cablespaghetti.dev is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Site description
Cablespaghetti's personal snac instance
Admin email
sam@cablespaghetti.dev
Admin account
@sam@cablespaghetti.dev

Search results for tag #infosec

[?]Dumb Password Rules » 🤖
@dumbpasswordrules@infosec.exchange

[?]AAKL »
@AAKL@infosec.exchange

Microsoft security advisories, posted yesterday, affecting six Chromium-based Edge vulnerabilities.

Microsoft security update guide: msrc.microsoft.com/update-guide

    [?]Dumb Password Rules » 🤖
    @dumbpasswordrules@infosec.exchange

    This dumb password rule is from Arlo.

    Your password contains characters not listed. Therefore, they do not
    match.

    dumbpasswordrules.com/sites/ar

      [?]Dumb Password Rules » 🤖
      @dumbpasswordrules@infosec.exchange

      This dumb password rule is from EON.

      By the time I'd finished reading the rules I've forgotten all of them.

      dumbpasswordrules.com/sites/eo

        [?]Ian Campbell »
        @neurovagrant@masto.deoan.org

        For those playing along at home, just an observation that as of today:

        breachforums[.]info

        has spun up as new on DDoS-Guard, registered through Nicenic yesterday.

          [?]CatSalad🐈🥗 (D.Burch) :blobcatrainbow: »
          @catsalad@infosec.exchange

          Big list of Bsides and hacker conferences in the fediverse (Updated:2023-10-18) [SENSITIVE CONTENT]

          InfoSec Events by Region

          This list only contains accounts for security bsides, events, and conferences found on Mastodon :mastodon: and in the fediverse. I will regular update this post as more events migrate here. For hacker meet-ups and hackerspaces, please refer to the links below.

          📌⁠InfoSec Events by Region
          📌⁠Hacker Meet-ups by Region
          📌⁠Hackerspaces by Region

          🐈🥗

          ⸻ Event Info

          @cfp_time - Call for Papers ()
          @InfoCon@defcon.social -
          @InfoconDB - archive
          @SecurityBSidesGlobal - Security BSides Global

          ⸻ Online 🌐

          @ComfyConAU -
          @Digit4lOverdose - D.O. Conference
          @pancakescon -

          ⸻ Canada 🇨🇦

          @BSidesCalgary - , AB
          @BSidesEdmonton - , AB
          @BSidesFredericton - BSidesFredericton, NB
          @BSidesMTL - Montreal, QC
          @BSidesOttawa - , ON
          @BSidesRegina - , SK
          @BSidesStJohns- , NL
          @BSidesTO - Toronto, ON
          @BSidesVancouver - , BC
          @BSidesVI - Vancouver Island, BC
          @hackfest - Québec City, QC
          @halifaxbsides - , NS
          @NorthSec - Montréal, QC
          @polar - POLAR Conf, QC
          @seqcure - Québec, QC
          @thelongcon - Winnipeg, MB

          ⸻ US - Northeast

          @bsidesboston - , MA
          @BSidesBuffalo - , NY
          @BSidesCambridgeMA - , MA
          @BSidesCharm - Towson, MD
          @BSidesCT - Hamden, CT
          @BSidesFloodCity - Johnstown, PA
          @BSidesHBG - Harrisburg, PA
          @BSidesNJ - ? NJ
          @BSidesNYC - New York City, NY
          @bsidesphilly - Philadelphia, PA
          @bsidespgh - Pittsburgh, PA
          @bsidesroc - Rochester, NY
          @hushcon - New York City, NY
          @jawncon - Philadelphia, PA
          @pumpcon - Philadelphia, PA
          @ShmooCon - Washington, DC
          @SummerC0n - Brooklyn, NY

          ⸻ US - Midwest

          @BlueTeamCon - Chicago, IL
          @bsides312 - Chicago, IL
          @BSidesBloomington - , IN
          @BSides_BTown - Bloomington, IN
          @bsidesboulder - , CO
          @bsideschicago - , IL
          @BSidesColoradoSprings - , CO
          @BSidesColumbus - , OH
          @bsidesdayton - , OH
          @bsidesdenver - , CO
          @BSidesFtWayne - , IN
          @bsideskc - Kansas City, MO
          @BSidesMilwaukee - , WI
          @BSidesPeoria - , IL
          @bsidesspfd - Springfield, MO
          @CircleCityCon - Indianapolis, IN
          @CypherCon - Milwaukee, WI
          @GrrCON - Grand Rapids, MI
          @thotcon - Chicago, IL
          @WWHackinFest - Deadwood, SD

          ⸻ US - West

          @bsidescv - Central Valley, CA
          @BSidesHawaii - Honolulu, HI
          @bsidesla - Los Angeles, CA
          @BSidesPDX - Portland, OR
          @BsidesSD - San Diego, CA
          @bsidesseattle - , WA
          @bsidessf - San Francisco, CA
          @soups - Symposium on Usable Privacy and Security, Anaheim, CA

