med-mastodon.com is one of the many independent Mastodon servers you can use to participate in the fediverse.
Medical community on Mastodon

Administered by:

Server stats:

418
active users

#flaw

0 posts0 participants0 posts today
Manuel Bissey<p>Chrome 136 will patch a 23-year-old <a href="https://cyberplace.social/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> that allowed sites to spy on browsing history by reading link color values. This <a href="https://cyberplace.social/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> attack, known as browser history sniffing, will be addressed in the latest beta release☝️👩‍💻</p><p><a href="https://go.theregister.com/feed/www.theregister.com/2025/04/07/chrome_135_history_sniffing/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">go.theregister.com/feed/www.th</span><span class="invisible">eregister.com/2025/04/07/chrome_135_history_sniffing/</span></a></p>
Manuel Bissey<p>CISA added a high-severity vulnerability (CVE-2025-30066) linked to the GitHub Action tj-actions/changed-files to its KEV catalog. The <a href="https://cyberplace.social/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> allows remote attackers to access sensitive data via actions logs☝️👩‍💻 <a href="https://cyberplace.social/tags/vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerability</span></a></p><p><a href="https://thehackernews.com/2025/03/cisa-warns-of-active-exploitation-in.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thehackernews.com/2025/03/cisa</span><span class="invisible">-warns-of-active-exploitation-in.html</span></a></p>
Tantek Çelik<p>I just participated in the first W3C Authentic Web Mini Workshop<a href="https://tantek.com/2025/071/t1/w3c-authentic-web-workshop-flaws#t5az1_note-1" rel="nofollow noopener noreferrer" target="_blank">¹</a> hosted by the Credible Web Community Group<a href="https://tantek.com/2025/071/t1/w3c-authentic-web-workshop-flaws#t5az1_note-2" rel="nofollow noopener noreferrer" target="_blank">²</a> (of which I’m a longtime member) and up front I noted that our very discussion itself needed to be careful about its own credibility, extra critical of any technologies discussed or assertions made, and initially identified two flaws to avoid on a meta level, having seen them occur many times in technical or standards discussions:<br><br>1. Politician’s Syllogism — "Something must be done about this problem. Here is something, let's do it!"<br><br>2. Solutions Looking For Problems — "I am interested in how tech X can solve problem Y"<br><br>After some back and forth and arguments in the Zoom chat, I observed participants questioning speakers of arguments rather than the arguments themselves, so I had to identify a third fallacy to avoid:<br><br>3. Ad Hominem — while obvious examples are name-calling (which is usually against codes of conduct), less obvious examples (witnessed in the meeting) include questioning a speaker’s education (or lack thereof) like what they have or have not read, or would benefit from reading.<br><br>I am blogging these here both as a reminder (should you choose to participate in such discussions), and as a resource to cite in future discussions.<br><br>We need to all develop expertise in recognizing these logical and methodological flaws &amp; fallacies, and call them out when we see them, especially when used against others. <br><br>We need to promptly prune these flawed methods of discussion, so we can focus on actual productive, relevant, and yes, credible discussions.<br><br><a class="" href="https://indieweb.social/tags/W3C" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">W3C</span></a> <a class="" href="https://indieweb.social/tags/credweb" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">credweb</span></a> <a class="" href="https://indieweb.social/tags/credibleWeb" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">credibleWeb</span></a> <a class="" href="https://indieweb.social/tags/authenticWeb" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">authenticWeb</span></a> <a class="" href="https://indieweb.social/tags/flaw" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">flaw</span></a> <a class="" href="https://indieweb.social/tags/fallacy" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">fallacy</span></a> <a class="" href="https://indieweb.social/tags/fallacies" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">fallacies</span></a> <a class="" href="https://indieweb.social/tags/logicalFallacy" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">logicalFallacy</span></a> <a class="" href="https://indieweb.social/tags/logicalFallacies" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">logicalFallacies</span></a><br><br><br>Glossary<br><br>Ad Hominem<br>&nbsp; attacking an attribute of the person making an argument rather than the argument itself<br>&nbsp; <a class="" href="https://en.wikipedia.org/wiki/Ad_hominem" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/Ad_hominem</a><br><br>Politician's syllogism<br>&nbsp; <a class="" href="https://en.wikipedia.org/wiki/Politician%27s_syllogism" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/Politician%27s_syllogism</a><br><br>Solutions Looking For Problems (related: <a