Tübinger Tage der digitalen Freiheit , #TDF - wir sind hier! 
Come to our stand where @dreirik and @anaghz will explain you our work!
At 16h join us at the kids space for an "Ada & Zangenmann" workshop
The Privacy Post reshared this.
Tübinger Tage der digitalen Freiheit , #TDF - wir sind hier! 
Come to our stand where @dreirik and @anaghz will explain you our work!
At 16h join us at the kids space for an "Ada & Zangenmann" workshop
The Privacy Post reshared this.
The Gentlemen, a ransomware-as-a-service operation that emerged in mid-2025, has claimed approximately 332 victims in the first five months of 2026 alone by targeting Fortinet and Cisco edge devices.dark6 (Secure Bulletin)
reshared this
A critical authentication bypass flaw in PraisonAI's legacy API server (CVE-2026-44338) shipped with auth disabled by default, allowing unauthenticated attackers to hijack AI workflows and drain API quotas.dark6 (Secure Bulletin)
reshared this
Microsoft DSC v3.2.0: nuove risorse Windows, version pinning e integrazione Bicep
#tech
spcnet.it/microsoft-dsc-v3-2-0…
@informatica
reshared this
In dieser Woche hat uns besonders eine Rede beschäftigt. Es geht um "empfindliche Seelen" und harte Kontrollen. Und um Lücken in der Argumentation von Kommissionspräsidentin Ursula von der Leyen. Sie will offenbar Ausweiskontrollen an jeder Ecke des Internets. Das dürfen wir nicht zulassen.
Unser Wochenrückblick.
netzpolitik.org/2026/kw-20-die…
Die 20. Kalenderwoche geht zu Ende. Wir haben 10 neue Texte mit insgesamt 85.644 Zeichen veröffentlicht. Willkommen zum netzpolitischen Wochenrückblick.Martin Schwarzbeck (netzpolitik.org)
reshared this
Mesi fa ho scritto il codice di un connector #OpenCTI per #Ransomfeed.
Dopo un po' ho deciso di presentarlo con una Pull Request al progetto ufficiale di Filigran che racchiude tutti i connector ufficiali per la piattaforma.
Oggi quel codice è stato revisionato e approvato dal team ufficiale di Filigran e da questa release (7.20260515.0), Ransomfeed è un connector della piattaforma disponibile sul repo ufficiale.
La release con il mio contributo è online da poche ore
reshared this
Hi @eden
Did you have a chance to read the message @francommit sent you?
Franco asked you what you used to get the statistics data
reshared this
We are at the #TDF5 ! And we came with stickers, posters, postcards, awesome tshirts, red #ilovefs socks and #AdaZangemann book
6th floor on your way to the waffles 😉
The Privacy Post reshared this.
Der durchdigitalisierte Staat soll her und das möglichst schnell. Darin sind sich Bund und Länder nach der Digitalministerkonferenz einig. Um Tempo zu machen, wollen die zuständigen Minister:innen mehr sogenannte Künstliche Intelligenz und weniger Datenschutz.
reshared this
Gaaaanz tolle Idee 🤮🤮🤮
N I C H T
Dieci persone arrestate con l’accusa di aver consultato illegalmente le banche dati dello stato e rivenduto i loro contenuti
La procura di Napoli ha richiesto l’arresto di 10 persone accusate di essere coinvolte in un articolato sistema per la vendita di dati ottenuti consultando illegalmente le banche dati della polizia, dell’INPS, dell’Agenzia delle entrate e delle Poste. I dati venivano venduti ad agenzie di investigazione privata in tutta Italia.
reshared this
It is the second Friday of the month! 🤫
So 😀 Hello, hello turn your #SoftwareFreedom Podcast on!
The SFP is back with the 51st episode and it is all about #PMPC: because if it is public money, it should be #publiccode!
@annabonnie is talking with @johas and the Nordic Institute for Interoperability Solutions (NIIS) about X-Road and the challenges ahead for adopting #FreeSoftware in public administration.