          ⸻ US - Southwest

          @AustinHackers - Austin, TX
          @BSidesAlbuquerque - , NM
          @bsidesaustin - , TX
          @BSidesDFW - Dallas-Fort Worth, TX
          @BSidesLV - Las Vegas, NV
          @BSidesRGV - Rio Grande Valley, McAllen, TX
          @BSidesSATX - San Antonio, TX
          @BSidesSantaFe - , NM
          @BSidesTucson - , AZ
          @cactuscon - Mesa, AZ
          @defcon - Las Vegas, NV
          @DianaInitiative - Las Vegas, NV

          ⸻ US - Southeast

          @bsidesatl - Atlanta, GA
          @BSidesAugusta - , GA
          @BSidesBirmingham - , AL
          @BSidesCharleston - , SC
          @BSidesCLT - Charlotte, NC
          @BSidesCHS - Charleston, SC
          @BSidesCharlotte - , NC
          @BSidesGVL - Greenville, SC
          @BSidesHSV - Hunstville, AL
          @BSidesJAX - , Jacksonville, FL
          @bsideskc - Kansas City, MO
          @bsidesknoxville - , TN
          @BSidesNOLA - BSidesNOLA New Orleans, LA
          @BSidesNoVA - Arlington, VA
          @bsidesorlando - , FL
          @BSidesRoanoke - , VA
          @BSidesRDU - Raleigh/Durham, NC
          @bsidesspfd - Springfield, MO
          @bsidesSTL - St. Louis, MO
          @BSidesStPete - St. Petersburg, FL
          @BSidesTampa - , FL
          @CackalackyCon - Con, Raleigh, NC
          @CYBERWARCON - Arlington, VA
          @securityonion - Con, Augusta, GA

          ⸻ US - Territories

          @BSidesPR - San Juan, PR 🇵🇷

          ⸻ Caribbean

          @BSidesCaymanIslands - , KY 🇰🇾

          ⸻ Latin America

          @BSidesArgentina - Jujuy, Argentina 🇦🇷
          @bsidescdmx - Mexico City, Mexico 🇲🇽
          @BSidesCO - Bogotá, Colombia 🇨🇴
          @bsidesjp - , Brazil 🇧🇷
          @BSidesPeru - Lima, Peru 🇵🇪
          @BSidesPanama - Panama City, Panama 🇵🇦
          @BSidesSP - Sao Paulo, Brazil 🇧🇷
          @BSidesVitória - , Brazil 🇧🇷

          ⸻ Europe 🇪🇺

          @botconf - Nice, FR 🇫🇷
          @brucon - Mechelen, BE 🇧🇪
          @BSidesAthens - , GR 🇬🇷
          @BSidesBUD - Budapest, HU 🇭🇺
          @BSidesCyprus - Limassol, CY 🇨🇾
          @BSidesDublin - , IE 🇮🇪
          @BSidesKraków - , PL 🇵🇱
          @bsideskbh - København, DK 🇩🇰
          @bsideslisbon - , PT 🇵🇹
          @bsidesljubljana - , SI 🇸🇮
          @BSidesMilano - , IT 🇮🇹
          @BSidesOsijek - , HR 🇭🇷
          @bsidesoslo - , NO 🇳🇴
          @BSidesPrishtina - , XK 🇽🇰
          @BSidesRoma - , IT 🇮🇹
          @bsidesrvk - , IS 🇮🇸
          @BSidesSOF - Sofia, BG 🇧🇬
          @BSidesTallinn - , EE 🇪🇪
          @BSidesTirana - , AL 🇦🇱
          @BSidesTransylvania - Cluj-Napoca, RO 🇷🇴
          @BSidesUmeå - , SE 🇸🇪
          @bsidesvienna - , AT 🇦🇹
          @BSidesZurich - , CH 🇨🇭
          @deepsec - Con, Vienna, AT 🇦🇹
          @hack_lu - , LU 🇱🇺
          @passthesaltcon - Pass the SALT Con, Lille, FR 🇫🇷
          @SEC_T - SEC-T Con, Stockholm, SE 🇸🇪
          @securitybsidesitalia - IT 🇮🇹
          @TumpiConIT - Turin area, IT 🇮🇹

          ⸻ Germany 🇩🇪

          @BSidesBerlin -
          @BSidesFrankfurt - am Main
          @BSidesMunich -
          @BSidesStuttgart -
          @elbsides - Hamburg
          @WEareTROOPERS - TROOPERS Conference, Heidelberg

