GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices tagged with security

  1. Embed this notice
    PrivacyDigest (privacydigest@mas.to)'s status on Thursday, 27-Aug-2026 02:28:55 JST PrivacyDigest PrivacyDigest

    #Ads and #tracking infiltrated #TVs. Now they're coming for #monitors.

    Ads and tracking have turned TVs into #privacy nightmares. Both are so widespread among smart TVs that I’ve written a guide for avoiding them. One recommendation in that guide is to use a computer monitor. But in recent years, monitors have become more capable of pushing ads and tracking users.

    Without more straightforward approaches from vendors, such as easily comprehensible privacy policies and avoiding inappropriate ads, monitors are dangerously encroaching into smart-TV-like territory.

    #LG monitors’ #McAfee ads

    LG lost some trust after a recent report that some of its monitors installed McAfee pop-up ads onto connected computers. Since at least 2024, some of these displays installed an app, LG Monitor App Installer, onto connected computers under the cover of driver updates installed through #WindowsUpdate.
    #security #windows #smarttv

    https://arstechnica.com/gadgets/2026/08/ads-and-tracking-infiltrated-tvs-now-theyre-coming-for-monitors/

    In conversation about 3 days ago from mas.to permalink
  2. Embed this notice
    Frankie ✅ (some_emo_chick@mastodon.social)'s status on Thursday, 27-Aug-2026 02:26:12 JST Frankie ✅ Frankie ✅

    US says Chinese hackers broke into Justice Department, NASA, Federal Reserve, Senate and more

    https://www.reuters.com/world/china/china-sponsored-hacking-platforms-seized-by-us-justice-department-says-2026-08-26/

    #tech #technology #news #technews #security #privacy #china #usa #hack

    In conversation about 3 days ago from mastodon.social permalink

    Attachments


  3. Embed this notice
    Club de TéléMatique :verified: (clubtelematique@mstdn.social)'s status on Saturday, 22-Aug-2026 00:45:43 JST Club de TéléMatique :verified: Club de TéléMatique :verified:

    Linux fan develops tools to get rid of win11 ads: https://betanews.com/2024/05/06/linux-fan-develops-a-fricking-amazing-tool-to-remove-all-ads-from-windows-11/ #privacy #security

    In conversation about 8 days ago from mstdn.social permalink

    Attachments


  4. Embed this notice
    LinuxNews.de (linuxnews@social.anoxinon.de)'s status on Wednesday, 19-Aug-2026 03:57:11 JST LinuxNews.de LinuxNews.de

    Vor einiger Zeit wurde ich im #anthropic
    #cvp angenommen und konnte seit dem ausgiebig damit experimentieren.

    Abseits der Marketing-Blogs aller möglichen Unternehmen: Wollt ihr einen Artikel dazu? Was das wirklich freischaltet, was Dual-Use ist und wie mein Setup dafür aussieht? Oder auch eure Fragen direkt als Antwort hier unter dem Toot

    #cybersecurity #defense #ai #security #secops

    In conversation about 11 days ago from social.anoxinon.de permalink

    Attachments


    1. https://social.anoxinon.de/system/media_attachments/files/117/118/026/734/867/157/original/8100d8c71da37fa6.png
  5. Embed this notice
    Liam @ GamingOnLinux 🐧🎮 (gamingonlinux@mastodon.social)'s status on Thursday, 13-Aug-2026 20:10:42 JST Liam @ GamingOnLinux 🐧🎮 Liam @ GamingOnLinux 🐧🎮

    Make sure your Flatpak is up to date due to security issues https://www.gamingonlinux.com/2026/08/make-sure-your-flatpak-is-up-to-date-due-to-security-issues/

    #Flatpak #Linux #Security #OpenSource

    In conversation about 16 days ago from mastodon.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.gamingonlinux.com
      Make sure your Flatpak is up to date due to security issues
      Version 1.18.1 and 1.19.0 pre-release rolled out for Flatpak, due to some security issues that were found so it's an essential update for all Linux systems.
  6. Embed this notice
    DigitalEscapeTools (xabd@mastodon.social)'s status on Thursday, 13-Aug-2026 06:22:54 JST DigitalEscapeTools DigitalEscapeTools

    secureblue is a security-focused Linux OS built on Fedora Atomic, using an immutable (read-only) system to reduce attack surface and prevent tampering.

    It ships as bootable container images and includes strong hardening out of the box -- a solid choice for users who want more control and better security.

