Russia fires 500 drones at Ukraine in deadly overnight attack, Zelenskyy says ⌘ Read more
Trauma in a puppy’s first six months linked to adult aggression, says new study
As many dog owners can attest, their four-legged companions are delightful and loving. But for others, their animals have an aggressive side, such as biting and attacking strangers, which may ultimately lead to them having to be euthanized. But why do some dogs turn out this way? ⌘ Read more
The Trust Paradox: When Your AI Gets Catfished
The fundamental challenge with MCP-enabled attacks isn’t technical sophistication. It’s that hackers have figured out how to catfish your AI. These attacks work because they exploit the same trust relationships that make your development team actually functional. When your designers expect Figma files from agencies they’ve worked with for years, when your DevOps folks trust… ⌘ Read more
Leftists Attack Cloudflare Funding of Ladybird & Omarchy Linux
Cloudflare contributes financially to Open Source projects. ⌘ Read more
Coding a SHA2 Length Extension Attack - Computerphile ⌘ Read more
SHA2 Fatal Flaw? (Hash Length Extension Attack) - Computerphile ⌘ Read more
MCP Horror Stories: The Drive-By Localhost Breach
This is Part 4 of our MCP Horror Stories series, where we examine real-world security incidents that expose the devastating vulnerabilities in AI infrastructure and demonstrate how Docker MCP Gateway provides enterprise-grade protection against sophisticated attack vectors. The Model Context Protocol (MCP) has transformed how developers integrate AI agents with their development environments. Tools like… ⌘ Read more
Our plan for a more secure npm supply chain
Addressing a surge in package registry attacks, GitHub is strengthening npm’s security with stricter authentication, granular tokens, and enhanced trusted publishing to restore trust in the open source ecosystem.
The post Our plan for a more secure npm supply chain appeared first on The GitHub Blog. ⌘ Read more
@bender@twtxt.net Cool, the PDF doesn’t have the navigation links between each section, that’s indeed a tad nicer. Thanks!
@kat@yarn.girlonthemoon.xyz Oh dear, nobody needs bot attacks. :-( Luckily, the web server responding a hell lot quicker today than the last two days.
@lyse@lyse.isobeef.org IIRC they’re getting attacked by bots on a huge level
also this is a really useful page!
@zvava@twtxt.net Uuhh, that’s nice! And welcome to the twtxt world.
The password change might query the current password as well in order to make it difficult for attackers to change account passwords.
‘Russians are too weak’ — Orban questions Moscow’s ability to attack NATO ⌘ Read more
Sweden telecom sabotage: Sweden probes massive sabotage after 30 telecom masts attacked in what officials call a coordinated strike ⌘ Read more
Ukraine drones attack on Moscow forces airport closure, Russia says ⌘ Read more
$1,000 Bug: Firefox Account Deletion Without 2FA or Authorization
How a Missing Backend Check Let Attackers Nuke Accounts With Just a Password
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/1-000-bu … ⌘ Read more
Kharkiv hit by ‘most powerful attack’ of entire war, mayor says, as Russia pounds Ukraine again ⌘ Read more
10 Fascinating Facts About Life in Hawaii Before the U.S. Arrived
Hawaii joined the Union on August 21, 1959. Its history immediately before and after joining the United States is well known. Americans have long learned about the attack on Honolulu’s Pearl Harbor in 1941. Many recognize Hawaii’s role as a Pacific hub for logistics, trade, and transportation. The islands offer economic opportunities in commercial fishing […]
The post [10 Fascinating Facts About Life i … ⌘ Read more
During a massive attack in Kyiv, a man in the metro was holding his cat’s paw the whole time. ⌘ Read more
Russian weapons plant hit by drones in Tambov Oblast, media reports attacks across country ⌘ Read more
JMP: Mitigating MITMs in XMPP
In October 2023, Jabber.ru, “the largest Russian XMPP messaging service”, discovered that both Hetzner and Linode had been targeting them with Machine-In-The-Middle (MITM) attacks for up to 6 months. MITM attacks are when an unauthorised third party intercepts traffic intended for someone else. At the point of interception, the attacker can inspect and even modify that traffic. TLS was created to mitigate this; all communication between the two parties is encrypted, so the third party sees … ⌘ Read more
JMP: Mitigating MITMs in XMPP
In October 2023, Jabber.ru, “the largest Russian XMPP messaging service”, discovered that both Hetzner and Linode had been targeting them with Machine-In-The-Middle (MITM) attacks for up to 6 months. MITM attacks are when an unauthorised third party intercepts traffic intended for someone else. At the point of interception, the attacker can inspect and even modify that traffic. TLS was created to mitigate this; all communication between the two parties is encrypted, so the third party sees … ⌘ Read more
DOM XSS Exploit: Using postMessage and JSON.parse in iframe Attacks
[Write-up] DOM XSS Using Web Messages and JSON.parse.
