MikeTrendsTrends right now

search

InfoSec

Trends

  1. 1
    Meta Rushed to Fix VM Escape Flaw Before Muse Launch▼Is this related to one of our fellow Mastodonians running a server off their systems? # MetaMuse # Meta # Infosec # TechMmastodonTechnology91 d ago

    Meta reportedly patched a virtual machine escape vulnerability in its MetaMuse product immediately before launch, according to 404 Media reporting. A VM escape flaw would let code break out of an isolated virtual machine, a serious security risk. Users in infosec and tech communities are discussing the fix and whether it connects to a fellow Mastodon user known to run servers from their own systems.

  2. 2
    Hacker known as Rey arrested in Jordan, reported cooperation with FBI●By now, many of you may have already read the news that Saif al-Din Khader, aka “Rey” and “Hikki-Chan,” has been arresteMmastodonTechnologyCybersecurity43 d ago

    Saif al-Din Khader, known online as "Rey" and "Hikki-Chan," has been arrested in Jordan, according to reporting by Reuters journalists Raphael Satter, Dana Winter and Aj Vicens. Accounts in the cybersecurity community are circulating the news, saying he is allegedly cooperating with the FBI. Details about the charges remain limited so far.

  3. 3
    Man posing as cybersecurity engineer exposed for doxxing women●This self-described "cybersecurity engineer" managed to trick women into providing their personal info, which he then poMmastodonTechnologyCybersecurity310 h ago

    A self-described cybersecurity engineer has been arrested after tricking women into handing over personal information, which he then published online. The case is drawing attention in information security circles, with commenters noting that a booking photo released last week is hardly the image the profession wants, and highlighting the harm caused by online harassment and data misuse against women.

  4. 4
    Fediverse users asked for advice on studying US law●Hi # Fediverse # lawyers . What is your advice/recommendations (classes? certifications?) for a non-lawyer who wants toMmastodonWorldLaw & Courts51 d ago

    A user asked lawyers on the Fediverse for recommendations on how a non-lawyer can gain practical knowledge of US and state law, including classes or certifications. The question drew engagement from the infosec community and touched on self-education in legal matters.

  5. 5
    Comparing Ireland's MyGovID with Denmark's CPR ID system●RE: https:// infosec.exchange/@cyberseckyle /117389340967928437 "Ireland's MyGovID and Denmark's CPR: A comparative analMmastodonTechnologyCybersecurity31 d ago

    A cybersecurity commentator has published a comparative analysis of Ireland's MyGovID and Denmark's CPR personal identifier systems, examining how the two countries handle digital identity. The piece touches on age verification, digital rights, GDPR and data protection, prompting discussion among privacy and security professionals about how national ID schemes balance convenience against citizen data risks.

  6. 6
    SilentRansomGroup emerges as new ransomware threat▼🚨New ransom group blog post!🚨 Group name: SilentRansomGroup Post title: A...n Sector: Unknown Info: https:// cti.fyi/groMmastodonTechnologyCybersecurity259 min ago

    A new ransomware group calling itself SilentRansomGroup has been profiled in a fresh threat intelligence write-up. The post lists the group's name and activity but leaves its targeted sector unknown, and details remain limited. Cybersecurity researchers are circulating the alert among threat intelligence and infosec communities as they track the group's emergence.

  7. 7
    GrapheneOS adds Secure Paste to block clipboard snooping●RE: https:// infosec.exchange/@lacze/117332 720535130953 System GrapheneOS otrzymał nową funkcję, która uniemożliwia aplMmastodonTechnologyMobile52 d ago

    GrapheneOS, the privacy-focused Android operating system, has rolled out a new feature called Secure Paste, which prevents apps from reading the contents of the clipboard. The system now lets users approve pasting on a per-app basis, blocking apps from silently harvesting clipboard data. The change is described as a significant security improvement, and it has drawn attention in the privacy and infosec community, where users welcome tighter control over what apps can access.

  8. 8
    Developer seeks feedback on age-rt low-latency encryption▼age-rt: seeking feedback on low-latency, variable-chunk, age-like encryption https:// infosec.pub/post/53217267MmastodonBusinessCrypto16 h ago

    A developer is asking the security community for feedback on age-rt, an encryption design inspired by the age file encryption format but built for low-latency streaming with variable chunk sizes. The proposal is being shared on Infosec Exchange, with discussion expected to focus on whether the design is sound and how it might fit real-time use cases.

