cablespaghetti.dev is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Site description
Cablespaghetti's personal snac instance
Admin email
sam@cablespaghetti.dev
Admin account
@sam@cablespaghetti.dev

Search results for tag #cybersecurity

[?]Frederik Borgesius »
@Frederik_Borgesius@akademienl.social

NL

There are strong indications that the hack at the Public Prosecutor's Office is linked to Russia. The hackers may have had access for weeks.

ad.nl/binnenland/sterke-signal

    [?]Dumb Password Rules » 🤖
    @dumbpasswordrules@infosec.exchange

    This dumb password rule is from Bendigo Bank.

    **Exactly** eight characters.

    dumbpasswordrules.com/sites/be

      [?]Dumb Password Rules » 🤖
      @dumbpasswordrules@infosec.exchange

      This dumb password rule is from HM Revenue & Customs (UK Tax).

      We store basically all of your data, but we can't store your password.

      dumbpasswordrules.com/sites/hm

        [?]Open Rights Group »
        @openrightsgroup@social.openrightsgroup.org

        Age assurance is a red flag. A big one 🚩

        By not requiring regulation of the industry in the Online Safety Act, UK users are thrown into a wild west of privacy and security standards.

        Sign our letter to demand the UK government regulates the industry NOW ⬇️

        action.openrightsgroup.org/sig

          Kestral boosted

          [?]Open Rights Group »
          @openrightsgroup@social.openrightsgroup.org

          Millions of UK users will be asked to upload ID documents or have a biometric facial scan to check their age.

          You'll do this with different providers for different platforms without a regulatory guarantee.

          This multiplies the risk of phishing, sextortion, data breaches and data reuse.

            [?]Dumb Password Rules » 🤖
            @dumbpasswordrules@infosec.exchange

            This dumb password rule is from AT&T.

            The only special characters allowed are underscores and hyphens.

            dumbpasswordrules.com/sites/at

              [?]Open Rights Group »
              @openrightsgroup@social.openrightsgroup.org

              UK users have no choice with age assurance.

              You must use the methods and provider picked by the platform that you're trying to access.

              ❌ Providers aren't required to meet specific privacy or security standards.

              ❌ Platforms don't have to choose trusted or certified providers.

              You should be able to pick a provider that can be used interoperably across every platform.

                Chewie boosted

                [?]Open Rights Group »
                @openrightsgroup@social.openrightsgroup.org

                The UK Online Safety Act requires age assurance to restrict access to porn AND any content that could be ‘harmful’ for under 18s.

                If UK users don't submit to these checks, they'll either be blocked from accessing the platform entirely, or features like DMs and certain content will be restricted.

                And what amounts to 'harmful' content is open to broad interpretation.

                Quote from James Baker, ORG Programme Manager: "The British public is being forced to hand over sensitive personal data to unregulated age assurance providers if they want to have full access to platforms such as Reddit and Bluesky or Grindr."

                Alt...Quote from James Baker, ORG Programme Manager: "The British public is being forced to hand over sensitive personal data to unregulated age assurance providers if they want to have full access to platforms such as Reddit and Bluesky or Grindr."

                  [?]Open Rights Group »
                  @openrightsgroup@social.openrightsgroup.org

                  IDs at the ready 🪪

                  Age assurance requirements under the UK Online Safety Act kick in this Friday.

                  UK users will have to hand over their sensitive data to cyber bouncers without being sure they'll protect their privacy.

                  ORG is calling for these age assurance providers to be regulated ⬇️

                  openrightsgroup.org/press-rele

                    [?]Dumb Password Rules » 🤖
                    @dumbpasswordrules@infosec.exchange

                    This dumb password rule is from Walmart.

                    Your password must include the following:
                    - 8-100 characters
                    - Upper & lowercase letters
                    - At least one number or special character

                    dumbpasswordrules.com/sites/wa

                      [?]Dumb Password Rules » 🤖
                      @dumbpasswordrules@infosec.exchange

                      This dumb password rule is from Bendigo Bank.

                      **Exactly** eight characters.

                      dumbpasswordrules.com/sites/be

                        [?]Tailscale »
                        @tailscale@hachyderm.io

                        🔐 99% of IT/security pros want to redesign their access setup. Why?

                        VPNs are clunky. Identity is half-baked. Workarounds are everywhere.

                        📊 New report from Tailscale reveals what’s broken—and what’s next.

                        👉 tailscale.com/resources/report

                          [?]Neil Brown »
                          @neil@mastodon.neilzone.co.uk

                          Finally!

                          > [UK] Public sector bodies and operators of critical national infrastructure, including the NHS, local councils and schools [are to] be banned from paying ransom demands to criminals

                          and

                          > businesses not covered by the ban would be required to notify the government of any intent to pay a ransom

                          gov.uk/government/news/uk-to-l

                            [?]Dumb Password Rules » 🤖
                            @dumbpasswordrules@infosec.exchange

                            This dumb password rule is from Virgin Mobile.

