Here are some things you might not have known about the phones in the Oval Office.
Electrospaces.net: The phones in president Biden's Oval Office
https://www.electrospaces.net/2021/01/the-phones-in-president-bidens-oval.html
🚨 #cososec alert! 🚨
Seven flaws in open-source software Dnsmasq could allow DNS cache poisoning attacks and remote code execution.
DNSpooq Flaws Allow DNS Hijacking of Millions of Devices | Threatpost
https://threatpost.com/dnspooq-flaws-allow-dns-hijacking-of-millions-of-devices/163163/
GitHub - mollyim/mollyim-android: A fork of Signal for Android with passphrase lock.
Molly is a hardened version of Signal for Android, the fast simple yet secure messaging app by Signal Foundation.
I know you all are probably sick of me talking about data backups, but...
Given what @just3nanalysis has been sharing recently, I would make sure that anything in the cloud has a recent physical backup in case it becomes inaccessible.
That means if you rely solely on cloud backup services like Backblaze, you should have a redundant local copy of everything that's there if you do not already.
Exposed Email Logs Show 8kun Owner in Contact With QAnon Influencers and Enthusiasts - bellingcat
https://www.bellingcat.com/news/2021/01/07/exposed-email-logs-show-8kun-owner-in-contact-with-qanon-influencers-and-enthusiasts/
Now we need to consider the possibility infosec implications of the Capitol breach today. #cososec
https://twitter.com/Osinttechnical/status/1346983875541671936
This is one of the best self-owns I've seen in a while. #cososec
I don't know if she comes on CoSo anymore, but congratulations to Lesley Carhart - @hacks4pancakes - on being named the Defcon 2020 Hacker of the Year!
Analysis by Rachel Tobac on how Alexy Nalvany successfully got an FSB agent to give up details regarding his poisoning attempt.
#cososec
This is a great time to back up your data and replace old storage media. #cososec #cosotech
My checklist for this week:
- Download all cloud data to local copies
- Backup phone data to PC
- Run BD-R backups - Only use HTL discs!
https://blu-raydisc.info/licensee-list/discmanuid-licenseelist.php
I use these:
https://www.amazon.com/gp/aw/d/B008F5M2OY
(Put sensitive data in VeraCrypt archives first)
- Format and test old flash media
- Macrium Reflect system images; export to external media
- Replace oldest HDD with a SSD:
https://www.amazon.com/dp/B07SNHB4RC
This is a good time to practice some good #cososec hygiene:
Great use of OSINT here to expose a sheriff's deputy who is aligning himself with Proud Boys, and threatening violence against nurses, John Roberts, Obama, and people who ask him to wear a mask.
https://twitter.com/socialistdogmom/status/1342483479079100417
Anyone have experience with this file transfer service? #cososec
BlackHole
https://blackhole.run/
Exfiltrating Data from Air-Gapped Computers via Wi-Fi Signals (Without Wi-Fi Hardware)
https://thehackernews.com/2020/12/exfiltrating-data-from-air-gapped.html
This person penetrated Facebook's admin panel. $7500 bounty seems a bit low for something this serious. #cososec
//
How I hacked Facebook: Part One – Alaa Abdulridha
https://alaa.blog/2020/12/how-i-hacked-facebook-part-one/
More concerning Cellebrite news. #cososec
U.S. Schools Are Buying Cellebrite Phone-Hacking Tech
https://gizmodo.com/u-s-schools-are-buying-phone-hacking-tech-that-the-fbi-1845862393
🚨#cososec ALERT🚨
Cellebrite can now access Signal
Helping Law Enforcement Lawfully Access The Signal App - Cellebrite
https://www.cellebrite.com/en/blog/cellebrites-new-solution-for-decrypting-the-signal-app/
A Vile Website Doxxing Trump’s Enemies Has Caught the Eye of the FBI
https://www.thedailybeast.com/a-vile-website-doxxing-trumps-enemies-has-caught-the-eye-of-the-fbi
How anti-fingerprinting extensions tend to make fingerprinting easier | Almost Secure
https://palant.info/2020/12/10/how-anti-fingerprinting-extensions-tend-to-make-fingerprinting-easier/
Musician | Teacher | Nerd
𝘐 𝘢𝘮 𝘩𝘪𝘵𝘵𝘪𝘯𝘨 𝘮𝘺 𝘩𝘦𝘢𝘥 𝘢𝘨𝘢𝘪𝘯𝘴𝘵 𝘵𝘩𝘦 𝘸𝘢𝘭𝘭𝘴, 𝘣𝘶𝘵 𝘵𝘩𝘦 𝘸𝘢𝘭𝘭𝘴 𝘢𝘳𝘦 𝘨𝘪𝘷𝘪𝘯𝘨 𝘸𝘢𝘺.
- 𝘎𝘶𝘴𝘵𝘢𝘷 𝘔𝘢𝘩𝘭𝘦𝘳