  9. 9
    Security researchers flag possible phishing via Google Forms link▼Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/forms/d/e/1FAIpQLSdG7yXu_ZDhf6QvaUs82ZmhpdKddCu-go7ASE_KaMFLVqweMmastodonTechnologyCybersecurity27 h ago

    Cybersecurity analysts are warning about a possible phishing campaign hosted through a Google Forms link. The alert, shared on the social platform Mastodon, defuses the link and points to an automated URL analysis service so others can inspect the page before interacting with it. The warning is being circulated under phishing and infosec tags among the security community.

  10. 10
    ChainKeep targets timestamp tracking in digital investigations▼Every second matters in an investigation. ChainKeep makes sure every one of them is accounted for. ⏳ # ChainKeep # InfoSMmastodonTechnologyCybersecurity21 d ago

    ChainKeep, a tool aimed at digital forensics and incident response professionals, is being promoted with the message that every second matters in an investigation and that the software ensures every timestamp is accounted for. The pitch highlights chain-of-custody concerns in cybersecurity investigations, where accurate time records can determine whether evidence holds up. Discussion so far appears limited to infosec circles.

  11. 11
    Moderate authentication bypass flaw disclosed in Red Hat maestro gRPC broker▼CVE-2026-71297 is a moderate authentication bypass in the maestro gRPC broker used by Red Hat Advanced Cluster ManagemenMmastodonTechnologyCybersecurity11 d ago

    CVE-2026-71297 describes a moderate authentication bypass in the maestro gRPC broker used by Red Hat Advanced Cluster Management and the Multicluster Engine. An attacker holding a valid client certificate could read other consumers' event streams or forge agent status reports. Security trackers and infosec communities are circulating the disclosure, with no confirmed exploitation reported so far.

  12. 12
    Phishing site flagged impersonating Roundcube webmail●Possible Phishing 🎣 on: ⚠️hxxps[:]//roundcube-808[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6ac488213b77500MmastodonTechnologyCybersecurity23 h ago

    Security researchers have flagged a suspected phishing page hosted on a weebly.com subdomain mimicking Roundcube webmail. The URL has been defanged to prevent accidental clicks, and a public scan of the site has been published for others to review. The warning circulated among infosec communities, who shared it with tags for phishing, scam and cybersecurity awareness.

  13. 13
    SEC-T conference badge powers on with a safety pin●The SEC-T badge this year was so cool! Instead of turning on with a switch, closing the safety pin on the back is what lMmastodonTechnology33 d ago

    Attendees at the SEC-T security conference are praising this year's attendee badge, which lights up when a safety pin on its back is closed rather than using a power switch. The clever hardware design has drawn delighted reactions from the infosec community, with hackers sharing the inventive touch online.

  14. 14
    BSidesLimburg security conference set for March 2027 in Hasselt▼🆕 New event added: 📌 BSidesLimburg 📅 Mar 12, 2027 📍 Hasselt 🇧🇪 🔗 https://www. bsides-limburg.be # infosec # cybersecuritMmastodonTechnologyCybersecurity114 h ago

    A new edition of BSidesLimburg has been announced for March 12, 2027 in Hasselt, Belgium. The community-run cybersecurity conference is part of the global BSides series of information security events, and the announcement is circulating among infosec professionals tracking upcoming conferences.

  15. 15
    Open-source engine runs 125-billion parameter model on 12GB GPUs●Discover how the Strata open-source AI engine allows users to run the 125-billion parameter Qwen3.8-Flash-Next model onMmastodonTechnologyAI22 h ago

    An article circulating on Mastodon describes Strata, an open-source AI engine that reportedly lets users run the 125-billion parameter Qwen3.8-Flash-Next model on consumer GPUs with just 12GB of memory. The claim, shared via the infosec and tech community, is drawing attention for suggesting high-end models can run on ordinary hardware without expensive setups.

