radikal.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
radikal.social was created by a group of activists to offer federated social media for the radical left in and around Denmark.

Administered by:

Server stats:

162
active users

#cybersecurity

60 posts45 participants7 posts today
Continued thread

Well, if you were expecting the cybersecurity industry to respond any better to Trump using government access to target one of its firms, than Big Law did, I suspect you're going to be disappointed:

reuters.com/world/us/cybersecu

Cybersecurity industry falls silent as Trump turns ire on SentinelOne

"Krebs' speech was followed by applause then, but Reuters found little sign of industry support for Krebs or SentinelOne as they face Trump now.

Katie Moussouris, founder of Luta Security, said she doubted the industry would publicly back SentinelOne given the White House's actions.

"I don't think it's feasible for cybersecurity companies to have a broader response on this," she said. "The risk is just too high."

Reuters contacted 33 of the largest U.S. cybersecurity companies, including tech companies and professional services firms with large cybersecurity practices, and three industry groups, for comment on Trump's action against SentinelOne.

Only one offered comment on Trump's action. The rest declined, did not respond or did not answer questions."

We kind of touched on this story already in another thread, but the short version is that Trump is using federal security clearances to damage a company called SentinelOne, for employing Chris Krebs - a former Trump official who balked at supporting Der Leader's "big lie" that the 2020 election is stolen. This is petty revenge, and a warning shot to everyone else in the industry that Trump can come after them if they displease him; but it's also about making the conspiracy theory that Joe Biden stole the 2020 election part of official regime policy and punishing anyone who disputes that with the full force of the DoJ and federal government.

On one hand, this isn't as big a story as Trump conscripting DC's biggest law firms via executive order, or the Yarvinite quest to have the regime literally seize control of higher education institutions via false claims about fighting antisemitism. What it is however, is a demonstration that Trump's success in those endeavors so far has emboldened him to extend his reach, and provided him with a successful model for how to use his power as POTUS to enforced ideological conformity, and assert direct control over portions of the private sector. As long as everyone stays silent, surrenders, or worse: openly collaborates, there's really no reason to believe he's going to stop doing this any time soon.

"If you’re new to prompt injection attacks the very short version is this: what happens if someone emails my LLM-driven assistant (or “agent” if you like) and tells it to forward all of my emails to a third party?
(...)
The original sin of LLMs that makes them vulnerable to this is when trusted prompts from the user and untrusted text from emails/web pages/etc are concatenated together into the same token stream. I called it “prompt injection” because it’s the same anti-pattern as SQL injection.

Sadly, there is no known reliable way to have an LLM follow instructions in one category of text while safely applying those instructions to another category of text.

That’s where CaMeL comes in.

The new DeepMind paper introduces a system called CaMeL (short for CApabilities for MachinE Learning). The goal of CaMeL is to safely take a prompt like “Send Bob the document he requested in our last meeting” and execute it, taking into account the risk that there might be malicious instructions somewhere in the context that attempt to over-ride the user’s intent.

It works by taking a command from a user, converting that into a sequence of steps in a Python-like programming language, then checking the inputs and outputs of each step to make absolutely sure the data involved is only being passed on to the right places."

simonwillison.net/2025/Apr/11/

Simon Willison’s WeblogCaMeL offers a promising new direction for mitigating prompt injection attacksIn the two and a half years that we’ve been talking about prompt injection attacks I’ve seen alarmingly little progress towards a robust solution. The new paper Defeating Prompt Injections …
Continued thread

Please for the love of god donate, i cant afford anything, please im begging. i had to extract funds from my medical expenses fund (200$) to pay for necessary things, please donate everyone. i need urgent help.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

#Business: former Austrian chancellor Sebastian Kurz started a company with the man behind the infamous Pegasus spyware, Shalev Hulio.

The Israeli entrepreneur Shalev Hulio gained notoriety for designing Pegasus, a spyware that has been used by governments to hack journalists and dissidents. Today, he is selling an AI cyber security tool to European states and corporations.

"Follow the Money" found that at least a dozen employees at Dream Security had worked for Hulio’s former spyware company NSO and other Israeli spyware firms.

archive.is/20250408150305/http

@israel @eu

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

"A coalition of governments has published a list of legitimate-looking Android apps that were actually spyware and were used to target civil society that may oppose China’s state interests.