class="" href="https://indieweb.social/tags/solutionism" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">solutionism</span></a>, <a class="" href="https://indieweb.social/tags/solutioneering" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">solutioneering</span></a>)<br>&nbsp; Promoting a technology that either has not identified a real problem for it to solve, or actively pitching a specific technology to any problem that seems related. Wikipedia has no page on this but has two related pages: <br>&nbsp; * <a class="" href="https://en.wikipedia.org/wiki/Law_of_the_instrument" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/Law_of_the_instrument</a><br>&nbsp; * <a class="" href="https://en.wikipedia.org/wiki/Technological_fix" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/Technological_fix</a><br>&nbsp; Wikipedia does have an essay on this specific to Wikipedia:<br>&nbsp; * <a class="" href="https://en.wikipedia.org/wiki/Wikipedia:Solutions_looking_for_a_problem" rel="nofollow noopener noreferrer" target="_blank">https://en.wikipedia.org/wiki/Wikipedia:Solutions_looking_for_a_problem</a><br>&nbsp; Stack Exchange has a thread on "solution in search of a problem":<br>&nbsp; * <a class="" href="https://english.stackexchange.com/questions/250320/a-word-that-means-a-solution-in-search-of-a-problem" rel="nofollow noopener noreferrer" target="_blank">https://english.stackexchange.com/questions/250320/a-word-that-means-a-solution-in-search-of-a-problem</a> <br>&nbsp; Forbes has an illustrative anecdote: &nbsp;<br>&nbsp; * <a class="" href="https://www.forbes.com/sites/stephanieburns/2019/05/28/solution-looking-for-a-problem/" rel="nofollow noopener noreferrer" target="_blank">https://www.forbes.com/sites/stephanieburns/2019/05/28/solution-looking-for-a-problem/</a><br><br><br>References<br><br><a href="https://tantek.com/2025/071/t1/w3c-authentic-web-workshop-flaws#t5az1_ref-1" rel="nofollow noopener noreferrer" target="_blank">¹</a> <a class="" href="https://www.w3.org/events/workshops/2025/authentic-web-workshop/" rel="nofollow noopener noreferrer" target="_blank">https://www.w3.org/events/workshops/2025/authentic-web-workshop/</a><br><a href="https://tantek.com/2025/071/t1/w3c-authentic-web-workshop-flaws#t5az1_ref-2" rel="nofollow noopener noreferrer" target="_blank">²</a> <a class="" href="https://credweb.org/" rel="nofollow noopener noreferrer" target="_blank">https://credweb.org/</a> and <a class="" href="https://www.w3.org/community/credibility/" rel="nofollow noopener noreferrer" target="_blank">https://www.w3.org/community/credibility/</a><br><br><br>Previously in 2019 I participated in <a class="" href="https://indieweb.social/tags/MisinfoCon:" rel="nofollow noopener noreferrer" target="_blank">#<span class="p-category">MisinfoCon:</span></a> <br>* <a class="" href="https://tantek.com/2019/296/t1/london-misinfocon-discuss-spectrum-recency" rel="nofollow noopener noreferrer" target="_blank">https://tantek.com/2019/296/t1/london-misinfocon-discuss-spectrum-recency</a><br>* <a class="" href="https://tantek.com/2019/296/t2/misinfocon-roundtable-spectrums-misinformation" rel="nofollow noopener noreferrer" target="_blank">https://tantek.com/2019/296/t2/misinfocon-roundtable-spectrums-misinformation</a></p>
Steve Dustcircle 🌹<p><a href="https://masto.ai/tags/ImposterSyndrome" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ImposterSyndrome</span></a> Isn’t a Personal <a href="https://masto.ai/tags/Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a>. It’s a <a href="https://masto.ai/tags/Systemic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Systemic</span></a> Issue</p><p><a href="https://time.com/7261073/imposter-syndrome-systemic-issue-essay/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">time.com/7261073/imposter-synd</span><span class="invisible">rome-systemic-issue-essay/</span></a></p>
Cuddy2977<p>Has anyone else seen <a href="https://mastodon.world/tags/AppleTV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AppleTV</span></a>+ film, <a href="https://mastodon.world/tags/TheGorge" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TheGorge</span></a>?</p><p>The one with <a href="https://mastodon.world/tags/AnyaTaylorJoy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AnyaTaylorJoy</span></a> and <a href="https://mastodon.world/tags/MilesTeller" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MilesTeller</span></a>?</p><p><a href="https://www.youtube.com/watch?v=wgIO5W0wR1Y" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">youtube.com/watch?v=wgIO5W0wR1</span><span class="invisible">Y</span></a></p><p>I will give cast, crew and and producers, credit: it’s a very well made piece.</p><p>But I think I’ve spotted the <a href="https://mastodon.world/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a>.</p><p><a href="https://mastodon.world/tags/Review" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Review</span></a> <a href="https://mastodon.world/tags/movie" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>movie</span></a> <a href="https://mastodon.world/tags/film" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>film</span></a> <a href="https://mastodon.world/tags/spoiler" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>spoiler</span></a> <a href="https://mastodon.world/tags/spoilers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>spoilers</span></a></p>
