Evidence suggests Reddit employees use their Reddit database access privileges to engage in tribal attacks and hack users
http://ift.tt/2EItT1s
Submitted January 04, 2018 at 01:19AM by geekmonk
via reddit http://ift.tt/2E1QKnD
http://ift.tt/2EItT1s
Submitted January 04, 2018 at 01:19AM by geekmonk
via reddit http://ift.tt/2E1QKnD
Hacker Noon
Reddit internal security threat: Evidence suggests Reddit employees may use their Reddit database access privileges to engage in…
Several Reddit users active in the r/btc subreddit were hacked in December 2017. Among the victims are a moderator of r/btc (victim 1) and…
Intel Responds to Security Research Findings
http://ift.tt/2CzZjJP
Submitted January 04, 2018 at 01:51AM by jurais
via reddit http://ift.tt/2E0UiGz
http://ift.tt/2CzZjJP
Submitted January 04, 2018 at 01:51AM by jurais
via reddit http://ift.tt/2E0UiGz
Intel Newsroom
Intel Responds to Security Research Findings
Intel Corporation and other technology companies have been made aware of new security research describing software analysis methods that, when used for malicious purposes, have the potential to improperly gather sensitive data from computing devices that…
Intel's KPMI vulnerability and virtual machines
From what is known about this vulnerability, does this only apply to hardware-based systems (like hypervisors and bare metal) or is it likely to be emulated through to the guests and require those be patched as well??Edit: I meant KPTI, obviously, but I can't edit the noscript :(
Submitted January 04, 2018 at 01:47AM by clownburner
via reddit http://ift.tt/2Cw3e9V
From what is known about this vulnerability, does this only apply to hardware-based systems (like hypervisors and bare metal) or is it likely to be emulated through to the guests and require those be patched as well??Edit: I meant KPTI, obviously, but I can't edit the noscript :(
Submitted January 04, 2018 at 01:47AM by clownburner
via reddit http://ift.tt/2Cw3e9V
reddit
Intel's KPMI vulnerability and virtual machines • r/security
From what is known about this vulnerability, does this *only* apply to hardware-based systems (like hypervisors and bare metal) or is it likely to...
Intel Responds to security reseach findings
http://ift.tt/2CzZjJP
Submitted January 04, 2018 at 02:49AM by Zratch
via reddit http://ift.tt/2CAsRqF
http://ift.tt/2CzZjJP
Submitted January 04, 2018 at 02:49AM by Zratch
via reddit http://ift.tt/2CAsRqF
Intel Newsroom
Intel Responds to Security Research Findings
Intel Corporation and other technology companies have been made aware of new security research describing software analysis methods that, when used for malicious purposes, have the potential to improperly gather sensitive data from computing devices that…
Google Security Blog post on the Intel CPU vulnerability
http://ift.tt/2lOp7aO
Submitted January 04, 2018 at 04:02AM by killall9firefox
via reddit http://ift.tt/2CAffvP
http://ift.tt/2lOp7aO
Submitted January 04, 2018 at 04:02AM by killall9firefox
via reddit http://ift.tt/2CAffvP
Google Online Security Blog
Today's CPU vulnerability: what you need to know
Posted by Matt Linton, Senior Security Engineer and Pat Parseghian, Technical Program Manager Last year, Google’s Project Zero team dis...
Shaf Patel, the blind hacker, forgets to switch accounts while posting fake hate tweet to himself. In the absence of hate crimes, "victims" will manufacture their own to increase their "victim index"(tm).
http://ift.tt/2CzrJUt
Submitted January 04, 2018 at 04:44AM by sfbayVAR
via reddit http://ift.tt/2CPjpgd
http://ift.tt/2CzrJUt
Submitted January 04, 2018 at 04:44AM by sfbayVAR
via reddit http://ift.tt/2CPjpgd
archive.fo
Tweets with replies by Shaf Patel (@ShafPatel) | Twitter
archived 3 Jan 2018 04:12:15 UTC
/r/netsec's Q1 2018 Information Security Hiring Thread
OverviewIf you have open positions at your company for information security professionals and would like to hire from the /r/netsec user base, please leave a comment detailing any open job listings at your company.We would also like to encourage you to post internship positions as well. Many of our readers are currently in school or are just finishing their education.Please reserve top level comments for those posting open positions.Rules & GuidelinesInclude the company name in the post. If you want to be topsykret, go recruit elsewhere.Include the geographic location of the position along with the availability of relocation assistance.If you are a third party recruiter, you must disclose this in your posting.Please be thorough and upfront with the position details.Use of non-hr'd (realistic) requirements is encouraged.While it's fine to link to the position on your companies website, provide the important details in the comment.Mention if applicants should apply officially through HR, or directly through you.Please clearly list citizenship, visa, and security clearance requirements.You can see an example of acceptable posts by perusing past hiring threads.FeedbackFeedback and suggestions are welcome, but please don't hijack this thread (use moderator mail instead.)