  16. 16
    Security Researchers Flag Suspected Phishing Site Impersonating University of Padua●Possible Phishing 🎣 on: ⚠️hxxps[:]//unipd[.]godaddysites[.]com 🧬 Analysis at: https:// urldna.io/scan/6ac4b8cb3b77500 00MmastodonTechnologyCybersecurity29 h ago

    Cybersecurity observers are warning about a suspected phishing site at unipd.godaddysites.com, a domain mimicking the University of Padua but hosted on a free GoDaddy site builder rather than the university's own infrastructure. The site has been submitted for technical analysis, and warnings are circulating in infosec communities urging users to avoid entering credentials on lookalike academic login pages.

  17. 17
    Security researchers flag phishing site impersonating Caixa▼Possible Phishing 🎣 on: ⚠️hxxps[:]//kolkatadekho[.]com/wp-content/plugins/webarx/es/caixa-vbvfinal/home 🧬 Analysis at: hMmastodonTechnologyCybersecurity117 h ago

    Cybersecurity researchers are warning about a phishing page hosted on a compromised WordPress site, mimicking Caixa's card verification service. The malicious page, found under a plugins directory, is designed to steal banking credentials. A full analysis of the fraudulent infrastructure has been published, and the warning is circulating among infosec professionals tracking scams targeting banking customers in Spanish-speaking regions.

  18. 18
    Security researcher flags phishing site on Weebly●Possible Phishing 🎣 on: ⚠️hxxps[:]//vfyflfcuon[.]weebly[.]com/ 🧬 Analysis at: https:// urldna.io/scan/6ac43a133b77500 00MmastodonTechnologyCybersecurity122 h ago

    A cybersecurity researcher has flagged a possible phishing page hosted on a Weebly subdomain, sharing the link in defanged form along with a public URL analysis on urldna.io. The post serves as a warning to the infosec community, allowing others to inspect the site's infrastructure without exposing themselves to the scam. Details about the phishing campaign's targets or scale were not provided.

  19. 19
    Security Researchers Flag Possible Phishing Site on GitBook▼Possible Phishing 🎣 on: ⚠️hxxp[:]//mtmskchrpmxtnsion[.]gitbook[.]io 🧬 Analysis at: https:// urldna.io/scan/6ac375363b775MmastodonTechnologyCybersecurity11 d ago

    Cybersecurity accounts are warning about a suspected phishing page hosted on a GitBook subdomain, sharing the address in defanged form so readers cannot accidentally click it. A scan link from the URL analysis service urlDNA has been attached, letting other researchers inspect the domain's infrastructure, hosting details and behaviour. The warning is circulating with standard tags like #phishing and #infosec.

  20. 20
    Suspected Amazon phishing site flagged by security analysts●Possible Phishing 🎣 on: ⚠️hxxps[:]//amazon-ten-gamma[.]vercel[.]app 🧬 Analysis at: https:// urldna.io/scan/6ac4c6d83b775MmastodonTechnologyCybersecurity111 h ago

    Cybersecurity researchers are warning about a suspected phishing site impersonating Amazon, hosted on a Vercel app domain. The URL has been defanged to prevent accidental clicks, and a technical analysis of the page has been published on UrlDNA. The warning circulates in infosec communities, with users urged to avoid entering Amazon credentials on unfamiliar domains and to verify URLs before logging in.

  21. 21
    New ASN AS206314 spotted in Gorzów Wielkopolski●ASN: AS206314 Location: Gorzów Wielkopolski, PL Added: 2026-10-02T17:13 # shodansafari # infosecMmastodonTechnologyCybersecurity111 h ago

    Autonomous system number AS206314 has been registered in Gorzów Wielkopolski, Poland, with records dating it to 2 October 2026. Cybersecurity watchers track newly announced ASNs because they can reveal fresh network infrastructure before it is fully characterised, and newly seen ranges are often scanned, mapped and assessed for security exposure.

  22. 22
    Fastweb host in Milan flagged on Shodan Safari●ASN: AS12874 Location: Milan, IT Added: 2026-09-30T16:12 # shodansafari # infosecMmastodonTechnologyCybersecurity19 h ago

    A newly added entry on the Shodan Safari watchlist points to AS12874, the network of Italian provider Fastweb, located in Milan, Italy, logged on 30 September 2026. Security watchers circulating the entry are highlighting freshly exposed or newly indexed systems on Italian infrastructure as part of ongoing discussions about what internet-wide scanning reveals.