          ⸻ United Kingdom 🇬🇧

          @44CON - London 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @AbertayHackers - Abertay, Dundee, 🏴󠁧󠁢󠁳󠁣󠁴󠁿
          @BSidesBasingstoke -
          @BSidesBelfast -
          @BSidesBHAM - Birmingham 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesBristol -
          @BSidesCambridge -
          @BSidesCheltenham - 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesDundee -  🏴󠁧󠁢󠁳󠁣󠁴󠁿
          @BSidesExeter -
          @BSidesLancashire -
          @bsidesleeds - 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesNewcastle -
          @VirusBulletin - VirusBulletin, London 🏴󠁧󠁢󠁥󠁮󠁧󠁿

          ⸻ Africa

          @BSidesCapeTown - , South Africa 🇿🇦
          @BSidesNairobi - , Kenya 🇰🇪

          ⸻ India 🇮🇳

          @BSidesAhmedabad -
          @BSidesBangalore -
          @BSidesChennai -
          @BSidesIndore -
          @BSidesJaipur -
          @bsidesodisha -

          ⸻ Asia

          @BSidesMyanmar - , Myanmar 🇲🇲
          @BSidesSG - Singapore, China 🇨🇳
          @BSidesTokyo - , Japan 🇯🇵
          @BSidesYerevan - , Armenia 🇦🇲

          ⸻ Australasia

          @bsides_bne - Brisbane, AU 🇦🇺
          @bsidescbr - , AU 🇦🇺
          @bsidesmelbourne - , AU 🇦🇺
          @bsidesperth - , AU 🇦🇺
          @bsidessydney - , AU 🇦🇺
          @crikeycon - Brisbane, AU 🇦🇺


          For other events not in the fediverse try:
          ➡️⁠securitybsides.com
          ➡️⁠github.com/xsa/infosec-events by Xavier Santolaria @0x58

          Feel free use, copy, modify, steal, boost, encrypt, or plagiarize this information anyway you want.
          :cc_cc:​𝟶 "No Rights Reserved"


          [?]CatSalad🐈🥗 (D.Burch) :blobcatrainbow: »
          @catsalad@infosec.exchange

          Big list of Bsides and hacker conferences in the fediverse (Updated:2025-06-26) [SENSITIVE CONTENT]

          InfoSec Events by Region

          This list only contains accounts for security bsides, events, and conferences found on Mastodon :mastodon: and in the fediverse. I will regular update this post as more events migrate here. For hacker meet-ups and hackerspaces, please refer to the links below.

          📌⁠InfoSec Events by Region
          📌⁠Hacker Meet-ups by Region
          📌⁠Hackerspaces by Region

          🐈🥗

          Event Info

          @cfp_time - Call for Papers ()
          @InfoCon -
          @InfoconDB - archive
          @SecurityBSidesGlobal - Security BSides Global

          Online 🌐

          @ComfyConAU -
          @Digit4lOverdose - D.O. Conference
          @pancakescon -

          Americas

          ⸻ Canada 🇨🇦

          ⸺ CA - Eastern

          (ɴʙ ɴʟ ɴs ᴏɴ ᴘᴇ ɋᴄ)
          @BSidesFredericton - , NB
          @BSidesMTL - MTL Montreal, QC
          @BSidesOttawa - Ottawa, ON
          @BSidesStJohns - , NL
          @BSidesToronto - , ON
          @hackfest - Québec City, QC
          @halifaxbsides - , NS
          @NorthSec - Montréal, QC
          @polar - POLAR Conf, QC
          @seqcure - Québec, QC

          ⸺ CA - Western 🇨🇦

          (ᴀʙ ʙᴄ ᴍʙ sᴋ)
          @BSidesCalgary - Calgary, AB
          @bsidesedmonton - , AB
          @BSidesRegina - Regina, SK
          @bsidesyxe - , SK
          @BSidesVancouver - Vancouver, BC
          @BSidesVI - Vancouver Island, BC
          @thelongcon - Winnipeg, MB

          ⸻ United States 🇺🇸

          ⸺ US - Northeast

          (ᴅᴇ ᴄᴛ ᴍᴀ ᴍᴅ ᴍᴇ ɴʜ ɴᴊ ɴʏ ᴘᴀ ʀɪ ᴠᴛ)
          @bsidesboston - , MA
          @BSidesBuffalo - , NY
          @BSidesCambridgeMA - , MA
          @BSidesCharm - Towson, MD
          @BSidesCT - Hamden, CT
          @BSidesDE - Newark, DE
          @BSidesFloodCity - Johnstown, PA
          @bsideshbg - Harrisburg, PA
          @BSidesNJ - ? NJ
          @BSidesNYC - New York City, NY
          @bsidesphilly - Philadelphia, PA
          @bsidespgh - Pittsburgh, PA
          @bsidesroc - Rochester, NY
          @hushcon - New York City, NY
          @jawncon - Philadelphia, PA
          @pumpcon - Philadelphia, PA
          @ShmooCon - Washington, DC
          @SummerC0n - Brooklyn, NY

