- The Grugq's Newsletter
- Posts
- April 19, 2023
April 19, 2023
April 19, 2023
SHOULD BE HEADLINE NEWS TO ALL ACTIVISTS:
"Ivan, an imprisoned anarchist in France, released a public letter last week in which he says that the police managed to break the LUKS encryption on his Linux laptop. The password was longer than 20 characters"
mastodon.social/@cedar@kolekti…
— go to the elephant site @[email protected] (@rechelon)
10:41 PM • Apr 17, 2023
Here's a good breakdown by highly respected researcher Matthew Garrett who zeroes in on the LUKS key derivation function.
The default in Ubuntu 18 is PBKDF2 which is vulnerable to a pile of GPU bruteforcing, which matches activist claims.
mjg59.dreamwidth.org/66429.html— go to the elephant site @[email protected] (@rechelon)
3:45 AM • Apr 18, 2023
-
My detailed on-the-ground account of the recent internet outage in the Matsu Islands, which lasted for 50 days after Chinese vessels damaged our sea cables in early Feb. The incident sparked conversations on improving Taiwan's communications resilience.
— Wen Lii 李問 (@wen1949)
3:08 PM • Apr 17, 2023
-
In first, Israeli citizen found to have been infected by Pegasus twice in the past two years. Unclear why the man, who is active in the protests against Netanyhu, was targeted and by who. Forensics by @JamfSoftware@ZecOps@citizenlab
— Omer Benjakob (@omerbenj)
10:50 AM • Apr 19, 2023
-
The Return of the Virtual ‘Caliphate’? Mapping the Evolution of the Islamic State’s Information Ecosystem
— switched (@switch_d)
12:01 PM • Apr 19, 2023
-
The UK Criminals Records Office have now admitted on their website their months long “technical issue” is a “cyber security incident”.
— Kevin Beaumont (@GossiTheDog)
11:38 AM • Apr 19, 2023
-
So, as a PR stunt this firm asked Midjourney to create the ideal AI image of a “Miss United Kingdom” and then, despite this being a terrible idea, persevered with it and sent me the results and omg that arm
— Zoe Kleinman (@zsk)
10:57 AM • Apr 19, 2023
-
A threat from the early 2000s is wreaking havoc! Horror! Cisco malware!!
US, UK warn of govt hackers using custom malware on Cisco routers - @LawrenceAbrams
— BleepingComputer (@BleepinComputer)
9:42 PM • Apr 18, 2023
-
📅 1625-1735
📌 Auditorium/YouTube
🗣️ Plenary 2In conversation with Sir Jeremy Fleming, Director, GCHQ and Dr @IlanaWisby, CEO, Oxford Quantum Circuits, they'll be answering the question "How do we want the cyber proliferation race to end?"
— CYBERUK 23 (@CYBERUKevents)
7:00 AM • Apr 19, 2023
-
This is just another one of those “AI is gonna put us out of a job” speeches 🙄
— thaddeus e. grugq [email protected] (@thegrugq)
8:48 AM • Apr 19, 2023
-
Found some Spectre-v1/MDS gadgets in the Linux kernel at work with @fkaasan, including one in ‘copy_from_user’ 😁😁
github.com/google/securit…
— Jordy Zomer (@pwningsystems)
7:54 PM • Apr 18, 2023
-
If you like real world crypto bugs you are in for a treat. This is the story of how we discovered one of the most impactful TLS bugs since Heartbleed, allowing *passive* decryption (breaking PFS) in AWS ALBs. #USENIXSecurity'23 #bugbounty#bugbountytips
— Robert Merget (@ic0nz1)
12:54 PM • Apr 19, 2023
-
Taylor Swift was in talks to sign a $100m sponsorship deal with FTX.
But then actually asked “can you tell me that these are not unregistered securities?” and the deal fell through.
— Trung Phan (@TrungTPhan)
3:23 AM • Apr 19, 2023
-
Reply