  23. 23
    Mumbai network AS18229 flagged in infosec monitoring●ASN: AS18229 Location: Mumbai, IN Added: 2026-10-03T06:34 # shodansafari # infosecMmastodonTechnologyCybersecurity217 h ago

    Information security researchers are discussing AS18229, an autonomous system based in Mumbai, India, after it was added to monitoring feeds on 3 October 2026. The asn entry circulated among cybersecurity practitioners tracking newly visible networks and exposed internet-facing services, prompting conversations about what assets the network hosts and whether proper security configuration is in place.

  24. 24
    Researchers flag suspected phishing site on Cloudways-hosted domain▼Possible Phishing 🎣 on: ⚠️hxxps[:]//wordpress-1644952-6533726[.]cloudwaysapps[.]com 🧬 Analysis at: https:// urldna.io/scMmastodonTechnologyCybersecurity11 d ago

    Cybersecurity researchers are warning about a suspected phishing website hosted on a Cloudways application domain (wordpress-1644952-6533726.cloudwaysapps.com). A link analysis of the address has been published on URLDNA so others can inspect the site's infrastructure. The warning is being circulated in infosec communities with the standard advice to treat the domain as unsafe.

  25. 25
    Spell Orsterra challenge solved on Hack The Box●I just solved Spell Orsterra on Hack The Box! https:// labs.hackthebox.com/achievemen t/challenge/2026525/443 # HackTheBMmastodonTechnologyCybersecurity010 h ago

    A user has solved the Spell Orsterra challenge on Hack The Box, the online platform for cybersecurity and penetration testing practice. Completing individual challenges is a common milestone ethical hackers share publicly as proof of their skills, and such announcements circulate regularly in infosec communities.

  26. 26
    BSides Barcelona cybersecurity event set for October 2026●🆕 New event added: 📌 BSidesBarcelona 📅 Oct 30, 2026 📍 Barcelona 🇪🇸 🔗 https:// bsides.barcelona # infosec # cybersecurityMmastodonTechnologyCybersecurity114 h ago

    A new BSides Barcelona event has been added to the cybersecurity conference calendar, scheduled for October 30, 2026 in Barcelona, Spain. BSides events are community-run security conferences that take place in cities worldwide, offering talks and workshops for information security professionals. The announcement is being shared across infosec community channels as attendees plan for the event.

  27. 27
    New ASN entry spots AS6167 in San Luis Obispo●ASN: AS6167 Location: San Luis Obispo, US Added: 2026-10-02T16:16 # shodansafari # infosecMmastodonTechnologyCybersecurity120 h ago

    Cybersecurity watchers are logging network AS6167, registered to San Luis Obispo, California, after its addition to internet scanning records on 2 October 2026. The sighting was shared under infosec hashtags, as part of a routine pastime of tracking newly added autonomous system numbers to spot changes in internet infrastructure.

  28. 28
    Security researchers flag suspected phishing site on Weebly●Possible Phishing 🎣 on: ⚠️hxxps[:]//jpalominoh[.]weebly[.]com/ 🧬 Analysis at: https:// urldna.io/scan/6ac3fba73b77500 00MmastodonTechnologyCybersecurity117 h ago

    Cybersecurity observers are warning about a suspected phishing page hosted on a Weebly subdomain, jpalominoh.weebly.com. The site has been submitted for automated analysis via the URLDNA scanning service, with the alert circulating among infosec communities tagged under phishing, scam and cybersecurity. Details about who is targeted or what the fake page impersonates have not yet been disclosed.

  29. 29
    Ph0wn cybersecurity conference set for Sophia Antipolis in March 2027●🆕 New event added: @ ph0wn 📌 Ph0wn 📅 Mar 12-13, 2027 📍 Sophia Antipolis 🇫🇷 🔗 https:// ph0wn.org # infosec # cybersecuritMmastodonTechnologyCybersecurity114 h ago

    The Ph0wn cybersecurity conference has been announced for March 12-13, 2027 in Sophia Antipolis, France. Organisers say the dates and location are confirmed on the event's website. The announcement is being shared among information security professionals tracking upcoming industry conferences in Europe.

  30. 30
    Atlanta-hosted network AS63410 surfaces in internet scans●ASN: AS63410 Location: Atlanta, US Added: 2026-10-02T19:19 # shodansafari # infosecMmastodonTechnologyCybersecurity116 h ago

    The autonomous system AS63410, based in Atlanta in the United States, has been added to an internet-wide infrastructure scanning index as of 2 October 2026. Security researchers track such additions to spot newly exposed or re-registered networks. Little is known publicly about what services the network hosts or who operates it.