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/dom-xss-exploit-using … ⌘ Read more
Donald Trump spoke to Vladimir Putin again after the huge attack by the Ukrainians: “He said he would have to respond” ⌘ Read more
Serving as Putin’s Spokesperson, Trump Claims Russia is Planning to Retaliate Against Ukraine’s Surprise Attack ⌘ Read more
Satellite imagery shows Ukraine attack destroyed and damaged Russian bombers ⌘ Read more
Putin Ally Says Ukraine Operation ‘Grounds for Nuclear Attack’ ⌘ Read more
DNS rebinding attacks explained: The lookup is coming from inside the house!
DNS rebinding attack without CORS against local network web applications. Explore the topic further and see how it can be used to exploit vulnerabilities in the real-world.
The post [DNS rebinding attacks explained: The lookup is coming from inside the house!](https://github.blog/security/application-security/dns-rebinding-attacks-explained-the-lookup-is-coming-from- … ⌘ Read more
Tech Journalist Engages in Lies & Doublespeak to Defame Lunduke
As part of a GNOME puff piece, a Tech Journalist for a Free and Open Source publication went on an unhinged attack on all things “Lunduke”. ⌘ Read more
Ukraine’s drone attack on Russian warplanes was a serious blow to the Kremlin’s strategic arsenal ⌘ Read more
Wild videos capture fiery scenes from a massive Ukrainian drone attack on Russian bombers shielded by tires ⌘ Read more
‘Now The War Has Reached Us Too,’ Russians Far From Ukraine Say After Drone Attacks ⌘ Read more
Ukraine’s drone attack the latest in a series of daring David versus Goliath hits against Russian targets ⌘ Read more
Trump was not informed of Ukraine attack on Russia ⌘ Read more
Ukraine did not inform US of large-scale attack on Russian airfields in advance, says Axios ⌘ Read more
Molotov Cocktails thrown at peaceful vigil for the Israeli hostages in Boulder, multiple injured. FBI calls it a targeted terrorist attack ⌘ Read more
Trump was not informed of Ukraine attack on Russia ⌘ Read more
“Russia’s Pearl Harbor”—Ukraine surprise drone attack hits nuclear bombers ⌘ Read more
Ukraine launches major drone attack on Russian bombers, security official says | Ukraine ⌘ Read more
The Hidden Admin Backdoor in Reddit Ads
An Invisibility Cloak for Attackers: How One Admin Created a Stealth Account That Even the Owner Couldn’t See or Remove
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/the-hidden-admin-backdoor-in-reddit-ads … ⌘ Read more
Ukraine reportedly strikes down over 40 Russian strategic bombers in mass drone attack ⌘ Read more
‘Russian bombers are burning en masse’ — Ukraine’s SBU drones hit ‘more than 40’ aircraft in mass attack, source claims ⌘ Read more
Half Spectre, Full Exploit: Hardening Rowhammer Attacks with Half-Spectre Gadgets
Comments ⌘ Read more
Russia Accused of Staging Attack on Putin’s Helicopter ⌘ Read more
Pakistani terrorist behind deadly Pahalgam attack is former Para commando, probe finds ⌘ Read more
Kremlin staged drone attack on Putin’s helicopter ⌘ Read more
Ukrainian forces repel over 170 Russian attacks, fiercest fighting on Pokrovsk front – Ukraine’s General Staff ⌘ Read more
Passkeys: The Waterproof Defense Against Phishing Attacks
The Passkeys — a next-generation authentication technology poised to be a game-changer, offering what many describe as a truly waterproof…
[Continue reading on InfoSec Write-ups … ⌘ Read more
Walkthrough - Host & Network Penetration Testing: System-Host Based Attacks CTF 2 ⌘ Read more