                            You can only use PIN as your password.

                            dumbpasswordrules.com/sites/vi

                              [?]nixCraft 🐧 »
                              @nixCraft@mastodon.social

                              One weak password is believed to have been all it took for a ransomware gang to destroy a 158-year-old company and put 700 people out of work in UK. This is why you need a strong password along with 2FA and all other cybersecurity practices that can be maintained by good IT staff, including verified backups.

                              bbc.com/news/articles/cx2gx288

                                [?]Dumb Password Rules » 🤖
                                @dumbpasswordrules@infosec.exchange

                                Miah Johnson boosted

                                [?]Flipboard Tech Desk »
                                @TechDesk@flipboard.social

                                Microsoft Sharepoint server vulnerability puts an estimated 10,000 organizations at risk.

                                @Engadget reports: "The software giant released an emergency patch but the flaw is being actively exploited."

                                flip.it/h6w1pi

                                  [?]Bradalot “:verified: »
                                  @bradr@infosec.exchange

                                  Weak password allowed hackers to sink a 158-year-old company

                                  Curious this BBC article doesn't once use the words "backup" or "recovery".

                                  Seems like a journalist investigating this would at least ask the question, "Why not restore from backup?" and report the answer.

                                  It also seems odd to report "The company said its IT complied with industry standards" and not explain why that was insufficient to allow the company to recover.

                                  bbc.com/news/articles/cx2gx288

                                    [?]Alex@rtnVFRmedia Suffolk UK »
                                    @vfrmedia@social.tchncs.de

                                    were able to successfully target a 158 year old company in with , putting them out of business with 700 jobs lost when they were unable to pay the ransom..

                                    bbc.co.uk/news/articles/cx2gx2

                                      [?]Dumb Password Rules » 🤖
                                      @dumbpasswordrules@infosec.exchange

                                      This dumb password rule is from Battle.net.

                                      8 to 16 characters, at least one number and one letter and last but not least NO special characters, and can't have a password that looks like your username too. Oh, and passwords are NOT case sensitive.
                                      A real time travel adventure through the password rules of 2005!

                                      dumbpasswordrules.com/sites/ba

                                        [?]Dumb Password Rules » 🤖
                                        @dumbpasswordrules@infosec.exchange

                                        This dumb password rule is from Citi.

                                        * Password is case-insensitive
                                        * Can't use ANY special characters (although, adding special characters increases the "password strength" meter?!)
                                        * Allows for a minimum password length of 6 characters
                                        * No runs of more than two identical characters (eg. "aaa" is not allowed.)
                                        * Does not allow you...

                                        dumbpasswordrules.com/sites/ci

                                          [?]gtbarry »
                                          @gtbarry@mastodon.social

                                          350M Cars, 1B Devices Exposed to 1-Click Bluetooth RCE

                                          Four vulnerabilities in a popular Bluetooth implementation can be chained together to enable remote code execution (RCE) in untold millions of vehicles and miscellaneous devices.

                                          darkreading.com/vulnerabilitie

                                            [?]Dumb Password Rules » 🤖
                                            @dumbpasswordrules@infosec.exchange

                                            This dumb password rule is from Inria.

                                            This is the account for those who work at [Inria](inria.fr/)
                                            "the French national research institute for
                                            the digital sciences".

                                            You have to wonder what's wrong with these special characters but not
                                            the other ones.
                                            - Password expiration once a year
                                            - Your password must contain at leas...

                                            dumbpasswordrules.com/sites/in

                                              [?]AA »
                                              @AAKL@infosec.exchange

                                              Don't give in to these requests.

                                              "TechCrunch found that when Perplexity requests access to a user’s Google Calendar, the browser asks for a broad swath of permissions to the user’s Google Account, including the ability to manage drafts and send emails, download your contacts, view and edit events on all of your calendars, and even the ability to take a copy of your company’s entire employee directory."

                                              Tech Crunch: For privacy and security, think twice before granting AI access to your personal data techcrunch.com/2025/07/19/for- @TechCrunch @zackwhittaker

                                                [?]Dumb Password Rules » 🤖
                                                @dumbpasswordrules@infosec.exchange

                                                This dumb password rule is from Seur.

                                                Password must be between 8 and 12 characters...
                                                Also no symbols are allowed. But this isn't displayed.

                                                dumbpasswordrules.com/sites/se

                                                  [?]Dumb Password Rules » 🤖
                                                  @dumbpasswordrules@infosec.exchange

                                                  This dumb password rule is from SunTrust.

                                                  At least there are a variety of special characters to choose from.

                                                  dumbpasswordrules.com/sites/su

                                                    [?]Dumb Password Rules » 🤖
                                                    @dumbpasswordrules@infosec.exchange

                                                    This dumb password rule is from Alipay.

