Infosec.Pub

4,699 readers
106 users here now

To support infosec.pub, please consider donating through one of the following services:

Paypal: jerry@infosec.exchange

Ko-Fi: https://ko-fi.com/infosecexchange

Patreon: https://www.patreon.com/infosecexchange

founded 2 years ago
ADMINS
526
527
528
529
530
531
 
 
532
533
534
12
Microsoft Still Uses RC4 (www.schneier.com)
submitted 3 weeks ago by lemmydev2 to c/pulse_of_truth
 
 

Senator Ron Wyden has asked the Federal Trade Commission to investigate Microsoft over its continued use of the RC4 encryption algorithm. The letter talks about a hacker technique called Kerberoasting, that exploits the Kerberos authentication system.

535
 
 

Developers publishing crates (binaries and libraries written in Rust) on crates.io, Rust’s main public package registry, have been targeted with emails echoing the recent npm phishing campaign. The phishing email The emails started hitting developers’ inboxes on Friday, minutes after they published a (new) crate on the registry. The emails – titled “Important: Breach notification regarding crates.io” and made to look like they’ve been sent by the Rust Foundation – claimed that an attacker compromised … More → The post Phishing campaign targets Rust developers appeared first on Help Net Security.

536
537
 
 

Research shows that students are responsible for over half of school incidents, often without realizing the possible consequences.

538
 
 

All target organizations are different, but ransomware attackers are highly adaptive and appreciate – and will exploit – any mistake you make. The latest Akira ransomware attacks Managed security service providers and external incident responders have had a front-row seat for observing many of the actions carried out by Akira ransomware affiliates in the last few months. In early August 2025, both Arctic Wolf and Huntress researchers warned about the possibility of Akira affiliates using … More → The post Ransomware attackers used incorrectly stored recovery codes to disable EDR agents appeared first on Help Net Security.

539
 
 

At least 187 code packages made available through the JavaScript repository NPM have been infected with a self-replicating worm that steals credentials from developers and publishes those secrets on GitHub, experts warn. The malware, which briefly infected multiple code packages from the security vendor CrowdStrike, steals and publishes even more credentials every time an infected package is installed.

540
 
 

The cyberattack that’s brought Jaguar Land Rover Automotive Plc factories to a standstill is affecting suppliers, with some European parts makers forced to pause or scale back their own production.

541
542
543
544
545
546
547
548
549
 
 
550
view more: ‹ prev next ›