masto.es es uno de los varios servidores independientes de Mastodon que puedes usar para participar en el fediverso.
Bienvenidos a masto.es, el mayor servidor de Mastodon para hispanohablantes de temática general.

Administrado por:

Estadísticas del servidor:

1,9 K
usuarios activos

#infosec

168 publicaciones114 participantes2 publicaciones hoy
Dumb Password Rules<p>This dumb password rule is from Scandinavian Airlines.</p><p>The password rules itself is fine, but, it doesn't inform about the max length of the password.<br>Their max length is 14 characters, so even if you enter a password of 42 chars, you can login with the first 14 of it.<br>In this case, I changed my password to **Super_l0ng_password_that_fits_all_criteri...</p><p><a href="https://dumbpasswordrules.com/sites/scandinavian-airlines/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">dumbpasswordrules.com/sites/sc</span><span class="invisible">andinavian-airlines/</span></a></p><p><a href="https://infosec.exchange/tags/password" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>password</span></a> <a href="https://infosec.exchange/tags/passwords" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>passwords</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/dumbpasswordrules" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dumbpasswordrules</span></a></p>
Raglan Niall :lk: :tinoflag:<p>I think Chorus.co.nz should buy this site before a phishing scam goes down...<br>Yes I found out by mis-typing the address!<br><a href="https://mastodon.nz/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a></p>
B'ad Samurai 🐐<p>Why aren't we moving international conferences to Vancouver again? 🇨🇦 🏳️‍🌈</p><p><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
Ian Campbell<p>Thinking about talk submissions for next year already, and wondering if people would be interested in aging stuff. </p><p>“Hackers With Declining Loved Ones: What To Expect When Your Expectation Management No Longer Means Anything”</p><p><a href="https://masto.deoan.org/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
Shodan Safari<p>ASN: AS3269<br>Location: Florence, IT<br>Added: 2025-08-07T16:15</p><p><a href="https://infosec.exchange/tags/shodansafari" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>shodansafari</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
theruran 💻 🌐 :cereal_killer:<p>reading <a href="https://isopenbsdsecu.re" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">isopenbsdsecu.re</span><span class="invisible"></span></a> has been an eye-opening adventure!</p><p><a href="https://masto.hackers.town/tags/infoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infoSec</span></a></p>
BeyondMachines :verified:<p>Warwick Students' Union configuration error leaks thousands of students' personal data</p><p>Warwick Students' Union suffered a 36-hour data breach from August 2-4, 2025, when system changes inadvertently granted all society members "President" permissions, exposing personal information of thousands of students. The breach affected 13 societies with data accessed by 9 individuals. The SU has corrected user permissions and notified affected members on August 8th.</p><p>****<br><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/incident" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>incident</span></a> <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a><br><a href="https://beyondmachines.net/event_details/warwick-students-union-configuration-error-leaks-thousands-of-students-personal-data-4-s-d-f-5/gD2P6Ple2L" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">beyondmachines.net/event_detai</span><span class="invisible">ls/warwick-students-union-configuration-error-leaks-thousands-of-students-personal-data-4-s-d-f-5/gD2P6Ple2L</span></a></p>
Dissent Doe :cupofcoffee:<p>Correcting this because it looks like this doesn't involve any federal court. But there are exposed sensitive records, some of which were ordered sealed. </p><p>NEW: Federal judiciary says it is boosting security after cyberattack; researcher finds new leaks</p><p>More of those frustrating leaks where, despite our best efforts, we have been unable to get the network shares locked down so far, even with the host's assistance.</p><p>This one involves two courts: and yes, we saw some files that were supposed to be sealed or confidential.</p><p><a href="https://databreaches.net/2025/08/10/federal-judiciary-says-it-is-boosting-security-after-cyberattack-researcher-finds-new-leaks/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">databreaches.net/2025/08/10/fe</span><span class="invisible">deral-judiciary-says-it-is-boosting-security-after-cyberattack-researcher-finds-new-leaks/</span></a></p><p><a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> <a href="https://infosec.exchange/tags/govsec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>govsec</span></a></p>
ZaufanaTrzeciaStrona.pl<p>IT Security Weekend Catch Up – August 10, 2025 </p><p><a href="https://badcyber.com/it-security-weekend-catch-up-august-10-2025/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">badcyber.com/it-security-weeke</span><span class="invisible">nd-catch-up-august-10-2025/</span></a> </p><p><a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/catchup" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>catchup</span></a></p>
ZaufanaTrzeciaStrona.pl<p>Weekendowa Lektura: odcinek 636 [2025-08-10]. Bierzcie i czytajcie </p><p><a href="https://zaufanatrzeciastrona.pl/post/weekendowa-lektura-odcinek-636-2025-08-10-bierzcie-i-czytajcie/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">zaufanatrzeciastrona.pl/post/w</span><span class="invisible">eekendowa-lektura-odcinek-636-2025-08-10-bierzcie-i-czytajcie/</span></a> </p><p>Wróciliście już z urlopów czy dopiero się wybieracie? Przed Wami garść świeżych wiadomości na temat najciekawszych wydarzeń na polu walki z zagrożeniami. </p><p><a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/cyberbezpieczenstwo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cyberbezpieczenstwo</span></a> <a href="https://infosec.exchange/tags/WeekendowaLektura" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WeekendowaLektura</span></a></p>
OWASP Logroño<p>El próximo jueves 18 de septiembre habrá nuevo evento de OWASP Logroño: una taller práctico de <br><span class="h-card" translate="no"><a href="https://infosec.exchange/@zaproxy" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>zaproxy</span></a></span> y una charla sobre seguridad de las contraseñas</p><p>Más detalles e inscripcion en <a href="https://www.meetup.com/es-ES/owasp-logrono-chapter/events/310427012/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">meetup.com/es-ES/owasp-logrono</span><span class="invisible">-chapter/events/310427012/</span></a></p><p> <a href="https://infosec.exchange/tags/owasp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>owasp</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
