Category: Security & Privacy

  • Venom PoC is out.

    Quick: https://twitter.com/hdmoore/status/598644158664814592

  • 'Venom' bigger than Heartbleed

    Security researchers say the zero-day flaw affects “millions” of machines in datacenters around the world. Security researchers found a flaw in QEMU, dating back to 2004. Lots of virtualization platforms inherited the bug. Since virtualization powers the cloud, this has some potential. Quelle: Bigger than Heartbleed, ‘Venom’ security vulnerability threatens most datacenters | ZDNet

  • Russia and China Pledge Not to Hack Each Other

    Russia and China signed a cyber-security deal on Friday, agreeing to not conduct cyber-attacks against each other, as well as jointly counteract technology that may “destabilize the internal political and socio-economic atmosphere,” “disturb public order” or “interfere with the internal affairs of the state.” Quelle: Russia and China Pledge Not to Hack Each Other –…

  • PHP: md5(240610708) == md5(QNKCDZO)

    Just like Perl, PHP always got a fair share of blame for some of it’s features. Today, the internet added to the list. PHP: md5(240610708) == md5(QNKCDZO) Quelle: PHP: md5(240610708) == md5(QNKCDZO) | Hacker News

  • Internet Blocking Regulation

    Internet Blocking Regulations in the free western world, between 2004 and 2012. Quelle: Internet Blocking Regulation

  • Braucht jeder Hacker.

    Auch Cyber-Security braucht modische Cyber Accessoires.   Leute, ernsthaft? pic.twitter.com/I8D7C3g0gU — Nero (@HirteDerMeere) April 18, 2015 via: Schlecky Silberstein

  • Infamous “podcasting patent” knocked out

    The Electronic Frontiers Foundation managed to kill the “Podcasting Patent”. via Ars Technica about the Infamous “podcasting patent” knocked out

  • l+f: SSL-Zertifikat durch Zeitreise frisch halten

    Die kreative Idee des Tages kommt von manjaro Linux. Die Entwickler schlagen vor, die Warnung bezüglich des abgelaufenen Serverzertifikates zu beheben, indem man die lokale Systemzeit anpasst. Als ob das System Zertifikate und CAs nicht auch so schon problembehaftet genug wäre, soll man jetzt auch noch per root die Systemzeit ändern. m( via heise open.

  • Why Data Breaches Don’t Hurt Stock Prices

    Why Data Breaches Don’t Hurt Stock Prices. In short: because there is no reliable metric to make the impact transparent to shareholders and customers. via Harvar Business Review.

  • Filesharing can get you on the No-Fly list in France

    The European Digital Rights initiative (EDRi) warns that French filesharers to be banned from flying?