CNCF Announces Graduation of in-toto Security Framework, Enhancing Software Supply Chain Integrity Across Industries
NYU Tandon-developed software security framework achieves highest CNCF maturity level, combating rising software supply chain attacks SAN FRANCISCO, CA, April 23, 2025 – The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native… ⌘ Read more
@aelaraji@aelaraji.com sounds like a panic attack to me 🤯
Also, I should cut down on coffee. Seriously, I’ve nearly had a … I honestly don’t know what it was; A Panic attack? A heart attack? I dunno, I just felt like my heart and lungs were so about to burst I had to go for a run to cope.
Update. This is the face of a cat who got sent home cause he attacked the vet and now has to come back drugged up. ⌘ Read more
SHE SURVIVED! She was attacked by a male cat when I found her downstairs. Thought she would be gone, but she survived!🥹 ⌘ Read more
️ Blind XSS Attack in Production: My Favorite Exploit with a Delayed Surprise
Free Article Link
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/%EF%B8%8F-bli … ⌘ Read more
@eapl.me@eapl.me This is one of my concerns too. The moment you post publicly ciphertext, you open yourself up for future attacks on the ciphertext, which you really want to avoid if you can. If you have a read of the Salty.im Spec you’ll note we went to great lengths to protect the user’s privacy as well as their identity and make it incredibly hard to guess at inboxes. It’s still a WIP, but I’d love to see it progressed even further – I truly feel strongly about a purely decentralised messaging ecosystem 👌
(#2zhuzoa) @eapl.me@eapl.me This is one of my concerns too. The moment you post publicly ciphertext, you open yourself up for future attacks on …
@eapl.me @eapl.me This is one of my concerns too. The moment you post publicly ciphertext, you open yourself up for future attacks on the ciphertext, which you really want to avoid if you can. If you have a read of the Salty.im Spec you’ll note we went to great lengths to protect the user’s … ⌘ Read more
There’s one way you can make your super more secure
Super funds are attractive targets for hackers, and recent attacks on funds have put the sector’s security practices under the microscope. ⌘ Read more
Reputation Lag Attack - Computerphile ⌘ Read more
I can live without my phone, survive without my keys, and replace my wallet… But when the cat disappears? Instant heart attack. ⌘ Read more
10 People Who Were Attacked for the Clothes They Wore
Black clothing. A sweatshirt. A “too small” skirt. A “blasphemous” dress. A crop top. Pretentious attire. Hats. A bikini. Jeans. Zoot suits. These clothes outraged some, who associated the articles of clothing with devil worship, immorality, nontraditional attire, and beliefs, attitudes, or behaviors that outraged the spectators. The attacks weren’t really about the victims’ clothing. […]
The post [10 People Who Were Attacke … ⌘ Read more
How Each Pillar of the First Amendment Is Under Attack
Article URL: https://krebsonsecurity.com/2025/03/how-each-pillar-of-the-1st-amendment-is-under-attack/
Comments URL: https://news.ycombinator.com/item?id=43529707
Points: 533
# Comments: 266 ⌘ Read more
@kat@yarn.girlonthemoon.xyz it’s mostly under control now but jesus christ i almost had a panic attack
US government’s attack on free speech, science, and research is causing a brain drain
How do you create a brain drain and lose your status as eminent destination for scientists and researchers? The United States seems to be sending out questionnaires to researchers at universities and research institutes outside of the United States, asking them about their political leanings. Dutch universities are strongly advising Dutch researches not to respond … ⌘ Read more
Hi! i’m a paralyzed cat. When i was just one month old, i was attacked by a dog or a human and my spine was broken. This is how meowmy found me and adopted. Meowmy always helps me with difficulties in my daily life ⌘ Read more
FOSS infrastructure is under attack by AI companies
What do SourceHut, GNOME’s GitLab, and KDE’s GitLab have in common, other than all three of them being forges? Well, it turns out all three of them have been dealing with immense amounts of traffic from “AI” scrapers, who are effectively performing DDoS attacks with such ferocity it’s bringing down the infrastructures of these major open source projects. Being open source, and thus publicly accessible, means these scrapers have … ⌘ Read more