On Tuesday, the U.K.’s National Cyber Security Centre, or NCSC, which is part of intelligence agency GCHQ, along with government agencies from Australia, Canada, Germany, New Zealand, and the United States, published separate advisories on two families of spyware, known as BadBazaar and Moonshine.

These two spywares hid inside legitimate-looking Android apps, acting essentially as “Trojan” malware, with surveillance capabilities such as the ability to access the phone’s cameras, microphone, chats, photos, and location data, the NCSC wrote in a press release on Wednesday.

BadBazaar and Moonshine, which have been previously analyzed by cybersecurity firms like Lookout, Trend Micro, and Volexity, as well as the digital rights nonprofit Citizen Lab, were used to target Uyghurs, Tibetans, and Taiwanese communities, as well as civil society groups, according to the NCSC.

Uyghurs are a Muslim-minority group largely in China that has for years faced detention, surveillance, and discrimination from the Chinese government, and thus has frequently been the target of hacking campaigns."

techcrunch.com/2025/04/09/gove

TechCrunch · Governments identify dozens of Android apps bundled with spyware | TechCrunchThe advisories say the spyware apps are used to target members of civil society who may oppose China’s state interests.

"Chinese officials acknowledged in a secret December meeting that Beijing was behind a widespread series of alarming cyberattacks on U.S. infrastructure, according to people familiar with the matter, underscoring how hostilities between the two superpowers are continuing to escalate.

The Chinese delegation linked years of intrusions into computer networks at U.S. ports, water utilities, airports and other targets, to increasing U.S. policy support for Taiwan, the people, who declined to be named, said.

The first-of-its-kind signal at a Geneva summit with the outgoing Biden administration startled American officials used to hearing their Chinese counterparts blame the campaign, which security researchers have dubbed Volt Typhoon, on a criminal outfit, or accuse the U.S. of having an overactive imagination."

wsj.com/politics/national-secu

"Now, an exhibit published in the court document shows exactly in what countries 1,223 specific victims were located when they were targeted with NSO Group’s Pegasus spyware.

The country breakdown is a rare insight into which NSO Group customers may be more active, and where their victims and targets are located.

The countries with the most victims of this campaign are Mexico, with 456 individuals; India, with 100; Bahrain with 82; Morocco, with 69; Pakistan, with 58; Indonesia, with 54; and Israel, with 51, according to a chart titled “Victim Country Count,” that WhatsApp submitted as part of the case.

There are also victims in Western countries like Spain (21 victims), the Netherlands (11), Hungary (8), France (7), United Kingdom (2), and one victim in the United States."

techcrunch.com/2025/04/09/cour

TechCrunch · Court document reveals locations of WhatsApp victims targeted by NSO spyware | TechCrunchThe list of 1,223 victims in 51 countries hints at the “true scale of the spyware problem,” per one researcher.

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

🆕 blog! “FobCam '25 - All my MFA tokens on one page”

Some ideas are timeless. Back in 2004, an anonymous genius set up "FobCam". Tired of having to carry around an RSA SecurID token everywhere, our hero simply left the fob at home with an early webcam pointing at it. And then left the page open for all to see.

Security expert Bruce…

👀 Read more: shkspr.mobi/blog/2025/04/fobca

#2fa #CyberSecurity #MFA #Satire(Probably) #security

A padlock engraved into a circuit board.
Terence Eden’s Blog · FobCam '25 - All my MFA tokens on one page
More from Terence Eden
Continued thread

Please donate, i dont get nearly enough donations to live and im running off fumes, i need help badly.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan

hey all, i still didnt get enough money last week, i really need donations desperately, please donate, i need the help to afford food and other things please, i live in an abusive and transphobic home and need donations to live, please donate to my monero address to help me afford HRT. Please help me.

current goals:

immediate necessary expenses: 35$/250$

prescription glasses: 0$/250$

payment information:

cashapp: cash.app/vparagon

gofundme: gofund.me/034cef1a

cashapp referral (i make 5$): cash.app/app/QPL1BJF

monero address: 8576pqM8cmNW92eogjqnYzEewZbmwUbY61xRcGmbVCFphchaXKyAad1Xj9oNrYWQNqZkcm2kCHEzea4Y5Wd3DMUW4DozSV2

@mutualaid @disability @trans @vegan