Lorenzo reshared this.

NEW: San Francisco's city attorney has sent cease and desist letters to Apple and Google, telling them to stop hosting and profiting off apps that can 'nudify' people.

"These companies have responsibility to ensure that apps on their platforms do not facilitate sexual abuse," David Chiu told me

This follows researchers repeatedly finding apps, commonly face swapping apps, that can nudify people in the App Store and Google Play Store. Researchers say the companies are well aware of the problems and are not doing enough about the harmful apps

Read the full story here: wired.com/story/san-francisco-…

reshared this

Lorenzo reshared this.

'... the Secretary of the Treasury, in consultation with the National Cyber Director, the Secretary of War, through the Director of the National Security Agency (NSA), and the Secretary of Homeland Security, through the Director of CISA, shall form an AI cybersecurity clearinghouse, in voluntary collaboration with the AI industry and operators of critical infrastructure, that coordinates and deconflicts scanning for software vulnerabilities, discovers and validates such vulnerabilities, and coordinates and prioritizes remediation and distribution of vulnerability patches'.

This looks good.

federalregister.gov/documents/…

reshared this

in reply to Dr Ravi Nayyar

'... the creation of “GOLD EAGLE,” a clearinghouse that enables unprecedented cybersecurity vulnerability coordination. Open-source software partners and American critical infrastructure companies built a coordinated system ... using the existing authorities and resources of the federal government.

'[White House, Treasury, CISA, DOW] worked closely with industry partners to enable faster exploit detection and develop a rapid and prioritized response to cyber vulnerabilities across our critical infrastructure sectors.

'... already begun to intake and prioritize identified [bugs] ...'

whitehouse.gov/releases/2026/0…

Lorenzo reshared this.

New: Coca Cola discloses ransomware attack on its Fairlife dairy subsidiary, says it's "temporarily suspended" U.S. operations after its production systems were hit. Disruption to dairy systems could see potential product shortages on shelves.

More: techcrunch.com/2026/07/16/coca…

Bypass for ad-blockers: web.archive.org/web/2026071621…

reshared this

Lorenzo reshared this.

US Homeland Security says it seized 30k+ SIM cards in June and July in a nationwide operation it claims dismantled infrastructure used in telephone fraud (Lorelei Smillie/Bloomberg)

bloomberg.com/news/articles/20…
techmeme.com/260716/p57#a26071…

reshared this

I ricavi record di The Document Foundation

@GNU/Linux Italia

linuxeasy.org/i-ricavi-record-…

The Document Foundation chiude il 2025 con ricavi record, donazioni in crescita e un bilancio solido a sostegno dello sviluppo di LibreOfficeStai leggendo I ricavi record di The Document Foundation, un articolo del blog Linux Easy. Non riprodurlo altrove senza permesso.

Lorenzo reshared this.

The media in this post is not displayed to visitors. To view it, please go to the original post.

#Amazon #CloudFront seems to having global issues.

health.aws.amazon.com/health/s…

reshared this

Lorenzo reshared this.

The media in this post is not displayed to visitors. To view it, please go to the original post.

:blep:


🎨by purr.in.ink

This entry was edited (2 days ago)
Lorenzo reshared this.

#ESETresearch discovered and reported to @certcc 11 old Microsoft-signed UEFI shim bootloaders that allow bypassing UEFI Secure Boot on most UEFI systems. Read about it at welivesecurity.com/en/eset-res…
Tracked by #CVE-2026-8863 and #CVE-2026-10797, all these vulnerable shims were revoked in Microsoft’s June Patch Tuesday updates.

cve.org/CVERecord?id=CVE-2026-…

cve.org/CVERecord?id=CVE-2026-…
Exploiting these vulnerable shims allows execution of untrusted code at system boot by using the Bring Your Own Vulnerable Driver (#BYOVD) technique, enabling deployment of malicious UEFI bootkits on systems that trust the Microsoft Corporation UEFI CA 2011 certificate.
What makes these old shims dangerous is not a novel vulnerability, it’s that no new vulnerability is needed to bypass Secure Boot. Just an old, still-trusted, unrevoked shim and basic knowledge of how UEFI works is enough to bypass UEFI Secure Boot and deploy a UEFI bootkit.
For more details and instructions on how to verify that the dbx patches were properly applied on your system, read our blogpost:
welivesecurity.com/en/eset-res…

reshared this

Lorenzo reshared this.

Devo ammetterlo, #AntiX è una bomba su qualsiasi hardware
@news