cablespaghetti.dev is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Site description
Cablespaghetti's personal snac instance
Admin email
sam@cablespaghetti.dev
Admin account
@sam@cablespaghetti.dev

Search results for tag #cybersecurity

[?]Dumb Password Rules » 🤖
@dumbpasswordrules@infosec.exchange

This dumb password rule is from Citi.

* Password is case-insensitive
* Can't use ANY special characters (although, adding special characters increases the "password strength" meter?!)
* Allows for a minimum password length of 6 characters
* No runs of more than two identical characters (eg. "aaa" is not allowed.)
* Does not allow you...

dumbpasswordrules.com/sites/ci

    [?]gtbarry »
    @gtbarry@mastodon.social

    350M Cars, 1B Devices Exposed to 1-Click Bluetooth RCE

    Four vulnerabilities in a popular Bluetooth implementation can be chained together to enable remote code execution (RCE) in untold millions of vehicles and miscellaneous devices.

    darkreading.com/vulnerabilitie

      [?]Dumb Password Rules » 🤖
      @dumbpasswordrules@infosec.exchange

      This dumb password rule is from Inria.

      This is the account for those who work at [Inria](inria.fr/)
      "the French national research institute for
      the digital sciences".

      You have to wonder what's wrong with these special characters but not
      the other ones.
      - Password expiration once a year
      - Your password must contain at leas...

      dumbpasswordrules.com/sites/in

        [?]AAKL »
        @AAKL@infosec.exchange

        Don't give in to these requests.

        "TechCrunch found that when Perplexity requests access to a user’s Google Calendar, the browser asks for a broad swath of permissions to the user’s Google Account, including the ability to manage drafts and send emails, download your contacts, view and edit events on all of your calendars, and even the ability to take a copy of your company’s entire employee directory."

        Tech Crunch: For privacy and security, think twice before granting AI access to your personal data techcrunch.com/2025/07/19/for- @TechCrunch @zackwhittaker

          [?]Dumb Password Rules » 🤖
          @dumbpasswordrules@infosec.exchange

          This dumb password rule is from Seur.

          Password must be between 8 and 12 characters...
          Also no symbols are allowed. But this isn't displayed.

          dumbpasswordrules.com/sites/se

            [?]Dumb Password Rules » 🤖
            @dumbpasswordrules@infosec.exchange

            This dumb password rule is from SunTrust.

            At least there are a variety of special characters to choose from.

            dumbpasswordrules.com/sites/su

              [?]Dumb Password Rules » 🤖
              @dumbpasswordrules@infosec.exchange

              This dumb password rule is from Alipay.

              - 8-20 characters (numbers or letters)
              - no special characters allowed
              - in the mobile app

              dumbpasswordrules.com/sites/al

                Clare Hooley boosted

                [?]Open Rights Group »
                @openrightsgroup@social.openrightsgroup.org

                Make our voice heard at the Apple encryption hearing!

                On the sly, the UK government tried to force a backdoor into the firewall that protects your privacy. We made the hearing public.

                Now we need to win in court ✊

                Donate now to fund legal representation ⬇️

                action.openrightsgroup.org/mak

                  [?]Dumb Password Rules » 🤖
                  @dumbpasswordrules@infosec.exchange

                  This dumb password rule is from AmeriHealth.

                  Their site says "*All information is kept safe and secure.*" Just not as
                  secure as you'd like.

                  User Password must be between 6 and 14 characters and contain 1
                  numerical value.

                  dumbpasswordrules.com/sites/am

                    Gina boosted

                    [?]AI6YR Ben »
                    @ai6yr@m.ai6yr.org

                    Head's up, the "you must confirm your profile" scam is proliferating on the Fediverse. I wonder if they are trying to gather driver's licenses and credit card numbers? It's a scam.

                    Scam Profile confirmation required image

                    Alt...Scam Profile confirmation required image

                      [?]Ian Campbell »
                      @neurovagrant@masto.deoan.org

                      Exposing the Unseen: Mapping MCP Servers Across the Internet

                      "We identified a total of 1,862 MCP servers exposed to the internet. From this set, we manually verified a sample of 119. All 119 servers granted access to internal tool listings without authentication."

                      this is why I keep a very watchful eye on Knostic about AI stuff, they know the tech, the risks, *and* how human behavior will interact with them.

                      knostic.ai/blog/mapping-mcp-se

                        [?]Dumb Password Rules » 🤖
                        @dumbpasswordrules@infosec.exchange

                        This dumb password rule is from Keimyung University.

                        Okay, doesn't looks that hard... But wait, there are hidden rules!

                        Hidden rules: your password can't have 3 times the same character in a row or more than 2 consecutive numbers.
                        Also if your password is 20 characters or more you won't be able to write it in the mobile app.