          ⸺ US - Midwest

          (ɪᴀ ɪʟ ᴋs ᴍɪ ᴍɴ ᴍᴏ ɴᴅ ɴᴇ ᴏʜ sᴅ ᴡɪ)
          @BlueTeamCon - Chicago, IL
          @bsides312 - Chicago, IL
          @BSIDESBloomington - , IN
          @BSides_BTown - Bloomington, IN
          @bsideschicago - , IL
          @BSidesColumbus - Columbus, OH
          @bsidesdayton - , OH
          @BSidesFtWayne - Ft. Wayne, IN
          @bsideskc - Kansas City, MO
          @BSidesMilwaukee - Milwaukee, WI
          @BSidesPeoria - Peoria, IL
          @bsidesspfd - Springfield, MO
          @bsidestc - Minneapolis, MN
          @CircleCityCon - Indianapolis, IN
          @CypherCon - Milwaukee, WI
          @GrrCON - Grand Rapids, MI
          @thotcon - Chicago, IL
          @WWHackinFest - Deadwood, SD

          ⸺ US - West

          (ᴀᴋ ᴄᴀ ᴄᴏ ʜɪ ɪᴅ ᴍᴛ ɴᴠ ᴏʀ ᴜᴛ ᴡᴀ ᴡʏ)
          @bsidesboulder - , CO
          @bsidescv - Central Valley, CA
          @bsidesdenver - , CO
          @BSidesHawaii - Honolulu, HI
          @bsidesla - Los Angeles, CA
          @BSidesLV - Las Vegas, NV
          @BSidesPDX - Portland, OR
          @BsidesSD - San Diego, CA
          @bsidesseattle - , WA
          @bsidessf - San Francisco, CA
          @defcon - Las Vegas, NV
          @DianaInitiative - Las Vegas, NV
          @SAINTCON - Provo, UT
          @soups - Symposium on Usable Privacy and Security, Anaheim, CA

          ⸺ US - Southwest

          (ᴀᴢ ɴᴍ ᴏᴋ ᴛx)
          @AustinHackers - Austin, TX
          @BSidesAlbuquerque - Albuquerque, NM
          @bsidesaustin - , TX
          @BSidesDFW - Dallas-Fort Worth, TX
          @BSidesRGV - Rio Grande Valley, McAllen, TX
          @BSidesSATX - San Antonio, TX
          @BSidesSantaFe - Santa Fe, NM
          @BSidesTucson - Tucson, AZ
          @cactuscon - Mesa, AZ

          ⸺ US - Southeast

          (ᴀʟ ᴀʀ ᴅᴄ ғʟ ɢᴀ ᴋʏ ʟᴀ ᴍs ɴᴄ sᴄ ᴛɴ ᴠᴀ ᴡᴠ)
          @bsidesatl - Atlanta, GA
          @BSidesAugusta - , GA
          @BSidesBHAM - , AL
          @BSidesCharleston - , SC
          @BSidesCLT - Charlotte, NC
          @BsidesCHS - Charleston, SC
          @BSidesCharlotte - , NC
          @BsidesGVL - Greenville, SC
          @BsidesHSV - Hunstville, AL
          @bsidesjax - , Jacksonville, FL
          @bsideskc - Kansas City, MO
          @bsidesknoxville - , TN
          @BsidesNOLA - New Orleans, LA
          @bsidesnova - Arlington, VA
          @bsidesorlando - , FL
          @BsidesRoanoke - Roanoke, VA
          @BSidesRDU - Raleigh/Durham, NC
          @bsidesspfd - Springfield, MO
          @bsidesSTL - St. Louis, MO
          @BsidesStPete - St. Petersburg, FL
          @BsidesTampa - Tampa, FL
          @CackalackyCon - Con, Raleigh, NC
          @CYBERWARCON - Arlington, VA
          @securityonion - Augusta, GA

          ⸺ US - Territories

          @BSidesPR - San Juan, PR 🇵🇷

          ⸻ Caribbean

          @BSidesCaymanIslands - Cayman Islands, KY 🇰🇾

          ⸻ Latin America

          @BSidesArgentina - Jujuy, Argentina 🇦🇷
          @bsidescdmx - Mexico City, Mexico 🇲🇽
          @BSidesCO - Bogotá, Colombia 🇨🇴
          @bsidesjp - João Pessoa, Brazil 🇧🇷
          @BSidesPeru - Lima, Peru 🇵🇪
          @BSidesPanama - Panama City, Panama 🇵🇦
          @BSidesSP - Sao Paulo, Brazil 🇧🇷
          @BSidesVitória - Vitória, Brazil 🇧🇷