Radio Azureus<p>The frightening story of how certain Subaru Vehicles can/ could be hacked</p><p><a href="https://samcurry.net/hacking-subaru" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">samcurry.net/hacking-subaru</span><span class="invisible"></span></a></p><p><a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://mastodon.social/tags/Vehicle" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vehicle</span></a> <a href="https://mastodon.social/tags/Subaru" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Subaru</span></a> <a href="https://mastodon.social/tags/hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hacking</span></a> <a href="https://mastodon.social/tags/closedSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>closedSource</span></a> <a href="https://mastodon.social/tags/serious" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>serious</span></a> <a href="https://mastodon.social/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a></p>
Comics and Jokes @ Lucentinian Works Co Ltd<p>New entry of AI-generated <a href="https://social.lucentinian.com/search?tag=comics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>comics</span></a> and <a href="https://social.lucentinian.com/search?tag=jokes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>jokes</span></a> added to our <a href="https://social.lucentinian.com/search?tag=website" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>website</span></a>:</p><p><a href="https://social.lucentinian.com/search?tag=Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a> in the <a href="https://social.lucentinian.com/search?tag=Field" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Field</span></a></p><p><a href="https://comics.lucentinian.com/2287" rel="nofollow noopener noreferrer" target="_blank">comics.lucentinian.com/2287</a><br><a href="https://social.lucentinian.com/search?tag=Jokes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Jokes</span></a> <a href="https://social.lucentinian.com/search?tag=AILaughs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AILaughs</span></a> <a href="https://social.lucentinian.com/search?tag=AIComedy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AIComedy</span></a> <a href="https://social.lucentinian.com/search?tag=Laughs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Laughs</span></a> <a href="https://social.lucentinian.com/search?tag=Comedy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Comedy</span></a></p>
Dave Volek<p>What's Wrong with Democracy?</p><p>A list of 12 flaws:</p><p> <a href="https://tiereddemocraticgovernance.org/blog_details.php?blog_cat_id=21&amp;id=259" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">tiereddemocraticgovernance.org</span><span class="invisible">/blog_details.php?blog_cat_id=21&amp;id=259</span></a></p><p><a href="https://mastodon.social/tags/tiereddemocraticgovernance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tiereddemocraticgovernance</span></a> <br><a href="https://mastodon.social/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a></p>
Olly 👾<p>LiteSpeed Cache Plugin Vulnerability poses significant Risk to WordPress Websites.</p><p>The free version of the popular WordPress plugin LiteSpeed Cache has fixed a dangerous privilege elevation flaw on its latest release that could allow unauthenticated actors to gain admin rights.</p><p>[CVE-2024-50550 CVSS score: 8.1]</p><p><a href="https://patchstack.com/articles/rare-case-of-privilege-escalation-patched-in-litespeed-cache-plugin/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">patchstack.com/articles/rare-c</span><span class="invisible">ase-of-privilege-escalation-patched-in-litespeed-cache-plugin/</span></a></p><p><a href="https://nerdculture.de/tags/wordpress" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>wordpress</span></a> <a href="https://nerdculture.de/tags/litespeed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>litespeed</span></a> <a href="https://nerdculture.de/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> <a href="https://nerdculture.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> <a href="https://nerdculture.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://nerdculture.de/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://nerdculture.de/tags/engineer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>engineer</span></a> <a href="https://nerdculture.de/tags/media" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>media</span></a> <a href="https://nerdculture.de/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://nerdculture.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
