mastodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance, open to everyone, but mainly English and French speaking.

Administered by:

Server stats:

788
active users

#opsec

23 posts17 participants1 post today
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://hachyderm.io/@dave_andersen" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>dave_andersen</span></a></span> <span class="h-card" translate="no"><a href="https://furry.engineer/@AVincentInSpace" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>AVincentInSpace</span></a></span> personally I consider any <em>"<a href="https://infosec.space/tags/KYC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KYC</span></a>"</em> a risk-factor, and <span class="h-card" translate="no"><a href="https://mastodon.world/@signalapp" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>signalapp</span></a></span> has proven their <em>ability and willingness</em> to restrict functionality (i.e. their <a href="https://infosec.space/tags/Shitcoin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Shitcoin</span></a>-<a href="https://infosec.space/tags/Scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Scam</span></a> <a href="https://infosec.space/tags/MobileCoin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MobileCoin</span></a>) based off said <a href="https://infosec.space/tags/PhoneNumbers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PhoneNumbers</span></a> (Cuban, Russian and North Korean Numbers were excluded) which are in fact <a href="https://infosec.space/tags/PII" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PII</span></a> (even if one doesn't have to <a href="https://infosec.space/tags/ID" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ID</span></a> for obtaining a <a href="https://infosec.space/tags/SIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SIM</span></a>, they are circumstantial PII)... </p><ul><li>They have neither <em>"legitimate interest"</em> nor legal mandate to collect said data (or to integrate a scammy Shitcoin for that matter) as the discontinuation of <a href="https://infosec.space/tags/ChatSecure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ChatSecure</span></a> / <a href="https://infosec.space/tags/TextSecure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TextSecure</span></a> has eliminated the <em>"technical necessity"</em> to have those.</li></ul><p>Either way they either have to yeet <a href="https://infosec.space/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a> as client and/or stop collecting PII like PhoneNumbers - <em>they gotta have to do something</em>…</p><ul><li>As for <a href="https://infosec.space/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a>, <a href="https://infosec.space/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> &amp; <a href="https://infosec.space/tags/ComSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ComSec</span></a>, I'd say <a href="https://infosec.space/tags/XMPP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>XMPP</span></a>+<a href="https://infosec.space/tags/OMEMO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OMEMO</span></a> remains the gold standard alongside <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PGP</span></a>/MIME...</li></ul><p><a href="https://infosec.space/tags/ITsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITsec</span></a> is a different story, but unlike <a href="https://infosec.space/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a> these do not depend on a <a href="https://infosec.space/tags/PhoneNumber" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PhoneNumber</span></a> and work through <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>torproject</span></a></span> / <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tor</span></a>.</p><ul><li>And I've been using Tor for almost 15 years now...</li></ul>
Wuzzy<p>First they came for trans people.<br>Then they came for autists.</p><p><a href="https://people.com/rfk-jr-to-launch-autism-registry-using-private-health-records-11720156" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">people.com/rfk-jr-to-launch-au</span><span class="invisible">tism-registry-using-private-health-records-11720156</span></a></p><p>A "national <a href="https://cyberplace.social/tags/autism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>autism</span></a> registry" should alarm everyone. <a href="https://cyberplace.social/tags/sus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sus</span></a></p><p>This is from the man who spreads the lie that "vaccines cause autism" (debunked here: &lt;<a href="https://en.wikipedia.org/wiki/Vaccines_and_autism" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">en.wikipedia.org/wiki/Vaccines</span><span class="invisible">_and_autism</span></a>&gt;).<br>The same man who falsely claimed that autists never work or pay taxes. <a href="https://www.washingtonpost.com/nation/2025/04/17/rfk-jr-autism-children/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">washingtonpost.com/nation/2025</span><span class="invisible">/04/17/rfk-jr-autism-children/</span></a></p><p>I suggest to everyone in the US to get rid of <a href="https://cyberplace.social/tags/health" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>health</span></a> trackers, smart watches, etc.</p><p><a href="https://cyberplace.social/tags/USA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USA</span></a> <a href="https://cyberplace.social/tags/fascism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fascism</span></a> <a href="https://cyberplace.social/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://cyberplace.social/tags/OPSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OPSEC</span></a> <a href="https://cyberplace.social/tags/pseudoscience" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>pseudoscience</span></a></p>