Submitted January 04, 2018 at 04:36AM by ranok
via reddit http://ift.tt/2CkUZu3
OverviewIf you have open positions at your company for information security professionals and would like to hire from the /r/netsec user base, please leave a comment detailing any open job listings at your company.We would also like to encourage you to post internship positions as well. Many of our readers are currently in school or are just finishing their education.Please reserve top level comments for those posting open positions.Rules & GuidelinesInclude the company name in the post. If you want to be topsykret, go recruit elsewhere.Include the geographic location of the position along with the availability of relocation assistance.If you are a third party recruiter, you must disclose this in your posting.Please be thorough and upfront with the position details.Use of non-hr'd (realistic) requirements is encouraged.While it's fine to link to the position on your companies website, provide the important details in the comment.Mention if applicants should apply officially through HR, or directly through you.Please clearly list citizenship, visa, and security clearance requirements.You can see an example of acceptable posts by perusing past hiring threads.FeedbackFeedback and suggestions are welcome, but please don't hijack this thread (use moderator mail instead.)
Submitted January 04, 2018 at 04:36AM by ranok
via reddit http://ift.tt/2CkUZu3
Reddit
netsec: search results - Information Security Hiring Thread
reddit: the front page of the internet
XSA-254: "Systems running all versions of Xen are affected" by Meltdown/Spectre
http://ift.tt/2CjKgA2
Submitted January 04, 2018 at 04:29AM by lachryma
via reddit http://ift.tt/2CAjYgR
http://ift.tt/2CjKgA2
Submitted January 04, 2018 at 04:29AM by lachryma
via reddit http://ift.tt/2CAjYgR
reddit
XSA-254: "Systems running all versions of Xen are... • r/netsec
7 points and 4 comments so far on reddit
Meltdown and Spectre (CPU bugs)
http://ift.tt/2EOJNax
Submitted January 04, 2018 at 03:55AM by ranok
via reddit http://ift.tt/2E3Uvc5
http://ift.tt/2EOJNax
Submitted January 04, 2018 at 03:55AM by ranok
via reddit http://ift.tt/2E3Uvc5
reddit
Meltdown and Spectre (CPU bugs) • r/netsec
39 points and 13 comments so far on reddit
Shaf Patel, the blind hacker, forgets to switch accounts while posting fake hate tweet to himself. In the absence of hate crimes, "victims" will manufacture their own to increase their "victim index"(tm).
http://ift.tt/2CzrJUt
Submitted January 04, 2018 at 05:16AM by sfbayVAR
via reddit http://ift.tt/2CkAKN3
http://ift.tt/2CzrJUt
Submitted January 04, 2018 at 05:16AM by sfbayVAR
via reddit http://ift.tt/2CkAKN3
archive.fo
Tweets with replies by Shaf Patel (@ShafPatel) | Twitter
archived 3 Jan 2018 04:12:15 UTC
Meltdown and Spectre
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 04:29AM by speckz
via reddit http://ift.tt/2AkAZpn
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 04:29AM by speckz
via reddit http://ift.tt/2AkAZpn
reddit
Meltdown and Spectre • r/security
4 points and 0 comments so far on reddit
Jiffy lube cctv
Just went to jiffy lube to get the oil changed. I noticed their outside camera had its plastic lens cover on it still. I told them about it. The guy says it's there to protect the lens. I went on about how its not meant to leave on. He said. Yeah its okay it looks good. So it needs to be there.
Submitted January 04, 2018 at 04:19AM by HawkofNight
via reddit http://ift.tt/2CDAdde
Just went to jiffy lube to get the oil changed. I noticed their outside camera had its plastic lens cover on it still. I told them about it. The guy says it's there to protect the lens. I went on about how its not meant to leave on. He said. Yeah its okay it looks good. So it needs to be there.
Submitted January 04, 2018 at 04:19AM by HawkofNight
via reddit http://ift.tt/2CDAdde
reddit
Jiffy lube cctv • r/security
Just went to jiffy lube to get the oil changed. I noticed their outside camera had its plastic lens cover on it still. I told them about it. The...