                                                    - 8-20 characters (numbers or letters)
                                                    - no special characters allowed
                                                    - in the mobile app

                                                    dumbpasswordrules.com/sites/al

                                                      Clare Hooley boosted

                                                      [?]Open Rights Group »
                                                      @openrightsgroup@social.openrightsgroup.org

                                                      Make our voice heard at the Apple encryption hearing!

                                                      On the sly, the UK government tried to force a backdoor into the firewall that protects your privacy. We made the hearing public.

                                                      Now we need to win in court ✊

                                                      Donate now to fund legal representation ⬇️

                                                      action.openrightsgroup.org/mak

                                                        [?]Dumb Password Rules » 🤖
                                                        @dumbpasswordrules@infosec.exchange

                                                        This dumb password rule is from AmeriHealth.

                                                        Their site says "*All information is kept safe and secure.*" Just not as
                                                        secure as you'd like.

                                                        User Password must be between 6 and 14 characters and contain 1
                                                        numerical value.

                                                        dumbpasswordrules.com/sites/am

                                                          Gina boosted

                                                          [?]AI6YR Ben »
                                                          @ai6yr@m.ai6yr.org

                                                          Head's up, the "you must confirm your profile" scam is proliferating on the Fediverse. I wonder if they are trying to gather driver's licenses and credit card numbers? It's a scam.

                                                          Scam Profile confirmation required image

                                                          Alt...Scam Profile confirmation required image

                                                            [?]Dumb Password Rules » 🤖
                                                            @dumbpasswordrules@infosec.exchange

                                                            This dumb password rule is from Keimyung University.

                                                            Okay, doesn't looks that hard... But wait, there are hidden rules!

                                                            Hidden rules: your password can't have 3 times the same character in a row or more than 2 consecutive numbers.
                                                            Also if your password is 20 characters or more you won't be able to write it in the mobile app.

                                                            dumbpasswordrules.com/sites/ke

                                                              [?]Dumb Password Rules » 🤖
                                                              @dumbpasswordrules@infosec.exchange

                                                              This dumb password rule is from Bloomingdale's.

                                                              16 characters maximum, no `.` `,` `-` `|` `/` `=` or `_` allowed.

                                                              dumbpasswordrules.com/sites/bl

                                                                [?]Mark Stosberg »
                                                                @markstos@urbanists.social

                                                                In an email to staff announcing his sudden departure after thousands of university web pages had been down for weeks due to a security incident that the university will "likely never explain publicly", Indiana University's Vice President of IT Rob Lowden declared his department a "national — and indeed international — model of innovation, dedication, and excellence in higher education IT.”

                                                                ipm.org/news/2025-07-16/iu-vic

                                                                  [?]Dumb Password Rules » 🤖
                                                                  @dumbpasswordrules@infosec.exchange

                                                                  This dumb password rule is from Targobank.

                                                                  Your password must:
                                                                  - must not be your username
                                                                  - must at least eight characters
                                                                  - must contain at least one number character
                                                                  - must contain at least one uppercase character and 1 lowercase character
                                                                  - must not contain spaces
                                                                  - must not contain three identical characters in a row
                                                                  - must not conta...

                                                                  dumbpasswordrules.com/sites/ta

                                                                    [?]Dumb Password Rules » 🤖
                                                                    @dumbpasswordrules@infosec.exchange

                                                                    This dumb password rule is from ING Australia.

                                                                    4 numeric digits.
                                                                    "Added security" by randomising the positions on the keypad. Must be clicked.

                                                                    dumbpasswordrules.com/sites/in

                                                                      [?]Dumb Password Rules » 🤖
                                                                      @dumbpasswordrules@infosec.exchange

                                                                      This dumb password rule is from Banca Intesa Serbia.

                                                                      Online banking portal of Banca Intesa Serbia has some password restrictions.
                                                                      This is the translation of the requirements:

                                                                      No special characters, minimum number of characters is 8, maximum number of
                                                                      characters is 22, minimum number of upper case letters is 1, lower case also 1,
                                                                      numeric characters...

                                                                      dumbpasswordrules.com/sites/ba

                                                                        [?]Eva Wolfangel »
                                                                        @evawolfangel@chaos.social

                                                                        Endlich erschienen: Meine Geschichte über mein Evil Bit und wie es dazu beigetragen hat, dass ich ein Atomkraftwerk gehackt (und Barack Obamas Sicherheitsberater eine Spearphishing-E-Mail geschickt) habe.
                                                                        🎁 Geschenk-Link 🎁

                                                                        zeit.de/digital/datenschutz/20

                                                                          [?]Dumb Password Rules » 🤖
                                                                          @dumbpasswordrules@infosec.exchange

                                                                          This dumb password rule is from Estheticon.

                                                                          - At least 8 characters but limited to 20 characters at max
                                                                          - At least 1 digit
                                                                          - At least one letter (just a letter in general, no specific casing required)
                                                                          - No special characters at all

                                                                          dumbpasswordrules.com/sites/es

                                                                            Back to top - More...