fsfe.org/news/podcast/2026/epi…
In this monthly Software Freedom Podcast episode we are talking with the Nordic Institute for Interoperability Solutions (NIIS) and their X-Road, a Free So...FSFE - Free Software Foundation Europe
reshared this
ApocalypseZ: come gli hacker russi automatizzano il furto di account Signal su scala industriale
#CyberSecurity
insicurezzadigitale.com/apocal…
reshared this
Fortinet has disclosed CVE-2026-26083, a critical (CVSS 9.1) missing-authorization vulnerability in FortiSandbox that lets unauthenticated attackers execute arbitrary code remotely across on-prem, cloud, and PaaS deployments.dark6 (Secure Bulletin)
reshared this
Attackers compromised 84 npm artifacts across 42 TanStack packages — including react-router with 12M+ weekly downloads — injecting a credential-stealing payload via chained GitHub Actions abuse.dark6 (Secure Bulletin)
reshared this
A maximum-severity (CVSS 10.0) vulnerability in the SandboxJS npm library allows attackers to completely escape the JavaScript sandbox and execute arbitrary code on the host system — no credentials or user interaction required.dark6 (Secure Bulletin)
reshared this
A publicly released tool called BitUnlocker demonstrates a practical downgrade attack against BitLocker on fully-patched Windows 11 machines, exploiting a gap between CVE-2025-48804 patching and certificate revocation to decrypt protected volumes in …dark6 (Secure Bulletin)
reshared this
SimpleChat: un template Blazor provider-agnostico per chat AI con .NET 10 Aspire
#tech
spcnet.it/simplechat-un-templa…
@informatica
reshared this
LINQ in C#: guida completa alle operazioni di aggregazione (Count, Sum, MinBy, MaxBy, Aggregate)
#tech
spcnet.it/linq-in-c-guida-comp…
@informatica
reshared this
FamousSparrow nel Caucaso: tre ondate di spionaggio cinese colpiscono il gas azero che alimenta l’Europa
#CyberSecurity
insicurezzadigitale.com/famous…
reshared this
A new ClickFix campaign observed by ReliaQuest pairs the social engineering technique with PySoxy, a 10-year-old Python SOCKS5 proxy, creating a two-channel persistent access chain that continues operating even after endpoint security blocks the init…dark6 (Secure Bulletin)
reshared this
A critical use-after-free vulnerability in Exim mail servers (versions 4.97–4.99.2 with GnuTLS) allows unauthenticated remote attackers to corrupt heap memory and potentially execute arbitrary code. Patch to version 4.99.3 immediately.dark6 (Secure Bulletin)
reshared this
Microsoft has patched CVE-2026-32185, a spoofing vulnerability in Microsoft Teams for Android that allows local attackers to impersonate trusted devices or content.dark6 (Secure Bulletin)
reshared this
Foxconn has confirmed a ransomware attack on its North American factories after the Nitrogen gang claimed to have stolen 8TB of data including technical drawings and network topology maps tied to AMD, Intel, and Google projects.dark6 (Secure Bulletin)
reshared this
Nächste Woche findet die re:publica statt, die größte Konferenz für die digitale Gesellschaft in Europa. Das Programm bietet viele spannende Themen und Formate. Auf den Bühnen stehen auch Redakteur:innen und Autor:innen von netzpolitik.org.
netzpolitik.org/2026/dagegenha…
Nächste Woche findet zum 26. Mal die re:publica statt, die größte Konferenz für die digitale Gesellschaft in Europa. Das Programm bietet viele spannende Themen und Formate. Auf den Bühnen stehen auch Redakteur:innen und Autor:innen von netzpolitik.Daniel Leisegang (netzpolitik.org)
reshared this
GitLab Act 2: il manifesto dell’AI agentica che promette il futuro e inquieta gli sviluppatori
#CyberSecurity
insicurezzadigitale.com/gitlab…
reshared this
Buongiorno.
Nuovi #consiglidifollow
Questa volta l'elenco comprende account da cui si possano trarre notizie e informazioni non banali riguardo al Fediverso e al mondo dell'informatica.
Non è esaustivo: condivido alcuni degli account che mi è capitato d'incontrare per caso e che mi piacciono.
Ecco dunque il
@admin
@aiucd
@anewsocial
@AntennaPod
@ArchaeoBasti
@cheeaun
@chiaraepoi
@Curator
@fediverso
@informapirata
@FediFollows
@fediforum
@FediTips
@fediversereport
@Flipboard
@Framasoft
@Galessandroni
@hackordie_radio
@informatica
@jerome_herbinet
@kappazeta
@kathsone
@leodurruti
@lealternative
@lisamelton
@lorenzo
@macfranc
@MastodonEngineering
@moshidon
@notizie
@poliverso
@privacity
@quillmatiq
@sbarrax
@skariko
@snow@snowfan.it
@snow@snowtest.it
@stefano
@tleilax
@wikimediaitalia
@wubby74
@zeppe
like this
reshared this
Nitrogen ransomware colpisce Foxconn: 8TB di dati con segreti industriali di Apple, Nvidia e Intel
#CyberSecurity
insicurezzadigitale.com/nitrog…
reshared this
La hotline olandese per la prevenzione del suicidio condivide i dati dei visitatori con le aziende tecnologiche
La hotline olandese per la prevenzione del suicidio 113 ha condiviso i dati dei visitatori del sito web con terze parti senza consenso, BNR rapporti basato sulla ricerca dell'hacker etico Mick Beer di Hackedemia.nl. Ora Stichting 113 ha temporaneamente sospeso tutti gli strumenti di misurazione e analisi presenti sul suo sito web.
reshared this
Gli sviluppatori di software affermano che l’intelligenza artificiale sta marcendo i loro cervelli
Gli sviluppatori a cui viene detto di usare l'intelligenza artificiale, che gli piaccia o no, raccontano una storia diversa. Su Reddit, Notizie sugli hacker e in altri luoghi in cui le persone impegnate nello sviluppo software parlano tra loro, sempre più persone sono deluse dalla promessa di codice generato da modelli linguistici di grandi dimensioni. Gli sviluppatori non parlano solo di come l'output dell'intelligenza artificiale sia spesso difettoso, ma anche del fatto che utilizzare l'intelligenza artificiale per portare a termine il lavoro è spesso un'esperienza più dispendiosa in termini di tempo, più difficile e più frustrante, perché devono esaminare l'output e correggerne gli errori. Ancora più preoccupante è il fatto che gli sviluppatori che utilizzano l'intelligenza artificiale sul lavoro dichiarano di avere la sensazione di perdere competenze e di riuscire a svolgere il proprio lavoro come prima.