cfp_time :verified:<p>📢🔔 Just 1 more day to submit your talk at BSides Oslo cc @oslobsides! <a href="https://cfptime.org/cfps/3306/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">cfptime.org/cfps/3306/</span><span class="invisible"></span></a> <a href="https://infosec.exchange/tags/cfp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cfp</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/oslobsides" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>oslobsides</span></a></p>
OTX Bot<p>Fake Social Media Automation Tools Spread Malware via RubyGems</p><p>Pulse ID: 68985f608d7ac51265134e31<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/68985f608d7ac51265134e31" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/68985</span><span class="invisible">f608d7ac51265134e31</span></a> <br>Pulse Author: cryptocti<br>Created: 2025-08-10 08:59:12</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Malware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Malware</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/SocialMedia" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SocialMedia</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/cryptocti" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cryptocti</span></a></p>
BeyondMachines :verified:<p>Researchers report critical flaws in CyberArk vaults</p><p>Security researchers discovered multiple vulnerabilities in CyberArk vaults dubbed "VaultFault", including two critical flaws that enable pre-authentication remote code execution through malformed regular expressions, potentially allowing complete system compromise.</p><p>**If you use CyberArk Conjur or Secrets Manager, immediately update to the latest patched versions released after June 19, 2025, as attackers can completely bypass authentication and take control of your systems. If you can't patch immediately, restrict network access to these systems using firewalls or private networks to limit exposure until you can update.**<br><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/advisory" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>advisory</span></a> <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a><br><a href="https://beyondmachines.net/event_details/researchers-report-critical-flaws-in-hashicorp-vault-and-cyberark-conjur-s-r-e-a-z/gD2P6Ple2L" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">beyondmachines.net/event_detai</span><span class="invisible">ls/researchers-report-critical-flaws-in-hashicorp-vault-and-cyberark-conjur-s-r-e-a-z/gD2P6Ple2L</span></a></p>
BeyondMachines :verified:<p>WinRAR vulnerability exploited in malware campaigns</p><p>WinRAR patched a vulnerability (CVE-2025-8088) that was actively exploited by Russian-linked cybercriminals through phishing emails containing malicious RAR attachments. The flaw allows attackers to achieve remote code execution by writing files to arbitrary system locations including Windows Startup folders. All WinRAR versions prior to 7.13 are affected.</p><p>**If you use WinRAR, update it to version 7.13 or later from the official WinRAR, because hackers are sending malicious archive attachments and if you open them you are hacked. Also, be very careful with any RAR file attachments in emails, especially unexpected ones.**<br><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/advisory" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>advisory</span></a> <a href="https://infosec.exchange/tags/ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransomware</span></a><br><a href="https://beyondmachines.net/event_details/winrar-vulnerability-exploited-in-malware-campaigns-w-6-k-x-v/gD2P6Ple2L" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">beyondmachines.net/event_detai</span><span class="invisible">ls/winrar-vulnerability-exploited-in-malware-campaigns-w-6-k-x-v/gD2P6Ple2L</span></a></p>
ManiabelChris<p>Sonntagslektüre, Teil 2, für noch mehr schlechte Laune.<br>Vielen Dank <span class="h-card" translate="no"><a href="https://chaos.social/@quincy" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>quincy</span></a></span> <br><a href="https://www.dropsitenews.com/p/meta-facebook-tech-copyright-privacy-whistleblower" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">dropsitenews.com/p/meta-facebo</span><span class="invisible">ok-tech-copyright-privacy-whistleblower</span></a><br><a href="https://mastodon.de/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
mutteripannu<p>What authentication apps do people who don’t wanna use Microsoft or Google, use? Recommendations? <a href="https://mstdn.social/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://mstdn.social/tags/2FA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>2FA</span></a> <a href="https://mstdn.social/tags/MFA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MFA</span></a> <a href="https://mstdn.social/tags/AskFedi" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AskFedi</span></a> Edit: should’ve specified that for the time being, I am on iOS.</p>
bsidesnova<p>“I am not a teacher, but an awakener.” – Robert Frost (1874-1963)</p><p>Lead a 4-hr or 8-hr <a href="https://mastodon.social/tags/BSidesNoVA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>BSidesNoVA</span></a> workshop on Friday, October 10th in Arlington, VA and awaken *your* love for <a href="https://mastodon.social/tags/Hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hacking</span></a>, <a href="https://mastodon.social/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a>, <a href="https://mastodon.social/tags/CTI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CTI</span></a>, or <a href="https://mastodon.social/tags/DataPrivacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataPrivacy</span></a> in someone!</p><p>Submit a workshop idea by August 18th!<br><a href="https://sessionize.com/bsidesnova-2025/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">sessionize.com/bsidesnova-2025/</span><span class="invisible"></span></a></p>
Solinvictus :mastodon:<p><a href="https://mastodon.social/tags/meme" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>meme</span></a> <a href="https://mastodon.social/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a></p>
FashionProof<p>Old but gold. <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23devops" target="_blank">#devops</a> <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23icybersecurity" target="_blank">#icybersecurity</a> <a class="hashtag" rel="nofollow noopener" href="https://bsky.app/search?q=%23infosec" target="_blank">#infosec</a></p>