securityaffairs<p><a href="https://infosec.exchange/tags/macOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>macOS</span></a> <a href="https://infosec.exchange/tags/HM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HM</span></a> Surf <a href="https://infosec.exchange/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> in <a href="https://infosec.exchange/tags/TCC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TCC</span></a> allows bypass <a href="https://infosec.exchange/tags/Safari" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Safari</span></a> privacy settings<br><a href="https://securityaffairs.com/169945/security/macos-hm-surf-flaw-tcc-bypass-safari-privacy-settings.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">securityaffairs.com/169945/sec</span><span class="invisible">urity/macos-hm-surf-flaw-tcc-bypass-safari-privacy-settings.html</span></a><br><a href="https://infosec.exchange/tags/securityaffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securityaffairs</span></a> <a href="https://infosec.exchange/tags/hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hacking</span></a></p>
Susan Larson ♀️🏳️‍🌈🏳️‍⚧️🌈<p>Ex - <a href="https://mastodon.online/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> <a href="https://mastodon.online/tags/WhiteHouse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhiteHouse</span></a> <a href="https://mastodon.online/tags/Lawyer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Lawyer</span></a> Says New <a href="https://mastodon.online/tags/GOP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GOP</span></a> <a href="https://mastodon.online/tags/Election" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Election</span></a> <a href="https://mastodon.online/tags/Plot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Plot</span></a> Has 1 Huge <a href="https://mastodon.online/tags/Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a> </p><p><a href="https://mastodon.online/tags/DonaldTrump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DonaldTrump</span></a> and his <a href="https://mastodon.online/tags/allies" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>allies</span></a> are “unlikely” to have it, <a href="https://mastodon.online/tags/TyCobb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TyCobb</span></a> said, "Evidence". “They didn’t have any last time, and they’re unlikely to have any this time,” he added.</p><p><a href="https://www.huffpost.com/entry/ty-cobb-donald-trump-challenge-election_n_66fa687ce4b06bc72dbb90d7" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">huffpost.com/entry/ty-cobb-don</span><span class="invisible">ald-trump-challenge-election_n_66fa687ce4b06bc72dbb90d7</span></a></p>
WIST Quotations has moved!<p>A quotation from Bible, vol. 2, New Testament:</p><p>«<br>Why do you observe the splinter in your brother’s eye and never notice the great log in your own? And how dare you say to your brother, “Let me take that splinter out of your eye,” when, look, there is a great log in your own? Hypocrite! Take the log o…<br>»</p><p>Full quote, sourcing, notes: <br><a href="https://wist.info/bible-nt/43173/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">wist.info/bible-nt/43173/</span><span class="invisible"></span></a></p><p><a href="https://zirk.us/tags/quote" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quote</span></a> <a href="https://zirk.us/tags/quotes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quotes</span></a> <a href="https://zirk.us/tags/quotation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quotation</span></a> <a href="https://zirk.us/tags/criticism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>criticism</span></a> <a href="https://zirk.us/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> <a href="https://zirk.us/tags/judging" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>judging</span></a> <a href="https://zirk.us/tags/hypocrisy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hypocrisy</span></a> <a href="https://zirk.us/tags/judging" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>judging</span></a> <a href="https://zirk.us/tags/judgment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>judgment</span></a> <a href="https://zirk.us/tags/perspective" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>perspective</span></a> <a href="https://zirk.us/tags/selfawareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selfawareness</span></a> <a href="https://zirk.us/tags/selfrighteousness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>selfrighteousness</span></a> <a href="https://zirk.us/tags/sin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sin</span></a></p>
Chuck Darwin<p>After a brutal 2023, the vibes around <a href="https://c.im/tags/self" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>self</span></a>-<a href="https://c.im/tags/driving" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>driving</span></a> <a href="https://c.im/tags/cars" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cars</span></a> are improving. </p><p><a href="https://c.im/tags/Cruise" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cruise</span></a>, the industry leader whose vehicle was involved in a <a href="https://c.im/tags/horrific" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>horrific</span></a> San Francisco <a href="https://c.im/tags/crash" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crash</span></a> last fall, has <a href="https://c.im/tags/rebooted" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rebooted</span></a> under new management, </p><p>while rival <a href="https://c.im/tags/Waymo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Waymo</span></a> is <a href="https://c.im/tags/expanding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>expanding</span></a> to serve broader swaths of the Bay Area and Los Angeles<br> and <a href="https://c.im/tags/Tesla" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tesla</span></a> is promising a new <a href="https://c.im/tags/robotaxi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>robotaxi</span></a> service.