cablespaghetti.dev is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Site description
Cablespaghetti's personal snac instance
Admin email
sam@cablespaghetti.dev
Admin account
@sam@cablespaghetti.dev

Search results for tag #cybersecurity

[?]Dumb Password Rules » 🤖
@dumbpasswordrules@infosec.exchange

This dumb password rule is from ADP.

Forced to change the password during the first login. At least they
could use proper grammar in their rule list.

dumbpasswordrules.com/sites/ad

    [?]Dumb Password Rules » 🤖
    @dumbpasswordrules@infosec.exchange

    This dumb password rule is from Blue Cross Blue Shield Massachusetts.

    16 maximum and no special characters. Protecting your US healthcare
    information.

    dumbpasswordrules.com/sites/bl

      [?]Dumb Password Rules » 🤖
      @dumbpasswordrules@infosec.exchange

      This dumb password rule is from United States Postal Service.

      Pick from an arbitrary list of symbols, and no repeating characters.

      dumbpasswordrules.com/sites/un

        [?]Dumb Password Rules » 🤖
        @dumbpasswordrules@infosec.exchange

        This dumb password rule is from Global Entry.

        "Our duties are wide-ranging, and our goal is clear - keeping America
        safe."

        dumbpasswordrules.com/sites/gl

          Tim Hergert boosted

          [?]:awesome:🐦‍🔥nemo™🐦‍⬛ 🇺🇦 »
          @nemo@mas.to

          🚨 Mozilla warns Firefox add-on developers of ongoing phishing attacks aiming to steal accounts & inject malware into popular extensions! Over 40 malicious extensions impersonate crypto wallets to steal assets. Stay vigilant & verify emails carefully! 🔐🕵️‍♂️ techradar.com/pro/security/wat

            [?]Dumb Password Rules » 🤖
            @dumbpasswordrules@infosec.exchange

            This dumb password rule is from Synchrony Financial.

            Financial services - where we don't allow you to create the strongest
            password possible.

            dumbpasswordrules.com/sites/sy

              [?]Dumb Password Rules » 🤖
              @dumbpasswordrules@infosec.exchange

              This dumb password rule is from Trenord.

              - Password must consist of 8-16 characters
              - Must contain 3 out of 4 of the following: lowercase characters, uppercase character, digits (0-9), and one or more of the following symbols: @#$%^&*-_+=[]{}|\:',?/`~“();.

              dumbpasswordrules.com/sites/tr

                [?]Dumb Password Rules » 🤖
                @dumbpasswordrules@infosec.exchange

                This dumb password rule is from MobileIron MDM.

                You can't make this up - no dictionary words, no more than 2 repeating
                characters, no alphabetic sequences, no whitespace, 3 character sets,
                maximum of 32 characters.

                dumbpasswordrules.com/sites/mo

                  [?]Dumb Password Rules » 🤖
                  @dumbpasswordrules@infosec.exchange

                  This dumb password rule is from Nachbarschaft.NET.

                  "Mindestens 6 und maximal 12 Zeichen" - or in English: "At least 6 and max. 12 characters.

                  dumbpasswordrules.com/sites/na

                    [?]Dumb Password Rules » 🤖
                    @dumbpasswordrules@infosec.exchange

                    This dumb password rule is from MetLife.

                    Max length of 20 characters, no special characters allowed.
                    Pasting into the second password field is disabled even with
                    the Chrome extension Don't Fuck With Paste.

                    dumbpasswordrules.com/sites/me

                      [?]Paco Hope wishes ill for JK Rowling »
                      @paco@infosec.exchange

                      @cR0w @campuscodi

                      The national policy on public health is exactly this:
                      No disease surveillance == no evidence of diseases
                      No evidence of diseases == we are healthy

                      Economic policy also: don’t like the jobs statistics? Fire the person in charge of that department and replace them with someone who knows what the numbers are supposed to be.

                      The policy, therefore, is completely aligned with the approach to all other data-oriented public policies: data can be embarrassing and inconvenient. Let’s have less of it.

                        [?]Dumb Password Rules » 🤖
                        @dumbpasswordrules@infosec.exchange

                        This dumb password rule is from HM Revenue & Customs (UK Tax).

                        We store basically all of your data, but we can't store your password.

                        dumbpasswordrules.com/sites/hm

                          [?]Dumb Password Rules » 🤖
                          @dumbpasswordrules@infosec.exchange

                          This dumb password rule is from La Banque Postale.

                          Password must be 6 digits and entered on custom pad.