mk30<p>This guy!: "Hegseth had an unsecured internet line set up in his office to connect to Signal, AP sources say"</p><p><a href="https://apnews.com/article/hegseth-signal-chat-dirty-internet-line-6a64707f10ca553eb905e5a70e10bd9d" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">apnews.com/article/hegseth-sig</span><span class="invisible">nal-chat-dirty-internet-line-6a64707f10ca553eb905e5a70e10bd9d</span></a></p><p>Can you imagine this kind of thing happening in Russia's or China's equivalents of the defense dept? I can't. It's just laughable. What a guy, seriously.</p><p>These right wingers hate DEI because they're soooo against "incompetent candidates", but their incompetence is truly impressive.</p><p><a href="https://tilde.zone/tags/USPol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USPol</span></a> <a href="https://tilde.zone/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://tilde.zone/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> <a href="https://tilde.zone/tags/hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hegseth</span></a></p>
Cthulhu<p><span class="h-card" translate="no"><a href="https://toot.wales/@Walrus" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Walrus</span></a></span> Makes no difference. The buffoon will still keep adding random people to his 'secret' <a href="https://toot.wales/tags/signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>signal</span></a> chats.</p><p>Even if he went ultra, ultra secure and learned how to use <a href="https://toot.wales/tags/ROT13" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ROT13</span></a>, it wouldn't cure his stupidity.</p><p><a href="https://toot.wales/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> <a href="https://toot.wales/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://toot.wales/tags/hesgeth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hesgeth</span></a></p>
Frank Endrullat 🌻<p><span class="h-card" translate="no"><a href="https://mastodon.de/@ErikUden" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ErikUden</span></a></span> Things linked directly and identifiably to you, like official documents inkl. boarding passes you should not post on social media unredacted, or ideally, not at all. <a href="https://mastodon.social/tags/justmy2cents" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>justmy2cents</span></a> <a href="https://mastodon.social/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mstdn.social/@GottaLaff" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>GottaLaff</span></a></span> the sheer fact that he didn't get jailed for this violation of <a href="https://infosec.space/tags/ITsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITsec</span></a>, <a href="https://infosec.space/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a>, <a href="https://infosec.space/tags/ComSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ComSec</span></a> &amp; <a href="https://infosec.space/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> rules is propably making <a href="https://infosec.space/tags/RealityWinner" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RealityWinner</span></a> and <a href="https://infosec.space/tags/ChelseaManning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ChelseaManning</span></a> scream internally at max volume.</p><ul><li>IMHO <a href="https://infosec.space/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a> should he sharing a cell with <a href="https://infosec.space/tags/Ames" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ames</span></a> because he's just a risk to <a href="https://infosec.space/tags/NatSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NatSec</span></a>!</li></ul>
Cthulhu<p><span class="h-card" translate="no"><a href="https://toot.wales/@druid" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>druid</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.world/@signalapp" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>signalapp</span></a></span></p><p>Problem with Signal, I keep getting accidentally included in top secret <a href="https://toot.wales/tags/US" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>US</span></a> war planning chats by someone called Pete Hesgeth. It's starting to get tedious. I've never even met the chap or have any interest in bombing innocent civilians. 😉</p><p><a href="https://toot.wales/tags/ussecretaryofdefense" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ussecretaryofdefense</span></a> <a href="https://toot.wales/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> <a href="https://toot.wales/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a></p>
SpaceLifeForm<p><span class="h-card" translate="no"><a href="https://mastodon.social/@glynmoody" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>glynmoody</span></a></span> </p><p>The Foureyes have no reason to share any intel with the US because it will probably be leaked.</p><p><a href="https://infosec.exchange/tags/Opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Opsec</span></a></p>
