12 posts total
Show previous comments
@zackwhittaker @lorenzofb@infosec.exchange @Viss "Hey, we know we just cost you thousands to millions. Take this expired gift card." must be one of the most tone-deaf reactions by a company I have seen in a while. 🤨 NEW, by me: A data breach at the phone surveillance operation mSpy has exposed millions of its customers who bought access to the phone spyware app over the past decade, as well as the Ukrainian company behind it. Troy Hunt, who runs data breach notification site Have I Been Pwned, added about 2.4 million unique email addresses of mSpy customers to his site’s catalog of past data breaches. More: https://techcrunch.com/2024/07/11/mspy-spyware-millions-customers-data-breach/ @zackwhittaker Suddenly the seemingly ubiquitous very-well-informed scam calls following hotel bookings make even more sense. @zackwhittaker I think you meant to write: “The check-in computers at several hotels around the U.S. are running a beta version of Microsoft Recall” For that absolute chef's kiss level of detail, the filenames of the screenshots posted by U.K. authorities on LockBit's dark web leak site read "oh dear.png", "doesnt_look_good.png" and "this_is_really_bad.png." Just my totally normal cat sleeping like he's been violently assassinated. Why, why sleep like this?
Show previous comments
Show previous comments
@zackwhittaker@mastodon.social my muted tortie does that but adds that tiny blerrrrrb noise. I hope everyone enjoys their evenings as much as my cat Toby enjoys basking in the evening sun. @zackwhittaker I... may not have ever enjoyed anything as much as Toby enjoys basking in the evening sun. 🚨 Google is sounding a rare alarm for users to *take action* to protect themselves against serious security flaws in Samsung chips found in dozens of popular Android handsets. The flaws can be "silently and remotely" exploited over the cellular network. Phones, tablets, wearables, and vehicles are all affected. Samsung was given 90 days to patch the bugs, but hasn't yet. More: https://techcrunch.com/2023/03/16/google-warning-samsung-chips-flaws-android/ New, by @carlypage: LastPass parent company GoTo says intruders stole customer backups for several of its products, including Join.me and Remotely Anywhere. The hackers also obtained GoTo's encryption keys for scrambling customer data. More: https://techcrunch.com/2023/01/24/goto-customer-backups-stolen-lastpass/
Show previous comments
@zackwhittaker @carlypage yeah I switched to 1password yesterday. Looks alright. I don’t trust last pass anymore. New: LastPass said an "unauthorized party" gained access to customers' information stored in its cloud storage shared with its parent company, GoTo (formerly LogMeIn). More: https://techcrunch.com/2022/11/30/lastpass-goto-breached-customer-information/ LastPass' CEO Karim Toubba, who was appointed in April, says the unauthorized party used information stolen from LastPass systems in August to access the cloud storage containing customer information. Seems plausible that maybe stolen internal creds or keys weren't invalidated after the August breach, which allowed a second compromise? More: https://techcrunch.com/2022/11/30/lastpass-goto-breached-customer-information/ |
VPNs are a booming business, advertising everywhere, claiming that they can protect your privacy and security online. Don't believe their claims. VPNs are bad for privacy.
In this explainer, we dive into why we're skeptical of VPN providers and their claims, and why you should be as well.
https://techcrunch.com/2024/09/30/we-are-skeptical-of-vpn-providers-and-you-should-be-too/
@zackwhittaker This is perfect. I have seen so many people post "you probably don't need a VPN" without making this very important distinction. They heard it from somebody else usually and deliver this half-truth with all the vehement confidence of the truly ignorant. Though I doubt I would be recommending Tor for anything to be honest. Most of the time the exit node is blocked or compromised.