mastodon.sdf.org is part of the decentralized social network powered by Mastodon.
"I appreciate SDF but it's a general-purpose server and the name doesn't make it obvious that it's about art." - Eugen Rochko

Administered by:

Server stats:

2.6K
active users

Learn more

#AI #security

- Храните свои секреты.
Как только вы что-то написали боту, вы этим больше не владеете.
Не упоминайте в переписке с ИИ-ботами следующие темы:
- персональные и медицинские данные,
- финансовая информация,
- корпоративные секреты,
- учётные данные к сервисам и т.п.

- Скрывайте следы общения.
Удаляйте переписку, включайте временный чат, задавайте вопросы анонимно.

habr.com/ru/articles/896856/

Пять вещей, которые не стоит рассказывать ChatGPTХабр

This week's Linux and FOSS news:

LINUX NEWS

APT 3.0 released with revamped interface, columnar display for package names and colored text for better readability, will be the default for Debian 13 and Ubuntu 25.04:
9to5linux.com/apt-3-0-debian-p

Tails 6.14.1 released with safe access for any directory in the Home directory or Persistent Storage via the Tor Browser (through the integration of XDG Desktop Portals of Flatpak), updated software, usability and accessibility fixes, bug fix for Welcome Screen:
alternativeto.net/news/2025/4/
(Flatpak haters gonna drop Tails now lol)

Nitrux 3.9.1 released with MauiKit and Maui Apps update, Linux kernel 6.13, Mesa 25, new Fiery browser, default configuration files added for Bauh, udev rule for NTsync, module configuration for v4l2loopback, a PipeWire configuration file for wine64-preloade, automatic change of power profile, screen brightness and refresh rate on laptops depending on the power source, and more:
9to5linux.com/immutable-distro

CachyOS March 2025 snapshot available with new Limine bootloader, Linux kernel 6.14, KDE Plasma 6.3.3, new cachyos-samba-settings package, re-enabled GSP Firmware for the closed-source NVIDIA kernel module, support for the “ASUS Armoury” driver used by the ROG Ally and other devices for fan and power management, etc.:
9to5linux.com/cachyos-iso-snap

Archinstall 3.0.3 released with improved Limine bootloader support, Sway replaced with Hyprland in the profile seat selection, improved FAT12 and FAT16 ESP support, package selector that displays a multi-selection menu to let users add any available package, will no longer force install the GRUB bootloader on BIOS systems when the user has not chosen it as a bootloader etc.:
9to5linux.com/arch-linux-insta

Serious security bypasses are found in Ubuntu 24.04 and later:
alternativeto.net/news/2025/3/

(FOSS news in comment)

#WeeklyNews #News #Linux #LinuxNews #APT #Tails #TailsOS #Nitrux #CachyOS #Arch #Archinstall #ArchLinux #Ubuntu #LinuxDesktop #DesktopLinux #LinuxDistro #DistroRelease #LinuxDistribution #Security #FosseryTech

BSI-Bericht: Erhebliche Schwachstellen bei #Fitnesstrackern & Co.
heise.de/news/BSI-Bericht-Erhe

"Die Experten wählten demnach zehn Produkte für "eine detaillierte Sicherheitsuntersuchung" aus. Darunter waren sechs vernetzte Uhren wie #Smartwatches, drei #FitnessTracker und ein #SmartRing. Die Forscher deckten dabei insgesamt 110 Schwachstellen auf, die sie als "mittel" oder "hoch" einstuften. Keines der Geräte war komplett frei von #Sicherheitslücken."

Ist doch vollkommen egal, wohin man seine persönlichsten (Gesundheits-)Daten schickt. Oder? 🤔😈

#Sicherheit #Gesundheit #iot #smarttracker #security

BSI-Bericht: Erhebliche Schwachstellen bei Fitness-Trackern & Co.heise online

Using a #VM is great if you want to try out a new system, but its security can only be as good as the computer it's running on.

So when you see me use a VM, I expect that my #privacy and #security are only as good as the weakest link.