                          dumbpasswordrules.com/sites/la

                            [?]Dumb Password Rules » 🤖
                            @dumbpasswordrules@infosec.exchange

                            This dumb password rule is from SAP Cloud Appliance Library.

                            Passwords between 8 and 9 characters are the best.

                            dumbpasswordrules.com/sites/sa

                              [?]Dumb Password Rules » 🤖
                              @dumbpasswordrules@infosec.exchange

                              This dumb password rule is from Blackrock.

                              They force you to enter a password that has 8, 9, or 10 characters, then
                              they lecture you on how to create a strong password.

                              dumbpasswordrules.com/sites/bl

                                [?]Open Rights Group »
                                @openrightsgroup@social.openrightsgroup.org

                                The UK Online Safety Act is a hot mess 🥴

                                Drunk on boarding up more of the Internet than even the government's paedo test could justify.

                                Pushing people into riskier stuff online, enabling scammers and walking off with your ID.

                                Tell your MP to sort it out! ⬇️

                                action.openrightsgroup.org/tel

                                  [?]Open Rights Group »
                                  @openrightsgroup@social.openrightsgroup.org

                                  The Online Safety Act is technologically naive and ignorant to privacy risks, so people are finding ways around age verification. But...

                                  ❌ Teens could be pushed towards riskier things like the dark web, dodgy free VPNs or scams.

                                  ✅ Invest in a public information campaign to help people navigate online safety and learn about the privacy risks of age verification.

                                    [?]Dumb Password Rules » 🤖
                                    @dumbpasswordrules@infosec.exchange

                                    This dumb password rule is from Trade Me.

                                    Won't allow spaces or single quotes. Maybe other characters as well -
                                    they do not say up front - but the password they accepted contained lots
                                    of other special characters.

                                    dumbpasswordrules.com/sites/tr

                                      [?]Christoffer S. »
                                      @nopatience@swecyb.com

                                      This article by Unit42 from Palo Alto is most excellent stuff, attribution framework.

                                      We really need this sort of foundational frameworks to enable systematic and repeatable attribution and to get "everyone" to do the same amount of work.

                                      Perhaps this will also allow us to get away from every single attack being described as extremely advanced and sophisticated. (Entry vector: Default credentials).

                                      This will go into my read deeper list.

                                      unit42.paloaltonetworks.com/un

                                        [?]Dumb Password Rules » 🤖
                                        @dumbpasswordrules@infosec.exchange

                                        This dumb password rule is from GameFly.

                                        Password is 6-12 characters with no other restrictions. You can easily do 6 numbers, 6 lowercase letters, etc.

                                        dumbpasswordrules.com/sites/ga

                                          [?]Gonçalo Ribeiro »
                                          @goncalor@infosec.exchange

                                          Does anyone know of any kind of standards for applicational logging that define events to log and a format/syntax to log them?

                                          I've found old MITRE CEE and OWASP references below. Are there any others like these?

                                          Please boost if you can.

                                          cee.mitre.org/language/1.0-bet

                                          github.com/OWASP/CheatSheetSer

                                            [?]Dumb Password Rules » 🤖
                                            @dumbpasswordrules@infosec.exchange

                                            This dumb password rule is from Securvita BKK.

                                            Your password can not exceed a length of 30 characters. However, they don't tell you this: If you try to set a longer password, they instead shame *you* for not including at least one uppercase letter, one lowercase letter, one digit and one symbol – *even if you did*.

                                            The error message translat...

                                            dumbpasswordrules.com/sites/se

                                              [?]Dumb Password Rules » 🤖
                                              @dumbpasswordrules@infosec.exchange

                                              This dumb password rule is from T-Mobile.

                                              We prefer to not tell you which characters you can use up front.

                                              dumbpasswordrules.com/sites/t-

                                                [?]Open Rights Group »
                                                @openrightsgroup@social.openrightsgroup.org

                                                They didn’t not tell us to break encryption 🤐

                                                First Apple, now the UK government has seemingly ordered a backdoor into Google’s encrypted services.

                                                To access anyone’s data, files and photos, they’re happy to break everyone’s security 😵‍💫

                                                Read more ⬇️

                                                openrightsgroup.org/press-rele

                                                  [?]Dumb Password Rules » 🤖
                                                  @dumbpasswordrules@infosec.exchange

                                                  This dumb password rule is from Global Entry.

                                                  "Our duties are wide-ranging, and our goal is clear - keeping America
                                                  safe."

                                                  dumbpasswordrules.com/sites/gl

                                                    [?]MJ »
                                                    @mj@social.treehouse.systems

                                                    I DID IT!