                        dumbpasswordrules.com/sites/ke

                          [?]Dumb Password Rules » 🤖
                          @dumbpasswordrules@infosec.exchange

                          This dumb password rule is from Bloomingdale's.

                          16 characters maximum, no `.` `,` `-` `|` `/` `=` or `_` allowed.

                          dumbpasswordrules.com/sites/bl

                            [?]Mark Stosberg »
                            @markstos@urbanists.social

                            In an email to staff announcing his sudden departure after thousands of university web pages had been down for weeks due to a security incident that the university will "likely never explain publicly", Indiana University's Vice President of IT Rob Lowden declared his department a "national — and indeed international — model of innovation, dedication, and excellence in higher education IT.”

                            ipm.org/news/2025-07-16/iu-vic

                              [?]Dumb Password Rules » 🤖
                              @dumbpasswordrules@infosec.exchange

                              This dumb password rule is from Targobank.

                              Your password must:
                              - must not be your username
                              - must at least eight characters
                              - must contain at least one number character
                              - must contain at least one uppercase character and 1 lowercase character
                              - must not contain spaces
                              - must not contain three identical characters in a row
                              - must not conta...

                              dumbpasswordrules.com/sites/ta

                                [?]Dumb Password Rules » 🤖
                                @dumbpasswordrules@infosec.exchange

                                This dumb password rule is from ING Australia.

                                4 numeric digits.
                                "Added security" by randomising the positions on the keypad. Must be clicked.

                                dumbpasswordrules.com/sites/in

                                  [?]Dumb Password Rules » 🤖
                                  @dumbpasswordrules@infosec.exchange

                                  This dumb password rule is from Banca Intesa Serbia.

                                  Online banking portal of Banca Intesa Serbia has some password restrictions.
                                  This is the translation of the requirements:

                                  No special characters, minimum number of characters is 8, maximum number of
                                  characters is 22, minimum number of upper case letters is 1, lower case also 1,
                                  numeric characters...

                                  dumbpasswordrules.com/sites/ba

                                    [?]Ian Campbell »
                                    @neurovagrant@masto.deoan.org

                                    Just a quickie from one of our @DomainTools researchers today that I know @cR0w will enjoy.

                                    Malware in DNS - specifically, malware seen being assembled from DNS TXT records.

                                    Not a "zomg new thing!" so much as a neat example in the wild.

                                    dti.domaintools.com/malware-in

                                      [?]Dumb Password Rules » 🤖
                                      @dumbpasswordrules@infosec.exchange

                                      This dumb password rule is from Estheticon.

                                      - At least 8 characters but limited to 20 characters at max
                                      - At least 1 digit
                                      - At least one letter (just a letter in general, no specific casing required)
                                      - No special characters at all

                                      dumbpasswordrules.com/sites/es

                                        [?]Dumb Password Rules » 🤖
                                        @dumbpasswordrules@infosec.exchange

                                        This dumb password rule is from IKEA.

                                        Dumb restriction for consecutive similar characters. Wonder if someone got more that 2 identical characters in their name then
                                        it won't allow you to even use name in password.

                                        Password must contain:
                                        - 8-20 characters
                                        - **No more than 2 identical characters in a row**
                                        - A lowercase letter (a-z)
                                        -...

                                        dumbpasswordrules.com/sites/ik

                                          [?]Dumb Password Rules » 🤖
                                          @dumbpasswordrules@infosec.exchange

                                          This dumb password rule is from Sprint.

                                          Sprint "upgraded" their security and disallow special characters.

                                          dumbpasswordrules.com/sites/sp

                                            [?]Dumb Password Rules » 🤖
                                            @dumbpasswordrules@infosec.exchange

                                            This dumb password rule is from Gigabyte RMA system.

                                            Your password must contain:
                                            Between 8-12 characters
                                            An upper case letter (A, B, C, etc.)
                                            a lower case letter (a, b, c, etc.)
                                            A number (1, 2, 3, etc.)
                                            A symbol (-, ~, !, #, $, %, &, (, ), +, =, .)

                                            dumbpasswordrules.com/sites/gi

                                              [?]Dumb Password Rules » 🤖
                                              @dumbpasswordrules@infosec.exchange

                                              This dumb password rule is from Thames Water.

                                              Can only use the "special" characters on that very limited list, excluding symbols so exotic as an underscore, even. This is despite their own strength checker saying the password is strong.

                                              dumbpasswordrules.com/sites/th

                                                [?]Dumb Password Rules » 🤖
                                                @dumbpasswordrules@infosec.exchange

                                                This dumb password rule is from Blackrock.

                                                They force you to enter a password that has 8, 9, or 10 characters, then
                                                they lecture you on how to create a strong password.

                                                dumbpasswordrules.com/sites/bl

                                                  [?]Dumb Password Rules » 🤖
                                                  @dumbpasswordrules@infosec.exchange

                                                  This dumb password rule is from IBM TSO/E Logon terminal.