          Europe

          ⸻ EU 🇪🇺

          @botconf - Nice, FR 🇫🇷
          @brucon - Mechelen, BE 🇧🇪
          @BSidesAthens - Athens, GR 🇬🇷
          @bsidesba - Bratislava, SK 🇸🇰
          @BSidesBUD - Budapest, HU 🇭🇺
          @BSidesCyprus - Limassol, CY 🇨🇾
          @bsidesdub - , IE 🇮🇪
          @bsidesgrunn - , NL 🇳🇱
          @BSidesKrakow - Kraków, PL 🇵🇱
          @bsideskbh - København, DK 🇩🇰
          @bsideslisbon - , PT 🇵🇹
          @bsidesljubljana - , SI 🇸🇮
          @BSidesLuxembourg - , LU 🇱🇺
          @bsidesmalaga - , ES 🇪🇸
          @BSidesMilano - Milano, IT 🇮🇹
          @BSidesOsijek - Osijek, HR 🇭🇷
          @bsidesoslo - , NO 🇳🇴
          @bsidesprg - , CZ 🇨🇿
          @BSidesPrishtina - Prishtina, XK 🇽🇰
          @BSidesRoma - Roma, IT 🇮🇹
          @bsidesrvk - , IS 🇮🇸
          @SEC_T - SEC-T Con, Stockholm, SE 🇸🇪
          @BSidesSOF - Sofia, BG 🇧🇬
          @BSidesTallinn - , EE 🇪🇪
          @BSidesTirana - Tirana, AL 🇦🇱
          @BSidesTransylvania - Transylvania Cluj-Napoca, RO 🇷🇴
          @BSidesUme - Umeå, SE 🇸🇪
          @bsidesvienna - , AT 🇦🇹
          @BSidesZurich - , CH 🇨🇭
          @deepsec - Vienna, AT 🇦🇹
          @hack_lu - , LU 🇱🇺
          @leHACK - Paris, FR 🇫🇷
          @passthesaltcon - Pass the SALT Con, Lille, FR 🇫🇷
          @securitybsidesitalia - IT 🇮🇹
          @TumpiConIT - Turin area, IT 🇮🇹

          ⸺ Germany 🇩🇪

          @BalCCon - Berlin
          @BSidesBerlin -
          @bsidesfra - Frankfurt
          @bside -
          @BSidesMunich -
          @bsidesstuttgart -
          @elbsides - Hamburg
          @WEareTROOPERS - TROOPERS Con, Heidelberg

          ⸺ United Kingdom 🇬🇧

          @44CON - London 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @AbertayHackers - Abertay, Dundee, 🏴󠁧󠁢󠁳󠁣󠁴󠁿
          @BSidesBasingstoke - Basingstoke
          @BSidesBelfast - Belfast
          @BSidesBristol - Bristol
          @BSidesCambridge - Cambridge
          @BSidesCheltenham - 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesDundee - Dundee
          @bsidesexeter - Exeter 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesLancashire - Lancashire
          @bsidesleeds - 🏴󠁧󠁢󠁥󠁮󠁧󠁿
          @BSidesNewcastle - Newcastle
          @VirusBulletin - , London 🏴󠁧󠁢󠁥󠁮󠁧󠁿

          Africa

          @BSidesCapeTown - CapeTown, South Africa 🇿🇦
          @bsidesjoburg - Joburg, South Africa 🇿🇦
          @BSidesNairobi - Nairobi, Kenya 🇰🇪

          Asia

          ⸻ India 🇮🇳

          @BSidesAhmedabad - Ahmedabad
          @BSidesBangalore -
          @BSidesChennai - Chennai
          @BSidesIndore - Indore
          @BSidesJaipur - Jaipur
          @bsidesodisha -

          ⸻ East Asia

          @BSidesMyanmar - Myanmar, Myanmar 🇲🇲
          @BSidesSG - Singapore, China 🇨🇳
          @BSidesTokyo - Tokyo, Japan 🇯🇵
          @BSidesYerevan - Yerevan, Armenia 🇦🇲

          ⸻ Australasia

          @bsides_bne - Brisbane, AU 🇦🇺
          @bsidescbr - , AU 🇦🇺
          @bsidesmelbourne - , AU 🇦🇺
          @bsidesperth - , AU 🇦🇺
          @bsidessydney - , AU 🇦🇺
          @crikeycon - Brisbane, AU 🇦🇺


          For other events not in the fediverse try:
          ➡️⁠securitybsides.com
          ➡️⁠github.com/xsa/infosec-events by Xavier Santolaria @0x58

          Feel free use, copy, modify, steal, boost, encrypt, or plagiarize this information anyway you want.
          :cc_cc:​𝟶 "No Rights Reserved"



          [?]Dumb Password Rules » 🤖
          @dumbpasswordrules@infosec.exchange

          This dumb password rule is from T-Mobile.