</p><p>Although Americans say they remain <a href="https://c.im/tags/wary" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>wary</span></a> of autonomous driving, <br>boosters insist there is nothing to fear. <br>In fact, they foresee roads full of self-driving cars that are both <a href="https://c.im/tags/safer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>safer</span></a> and <a href="https://c.im/tags/cleaner" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cleaner</span></a> than the status quo, <br>a tantalizing prospect in a country where transportation is the largest source of greenhouse gas emissions and residents are several times more likely to die in a crash than those living in other rich nations.</p><p>Enticing though they are, such arguments conceal a <a href="https://c.im/tags/logical" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>logical</span></a> <a href="https://c.im/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a>. <br>As a classic 19th-century theory known as a <a href="https://c.im/tags/Jevons" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Jevons</span></a> <a href="https://c.im/tags/paradox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>paradox</span></a> explains, <br>even if autonomous vehicles eventually work perfectly<br> — an enormous “if”<br> — they are🆘 likely to increase total <a href="https://c.im/tags/emissions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>emissions</span></a> and crash <a href="https://c.im/tags/deaths" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>deaths</span></a>, <br>simply because ⭐️people will use them so much.&nbsp;</p><p><a href="https://www.theverge.com/2024/9/2/24232386/self-driving-car-jevons-paradox-robotaxi-waymo-cruise" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">theverge.com/2024/9/2/24232386</span><span class="invisible">/self-driving-car-jevons-paradox-robotaxi-waymo-cruise</span></a></p>
Olly 👾<p>GitHub patches critical Security Flaws in<br>Enterprise Server. :github: </p><p>GitHub has released fixes to address a set of three security flaws impacting its Enterprise Server product, including one critical bug that could be abused to gain site administrator privileges.</p><p>[CVE-2024-7711]<br>[CVE-2024-6337]<br>[CVE-2024-6800]</p><p><a href="https://docs.github.com/en/enterprise-server@3.13/admin/release-notes" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">docs.github.com/en/enterprise-</span><span class="invisible">server@3.13/admin/release-notes</span></a></p><p><a href="https://nerdculture.de/tags/github" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>github</span></a> <a href="https://nerdculture.de/tags/ghes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ghes</span></a> <a href="https://nerdculture.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> <a href="https://nerdculture.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://nerdculture.de/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> <a href="https://nerdculture.de/tags/admin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>admin</span></a> <a href="https://nerdculture.de/tags/privileges" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privileges</span></a> <a href="https://nerdculture.de/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://nerdculture.de/tags/programming" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>programming</span></a> <a href="https://nerdculture.de/tags/engineering" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>engineering</span></a> <a href="https://nerdculture.de/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://nerdculture.de/tags/media" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>media</span></a> <a href="https://nerdculture.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Olly 👾<p>Chinese Attackers Exploit Zero-Day Cisco Switch Flaw to Gain System Control.</p><p>Details have emerged about a China-nexus threat group's exploitation of a recently disclosed, now-patched security flaw in Cisco switches as a zero-day to seize control of the appliance and evade detection.</p><p>[CVE-2024-20399]</p><p><a href="https://www.sygnia.co/blog/china-threat-group-velvet-ant-cisco-zero-day/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">sygnia.co/blog/china-threat-gr</span><span class="invisible">oup-velvet-ant-cisco-zero-day/</span></a></p><p><a href="https://nerdculture.de/tags/cisco" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cisco</span></a> <a href="https://nerdculture.de/tags/switch" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>switch</span></a> <a href="https://nerdculture.de/tags/exploit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>exploit</span></a> <a href="https://nerdculture.de/tags/zeroday" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zeroday</span></a> <a href="https://nerdculture.