    👉 https://github.com/secureblue/secureblue
    More privacy-friendly tools: https://digital-escape-tools-phi.vercel.app/

    #Privacy #OpenSource #Linux #Security #FOSS #DigitalFreedom

    In conversation about 17 days ago from mastodon.social permalink

    Attachments


    1. https://files.mastodon.social/media_attachments/files/116/370/625/204/611/098/original/62748dd22123aecf.jpg



  7. Embed this notice
    heise Security (heisec@social.heise.de)'s status on Wednesday, 12-Aug-2026 08:13:32 JST heise Security heise Security

    Ransomware attackiert ungepatchte Sharepoint-Instanzen

    Eine schwere Sicherheitslücke in Microsoft SharePoint wird nun von Ransomware ausgenutzt. Ein Patch steht bereit, ungeschützte Systeme auch.

    https://www.heise.de/news/Ransomware-attackiert-ungepatchte-Sharepoint-Instanzen-11410721.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #IT #Microsoft #Ransomware #Security #SharePoint #Sicherheitslücken #Updates #news

    In conversation about 18 days ago from social.heise.de permalink
  8. Embed this notice
    Brandon Lipani (helix2301@twit.social)'s status on Tuesday, 11-Aug-2026 10:11:21 JST Brandon Lipani Brandon Lipani

    I like #ublockorigin and #security that’s why I use #firefox and not chromium based browsers

    Chromium is Google open source way of trying to control the web under the cloud of security they make changes to chromium to benefit Google

    In conversation about 19 days ago from twit.social permalink
  9. Embed this notice
    Christian Noll (vnzn@mas.to)'s status on Tuesday, 11-Aug-2026 02:27:47 JST Christian Noll Christian Noll

    curl: Nobody wants to work with Windows

    https://www.heise.de/en/news/curl-Nobody-wants-to-work-with-Windows-11409147.html

    #windows #Microsoft #curl #programming #Linux #security

    In conversation about 19 days ago from mas.to permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: heise.cloudimg.io
      curl: Nobody wants to work with Windows
      from heise online
      curl's seven-person security team does not use Windows. Now developer Daniel Stenberg is urgently seeking support for the project.
  10. Embed this notice
    heise online (heiseonline@social.heise.de)'s status on Saturday, 08-Aug-2026 21:28:21 JST heise online heise online

    Google-Threat-Intelligence-Chefin: Dank KI „mehr Zero-Days als je zuvor“

    Bug-Bounty-Programme werden mit Fehlerberichten geflutet, User und Firmen leiden unter KI-Angriffen: Der Security-Bereich ändert sich rasant, sagt Sandra Joyce.

    https://www.heise.de/hintergrund/Google-Threat-Intelligence-Chefin-Dank-KI-mehr-Zero-Days-als-je-zuvor-11400371.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #Google #GoogleGemini #HardwareHacking #IT #KünstlicheIntelligenz #Security #Exploit #news

    In conversation about 21 days ago from social.heise.de permalink
  11. Embed this notice
    Liam @ GamingOnLinux 🐧🎮 (gamingonlinux@mastodon.social)'s status on Monday, 03-Aug-2026 17:25:05 JST Liam @ GamingOnLinux 🐧🎮 Liam @ GamingOnLinux 🐧🎮

    Arch Linux AUR hit with another wave of malware https://www.gamingonlinux.com/2026/08/arch-linux-aur-hit-with-another-wave-of-malware/

    #Linux #ArchLinux #Security

    In conversation about a month ago from mastodon.social permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.gamingonlinux.com
      Arch Linux AUR hit with another wave of malware
      After previously dealing with a big wave of malware in the Arch Linux AUR (Arch User Repository), another wave happened while I was off touching grass.
  12. Embed this notice
    iX Magazin (ix_magazin@social.heise.de)'s status on Saturday, 01-Aug-2026 17:20:44 JST iX Magazin iX Magazin

    iX-Workshop: Nach dem Einbruch – Digital Forensics & Incident Response (DFIR)

    Lernen Sie, professionelle Incident-Response-Workflows zu implementieren, um im Falle eines Cyberangriffs schnell und effektiv reagieren zu können.

    https://www.heise.de/news/iX-Workshop-Nach-dem-Einbruch-Digital-Forensics-Incident-Response-DFIR-11367838.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #Cyberangriff #ITForensik #IT #Security #iXWorkshops #Phishing #Ransomware #Trojaner #news

    In conversation about a month ago from social.heise.de permalink
  13. Embed this notice
    iX Magazin (ix_magazin@social.heise.de)'s status on Thursday, 30-Jul-2026 14:55:34 JST iX Magazin iX Magazin

    heise+ | Security: Wie Sie KI-Codereviews sinnvoll nutzen

    KI ist im Codeaudit angekommen – und macht die Überprüfung der von der KI gefundenen Schwachstellen zur knappsten Ressource im gesamten Sicherheitsprozess.

    https://www.heise.de/hintergrund/Security-Wie-Sie-KI-Codereviews-sinnvoll-nutzen-11363719.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #IT #Security #KünstlicheIntelligenz #Mozilla #news

    In conversation about a month ago from social.heise.de permalink
  14. Embed this notice
    heise online (heiseonline@social.heise.de)'s status on Tuesday, 28-Jul-2026 18:48:22 JST heise online heise online

    Programmierfehler führt zu falschen Abiturschnitten in Baden-Württemberg

    Wegen eines Softwarefehlers bei der Zeugnisverwaltung müssen rund 100 Abiturienten in Baden-Württemberg ihre Noten korrigieren lassen.

    https://www.heise.de/news/Programmierfehler-fuehrt-zu-falschen-Abiturschnitten-in-Baden-Wuerttemberg-11379968.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #Bildung #Digitalisierung #Security #Journal #Software #Studium #news