          We prefer to not tell you which characters you can use up front.

          dumbpasswordrules.com/sites/t-

            Tim Hergert boosted

            [?]BeyondMachines :verified: » 🤖
            @beyondmachines1@infosec.exchange

            Threat group Educated Manticore targets academia and cybersecurity experts

            CheckPoint reports that the Iranian state-sponsored threat group "Educated Manticore" has escalated cyber espionage operations since mid-June 2025, targeting Israeli academics, journalists, and cybersecurity professionals through social engineering campaigns via email and WhatsApp that exploit Iran-Israel tensions to create urgency. The attacks feature advanced phishing infrastructure with multi-factor authentication bypass capabilities and real-time keystroke logging via WebSocket connections.

            **Whatever the attack motivation or the initial social engineering, all these attacks end up with an insistence for you to click on something and enter credentials. Be extremely suspicious of unexpected emails or messages, and verify independently - all or email the organization through official contact channel on the official site. NEVER click on links or call numbers in the unexpected message.**

            beyondmachines.net/event_detai

              [?]BeyondMachines :verified: » 🤖
              @beyondmachines1@infosec.exchange

              Vulnerabilities reported in Brother printers and other vendors, at least one critical

              Brother Industries and four other major printer manufacturers have disclosed eight security vulnerabilities affecting 748 models of multifunction printers, including a critical authentication bypass flaw (CVE-2024-51978) that allows unauthenticated attackers to generate default administrator passwords using a predictable algorithm and cannot be fully patched through firmware updates.

              **If you have Brother printers (or multifunction devices from FUJIFILM, Ricoh, Toshiba Tec, or Konica Minolta), immediately change all default administrator passwords since they probably have a flaw that allows attackers to generate these passwords and can't be fully patched. Alsom, make sure the printer are not accessible from the internet. Then apply the latest firmware updates to fix the other flaws.**

              beyondmachines.net/event_detai

                [?]Dumb Password Rules » 🤖
                @dumbpasswordrules@infosec.exchange

                This dumb password rule is from Techcombank.

                Your password must:
                - Be between 6 and 8 characters long
                - Contains at least 1 number character
                - Contains at least 1 lowercase character
                - Contains at least 1 uppercase character
                - Neither space nor unicode character is allowed. In fact,
                NO special characters is allowed
                - Must be changed every 9...

                dumbpasswordrules.com/sites/te

                  [?]Dumb Password Rules » 🤖
                  @dumbpasswordrules@infosec.exchange

                  This dumb password rule is from Ticketmaster.de.

                  Your password length is limited between 8 and 32 characters.

                  dumbpasswordrules.com/sites/ti

                    [?]Dumb Password Rules » 🤖
                    @dumbpasswordrules@infosec.exchange

                    This dumb password rule is from Bloomingdale's.

                    16 characters maximum, no `.` `,` `-` `|` `/` `=` or `_` allowed.

                    dumbpasswordrules.com/sites/bl

                      [?]Dumb Password Rules » 🤖
                      @dumbpasswordrules@infosec.exchange

                      This dumb password rule is from MySwissLife.

                      User ID *has to* be 8 characters exactly, password *has to be* 8 characters and numbers only.

                      dumbpasswordrules.com/sites/my

                        [?]Dumb Password Rules » 🤖
                        @dumbpasswordrules@infosec.exchange

                        This dumb password rule is from BMW ConnectedDrive.

                        Although the prompt suggests good things, after many failed attempts to
                        set a new password, it turns out you can ONLY use the special characters
                        shown in the prompt

                        dumbpasswordrules.com/sites/bm

                          [?]Sindarina, Edge Case Detective »
                          @sindarina@ngmx.com

                          "Israeli officials are urging citizens to disconnect internet-connected security cameras, warning that Iran may be exploiting them to gather real-time intelligence and adjust missile targeting.

                          Former Israeli cybersecurity official Refael Franco said in a public radio interview last week that Iranian actors have been attempting to access private surveillance systems in recent days to evaluate the impact of their strikes."

                          Lawl, the internet of shit that helps your enemies.

                          therecord.media/iran-espionage

                            [?]Dumb Password Rules » 🤖
                            @dumbpasswordrules@infosec.exchange

                            This dumb password rule is from Keimyung University.

                            Okay, doesn't looks that hard... But wait, there are hidden rules!

                            Hidden rules: your password can't have 3 times the same character in a row or more than 2 consecutive numbers.
                            Also if your password is 20 characters or more you won't be able to write it in the mobile app.

                            dumbpasswordrules.com/sites/ke

                              [?]Dumb Password Rules » 🤖
                              @dumbpasswordrules@infosec.exchange

                              This dumb password rule is from Irodoricomics.