reshared this
CISA has added CVE-2026-32202, a zero-click Windows Shell authentication coercion flaw, to its KEV catalog following confirmed active exploitation by Russia's APT28 group.dark6 (Secure Bulletin)
reshared this
1/ 🥳 Big news for digital rights in Europe: Ireland’s Digital Services Coordinator, Coimisiún na Meán, has opened a formal investigation into Meta’s potential use of “dark patterns” that may prevent people from choosing feeds not based on profiling on Facebook and Instagram.
👏 We’re glad to see regulators taking these concerns seriously. This investigation could become a major step toward meaningful #DSA enforcement and stronger user rights across the EU.
Our reaction ➡️ lnkd.in/euyCMjcA
reshared this
2/ This follows a complaint we filed last year together with @bitsoffreedom, @Freiheitsrechte & Convocation Research+Design on behalf of an 🇮🇪 user. For over a year, civil society organisations have raised concerns that Meta’s design practices undermine people’s freedom to choose how content is recommended to them online.
More information ⤵️
edri.org/our-work/civil-societ…
Civil society organisations are filing a complaint against Meta for violating the Digital Services Act (DSA).EDRi (European Digital Rights (EDRi))
Oblomov reshared this.
A public PoC exploit for CVE-2026-0073 enables any network-local attacker to gain a full ADB shell on unpatched Android 14–16 devices with zero user interaction, exploiting a cryptographic type confusion bug in Android's adbd daemon.dark6 (Secure Bulletin)
reshared this
Die Verwaltungsdigitalisierung ging in den vergangenen Jahren äußerst schleppend voran. Eine Ursache dafür: Die Verwaltung speichert ihr Wissen in Dokumenten ab statt als maschinenlesbare Daten.Esther Menhard (netzpolitik.org)
reshared this
Mythos contro curl: quando l’AI “troppo pericolosa” incontra la realtà del codice
#CyberSecurity
insicurezzadigitale.com/mythos…
reshared this
STILL haven't nominated anyone as the #FreeSoftware Contributor of the Year? 👀
The 2026 European SFS Award is waiting. Deadline: 25 May 2026
That person fixing bugs at 2am. The one silently holding the whole project together. Yeah, them. Go nominate them before you forget.
👉 cloud.opendatahub.com/index.ph…
Organised by #LUGBZ in collaboration with the FSFE.
More info: sfscon.it/award-nomination/
Nominate outstanding contributors to the FOSS ecosystem for the European SFS Award and recognise those advancing Software Freedom through Free Software.SFSCON Administrator (SFSCON)
reshared this
Palo Alto Networks is warning of a critical CVE-2026-0300 buffer overflow in PAN-OS Captive Portal that enables unauthenticated root-level remote code execution on PA-Series and VM-Series firewalls.dark6 (Secure Bulletin)
reshared this
Microsoft's May 2026 Patch Tuesday delivers fixes for 120 vulnerabilities including 29 Critical-rated remote code execution flaws across Windows, SharePoint, Dynamics 365, and Office.dark6 (Secure Bulletin)
reshared this
⚠️ EU e UK trattano con gli USA per la condivisione dei dati biometrici⚠️
Non è chiaro cosa stia negoziando il Consiglio dell'Unione Europea (=la rappresentanza dei governi nazionali), perché i negoziati sono avvolti nel mistero; ma una bozza dell'accordo è giunta a Statewatch e "implicherebbe trasferimenti reciproci continui e sistematici di dati biometrici", tra cui impronte digitali, fotografie e dati genetici.
computerweekly.com/news/366643…
The UK has received a request from the US to share biometric data of citizens, as Europe negotiates a similar deal with US Department of Homeland Security.Stefania Maurizi (ComputerWeekly.com)
reshared this
This blog post analyzes the European Commission’s 2026 recommendation on EU-wide age verification, its legal framework, and implications for social media regulation in Member States.Joana Bala (Future of Privacy Forum)
The Privacy Post reshared this.
Azure Resource Manager MCP Server: gestire l’infrastruttura Azure con gli agenti AI
#tech
spcnet.it/azure-resource-manag…
@informatica
reshared this
Hector Maier
in reply to netzpolitik.org • • •JackPearse
in reply to netzpolitik.org • • •- YouTube
robodeaf (YouTube)Cytro
in reply to netzpolitik.org • • •Dann wird das Internet noch mehr dunkle Ecken hervorbringen mit anderen DNS Servern und hinter VPN...
Die tun ja so als wenn ein Gesetz das Internet abschalten könnte...
...und über China und Zensur regen sie sich auf.
Ja mei 😂