Netsec – Telegram
Netsec
7.42K subscribers
22.4K links
This channel posts the feed from r/netsec.
For any suggestions dm @streaak
Donate to keep the bot running https://www.paypal.me/akhilgv
Download Telegram
Hacked Password Service Leakbase Goes Dark
http://ift.tt/2Aqy56j

Submitted December 05, 2017 at 01:51AM by volci
via reddit http://ift.tt/2AtSjtK
Beware ! Malwarebytes show you how many websites use hidden mining to mine cryptocurrency
http://ift.tt/2AtFiAn

Submitted December 05, 2017 at 03:17AM by aqweeb
via reddit http://ift.tt/2Aq1DRF
Exposed PHP variables in phpinfo()
I'm helping out the best i can with some issues on my university's website, and it turns out it has an exposed info.php file. It lists various details about PHP which is an issue itself, but there's some PHP variables that might be of interest - i just don't know where and how this could be used.Here's some:VariableValue_SERVER["HOME"]/hex131_SERVER["DB123_HOST"]10.20.50.27_SERVER["DB123_PORT"]3306_SERVER["DB123_NAME"]somename_SERVER["DB123_USER"]902q576cf2_SERVER["DB123_PASS"]22521078cbdqekbdThere's a lot more info about this database, and there's other databases too (such as DB128 with a slightly different name).Any guidance would be appreciated!

Submitted December 05, 2017 at 02:53AM by Dellitsni
via reddit http://ift.tt/2AwLkQP
information Security
Hey guys, I wanted to see if anyone could explain to me how a total IT and programming noob can get into information security

Submitted December 05, 2017 at 03:23AM by YutaniCasper
via reddit http://ift.tt/2ij63zs
Please help me!!
So I downloaded the hola vpn unaware of the dangers. I was immediately informed of the dangers and quickly deleted the app. However this website http://adios-hola.org says I still may be vulnerable. I am just looking to be completely safe so what can I do?

Submitted December 05, 2017 at 05:30AM by Gerard02
via reddit http://ift.tt/2AscKtj
Safety & Security - Zyn's
http://ift.tt/2iR5sZH

Submitted December 05, 2017 at 01:47PM by Zynsonline
via reddit http://ift.tt/2AQ3z6j
Microchips question (Help please)
Hello there,Recently I was burgled and the Police have been terrible. Also, over the years my partner has had 5-10 phones stolen and it's so frustrating knowing the thieves are getting away with it.My question is, are there any microchips I can buy that can be securely and discreetly fastened to phones, sat navs etc that if stolen could be traced?Thank you

Submitted December 05, 2017 at 03:48PM by fallbob
via reddit http://ift.tt/2ijczWS
Collection of bugs in over 30 email clients to spoof sender and inject code
http://ift.tt/2zPCiND

Submitted December 05, 2017 at 03:23PM by tellersiim
via reddit http://ift.tt/2ntM5HA
Who should take over my infosec awareness program after I leave?
I have the following situation: we have a team of People Operations with experience on training people. Some of them are part of the information security team. Will it be good to let them do the awareness training, information security updates in general meetings etc or should the CISO do this?The reason the CISO could be a good option (regardless of presentation skills) is the fact this person is the one in charge of infosec and therefore has authority. The awareness program is also the #1 way to make yourself visible in relation to infosec.I am the one running the program atm and the most visible because of this, so I am sure of this point about visibility.In other words: Should we choose for authority or training skills?(Best option is to combine both but atm that is not an option. Later on, the CISO could be sent to presentation training courses)Our plan for now:I am the intern working on awareness, so I will continue my program until I leave. In the meantime, I will gradually hand over the program to my company counselor (who also is the project manager for the certification,management representative of infosec and director People Operations), with the CISO as number 2 for the program.The company counselor will do the offline courses and the general meeting parts (he already is the one leading the general meeting) and the CISO will be the person for E-learning and phishing as well as backup for the offline training.Please let me know what you think. I prefer to receive constructive feedback.

Submitted December 05, 2017 at 03:20PM by johanvdpluijm
via reddit http://ift.tt/2zO1R1G
According to Keeper survey, >80% of ppl reuse a password across multiple accounts, which increases the risk of getting hacked. According to Dashlane, 100 accounts are registered to a single e-mail, and people change their PWs 37 times per year. How to Survive the Overwhelming Explosion of Passwords?
http://ift.tt/2BJQJnS

Submitted December 05, 2017 at 04:39PM by jaanv
via reddit http://ift.tt/2kkxr47