#Tails was the strongest link in this video:
theatlantic.com/politics/archi

The Trump Administration Accidentally Texted Me Its War PlansThe Atlantic

[4:56 but no commentary, pure testimony] US House Rep Jason Crow (D), Denver CO, is a vet who brilliantly showed the hypocrisy of the people testifying, how #SignalGate was absolutely classified information... Well done, sir. Thank you for your service.
#Hegseth #resignation #JasonCrow #compromised #security #Director of #National #Intelligence #Gabbard #Russian #operative #gmail #but #her #emails | #launch #times #indicate #military #operation #yes #risk to #pilots youtube.com/watch?v=VovO9N2W4v

About last week I had set up "automatic timer" (after installing #dnf-automatic package & updating /etc/dnf/automatic*) to update the packages with #security fixes on #RockyLinux 8. That failed to update freetype v2.9 package due to CVE-2025-27363 nvd.nist.gov/vuln/detail/CVE-2 ; so did fail dnf upgrade --security💩 (update was included in unqualified dnf upgrade).

Utterly useless option & package. Removed the timer & dnf-automatic package.

This -- failure of dnf upgrade --security to update vulnerable packages -- had happened a second time (yes, I had forgotten the uselessness of it; a timely reminder it was). I will need to stick to update-all-the-packages.

#CentOS #sysAdmin #systemAdministration

2025-04-04 RDP #Honeypot IOCs - 135477 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
138.199.24.6 - 63501
156.146.57.110 - 34326
156.146.57.52 - 8610

Top ASNs:
AS60068 - 72027
AS212238 - 51528
AS135161 - 8574

Top Accounts:
hello - 135348
Domain - 27
Test - 27

Top ISPs:
DataCamp Limited - 72027
Datacamp Limited - 51528
GMO-Z.COM PTE. LTD. - 8574

Top Clients:
Unknown - 135477

Top Software:
Unknown - 135477

Top Keyboards:
Unknown - 135477

Top IP Classification:
hosting & proxy - 126666
hosting - 8655
Unknown - 135

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
pastebin.com/35hD2TCD

#CyberSec #SOC #Blueteam #SecOps #Security

2025-04-04_stats.json - Pastebin.comPastebin

2025-04-04 RDP #Honeypot IOCs - 135474 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
138.199.24.6 - 63500
156.146.57.110 - 34324
156.146.57.52 - 8610

Top ASNs:
AS60068 - 72026
AS212238 - 51526
AS135161 - 8574

Top Accounts:
hello - 135345
Domain - 27
Test - 27

Top ISPs:
DataCamp Limited - 72026
Datacamp Limited - 51526
GMO-Z.COM PTE. LTD. - 8574

Top Clients:
Unknown - 135474

Top Software:
Unknown - 135474

Top Keyboards:
Unknown - 135474

Top IP Classification:
hosting & proxy - 126663
hosting - 8655
Unknown - 135

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
pastebin.com/LAfGQpCR

#CyberSec #SOC #Blueteam #SecOps #Security

2025-04-04_stats.json - Pastebin.comPastebin

2025-04-04 RDP #Honeypot IOCs - 135471 scans
Thread with top 3 features in each category and links to the full dataset
#DFIR #InfoSec

Top IPs:
138.199.24.6 - 63499
156.146.57.110 - 34322
156.146.57.52 - 8610

Top ASNs:
AS60068 - 72025
AS212238 - 51524
AS135161 - 8574

Top Accounts:
hello - 135342
Domain - 27
Test - 27

Top ISPs:
DataCamp Limited - 72025
Datacamp Limited - 51524
GMO-Z.COM PTE. LTD. - 8574

Top Clients:
Unknown - 135471

Top Software:
Unknown - 135471

Top Keyboards:
Unknown - 135471

Top IP Classification:
hosting & proxy - 126660
hosting - 8655
Unknown - 135

Pastebin links with full 24-hr RDP Honeypot IOC Lists:
pastebin.com/bBVcz9ks

#CyberSec #SOC #Blueteam #SecOps #Security

2025-04-04_stats.json - Pastebin.comPastebin