                                                    Dewey invented the Dewey Decimal System, Morse invented the Morse Code, Plato invented the plate. I, influenced by what I saw at a conference I have designed and dedicated to the Public Domain the penultimate way to get removed from sales offerings.

                                                    I present to you the "No Purchasing Authority" seal. Put it on a button, wear it as a sticker, respond to emails with it. Regardless, this helps you and the sales person understand that this relationship is going nowhere.

                                                    White on black "No Purchasing Authority" with the symbols for dollar (green), euro (blue), yen (red) with a circle and line through symbolizing "no"

Underneath, a dedication to the Public Domain CC0 1.0 Universal.

                                                    Alt...White on black "No Purchasing Authority" with the symbols for dollar (green), euro (blue), yen (red) with a circle and line through symbolizing "no" Underneath, a dedication to the Public Domain CC0 1.0 Universal.

                                                      [?]Dumb Password Rules » 🤖
                                                      @dumbpasswordrules@infosec.exchange

                                                      This dumb password rule is from Netflix.

                                                      [The help page](help.netflix.com/de/node/54078)
                                                      and the [password reset page](netflix.com/password) say:

                                                      Ihr Passwort muss zwischen 4 und 60 Zeichen lang sein und darf keine Tilde (~) enthalten.

                                                      dumbpasswordrules.com/sites/ne

                                                        [?]Dumb Password Rules » 🤖
                                                        @dumbpasswordrules@infosec.exchange

                                                        This dumb password rule is from Movistar.

                                                        Min 7 and max 8 characters for password! Also to be different than the
                                                        username: the user name is automatically generated and is based on the
                                                        surname of the user with some characters replaced by digits :)
                                                        Has been that way for more than 10 years.

                                                        dumbpasswordrules.com/sites/mo

                                                          Karl Baron boosted

                                                          [?]Pheonix »
                                                          @pheonix@fosstodon.org

                                                          Don't trust cloud services with your creative work.

                                                          Tumblr post by maerossi.

screenshot - "Google Sheets
We're sorry. You can’t access this item because it is in violation of our
Terms of Service."

Everyone: Please please please don't write your books in Google Docs. Frankly don't use Google Drive for personal stuff. Their terms of service say they take down stuff like content related to terrorism and trafficking, but this Google Sheet was literally a list of movies I'd watched this year and books I'd read.

23 Jul
Holy smokes, guys. It's way worse than | thought. Google actually took away access to every single file of fiction writing I'd made on that account. BUT |
backed it all up on Scrivener yesterday by coincidence. So | haven't lost my work, but I could have just lost the 12,000 words I've written this month after a year of really intense writer's block. I honestly don't know what that would have done to
my psyche. Please be careful out there, folks! <3

                                                          Alt...Tumblr post by maerossi. screenshot - "Google Sheets We're sorry. You can’t access this item because it is in violation of our Terms of Service." Everyone: Please please please don't write your books in Google Docs. Frankly don't use Google Drive for personal stuff. Their terms of service say they take down stuff like content related to terrorism and trafficking, but this Google Sheet was literally a list of movies I'd watched this year and books I'd read. 23 Jul Holy smokes, guys. It's way worse than | thought. Google actually took away access to every single file of fiction writing I'd made on that account. BUT | backed it all up on Scrivener yesterday by coincidence. So | haven't lost my work, but I could have just lost the 12,000 words I've written this month after a year of really intense writer's block. I honestly don't know what that would have done to my psyche. Please be careful out there, folks! <3

                                                            [?]Dumb Password Rules » 🤖
                                                            @dumbpasswordrules@infosec.exchange

                                                            This dumb password rule is from Safeway.

                                                            Passwords limited to 8-12 characters.

                                                            dumbpasswordrules.com/sites/sa

                                                              BrianKrebs boosted

                                                              [?]AA »
                                                              @AAKL@infosec.exchange

                                                              Maybe we should change the spelling of "vulnerabilities" to read "Microsoft?" It's hard to pin the worst offenders. There are others, so many more.

                                                              Kaspersky: ToolShell: a story of five vulnerabilities in Microsoft SharePoint securelist.com/toolshell-expla @Kaspersky

                                                                Terence Eden boosted

                                                                [?]Terence Eden »
                                                                @Edent@mastodon.social

                                                                🆕 blog! “QR Code Hijacking Attempts Are Pretty Inept”

                                                                I've been writing about QR codes since 2007 - long before they were fashionable. Because QR Codes are so cheap to produce, there has always been a concern that attackers might print out their own codes and stick them over legitimate ones. When I first wrote about QR Hijacking in 2011, I said that such […]

                                                                👀 Read more: shkspr.mobi/blog/2024/07/qr-co

                                                                  [?]Dumb Password Rules » 🤖
                                                                  @dumbpasswordrules@infosec.exchange

                                                                  This dumb password rule is from KPMG Talent Community.

