Mini Blue Team Diaries Story:

Was responsible for SecOps at a SaaS platform that managed lots of things for companies, including travel bookings.

We had a bunch of customers in the higher education space who used SSO to login to our app. Unfortunately, MFA within the SSO configuration was not common back then, so a compromised university account would lead to much access, including to our platform.

Suddenly, a thing we saw a lot of, was higher-ed customers reporting that they were being charged for trips that just didn't make sense. These were bookings for same day travel, usually between two African cities.

After some digging around and investigation, we figured out that a threat actor would phish or purchase the users university credentials, then, using the SSO into our environment, they'd make bookings using the travel booking feature - those bookings were made on behalf of the threat actors customers, who actually thought they were dealing with a legit, well-connected travel agent.

We were able to advise our customers on how to stop this type of thing happening, with approval rules for bookings, and ya know, MFA, and also managed to build in some detective controls so our team could detect and shut down such bookings as soon as they came in.

What made this particularly interesting though, through some OSINT, we were able to determine the true identity of the actor responsible - and we connected with them on Facebook, mainly because we wanted to ask them about their methods now that we'd all but shut down their scheme.

We chatted for a bit, and got some useful intel. At the end, the actor congratulated the team on our new controls, and said they'd moved on to using another service they'd found to make his bookings.

For more, slightly less mini, Blue Team Diaries stories like this, check out infosecdiaries.com

#infosec #DFIR #BlueTeam #infosecreads #cybersecurity

Many software engineers see security as something to handle "later on, but good design can eliminate entire categories of problems. Threat modeling is a collection of techniques to help you do this before you've written a line of new code.

dev.to/owasp/threat-modeling-f…

Very happy and proud of this collaboration between @codethink @gnome and @sovtechfund

codethink.co.uk/articles/2024/…

Our goal is to make GNOME OS a daily driver for QA and finalize the migration, but this work will be fundamental to the future of all secure image based / immutable Linux distributions.

#Linux #GNOME #systemd

GNOME reshared this.

Check out the ongoing series where we explore how Purism differs from Big Tech competition. We are covering various aspects such as formation, operating system, hardware, privacy, security, freedoms, and more. Stay tuned for some eye-opening insights!
puri.sm/posts/purism-different…
#Purism #Librem5 #BigTech #TechDifferences

Announcing the date and location of the #LibreOffice Conference 2024! It'll take place in Luxembourg from 10 - 12 October: blog.documentfoundation.org/bl… #foss #opensource #Conference

LibreOffice reshared this.

I've added support for gpt-4o to my token counting helper package:
github.com/pamelafox/openai-me…
The token counts for my test data were the same except one, and that was due to "jargon" being two tokens in cl100k and just one token in o200k.
(Most of my test data is English tho!)

Version 6.0 von @threemaapp für iOS ist heute erschienen, und es gibt eine Neuerung beim Aufzeichnen von Sprachnachrichten, die auch für Blinde eine kleine Änderung des Workflows bedeutet. Bzw. Haben sich die Stellen am Bildschirm geändert, wo die Elemente jetzt zu finden sind. In der angehängten Sprachnachricht erkläre ich kurz, was und wie und wo.
in reply to André Polykanine

@menelion There are actually two. Version 1 is the classic one that mirrors the web client. It requires that you leave the Threema app running on your phone while using the web or desktop client. Version 2 is a multi-device beta, works with iOS only, and is also an Electron web app. Both are reasonably accessible, but have no efficiency-driven keyboard interface.

Serbian music link, some music theory

Sensitive content

Jedes Wort! Wenn doch nur alle beim ÖRR so stabile Ansagen machen würden, wie Martin Schmidt vom SWR in den heutigen #Tagesthemen:

#AfDVerbotsverfahren #Münster #AfDrausausdenParlamenten

This entry was edited (1 year ago)

When Big Tech says something is #free, it means that you're the product. 🤢

The internet should be a place of #freedom not a platform for data collection. 💃

Start taking your #privacy back by supporting open source alternatives to Big Tech! 💪

👉 tuta.com/blog/google-facebook-…

When it comes to AI art (or "art"), it's hard to find a nuanced position that respects creative workers' labor rights, free expression, copyright law's vital exceptions and limitations, and aesthetics.

--

If you'd like an essay-formatted version of this thread to read or share, here's a link to it on pluralistic.net, my surveillance-free, ad-free, tracker-free blog:

pluralistic.net/2024/05/13/spo…

1/

This entry was edited (1 year ago)

Noch nicht mitbekommen: #ASUS reduziert Qualitätskomponenten und Qualitätssicherung und setzt auf verbraucherfeindliche Praktiken, die Gaming-Community wendet sich ab.

youtu.be/11pK-Tx3LrU #ROG

#asus #rog

«IT-Sicherheitsexperte Manuel Atug @HonkHase sieht die Sicherheitsbehörden und die Politik so in dem "ewigen Konflikt" gefangen, immer mehr Befugnisse zum Jagen von Tätern zu fordern, statt Deutschland und IT-Systeme wirklich defensiv abzusichern und Schwachstellen konsequent schließen zu lassen.»
— Lieber dem Problem hinterherlaufen als es zu lösen. Irgendwie typisch Deutschland.