    In conversation about a month ago from social.heise.de permalink
  15. Embed this notice
    nixCraft 🐧 (nixcraft@mastodon.social)'s status on Saturday, 25-Jul-2026 18:27:28 JST nixCraft 🐧 nixCraft 🐧

    Google now support account recovery with AI and your face. What could possibly go wrong? Google having my face is not just bad enough but chances are high that selfie video may not work in edge cases or network down etc.

    https://blog.google/innovation-and-ai/technology/safety-security/selfie-video-sign-in/

    #privacy #security #DoNotwant

    In conversation about a month ago from mastodon.social permalink

    Attachments


    1. https://files.mastodon.social/media_attachments/files/116/979/874/423/982/662/original/5283956736108fd1.png
    2. Domain not in remote thumbnail source whitelist: storage.googleapis.com
      Introducing selfie for sign-in: a new, easy way to access your Google Account
      Selfie video gives you more options if you’re ever locked out or don’t have access to your usual phone or computer.
  16. Embed this notice
    BobDaHacker 🏳️‍⚧️ | NB (bobdahacker@infosec.exchange)'s status on Saturday, 25-Jul-2026 09:32:43 JST BobDaHacker 🏳️‍⚧️ | NB BobDaHacker 🏳️‍⚧️ | NB

    🙏 New Blog Post

    The Pope's official prayer app has an IDOR that lets anyone pull user data for all 719,517 accounts. One GET request per user. No auth check.

    What's exposed:

    • Email addresses
    • Names
    • Country
    • Date of birth (they call it "borned_date" lol)
    • Account role (it's "PRAYER" for everyone, obviously)

    Also found:

    • Signup endpoint returns the email verification token in the response body, so you can verify accounts without accessing the inbox
    • Their verification emails fail their own domain's authentication requirements

    Reported January 3rd. Emailed 9 people. A journalist also contacted them. Zero responses. Still live six months later. Vow of silence I guess.

    Full writeup: https://bobdahacker.com/blog/click-to-pray

    #InfoSec #BugBounty #ResponsibleDisclosure #IDOR #Security #CyberSecurity #Privacy #DataExposure #ClickToPray #Vatican #APISecurity

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: bobdahacker.com
      Click to Pray, Click to Leak: The Pope's Official App Exposes 700,000+ User Emails
      from BobDaHacker
      How I found that anyone can pull the email address, name, country, and date of birth of any of the 719,517 users on Click To Pray, the Pope's official prayer app, with a single GET request. Reported January 3rd. Still live six months later. Nobody has ever responded.
  17. Embed this notice
    heise online (heiseonline@social.heise.de)'s status on Friday, 24-Jul-2026 18:17:06 JST heise online heise online

    Öffnung von WhatsApp: Threema lehnt Anbindung nicht nur wegen Datenschutz ab

    Unter EU-Vorgaben musste WhatsApp für Chats mit anderen Messengern geöffnet werden. Nicht nur aus Datenschutzgründen lehnt Threema das weiterhin ab.

    https://www.heise.de/news/Oeffnung-von-WhatsApp-Threema-lehnt-Anbindung-nicht-nur-wegen-Datenschutz-ab-11377183.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

    #Datenschutz #DigitalMarketsAct #Mobiles #Netzpolitik #Security #Threema #WhatsApp #news

    In conversation about a month ago from social.heise.de permalink
  18. Embed this notice
    BrianKrebs (briankrebs@infosec.exchange)'s status on Wednesday, 22-Jul-2026 21:10:19 JST BrianKrebs BrianKrebs

    New, exclusive, by me: LG to Ban Residential Proxy Providers from Smart TV Apps

    The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one’s television into an always-on residential proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG’s webOS store allow unknown third-parties to route their Internet traffic through a user’s TV.

    https://krebsonsecurity.com/2026/07/lg-to-ban-residential-proxies-from-smart-tv-apps/

    #smarttv #lg #residentialproxies #spur #security

    In conversation about a month ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/960/971/646/815/691/original/30bd820e2705eae2.png
  19. Embed this notice
    Brandon Lipani (helix2301@twit.social)'s status on Wednesday, 22-Jul-2026 01:47:26 JST Brandon Lipani Brandon Lipani

    Building out access gateway kind of day #security #netsec #infosec

    In conversation about a month ago from twit.social permalink
  20. Embed this notice
    Calishat (researchbuzz@researchbuzz.masto.host)'s status on Monday, 20-Jul-2026 13:41:50 JST Calishat Calishat

    #UK #security #privacy #LocalGov

    'An urban explorer says he discovered his own confidential records among “room after room” of unsecured personal information in a disused council building.'

    https://www.theargus.co.uk/news/26289821.hundreds-sensitive-files-found-closed-wscc-building/

    In conversation about a month ago from researchbuzz.masto.host permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.theargus.co.uk
      Explorer 'finds hundreds of sensitive documents' dumped in disused council building
      from Sophie Watson
      A Sussex urban explorer says he discovered his own confidential records among “room after room” of unsecured personal information in a disused…
  • Before

Feeds

  • Activity Streams
  • RSS 1.0
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.