Nonilex<p>NPR Exclusive: <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> White House looking to replace <a href="https://masto.ai/tags/PeteHegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PeteHegseth</span></a> as defense secretary </p><p>The <a href="https://masto.ai/tags/WhiteHouse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhiteHouse</span></a> has begun the process of looking for a new leader at the <a href="https://masto.ai/tags/Pentagon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Pentagon</span></a> to replace <a href="https://masto.ai/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a>, according to a US official who was not authorized to speak publicly. This comes as Hegseth is AGAIN mired in controversy over sharing <a href="https://masto.ai/tags/military" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>military</span></a> operational details in a group chat.</p><p><a href="https://masto.ai/tags/NationalSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NationalSecurity</span></a> <a href="https://masto.ai/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> <a href="https://masto.ai/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <br><a href="https://www.npr.org/2025/04/21/nx-s1-5371312/trump-white-house-pete-hegseth-defense-department" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">npr.org/2025/04/21/nx-s1-53713</span><span class="invisible">12/trump-white-house-pete-hegseth-defense-department</span></a></p>
Nonilex<p>“A launch of an attack there is just no-way, no-how, that an American <a href="https://masto.ai/tags/military" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>military</span></a> operation starting off is going to not be <a href="https://masto.ai/tags/classified" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>classified</span></a> for Lord's sake," retired Marine Lt. Col. Mick Wagoner said.</p><p>And <a href="https://masto.ai/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a>'s <a href="https://masto.ai/tags/defense" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>defense</span></a> also tacitly confirms that he shared those details w/people, like his wife, he knew were not authorized to have the information.</p><p><a href="https://masto.ai/tags/NationalSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NationalSecurity</span></a> <a href="https://masto.ai/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> <a href="https://masto.ai/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a></p>
Nonilex<p>"If you remember…I said no one is texting war plans," <a href="https://masto.ai/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a> said on FauxNews. "What was shared over <a href="https://masto.ai/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a> then [during the first leak, which surfaced last month] &amp; now was informal, unclassified coordinations for media coordination [&amp;] other things."</p><p>But the details he shared, 2hrs before airstrikes hit in Yemen, almost certainly were <a href="https://masto.ai/tags/classified" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>classified</span></a>, acc/to ret Marine Lt Col Mick Wagoner, who was a <a href="https://masto.ai/tags/military" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>military</span></a> lawyer for 17 years &amp; deployed to 4 war zones.</p><p><a href="https://masto.ai/tags/NationalSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NationalSecurity</span></a> <a href="https://masto.ai/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a></p>
Nonilex<p>Why <a href="https://masto.ai/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a>’s 2nd <a href="https://masto.ai/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a> chat may be worse than the 1st </p><p>Embattled Secy of <a href="https://masto.ai/tags/Defense" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Defense</span></a> <a href="https://masto.ai/tags/PeteHegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PeteHegseth</span></a> pushed back Tues on the latest revelations that he shared <a href="https://masto.ai/tags/military" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>military</span></a> attack plans on his <a href="https://masto.ai/tags/PrivatePhone" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PrivatePhone</span></a> w/his wife, brother &amp; personal lawyer.</p><p><a href="https://masto.ai/tags/NationalSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NationalSecurity</span></a> <a href="https://masto.ai/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> <a href="https://masto.ai/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> <br><a href="https://www.npr.org/2025/04/22/nx-s1-5372348/signal-pete-hegseth-defense-department" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">npr.org/2025/04/22/nx-s1-53723</span><span class="invisible">48/signal-pete-hegseth-defense-department</span></a></p>
Ika Makimaki<p>Part of our updated Signal security protocols now include rejecting any and all invitations from the American Secretary of Defense to tell us about his war plans.</p><p>We are clean on <a href="https://mastodon.nz/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> 🤫</p><p><a href="https://mastodon.nz/tags/USPol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USPol</span></a></p>