Week 1 in Information Security, 2018
http://ift.tt/2CDw3SE
Submitted January 04, 2018 at 04:13AM by undercomm
via reddit http://ift.tt/2AjPVUV
http://ift.tt/2CDw3SE
Submitted January 04, 2018 at 04:13AM by undercomm
via reddit http://ift.tt/2AjPVUV
Malgregator
InfoSec Week 1, 2018
Daniel Shapira from Twistlock wrote a blog about exploiting a Linux kernel vulnerability in the waitid() syscall (CVE-2017-5123) in...
Evidence suggests Reddit employees use their Reddit database access privileges to engage in tribal attacks and hack users
http://ift.tt/2EItT1s
Submitted January 04, 2018 at 05:27AM by geekmonk
via reddit http://ift.tt/2Czd3nn
http://ift.tt/2EItT1s
Submitted January 04, 2018 at 05:27AM by geekmonk
via reddit http://ift.tt/2Czd3nn
Hacker Noon
Reddit internal security threat: Evidence suggests Reddit employees may use their Reddit database access privileges to engage in…
Several Reddit users active in the r/btc subreddit were hacked in December 2017. Among the victims are a moderator of r/btc (victim 1) and…
Securing Azure customers from CPU vulnerability
http://ift.tt/2ES6o6e
Submitted January 04, 2018 at 06:04AM by jurais
via reddit http://ift.tt/2Czq6VW
http://ift.tt/2ES6o6e
Submitted January 04, 2018 at 06:04AM by jurais
via reddit http://ift.tt/2Czq6VW
Microsoft
Securing Azure customers from CPU vulnerability
An industry-wide, hardware-based security vulnerability was disclosed today. Keeping customers secure is always our top priority and we are taking active steps to ensure that no Azure customer is…
Meltdown and Spectre
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 07:40AM by Reddfish
via reddit http://ift.tt/2ESotkC
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 07:40AM by Reddfish
via reddit http://ift.tt/2ESotkC
reddit
Meltdown and Spectre • r/netsec
1 points and 0 comments so far on reddit
High Quality Webcam
http://ift.tt/16WaI2L
Submitted January 04, 2018 at 08:12AM by isabelmacayan
via reddit http://ift.tt/2E1WEF3
http://ift.tt/16WaI2L
Submitted January 04, 2018 at 08:12AM by isabelmacayan
via reddit http://ift.tt/2E1WEF3
PLDT Home
PLDT HOME Fam Cam
Watch over your Family wherever you are with PLDT HOME Fam Cam
Meltdown and Spectre
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 12:25PM by fireh7nter
via reddit http://ift.tt/2lSQXCX
http://ift.tt/2E1U0PM
Submitted January 04, 2018 at 12:25PM by fireh7nter
via reddit http://ift.tt/2lSQXCX
reddit
Meltdown and Spectre • r/netsec
4 points and 0 comments so far on reddit
Check your computer for Meltdown mitigations.
http://ift.tt/2AmxLBE
Submitted January 04, 2018 at 11:12AM by IronManMark20
via reddit http://ift.tt/2AksElv
http://ift.tt/2AmxLBE
Submitted January 04, 2018 at 11:12AM by IronManMark20
via reddit http://ift.tt/2AksElv
GitHub
ionescu007/SpecuCheck
SpecuCheck is a Windows utility for checking the state of the software mitigations against CVE-2017-5754 (Meltdown) and hardware mitigations against CVE-2017-5715 (Spectre)
PAST (Platform-Agnostic Security Tokens), a more secure alternative to JWT (JSON Web Tokens)
http://ift.tt/2qc1gGP
Submitted January 04, 2018 at 02:04PM by sarciszewski
via reddit http://ift.tt/2E632v3
http://ift.tt/2qc1gGP
Submitted January 04, 2018 at 02:04PM by sarciszewski
via reddit http://ift.tt/2E632v3
GitHub
paragonie/past
past - Platform-Agnostic Security Tokens
Intel was aware of the chip vulnerability when its CEO sold off $24 million in company stock
http://ift.tt/2lSPgo3
Submitted January 04, 2018 at 02:29PM by GemmaJ123
via reddit http://ift.tt/2E6aLcx
http://ift.tt/2lSPgo3
Submitted January 04, 2018 at 02:29PM by GemmaJ123
via reddit http://ift.tt/2E6aLcx
Business Insider
Intel was aware of the chip vulnerability when its CEO sold off $24 million in company stock
Intel CEO Brian Krzanich sold off a major stake in the company in November, months after the chip maker learned of a significant security flaw in its chips.