FOSS infrastructure is under attack by AI companies
Article URL: https://thelibre.news/foss-infrastructure-is-under-attack-by-ai-companies/
Comments URL: https://news.ycombinator.com/item?id=43422413
Points: 545
# Comments: 317 ⌘ Read more
Legends of Open Source Under Attack by Leftist Extremists
The most prominent leaders in Free and Open Source Software (from Stallman to Torvalds) are regularly attacked, ostracized, or outright banned by Leftist Extremists. ⌘ Read more
This monster goes from licking my arm to attacking me, all while purring the whole time ⌘ Read more
C++ creator calls for help to defend programming language from ‘serious attacks’
Bjarne Stroustrup, creator of C++, has issued a call for the C++ community to defend the programming language, which has been shunned by cybersecurity agencies and technical experts in recent years for its memory safety shortcomings. C and C++ are built around manual memory management, which can result in memory safety errors, such as out of bounds reads and writes, though bo … ⌘ Read more
The cat attack ⌘ Read more
PostmarketOS Joins Codeberg’s Fight Against “Right Wing Forces”
Following dubious announcement of attack by “Right Wing Forces” by Git hosting company, a Linux Phone OS project has joined their crusade. ⌘ Read more
Yeah nice try assholes 🤣 #failed #phissing #sms href=”https://we.loveprivacy.club/search?q=%23attack”>#attack**
Yeah nice try assholes 🤣
#failed #phissing #sms #attack ⌘ Read more
New speculative attacks on Apple CPUs
Article URL: https://predictors.fail/
Comments URL: https://news.ycombinator.com/item?id=42856023
Points: 502
# Comments: 180 ⌘ Read more
10 Most Effective Surprise Attacks in Military History
The surprise attack has been a cornerstone of military strategy throughout most of human history. While true surprise attacks are a little more difficult to coordinate on a mass scale in the modern age of warfare, they remain reference points for how to conduct the most effective kind of military campaign: the kind that minimizes […]
The post [10 Most Effective Surprise Attacks in Military History](https://listverse.com/20 … ⌘ Read more
AI bots paralyze Linux news site and others
Apparently, since the beginning of the year, AI bots have been ensuring that websites can only respond to regular inquiries with a delay. The founder of Linux Weekly News (LWN-net), Jonathan Corbet, reports that the news site is therefore often slow to respond. The AI scraper bots cause a DDoS, a distributed denial-of-service attack. At times, the AI bots would clog the lines with hundreds of IP addresses simultaneously as soon as they decided … ⌘ Read more
Attacks on Maven proxy repositories
Learn how specially crafted artifacts can be used to attack Maven repository managers. This post describes PoC exploits that can lead to pre-auth remote code execution and poisoning of the local artifacts in Sonatype Nexus and JFrog Artifactory.
The post Attacks on Maven proxy repositories appeared first on The GitHub Blog. ⌘ Read more
0-click deanonymization attack targeting Signal, Discord, other platforms
Article URL: https://gist.github.com/hackermondev/45a3cdfa52246f1d1201c1e8cdef6117
Comments URL: https://news.ycombinator.com/item?id=42780816
Points: 503
# Comments: 179 ⌘ Read more
[ANN] Unique 0-click deanonymization attack targeting Signal, Discord and hundreds of platform
Link: https://gist.github.com/hackermondev/45a3cdfa52246f1d1201c1e8cdef6117
@basses:matrix.org ⌘ Read more
[ANN] Attacks on onion monero nodes with HSDirSniper
Based on connection issues and the monero node trackers, I believe someone is carrying out attacks on monero nodes that have onion addresses using the HSDirSniper attack for tor.
Link: https://farside.link/libreddit/r/Monero/comments/1i2uv5y/
u/jackintosh157 (Reddit) ⌘ Read more
お知らせ:JPCERT/CC Eyes「あなたではなく組織の財産を狙うLinkedIn経由のコンタクトにご用心」 ⌘ Read more
(#tw5ulrq) @bender@bender you’re right the scale wasn’t that large, but analyzing the logs. It definitely was a detox attack. 🤣 I woke up …
@bender you’re right the scale wasn’t that large, but analyzing the logs. It definitely was a detox attack. 🤣 I woke up this morning to see six other small spikes like this which I’ll have to analyze later tonight… ⌘ Read more
**So I need to figure out how to block ASN(s)…
Additionally, I’ thinking of; How to detect DDoS attachs?
Here’s one way I’ve come up that’s qu …**
So I need to figure out how to block ASN(s)…
Additionally, I’ thinking of; How to detect DDoS attachs?