                                                  It might not be a web site, but that does not make it less dumb.
                                                  Since many don't know about IBM mainframes, it seems they don't think you need to up the policies.

                                                  Default old password policy is: 6-8 characters long, A-Z, 0-9

                                                  Over the last few years they have updated their policies a bit, but d...

                                                  dumbpasswordrules.com/sites/ib

                                                    [?]Dumb Password Rules » 🤖
                                                    @dumbpasswordrules@infosec.exchange

                                                    This dumb password rule is from Turkish Airlines.

                                                    - Your password must consist of 6 digits
                                                    - Make sure that your password does not contain your date of birth or three consecutive digits...
                                                    - but two is OK, for sure.
                                                    - ... and that the same number is not repeated three or more times.
                                                    - but two times is probs OK

                                                    dumbpasswordrules.com/sites/tu

                                                      [?]Dumb Password Rules » 🤖
                                                      @dumbpasswordrules@infosec.exchange

                                                      This dumb password rule is from Vélib’ Métropole.

                                                      Your password must be at least 10 characters, with at least 1 uppercase character, 1 lowercase character, 1 number and 1 special character (only from this list: @, $, €, #, %, *, ., ;, !, ?).

                                                      You're not allowed to paste passwords.

                                                      dumbpasswordrules.com/sites/ve

                                                        [?]Dumb Password Rules » 🤖
                                                        @dumbpasswordrules@infosec.exchange

                                                        This dumb password rule is from MKB NetBankár.

                                                        It only accepts lowercase letters, uppercase letters and numbers (any
                                                        other character counts as forbidden character).
                                                        Also, if your password contains any invalid character, it will get
                                                        marked as "Identical to the former 10 passwords".

                                                        To make it more fun, during the registration, it allows to se...

                                                        dumbpasswordrules.com/sites/mk

                                                          [?]Dumb Password Rules » 🤖
                                                          @dumbpasswordrules@infosec.exchange

                                                          This dumb password rule is from Easybank (Austrian direct bank).

                                                          - At least 8 and at most 16 (!) characters
                                                          - **Must start with 5 digits (do we really want to know what's going on there?)**
                                                          - At least one uppercase and one lowercase letter
                                                          - (Some) special characters are permitted, most are not
                                                          - "Simple" patterns are prohibited
                                                          - PINs are case sensitive (at l...

                                                          dumbpasswordrules.com/sites/ea

                                                            Mike Cox boosted

                                                            [?]AI6YR Ben »
                                                            @ai6yr@m.ai6yr.org

                                                            How's that AI coding going for you? Ah... I see.

                                                            Wired: McDonald’s AI Hiring Bot Exposed Millions of Applicants' Data to Hackers Using the Password ‘123456’

                                                            "... Carroll and Curry, hackers with a long track record of independent security testing, discovered that simple web-based vulnerabilities—including guessing one laughably weak password—allowed them to access a Paradox.ai account and query the company's databases that held every McHire user's chats with Olivia. The data appears to include as many as 64 million records, including applicants' names, email addresses, and phone numbers...."

                                                            wired.com/story/mcdonalds-ai-h

                                                              [?]Risotto Bias »
                                                              @risottobias@toot.risottobias.org

                                                              wait there's ANOTHER @jerry defensive security podcast episode!?

                                                              youtube.com/watch?v=BRzMJbBZ490

                                                                [?]Dumb Password Rules » 🤖
                                                                @dumbpasswordrules@infosec.exchange

                                                                This dumb password rule is from URSSAF (French employers tax collection service).

                                                                When setting a new password:
                                                                Password must be exactly 8 characters, at least 1 letter, at least 1 number, but no special characters.

                                                                dumbpasswordrules.com/sites/ur

                                                                  [?]Dumb Password Rules » 🤖
                                                                  @dumbpasswordrules@infosec.exchange

                                                                  This dumb password rule is from Keimyung University.

                                                                  Okay, doesn't looks that hard... But wait, there are hidden rules!

                                                                  Hidden rules: your password can't have 3 times the same character in a row or more than 2 consecutive numbers.
                                                                  Also if your password is 20 characters or more you won't be able to write it in the mobile app.

                                                                  dumbpasswordrules.com/sites/ke

                                                                    [?]Dumb Password Rules » 🤖
                                                                    @dumbpasswordrules@infosec.exchange

                                                                    This dumb password rule is from LepidaID.

                                                                    Password must:
                                                                    - be 8 to 16 characters in length
                                                                    - contain at least 1 upper-case character
                                                                    - contain at least 1 lower-case character
                                                                    - contain at least 1 number
                                                                    - contain at least 1 non-alphanumeric character
                                                                    - not contain more than 2 of the same consecutive characters
                                                                    - not contain any public da...

                                                                    dumbpasswordrules.com/sites/le

                                                                      Back to top - More...