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> <a href="https://nerdculture.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://nerdculture.de/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> <a href="https://nerdculture.de/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://nerdculture.de/tags/technology" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technology</span></a> <a href="https://nerdculture.de/tags/engineering" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>engineering</span></a> <a href="https://nerdculture.de/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://nerdculture.de/tags/media" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>media</span></a> <a href="https://nerdculture.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Marcus "MajorLinux" Summers<p>As many losses as they have, they should have screamed about this one.</p><p>Microsoft secretly updated Windows Security to fix an important issue </p><p><a href="https://www.pcworld.com/article/2425810/secret-update-for-windows-defender-fixes-important-problem.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">pcworld.com/article/2425810/se</span><span class="invisible">cret-update-for-windows-defender-fixes-important-problem.html</span></a></p><p><a href="https://toot.majorshouse.com/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> <a href="https://toot.majorshouse.com/tags/WindowsSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WindowsSecurity</span></a> <a href="https://toot.majorshouse.com/tags/Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a> <a href="https://toot.majorshouse.com/tags/Antivirus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Antivirus</span></a> <a href="https://toot.majorshouse.com/tags/Tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tech</span></a></p>
Olly 👾<p>Critical D-Link DIR-859 Router Flaw to steal Passwords.</p><p>The security issue was disclosed in January and is currently tracked as CVE-2024-0769 (9.8 severity score).<br>D-Link is not expected to release a fixing patch for CVE-2024-0769, so owners of the device should switch to a supported device as soon as possible.</p><p><a href="https://www.labs.greynoise.io/grimoire/2024-06-25-dlink-again/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">labs.greynoise.io/grimoire/202</span><span class="invisible">4-06-25-dlink-again/</span></a></p><p><a href="https://nerdculture.de/tags/dlink" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dlink</span></a> <a href="https://nerdculture.de/tags/dir859" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dir859</span></a> <a href="https://nerdculture.de/tags/router" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>router</span></a> <a href="https://nerdculture.de/tags/eol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>eol</span></a> <a href="https://nerdculture.de/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a> <a href="https://nerdculture.de/tags/issue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>issue</span></a> <a href="https://nerdculture.de/tags/steal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>steal</span></a> <a href="https://nerdculture.de/tags/password" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>password</span></a> <a href="https://nerdculture.de/tags/it" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>it</span></a> <a href="https://nerdculture.de/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://nerdculture.de/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://nerdculture.de/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://nerdculture.de/tags/technology" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technology</span></a> <a href="https://nerdculture.de/tags/engineering" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>engineering</span></a> <a href="https://nerdculture.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Tinned-Software<p>I came across Headlines trying to introduce fear of <a href="https://infosec.exchange/tags/FIDO2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FIDO2</span></a>. </p><p>"Using MITM to bypass FIDO2 phishing-resistant protection" and "Passwordless Authentication Standard FIDO2 Flaw Let Attackers Launch MITM Attacks" seem very frightening. So I took a closer look into those articles.</p><p><a href="https://www.silverfort.com/blog/using-mitm-to-bypass-fido2/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">silverfort.com/blog/using-mitm</span><span class="invisible">-to-bypass-fido2/</span></a><br><a href="https://gbhackers.com/fid02-mitm-vulnerability/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gbhackers.com/fid02-mitm-vulne</span><span class="invisible">rability/</span></a></p><p>They seem very much identical down to the fact they use the same illustrations. My understanding is that the demonstrated "<a href="https://infosec.exchange/tags/MITM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MITM</span></a> <a href="https://infosec.exchange/tags/Attack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Attack</span></a>" is actually an attack on the session coockie. So The idea is to let the <a href="https://infosec.exchange/tags/FIDO2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FIDO2</span></a> <a href="https://infosec.exchange/tags/Authentication" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authentication</span></a> take place uninterrupted and when successful, intercept the Session cockie when sent from the Relaying Party/Webserver to the client.