Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 2 days ago

GoSign Desktop RCE flaws affecting users in Italy

https://www.ush.it/2025/11/14/multiple-vulnerabilities-gosign-desktop-remote-code-execution/

#HackerNews #GoSignDesktop #RCE #Italy #vulnerabilities #cybersecurity #remoteCodeExecution

ush.it - a beautiful place

  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 2 weeks ago

Defeating Kaslr by Doing Nothing at All

https://googleprojectzero.blogspot.com/2025/11/defeating-kaslr-by-doing-nothing-at-all.html

#HackerNews #DefeatingKaslr #DoingNothing #Cybersecurity #Vulnerabilities #HackerNews #ProjectZero

Defeating KASLR by Doing Nothing at All

  Posted by Seth Jenkins, Project Zero Introduction I've recently been researching Pixel kernel exploitation and as part of this research I ...
  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 3 weeks ago

Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking

https://arstechnica.com/gadgets/2025/10/leaker-reveals-which-pixels-are-vulnerable-to-cellebrite-phone-hacking/

#HackerNews #Leaker #Cellebrite #Vulnerabilities #Pixels #Hacking #News

Ars Technica

Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking

Cellebrite can apparently extract data from most Pixel phones, unless they’re running GrapheneOS.
  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 3 weeks ago

NPM flooded with malicious packages downloaded more than 86k times

https://arstechnica.com/security/2025/10/npm-flooded-with-malicious-packages-downloaded-more-than-86000-times/

#HackerNews #NPM #malicious #packages #security #vulnerabilities #cyber #threats #software #development

Ars Technica

NPM flooded with malicious packages downloaded more than 86,000 times

Packages downloaded from NPM can fetch dependancies from untrusted sites.
  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 3 weeks ago

Are these real CVEs? VulDB entries for dnsmasq rely on replacing config files

https://seclists.org/oss-sec/2025/q4/79

#HackerNews #CVE #Vulnerabilities #dnsmasq #VulDB #SecurityIssues #ConfigFiles

oss-sec: Re: Questionable CVE's reported against dnsmasq

  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  ·  activity timestamp 3 weeks ago

Cisco opensourced MCP-Scanner for finding vulnerabilties in MCP server

https://github.com/cisco-ai-defense/mcp-scanner

#HackerNews #Cisco #OpenSource #MCP-Scanner #Vulnerabilities #CyberSecurity #OpenSource #Tools #MCPScanner

  • Copy link
  • Flag this post
  • Block
ProPublica
@ProPublica@newsie.social  ·  activity timestamp 4 months ago

After a ProPublica investigation revealed how Microsoft’s “digital escort” tech support service could expose sensitive government data to cyberattacks, the company says China-based engineers will no longer provide assistance on DOD cloud services.

https://www.propublica.org/article/defense-department-pentagon-microsoft-digital-escort-china?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post

#News#Microsoft#Tech #Technology#Defense#Government#DOD#Cybercrime

Arena Cops 🇺🇦✌
@ArenaCops@infosec.exchange replied  ·  activity timestamp 4 months ago
@ProPublica You really gotta wonder how dumbfucking stupid U.S.-based software corps can be to let Chinese government-dependent hackers & crackers fiddle with U.S. DoD systems — without DoD professionals suspecting & discovering???

Aiding & abetting much?

#Microsoft#DOD#China#Vulnerabilities#Backdoors#Trojans#NationalSecurity#USPol#USPolitics

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login