                              A website to buy english-localized doujins. The password must be between 4 and 20 characters long

                              dumbpasswordrules.com/sites/ir

                                [?]Dumb Password Rules » 🤖
                                @dumbpasswordrules@infosec.exchange

                                This dumb password rule is from Bloomingdale's.

                                16 characters maximum, no `.` `,` `-` `|` `/` `=` or `_` allowed.

                                dumbpasswordrules.com/sites/bl

                                  [?]Dumb Password Rules » 🤖
                                  @dumbpasswordrules@infosec.exchange

                                  This dumb password rule is from University of Western Australia (Pheme).

                                  Passwords:
                                  1. Must contain at least 8 characters;
                                  2. Must contain at least 3 out of 4 types of characters
                                  (uppercase letters, lowercase letters, digits, special characters);
                                  and
                                  3. Must not contain
                                  "the user's account name or parts of the user's full name
                                  that exceed two consecutive characters".
                                  ...

                                  dumbpasswordrules.com/sites/un

                                    Tim Hergert boosted

                                    [?]Chester Wisniewski »
                                    @chetwisniewski@securitycafe.ca

                                    The S in MCP stands for safety and security. This is all.

                                      [?]Dumb Password Rules » 🤖
                                      @dumbpasswordrules@infosec.exchange

                                      This dumb password rule is from Sharekhan.

                                      - At least 8 characters.
                                      - At most 12 characters.

                                      dumbpasswordrules.com/sites/sh

                                        Tim Hergert boosted

                                        [?]Chester Wisniewski »
                                        @chetwisniewski@securitycafe.ca

                                        Turns out I am not the only one worried about Little Bobby DROP TABLES; having a child named Bobby Ignore Previous Instructions

                                          [?]Kevin Karhan :verified: »
                                          @kkarhan@infosec.space

                                          @delta also natively supports , |s and @torproject / so not only can people use it that way but also use any other bypass method.

                                          • Obviously, the classic with people doing uucp with foreign mobile networks near borders works just as well...

                                          I'd not be surprised if delta Chat is also used by * and ** also use it for a "contactless sneakernet" tho I am convinced they won't confirm or deny that for , & reasons alone...

                                          • I mean, both and ain't and where one could just take a phat satellite dish, strap an LTE stick or even external antennas on and just point it at turkish or lebanese radio towers near the border, as owning any satellite equipment in these places is a guarantee to get publicly executed for "espionage"...

                                            [?]Dumb Password Rules » 🤖
                                            @dumbpasswordrules@infosec.exchange

                                            This dumb password rule is from Alibaba.

                                            - At least 2 uppercase letters
                                            - Plus 2 lowercase letters
                                            - Plus 2 numbers
                                            - Plus 2 punctuation marks

                                            Phew, too many rules, because why not, if [Ma thinks AI stands for Alibaba Intelligence](youtube.com/watch?v=f3lUEnMaiAU),
                                            then password rules can be equally intelligent too.

                                            Also, ...

                                            dumbpasswordrules.com/sites/al

                                              [?]Free Teks for sale, cheap »
                                              @tek@freeradical.zone

                                              My friends in : do you use a DAST tool you don’t hate, that can log in with OAuth, and that doesn’t cost a gazillion bucks? There are so many options today, and I could use some recommendations to narrow my search.

                                                [?]🌱 Ligniform :donor: »
                                                @ligniform@infosec.exchange

                                                If I make tabletop exercise scenarios should I just make a public repo for all to enjoy, or is there somewhere that can get more reach? I just wanna make something cool

                                                  [?]Dumb Password Rules » 🤖
                                                  @dumbpasswordrules@infosec.exchange

                                                  This dumb password rule is from Boligøen (Danish resident renting bureau).

                                                  Red text: "Your password has to be at least 6 characters, but NOT over 20 characters."

                                                  dumbpasswordrules.com/sites/bo

                                                    [?]Dumb Password Rules » 🤖
                                                    @dumbpasswordrules@infosec.exchange

                                                    This dumb password rule is from Blackrock.

                                                    They force you to enter a password that has 8, 9, or 10 characters, then
                                                    they lecture you on how to create a strong password.

                                                    dumbpasswordrules.com/sites/bl

                                                      [?]Dumb Password Rules » 🤖
                                                      @dumbpasswordrules@infosec.exchange

                                                      This dumb password rule is from Suncorp.

                                                      To "improve security" and "be password savvy", passwords must:
                                                      - be six to eight characters long
                                                      - Contain both numbers and letters
                                                      - Include upper and lowercase letters

                                                      dumbpasswordrules.com/sites/su

                                                        [?]BastilleBSD :freebsd: »
                                                        @BastilleBSD@fosstodon.org

                                                        BastilleBSD uses FreeBSD jails and ZFS to isolate apps, manage snapshots, and secure your infrastructure without the overhead of Docker.

