In the new multi-channel social engineering landscape, LinkedIn is one of the main breeding grounds for phishing attacks. This article, even if biased given its sponsor, gives a good overview of the risks.
www.bleepingcomputer.com/news/securit... #socialengineering #phishing #infosec #linkedin
5 reasons why attackers are ph...
In the new multi-channel social engineering landscape, LinkedIn is one of the main breeding grounds for phishing attacks. This article, even if biased given its sponsor, gives a good overview of the risks.
www.bleepingcomputer.com/news/securit... #socialengineering #phishing #infosec #linkedin
5 reasons why attackers are ph...
@publicvoit @renchap @gracjan Nice try. Please watch my explanation that I sent to Renaud.
@rmondello @renchap @gracjan To my understanding, some implementations that allow migration of #passkeys to other accounts are prone to #Phishing.
https://arxiv.org/abs/2501.07380
"Another concern could be #socialengineering, where a user is tricked into sharing a passkey with an account controlled by an attacker." -> classic phishing, I'd say.
Convenience vs. #security, the usual trade-off.
According to that, roaming authenticators (classic #FIDO2 USB/NFC devices that are able to handle passkeys) are the only phishing-resistant method.
Still, Passkeys are much better than anything else (except FIDO2 HW tokens, of course) but it seems to be the case that the slogan that passkeys are 100% protecting against phishing isn't true any more.
What are your thoughts on that angle?
Google won’t fix ‘ASCII smuggling’ hack in Gemini AI
‘the issue can only result in social engineering’
https://www.youtube.com/watch?v=Yr8ENG1y5Cw&list=UU9rJrMVgcXTfa8xuMnbhAEA - video
https://pivottoai.libsyn.com/20251011-google-wont-fix-ascii-smuggling-hack-in-gemini-ai - podcast
time: 3 min 47 sec
Interesting. I got s SMS spam from Gemini recently. I can not delete it. If I try, it just nags me to sign up. I takes over the UI. So, it remains to be forever ignored.
Robert Redford is dead. My first thought was about the celebration of the movie #Hackers yesterday. I know, I know -- Redford isn't in that.
No, Redford was in the vastly superior hacking movie Sneakers, which is by far my favorite movie depicting #socialEngineering. If you haven't seen it, I wrote a post a few years ago about a great moment here:
Robert Redford is dead. My first thought was about the celebration of the movie #Hackers yesterday. I know, I know -- Redford isn't in that.
No, Redford was in the vastly superior hacking movie Sneakers, which is by far my favorite movie depicting #socialEngineering. If you haven't seen it, I wrote a post a few years ago about a great moment here:
Andrewism: How You're Being Manipulated
"What's shaping our world and the way we think? Let's dig into how the system manipulates us and how awareness can change everything."
https://www.youtube.com/watch?v=707roJgBAAw
Watch also Manufacturing Consent here:
https://kolektiva.media/w/gNZx8E39oyvAdyzgjkKe4d
#SocialEngineering #media#socialMedia #manipulation#ManufacturingConsent #resist
Andrewism: How You're Being Manipulated
"What's shaping our world and the way we think? Let's dig into how the system manipulates us and how awareness can change everything."
https://www.youtube.com/watch?v=707roJgBAAw
Watch also Manufacturing Consent here:
https://kolektiva.media/w/gNZx8E39oyvAdyzgjkKe4d
#SocialEngineering #media#socialMedia #manipulation#ManufacturingConsent #resist