</p><p>Maybe someone with a better understanding of the Standards can correct me but this attack looks to me as if it only attackls the session information which would be possible no mather what authentication would be used. In my understanding, secure session handling is a real thread but outside of the actual FIDO2 scope. </p><p>What do you think? Is it FIDO2 related? Or just a generic Session Session hijacking that happens to work besides others also with FIDO2 authentications? </p><p><a href="https://infosec.exchange/tags/FIDO2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FIDO2</span></a> <a href="https://infosec.exchange/tags/Attack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Attack</span></a> <a href="https://infosec.exchange/tags/MITM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MITM</span></a> <a href="https://infosec.exchange/tags/Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a> <a href="https://infosec.exchange/tags/sessionhijacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sessionhijacking</span></a></p>
Vivian Schey 🏳️‍🌈 🇩🇪 <(FSM)<{<p>There's a bad <a href="https://mastodon.world/tags/Design" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Design</span></a> <a href="https://mastodon.world/tags/Flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Flaw</span></a> with <a href="https://mastodon.world/tags/Nutella" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Nutella</span></a> jaws!<br>One can't reach in with a ladle!<br><a href="https://mastodon.world/tags/Ferrero" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ferrero</span></a>, please <a href="https://mastodon.world/tags/Fix" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fix</span></a>!</p>
Susan Larson ♀️🏳️‍🌈🏳️‍⚧️🌈<p>The <a href="https://mastodon.online/tags/Cruelty" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cruelty</span></a> is the Point</p><p>Acts of <a href="https://mastodon.online/tags/crueltytoanimals" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crueltytoanimals</span></a> are more than a slight <a href="https://mastodon.online/tags/personality" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>personality</span></a> <a href="https://mastodon.online/tags/flaw" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>flaw</span></a>. A <a href="https://mastodon.online/tags/history" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>history</span></a> of <a href="https://mastodon.online/tags/animal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>animal</span></a> <a href="https://mastodon.online/tags/torture" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>torture</span></a> and <a href="https://mastodon.online/tags/abuse" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>abuse</span></a> has been linked repeatedly to <a href="https://mastodon.online/tags/serialkillers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>serialkillers</span></a> and <a href="https://mastodon.online/tags/massshooters" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>massshooters</span></a>. </p><p><a href="https://mastodon.online/tags/Women" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Women</span></a> <a href="https://mastodon.online/tags/Transgender" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Transgender</span></a> <a href="https://mastodon.online/tags/LGBTQ" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LGBTQ</span></a> <a href="https://mastodon.online/tags/LGBTQIA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LGBTQIA</span></a> <a href="https://mastodon.online/tags/SouthDakota" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SouthDakota</span></a> <a href="https://mastodon.online/tags/PuppyKiller" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PuppyKiller</span></a> <a href="https://mastodon.online/tags/KristiNoem" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KristiNoem</span></a> <a href="https://mastodon.online/tags/Conservatives" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Conservatives</span></a> <a href="https://mastodon.online/tags/Extremism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Extremism</span></a> <a href="https://mastodon.online/tags/Fascism" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fascism</span></a> <a href="https://mastodon.online/tags/RepublicanParty" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RepublicanParty</span></a> <a href="https://mastodon.online/tags/AnimalCruelty" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AnimalCruelty</span></a> <a href="https://mastodon.online/tags/ThePartyOfHate" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ThePartyOfHate</span></a> </p><p><a href="https://www.counterpunch.org/2024/05/03/the-cruelty-is-the-point/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">counterpunch.org/2024/05/03/th</span><span class="invisible">e-cruelty-is-the-point/</span></a></p>