Bundeslagebild #Cybercrime: Die Lunte brennt – angezündet wird oft ganz woanders | Security heise.de/news/Bundeslagebild-C…

Oh look, it's people discovering why we were yelling about DRM all those years ago and got ignored and now corporations just delete all the movies and TV you 'bought'.

theguardian.com/media/article/…

Übrigens...

das ist das Ergebnis einiger Monate Vorarbeit in der #Kirchengemeinde des @kirchspiel_probstzella@kirche.social zu #950Unterloquitz mit ganz, gaanz wenigen Gemeindegliedern, dafür aber mit mehr Engagierten von außerhalb als gedacht...und noch größerer Resonanz über unser Dorf hinaus als erwartet.

fediwall.social/?servers=kirch…
Eine sehr schöne Woche!

Bin allerdings zwiegespalten: Denn die Timeline täuscht darüber hinweg, dass das normale Gemeindeleben möglicherweise vor dem Kollaps steht... aber wer weiß?

"Meine Gedanken sind nicht eure Gedanken / und eure Wege sind nicht meine Wege"

#digitaleKirche#FediKirche

in reply to Aiono

@aiono yes it is. I'm refreshing it for a new one I'll do next week, but a previous one I did in 2023 can be seen here. From myconf 2023: factor10.com/news/daniel-stenb…

Der Messenger #Telegram ist für eine sichere Kommunikation nicht geeignet - standardmäßig sind die Nachrichten nicht einmal Ende-zu-Ende verschlüsselt. Besser geeignet sind #Signal oder #Threema. Übrigens: Elon Musk ist das Paradebeispiel eines Trolls. Einfach ignorieren. 😉

Wer eine Entscheidungshilfe für einen Messenger sucht: messenger-matrix.de/messenger-…

#sicherheit #security #schwachstelle #e2ee #vulnerabilty #musk #durow

- Sprit günstiger als vergangenes Jahr
- Gas günstiger,
- Strom günstiger,
- die Inflation wesentlich geringer,
- Rekordzahl der Menschen in Arbeit,
- der Dax bricht einen Rekord nach dem anderen,
- Kohleverstromung so gering wie zuletzt 1959
- EE bricht ebenfalls Rekorde.
- Keine Blackouts & kein heißer Herbst, wie uns Union & Extremisten weismachen wollten.

Kann man ja auch mal erwähnen. Die 🚦 macht einen guten Job. Mit Optimierungspotenzial.

von Michael Brückner
#positivevibes

One of the downsides of easily managed color mixing using SASS in gtk was that none of it was accessible to app developers. Only a few @colors were avail. Few apps that needed to do some color customizations actually shipped the whole of adwaita SASS theme and regenerated their bits.

Such awful hacks are no longer necessary. I'm glad to see @alice ' amazing work on custom CSS properties landing. Thank you for the continuous care from the perspective of app developers!

gnome.pages.gitlab.gnome.org/l…

Sh*tf*ck 😳🔥😔

#ChatGPT consumes 25 times more #energy than #Google

"Energy consumption by Artificial Intelligence (#AI) is rising rapidly: AI is predicted to consume twice as much energy as the whole of France by 2030, according to some calculations."
brusselstimes.com/world-all-ne…

NVDA 2024.2 beta 1 is now available for testing from: nvaccess.org/post/nvda-2024-2b…

For anyone who is interested in trying out what NVDA has to offer before release, we welcome your feedback.

Highlights
- Sound Split
- New Synth Settings ring & quick navigation commands
- New braille features & fixes, including "Display speech output".
- Updated eSpeak, adding new language Tigrinya.

There are many minor bug fixes for applications

#NVDA #NVDAsr #ScreenReader #Beta #News #Accessibility #A11y #FOSS

in reply to Sean | Ginsenshi The blindwolf

@ginsenshi Where were you (what program was open / focussed) when you tried to change the keystroke? You can only change keystrokes which are available to you at the time you open it - so in say a web browser, find will be listed in Input Gestures, but in File Explorer, it isn't. It's here in my Input Gestures on 2024.1

Ready for news that will shock nobody? It turns out globalization mostly helps out the richest 10% and has little to no impact on the poorest.

"The influence of globalization on income inequalities worldwide was greater than we had expected. We were particularly surprised that these differences were mainly due to the gains of the richest and that the lower income groups benefited little or not at all."

phys.org/news/2024-05-main-ben…

#economics #inequality #globalization