ChiefGyk3D<p>🚨 SignalGate returns — and this time, it includes family members and war plans in a group chat. New video drops 5PM EST tomorrow on YouTube. Encryption ≠ accountability, and this one's a mess.</p><p><a href="https://social.chiefgyk3d.com/tags/SignalGate" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SignalGate</span></a> <a href="https://social.chiefgyk3d.com/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.chiefgyk3d.com/tags/Infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Infosec</span></a> <a href="https://social.chiefgyk3d.com/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> <a href="https://social.chiefgyk3d.com/tags/OPSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OPSEC</span></a> <a href="https://social.chiefgyk3d.com/tags/TechNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TechNews</span></a></p>
๓ậṯëø Ᵽtრȡ<p><a href="https://sfba.social/tags/meme" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>meme</span></a> <a href="https://sfba.social/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a> <a href="https://sfba.social/tags/signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>signal</span></a> <a href="https://sfba.social/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> <a href="https://sfba.social/tags/jedi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>jedi</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mastodon.social/@shoppingtonz" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>shoppingtonz</span></a></span> <span class="h-card" translate="no"><a href="https://mas.to/@alternativeto" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>alternativeto</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.social/@torproject" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>torproject</span></a></span> granted, those cases are <em>"nieche"</em> as in <em>"extreme low latency applications"</em> are out.of scope for <a href="https://infosec.space/tags/Tor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tor</span></a> as they are intrinsically incompatible with a self-routing <a href="https://infosec.space/tags/Proxy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Proxy</span></a> network.</p><ul><li>Also proper <a href="https://infosec.space/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a>, <a href="https://infosec.space/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a>, <a href="https://infosec.space/tags/ComSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ComSec</span></a> &amp; <a href="https://infosec.space/tags/ITsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITsec</span></a> teaches to never mingle identities and activities...</li></ul>
Major Hayden 🤠<p>Theft is a crime, but the secretary of *Homeland Security* had her purse stolen at dinner. I'm a little worried about her <a href="https://social.lol/tags/OPSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OPSEC</span></a>.</p>
Tom<p>Been reading about this malware China is using written for Linux: </p><p><a href="https://sysdig.com/blog/unc5174-chinese-threat-actor-vshell/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">sysdig.com/blog/unc5174-chines</span><span class="invisible">e-threat-actor-vshell/</span></a></p><p>and it struck me: Why mount /tmp and /var/tmp without noexec, nodev, nosuid? Seems crazy to allow a directory anyone can write to, to run executables.</p><p>While we're at it, get rid of wget and curl and anything else that would allow them to even get a "dropper" on the system? </p><p>Isn't this common sense stuff?!</p><p><a href="https://mastodon.bsd.cafe/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.bsd.cafe/tags/opsec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opsec</span></a> <a href="https://mastodon.bsd.cafe/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://mastodon.social/@QasimRashid" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>QasimRashid</span></a></span> Didn't <a href="https://infosec.space/tags/RealityWinner" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RealityWinner</span></a> and <a href="https://infosec.space/tags/ChelseaManning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ChelseaManning</span></a> get jailed for far less impact on <a href="https://infosec.space/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a>, <a href="https://infosec.space/tags/OpSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpSec</span></a> &amp; <a href="https://infosec.space/tags/ComSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ComSec</span></a> than <a href="https://infosec.space/tags/Hegseth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hegseth</span></a>? </p><p><a href="https://infosec.space/tags/SignalGate2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SignalGate2</span></a> <a href="https://infosec.space/tags/MalePrivilegue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MalePrivilegue</span></a></p>
CopterDoctor<p>HEGSETH SHARES DETAILED MILITARY PLANS WITH WIFE AND BROTHER! </p><p><a href="https://mstdn.party/tags/SignalGate2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SignalGate2</span></a><br><a href="https://mstdn.party/tags/SECDRUNK" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SECDRUNK</span></a> <br><a href="https://mstdn.party/tags/PentagonChaos" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PentagonChaos</span></a><br><a href="https://mstdn.party/tags/HegsethLeaks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HegsethLeaks</span></a><br><a href="https://mstdn.party/tags/OPSEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OPSEC</span></a></p><p>This guy is THE most unqualified SECDEF in history! His leaks will get someone killed! </p><p><a href="https://mstdn.party/tags/FireHegsethNow" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FireHegsethNow</span></a></p>