Netsec – Telegram
Netsec
7.37K subscribers
22.3K links
This channel posts the feed from r/netsec.
For any suggestions dm @streaak
Donate to keep the bot running https://www.paypal.me/akhilgv
Download Telegram
Understanding the core of System Security
https://ift.tt/2k1MI6v

Submitted May 17, 2018 at 02:37PM by r0hi7
via reddit https://ift.tt/2KwckE1
Mac/BSD + Corporate Outlook/Exchange + p≡p (Pretty Easy Privacy) + GnuPG -- Is there a solution that doesn't cost €60 besides save-as, decrypt/verify?
The only thing I've found so far is gpg4o which is really expensive.I know that there is an open-source plugin for windows outlook available on GitHub called the Outlook Privacy Plugin, but it stresses that it doesn't work on any platform other than windows.Right now verification of my emails requires people to go through a PITA manual process of saving the attachments and then using the console gpg on them. That's just not a good way to get people to handle sensitive information well.My company offers a certificate, but it's shared and technically invalid. The other problem is that it's just not widely used outside of exchange, so it works fine for in-house but doesn't work well for anyone using gmail or outlook.com or yahoo mail or other sources. Also, AFAIK the certificate specifically uses S/MIME and I would really prefer PEP.Even the PEP foundation's open-source outlook plugin charges for the binary and obfuscates building the sources. I'd still try to build, except (again) it's Windows only.I'm feeling a bit like nobody wants secure email in outlook :-/note: I use a custom IMAP thunderbird client for my own email and have no issues using either PEP or s/mime with enigmail. Some messages are actually stipulated in my employment agreement to go through the corporate email. The rare cases when I need a signature or encryption and I must use my corporate mail are where the PITA happens.

Submitted May 17, 2018 at 07:51PM by skyleach
via reddit https://ift.tt/2GqD2eE
Tampering with OpenPGP digitally signed messages by exploiting multi-part messages
https://ift.tt/2IiCDke

Submitted May 17, 2018 at 09:49PM by sjmurdoch
via reddit https://ift.tt/2LaOIWn
[oss-security] Qualys Security Advisory - Procps-ng Audit Report
https://ift.tt/2wW2vgK

Submitted May 17, 2018 at 11:27PM by dabacaba
via reddit https://ift.tt/2Iqg1OH
Wrote this simple vocabulary.com hack to automatically answer questions correctly (write-up in comments)
https://ift.tt/2rPvKMk

Submitted May 18, 2018 at 12:01AM by wy35
via reddit https://ift.tt/2k72BZy
MEWKit report gives details on recent Amazon BGP hijack and the phishing campaigns leading up to it
https://ift.tt/2KuyVkb

Submitted May 17, 2018 at 11:40PM by _0x3a_
via reddit https://ift.tt/2GunV3M
'Voice-Squatting' Turns Alexa, Google Home into Silent Spies | Threatpost
https://ift.tt/2rPJ2JD

Submitted May 18, 2018 at 01:18AM by LindseyOD123
via reddit https://ift.tt/2rOYZyM