Here’s one way I’ve come up that’s quite simple:
Detecting DDoS attacks by tracking requests across multiple IPs in a sliding window. If total requests exceed a threshold in a given time, flag as potential DDoS. ⌘ Read more
Hmmm so I’ve sustained two DDoS attacks on my Gitea server today. A few hours apar. Still analyzing the traffic…
Hmmm so I’ve sustained two DDoS attacks on my Gitea server today. A few hours apar. Still analyzing the traffic… ⌘ Read more
What are subsea cables, and what happens when one gets cut?
The text message you just sent and the last show you streamed was almost definitely facilitated by a subsea cable. So why are they so vulnerable to attack? ⌘ Read more
Everything you need to know about Turo, the car sharing app used in two US attacks
The app – used in the New Orleans and Las Vegas tragedies – has quickly and quietly grown into Australia’s largest car share marketplace. ⌘ Read more
(#mgmtiha) @movq I was using Cloudflare primarily for 3 reasons: 1) For hosting DNS records 2) For reverse proxying into my infra’s services and …
@movq @www.uninformativ.de I was using Cloudflare primarily for 3 reasons: 1) For hosting DNS records 2) For reverse proxying into my infra’s services and 3) As a layer of defense against DDoS attacks or stupid misbehaving bots. I’m still using Cloudflare for 1) but 2/3 are now done entirely by something I’ve … ⌘ Read more
お知らせ:JPCERT/CC Eyes「近年の水飲み場攻撃事例 パート2」 ⌘ Read more
One thing I’ve learned over the many years now (approaching a decade and a half now) about self-hosting is two things; 1) There are many “assh …
One thing I’ve learned over the many years now ( approaching a decade and a half now) about self-hosting is two things; 1) There are many “assholes” on the open Internet that will either attack your stuff or are incompetent and write stupid shit™ that goes crazy on your stuff 2) You have to be careful about resources, especially memory and disk i/o. Especially disk i/o. this can kill your … ⌘ Read more
(#2ati6aq) @movq This was more like a distributed crawl/attack of some kind across many IP(s) though and bypassing Cloudflare somehow, so hmm no …
@movq @www.uninformativ.de This was more like a distributed crawl/attack of some kind across many IP(s) though and bypassing Cloudflare somehow, so hmm not sure 🤔 ⌘ Read more
(#ywl4paq) Ahh I see what I’ve done. That was a bit unfortunate 🤣 Because git.mills.io was a non-proxied DNS entry so that Git+SSH would al …
Ahh I see what I’ve done. That was a bit unfortunate 🤣 Because git.mills.io was a non-proxied DNS entry so that Git+SSH would also work, I now have a problem hmm. How not to expose my IP(s) directly and open them up to attack? 🤔 ⌘ Read more
Well that was fun! 🤩 I was being attacked directly (bypasses Cloudflare somehow) and whatever dafuq that was was killing my ingress and cau …
Well that was fun! 🤩 I was being attacked directly ( bypasses Cloudflare somehow) and whatever dafuq that was was killing my ingress and causing it to get OOM killed 😱 I was seeing 100s of requests per second!!! 😱 ⌘ Read more
お知らせ:JPCERT/CC Eyes「近年の水飲み場攻撃事例パート1」 ⌘ Read more
openSUSE Unable to Find Board Candidates After Banning Conservatives
Over the last 2 years the famous Linux project has attacked and mass-banned non-Leftists. Now there’s nobody left to run openSUSE. ⌘ Read more
[WTS] [DE] [$200] Hardened ThinkPad T420 laptop
This hardened T420 is tailored for those prioritizing security and privacy, with critical modifications ensuring minimal attack surfaces while maintaining its functionality as a reliable workhorse.
Link: https://moneromarket.io/listing/cb5a7f96-c21b-48ff-95f8-0d0009e752af
u/notgiven (MoneroMarket) ⌘ Read more
These Journalists Attacked Me, Where Are They Now? ⌘ Read more
[ANN] The States Active Attack On Monero
“The tools can and should aim towards reducing the particular currencies value, consequently inducing a voluntary outflow of their users.”
Link: https://farside.link/libreddit/r/Monero/comments/1go5yh1/
u/Lumpy-Initiative-779 (Reddit) ⌘ Read more
Robotic dogs helping hazelnut growers battle costly bird attacks
Most hazelnuts consumed in Australia are imported, but in a bid to boost local production growers are testing some creative solutions to stop birds attacking crops. ⌘ Read more
Author of “Stallman Report” Hit Piece Collects and Publishes Child Porn?
A continuing pattern of Leftist Extremists attacking others in Tech for what they, themselves, do. ⌘ Read more