                                                                  While stating otherwise, the site actually *accepts a backslash* in the password
                                                                  and displays a forward slash as the example of the disallowed backslash
                                                                  Password:
                                                                  - Must be at least 8 characters long
                                                                  - Must contain at least 1 number
                                                                  - Must contain at least 1 letter
                                                                  - Must contain at least 1 spec...

                                                                  dumbpasswordrules.com/sites/kp

                                                                    [?]Dumb Password Rules » 🤖
                                                                    @dumbpasswordrules@infosec.exchange

                                                                    This dumb password rule is from Estheticon.

                                                                    - At least 8 characters but limited to 20 characters at max
                                                                    - At least 1 digit
                                                                    - At least one letter (just a letter in general, no specific casing required)
                                                                    - No special characters at all

                                                                    dumbpasswordrules.com/sites/es

                                                                      mastadan :PUA: :archlinux: boosted

                                                                      [?]Lesley Carhart :unverified: »
                                                                      @hacks4pancakes@infosec.exchange

                                                                      You have two weeks left to get your awesome talks into @pancakescon and @ComfyConAU !!!! Don’t miss out being part of our insane global free online con!!! forms.gle/H5bCRSaJY1f3tHGq5

                                                                        [?]Dumb Password Rules » 🤖
                                                                        @dumbpasswordrules@infosec.exchange

                                                                        This dumb password rule is from Bloomingdale's.

                                                                        16 characters maximum, no `.` `,` `-` `|` `/` `=` or `_` allowed.

                                                                        dumbpasswordrules.com/sites/bl

                                                                          [?]Dumb Password Rules » 🤖
                                                                          @dumbpasswordrules@infosec.exchange

                                                                          This dumb password rule is from GoDaddy SFTP.

                                                                          Max 14 characters for the most important password in your shared hosting environment.

                                                                          dumbpasswordrules.com/sites/go

                                                                            [?]Dissent Doe :cupofcoffee: »
                                                                            @PogoWasRight@infosec.exchange

                                                                            Wen boosted

                                                                            [?]Steve Loughran »
                                                                            @stevel@hachyderm.io

                                                                            BSides Bristol , Cyber Security workshop at University of West of England , 5-6 sept, 2025

                                                                            If I wasn't going to be abroad I'd sign up for this. As I'm seriously looking at getting deeply involved in this area, rather than just doing damage limitation.


                                                                            bsidesbristol.org.uk/

                                                                              [?]knoppix »
                                                                              @knoppix95@mastodon.social

                                                                              Windows market share in Germany drops to 69.78%, down nearly 10 points in a year 📉

                                                                              Meanwhile, macOS rises to 19.59%, driven by user demand for privacy & seamless integration 🍏

                                                                              Linux more than doubles to 5.49%, reflecting growing interest in open-source, secure, and flexible systems 🐧

                                                                                [?]Dumb Password Rules » 🤖
                                                                                @dumbpasswordrules@infosec.exchange

                                                                                This dumb password rule is from CAF (French Family Allowance Fund).

                                                                                You have to enter your 8-digit password using this Frenchy keypad.

                                                                                dumbpasswordrules.com/sites/ca

                                                                                  [?]Dumb Password Rules » 🤖
                                                                                  @dumbpasswordrules@infosec.exchange

                                                                                  This dumb password rule is from ING a dutch bank in almost 50 countries.

                                                                                  Max 20 characters, must have one number, one upper case character and one lower case character.
                                                                                  You can only use certain special characters.
                                                                                  When i asked about it they answer that it's really hard to change it.
                                                                                  When i asked if the password is saved as a hash or just plain they send the answer to ...

                                                                                  dumbpasswordrules.com/sites/in

                                                                                    [?]Dumb Password Rules » 🤖
                                                                                    @dumbpasswordrules@infosec.exchange

                                                                                    This dumb password rule is from BCV.

                                                                                    Username is randomly generated, example: 'H2487414'. The password must have **6** digits only.

                                                                                    Password can only be changed from the mobile application:

                                                                                    dumbpasswordrules.com/sites/bc

                                                                                      Back to top - More...