and What Changes Will Make the Cut?t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  20. DATE: May 14, 2026 at 05:27PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed #HIPAASecurityRule Overhaul? Will @HHSGov Make its Planned May Deadline, and What Changes Will Make the Cut?t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  21. DATE: May 14, 2026 at 05:25PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed HIPAA Security Rule Overhaul? t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  22. DATE: May 14, 2026 at 05:25PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed HIPAA Security Rule Overhaul? t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  23. DATE: May 14, 2026 at 05:25PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed HIPAA Security Rule Overhaul? t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  24. DATE: May 14, 2026 at 05:25PM
    SOURCE: HEALTHCARE INFO SECURITY

    Direct article link at end of text block below.

    What's Next for the Proposed HIPAA Security Rule Overhaul? t.co/JDZueelsOH

    Here are any URLs found in the article text:

    t.co/JDZueelsOH

    Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

    -------------------------------------------------

    Private, vetted email list for mental health professionals: clinicians-exchange.org

    Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

    -------------------------------------------------

    #security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

  25. Foxconn plants in North America attacked by ransomware group Nitrogen

    The contract manufacturer confirms the cyberattack. Nitrogen boasts of having stolen 11 million files from Apple, Nvidia, and other customers.

    heise.de/en/news/Foxconn-plant

    #Foxconn #IT #Malware #Security #Wirtschaft #news

  26. Foxconn plants in North America attacked by ransomware group Nitrogen

    The contract manufacturer confirms the cyberattack. Nitrogen boasts of having stolen 11 million files from Apple, Nvidia, and other customers.

    heise.de/en/news/Foxconn-plant

    #Foxconn #IT #Malware #Security #Wirtschaft #news

  27. Foxconn plants in North America attacked by ransomware group Nitrogen

    The contract manufacturer confirms the cyberattack. Nitrogen boasts of having stolen 11 million files from Apple, Nvidia, and other customers.

    heise.de/en/news/Foxconn-plant

    #Foxconn #IT #Malware #Security #Wirtschaft #news

  28. Foxconn plants in North America attacked by ransomware group Nitrogen

    The contract manufacturer confirms the cyberattack. Nitrogen boasts of having stolen 11 million files from Apple, Nvidia, and other customers.

    heise.de/en/news/Foxconn-plant

    #Foxconn #IT #Malware #Security #Wirtschaft #news

  29. Foxconn plants in North America attacked by ransomware group Nitrogen

    The contract manufacturer confirms the cyberattack. Nitrogen boasts of having stolen 11 million files from Apple, Nvidia, and other customers.

    heise.de/en/news/Foxconn-plant

    #Foxconn #IT #Malware #Security #Wirtschaft #news

  30. Google’s QR-code reCAPTCHA now requires approved Android or iOS devices, blocking some deGoogled and privacy-focused operating systems from verification 📱
    @GrapheneOS says the system expands hardware attestation and increases dependence on Apple or Google-controlled mobile ecosystems 🔒

    🔗 cybernews.com/privacy/google-q

    #TechNews #Google #reCAPTCHA #GrapheneOS #Android #Apple #iPhone #iOS #Privacy #OpenSource #FOSS #Cybersecurity #Encryption #Linux #Surveillance #Freedom #Security #CAPTCHA #DeGoogle

  31. Google’s QR-code reCAPTCHA now requires approved Android or iOS devices, blocking some deGoogled and privacy-focused operating systems from verification 📱
    @GrapheneOS says the system expands hardware attestation and increases dependence on Apple or Google-controlled mobile ecosystems 🔒

    🔗 cybernews.com/privacy/google-q

    #TechNews #Google #reCAPTCHA #GrapheneOS #Android #Apple #iPhone #iOS #Privacy #OpenSource #FOSS #Cybersecurity #Encryption #Linux #Surveillance #Freedom #Security #CAPTCHA #DeGoogle

  32. Google’s QR-code reCAPTCHA now requires approved Android or iOS devices, blocking some deGoogled and privacy-focused operating systems from verification 📱
    @GrapheneOS says the system expands hardware attestation and increases dependence on Apple or Google-controlled mobile ecosystems 🔒

    🔗 cybernews.com/privacy/google-q

    #TechNews #Google #reCAPTCHA #GrapheneOS #Android #Apple #iPhone #iOS #Privacy #OpenSource #FOSS #Cybersecurity #Encryption #Linux #Surveillance #Freedom #Security #CAPTCHA #DeGoogle

  33. Google’s QR-code reCAPTCHA now requires approved Android or iOS devices, blocking some deGoogled and privacy-focused operating systems from verification 📱
    @GrapheneOS says the system expands hardware attestation and increases dependence on Apple or Google-controlled mobile ecosystems 🔒

    🔗 cybernews.com/privacy/google-q

    #TechNews #Google #reCAPTCHA #GrapheneOS #Android #Apple #iPhone #iOS #Privacy #OpenSource #FOSS #Cybersecurity #Encryption #Linux #Surveillance #Freedom #Security #CAPTCHA #DeGoogle