If you use a VPN, you are trusting them to have their act together. Some of them really miss the mark.
//
Hacked Data for 69K LimeVPN Users Up for Sale on Dark Web | Threatpost
https://threatpost.com/hacked-data-limevpn-dark-web/167492/
Share a secret
…with a link that only works one time and then self-destructs.
Explanation from the creator:
https://blog.stophe.com/why-i-created-scrtlink
CISA is developing a catalog of Bad Practices that are exceptionally risky, especially in organizations supporting Critical Infrastructure or NCFs. The presence of these Bad Practices in organizations that support Critical Infrastructure or NCFs is exceptionally dangerous and increases risk to our critical infrastructure, on which we rely for national security, economic stability, and life, health, and safety of the public.
Bombshell Report Finds Phone Network Encryption Was Deliberately Weakened
https://www.vice.com/en/article/4avnan/bombshell-report-finds-phone-network-encryption-was-deliberately-weakened
Person who lives diagonally across the street from me uses their last name as their wifi SSID. I never met these people or knew where they lived, but I just confirmed this was their last name because they accidentally gave my address to their health insurance company who sent ID cards to my house.
I had seen this SSID in my scans before, so it only took 5 seconds of searching to find their actual address.
NVIDIA Patches High-Severity GeForce Spoof-Attack Bug | Threatpost
https://threatpost.com/nvidia-high-severity-geforce-spoof-bug/167345/
5G Security Vulnerabilities Fluster Mobile Operators | Threatpost
A survey from GSMA and Trend Micro shows a concerning lack of security capabilities for private 5G networks (think factories, smart cities, industrial IoT, utilities and more).
https://threatpost.com/mobile-operators-5g-security-vulnerabilities/167354/
Amazon Web Services has acquired Wickr, a provider of encrypted chat and communications services.
https://beta.darkreading.com/vulnerabilities-threats/amazon-acquires-secure-messaging-platform-wickr
🚨 Dell Owners: Update your BIOS/UEFI!
30M Dell Devices at Risk for Remote BIOS Attacks, RCE | Threatpost
https://threatpost.com/dell-bios-attacks-rce/167195/
iPhone spyware lets police log suspects' passcodes when cracking doesn't work
https://www.nbcnews.com/tech/security/iphone-spyware-lets-cops-log-suspects-passcodes-when-cracking-doesn-n1209296
Want to know why Mike Lindell thinks the election was stolen by "packet capture"?
.
.
.
.
.
.
.
.
.
.
.
.
... Because he's been SNORTing too much!
AP News: Swaths of internet down, outage at cloud company Fastly
https://apnews.com/article/europe-business-7c607c931faba19584975da74c8fa633
I'm about to have a lot more free time starting next week, so one of my projects is to update to WSL2, install Kali, Win-KeX SL, and go to town
The KeX seamless mode looks so freaking cool. I'm also going to trick out my Win10 terminal like this:
https://www.the-digital-life.com/awesome-wsl-wsl2-terminal/
I promise I won't do anything any of you wouldn't do. 😉
Here is my updated guide for running an OpenVPN server on a router with DD-WRT:
https://zerobin.net/?12a7ea51b58b1bfe#F8hu+OZ/FHLo5Rm2bkV+7/pBp6CikQvPLPuuz9Tra14=
nosanitize
#cososec WTF!
TikTok just gave itself permission to collect biometric data on US users, including ‘faceprints and voiceprints’ | TechCrunch
https://techcrunch.com/2021/06/03/tiktok-just-gave-itself-permission-to-collect-biometric-data-on-u-s-users-including-faceprints-and-voiceprints/
Researchers Warn of Critical Bugs Affecting Realtek Wi-Fi Module
https://thehackernews.com/2021/06/researchers-warn-of-critical-bugs.html
Here is the draft version of my DD-WRT OpenVPN server guide. I am eager for constructive criticism.
https://zerobin.net/?8f9e659771cffcd0#17K9ygdqBeM6xrNtjZYM5VUp9I455jAfYq94lL4a0Sk=
cc: @opie @spacesloth @john_b @RandomUsr @Dobo @jordicusmaximus
nosanitize
I am working on my simplified DD-WRT OpenVPN guide. All of the various guides out there start with installing OpenVPN.
I just realized you don't need OpenVPN at all unless the system you are installing it on will be a OVPN client. If you are generating certs, keys, and .ovpn configs, all you need is Easy-RSA and a text editor!
🤯
Musician | Teacher | Nerd
𝘐 𝘢𝘮 𝘩𝘪𝘵𝘵𝘪𝘯𝘨 𝘮𝘺 𝘩𝘦𝘢𝘥 𝘢𝘨𝘢𝘪𝘯𝘴𝘵 𝘵𝘩𝘦 𝘸𝘢𝘭𝘭𝘴, 𝘣𝘶𝘵 𝘵𝘩𝘦 𝘸𝘢𝘭𝘭𝘴 𝘢𝘳𝘦 𝘨𝘪𝘷𝘪𝘯𝘨 𝘸𝘢𝘺.
- 𝘎𝘶𝘴𝘵𝘢𝘷 𝘔𝘢𝘩𝘭𝘦𝘳