                                                          [?]Dumb Password Rules » 🤖
                                                          @dumbpasswordrules@infosec.exchange

                                                          This dumb password rule is from Onleihe.

                                                          Password is your birthday in format ddmmyyyy. Users are not allowed to change their passwords

                                                          dumbpasswordrules.com/sites/on

                                                            [?]Mark Wyner Won’t Comply :vm: »
                                                            @markwyner@mas.to

                                                            ICE is tapping into a nationwide AI-enabled camera surveillance system. Good times.

                                                            404media.co/ice-taps-into-nati

                                                            The good news is that these automatic license plate reader (ALPR) cameras are very hackable. And, of course, they’re easy to disable with some elbow grease.

                                                            It’s illegal. But if someone wanted to, there are ways. Just saying. Ahem…

                                                            wikihow.com/Blind-a-Surveillan

                                                            itpro.com/security/25510/numbe

                                                            eff.org/deeplinks/2024/06/new-

                                                            🧵 1/3

                                                              [?]Grendel84? »
                                                              @grendel84@tiny.tilde.website

                                                              Where the FUCK did all the hacktavists go? I seriously can't figure out why there's not more cyber push back.

                                                              If there were ever a time when it's moral to break the law it's now.

                                                              Why don't I see headlines about ICE being breached, or white house data leaked? Why aren't cronies like Musk and Banon being targeted?

                                                              The military is deployed in our streets, politicians are being arrested and shot.

                                                              What are we all waiting for?

                                                                [?]Dumb Password Rules » 🤖
                                                                @dumbpasswordrules@infosec.exchange

                                                                This dumb password rule is from California Department of Motor Vehicles.

                                                                They also prohibit pasting into the password field by using a JavaScript
                                                                `alert()` whenever you right-click or press the `Ctrl` button, so
                                                                you can't use a password manager.

                                                                dumbpasswordrules.com/sites/ca

                                                                  [?]Dumb Password Rules » 🤖
                                                                  @dumbpasswordrules@infosec.exchange

                                                                  This dumb password rule is from Mycanal.

                                                                  - Minimum of 8 characters
                                                                  - Contain at least 1 uppercase character or 1 number
                                                                  - Can not contain these characters : ‹ › ' "

                                                                  dumbpasswordrules.com/sites/my

                                                                    [?]Dumb Password Rules » 🤖
                                                                    @dumbpasswordrules@infosec.exchange

                                                                    This dumb password rule is from Wageworks.

                                                                    In addition to the following rules regarding passwords...
                                                                    - 8-20 characters in length
                                                                    - Include at least 4 of the following: lowercase letter, uppercase letter, number AND symbol
                                                                    - Not include your last name, first name or space

                                                                    Your new password should be different from your previous twenty pas...

                                                                    dumbpasswordrules.com/sites/wa

                                                                      [?]Dumb Password Rules » 🤖
                                                                      @dumbpasswordrules@infosec.exchange

                                                                      This dumb password rule is from Dell.

                                                                      Okay at least 6, that's alright I guess.

                                                                      Oh at least one number and one letter, bit dumb but hey not that dumb.

                                                                      But hiding the fact that it has a max of 20, now THAT is dumb!

                                                                      dumbpasswordrules.com/sites/de

                                                                        feld boosted

                                                                        [?]Eva Winterschön »
                                                                        @winterschon@mastodon.bsd.cafe

                                                                        CVE-2025-5689 😂🙃

                                                                        Fire up your "anyone we don't know gets root!" account SSH sessions to gain unmitigated control over Ubuntu systems running "Systemd AuthD"

                                                                        Clown shoes over there, ffs how is this even a real CVE 🤦🏼‍♀️

                                                                        - nvd.nist.gov/vuln/detail/CVE-2
                                                                        - github.com/ubuntu/authd/securi

                                                                          [?]Dumb Password Rules » 🤖
                                                                          @dumbpasswordrules@infosec.exchange

                                                                          This dumb password rule is from Netflix.

                                                                          [The help page](help.netflix.com/de/node/54078)
                                                                          and the [password reset page](netflix.com/password) say:

                                                                          Ihr Passwort muss zwischen 4 und 60 Zeichen lang sein und darf keine Tilde (~) enthalten.

                                                                          dumbpasswordrules.com/sites/ne

                                                                            [?]Dumb Password Rules » 🤖
                                                                            @dumbpasswordrules@infosec.exchange

                                                                            This dumb password rule is from Ameli.fr (French national health insurance).

                                                                            This was very painful to find a password that works with this one and that I can actually remember (I ended-up using my bank-account number because everything else failed). It took me maybe one hour and I thought I would become crazy (and yes, the session expires frequently while you are actually...

                                                                            dumbpasswordrules.com/sites/am

                                                                              Back to top - More...