  31. 31
    New Warsaw network listing flags Polish ASN in cybersecurity circles●ASN: AS12912 Location: Warsaw, PL Added: 2026-10-02T15:32 # shodansafari # infosecMmastodonTechnologyCybersecurity118 h ago

    A newly registered entry for AS12912, an autonomous system based in Warsaw, Poland, dated 2 October 2026, is circulating among cybersecurity researchers who track internet-exposed devices and network infrastructure. The item carries the tags shodansafari and infosec, suggesting analysts are monitoring the network's exposure as part of routine scanning of newly added assets.

  32. 32
    AT&T-linked ASN AS7018 logged in Santa Clara●ASN: AS7018 Location: Santa Clara, US Added: 2026-09-30T05:27 # shodansafari # infosecMmastodonTechnologyCybersecurity121 h ago

    AS7018, the autonomous system number associated with AT&T, was logged with a location of Santa Clara, United States, with the entry timestamped 30 September 2026. The notation circulated among cybersecurity practitioners who track internet-exposed devices and network assets using Shodan, the search engine for connected hardware.

  33. 33
    Security researchers flag phishing site imitating Google domain●Possible Phishing 🎣 on: ⚠️hxxps[:]//googlelogos[.]com 🧬 Analysis at: https:// urldna.io/scan/6ac3f3d93b77500 002971c7b #MmastodonTechnologyCybersecurity120 h ago

    Cybersecurity researchers are warning about a phishing operation hosted at googlelogos.com, a domain designed to look like it belongs to Google. A public analysis of the URL has been shared on urlDNA, allowing other security professionals to inspect the site's behaviour. The warning is circulating in infosec communities, with users urged to treat the domain as unsafe and avoid entering credentials on it.

  34. 34
    Cybersecurity researchers flag fake DocuSign phishing site●Possible Phishing 🎣 on: ⚠️hxxp[:]//docusign-altroncommunications[.]webflow[.]io/ 🧬 Analysis at: https:// urldna.io/scan/MmastodonTechnologyCybersecurity11 d ago

    Security researchers are warning about a phishing site impersonating DocuSign, hosted on a Webflow domain that mimics the e-signature service. The suspicious link has been defanged to prevent accidental clicks, and a public URL analysis has been shared so others can inspect the site's infrastructure. Infosec communities are circulating the alert to help people avoid credential theft scams that use fake document-signing pages.

  35. 35
    Unistar-TELECOM network in Mexico City flagged on Shodan●ASN: AS8151 Location: Mexico City, MX Added: 2026-10-03T06:28 # shodansafari # infosecMmastodonTechnologyCybersecurity11 d ago

    A newly indexed entry on the Shodan search service lists AS8151, the autonomous system operated by Unistar-TELECOM in Mexico City, Mexico, with an addition timestamp of 6:28 UTC on October 3, 2026. The note circulated among cybersecurity practitioners using Shodan to browse for freshly exposed networks and services, a routine practice for spotting infrastructure changes.

  36. 36
    InfoCon updates security conference talk archives●A big batch of updates in our Security Conferences Archives at # InfoCon , everything should be up and seeding + web strMmastodonTechnologyCybersecurity21 d ago

    InfoCon, an archive of security conference presentations, has added a large batch of updates covering talks from hacker and infosec events. The organisation says everything is now available for download and web streaming, with improved streaming performance. It plans to update its skills and documentaries collections next. The archive is free to access at infocon.org.

  37. 37
    Infosec newcomer introduces themselves on Mastodon▼Hello Mastodon! I'm into Computer # Security , # Programming , # ReverseEngineering , # Hacking , # Linux , # AmateurRadMmastodonTechnologyCybersecurity174 d ago

    A newcomer has introduced themselves to Mastodon's infosec community, listing interests including computer security, programming, reverse engineering, hacking, Linux, cryptography, privacy, open source and amateur radio, with a focus on technology that helps people communicate. The post is drawing modest engagement from the security-focused corner of the decentralized social network.

  38. 38
    Cybersecurity Awareness Month opens with a call for better training●Happy National Cybersecurity Awareness Month! It’s the first Monday of the month, so let’s talk training. We can do bettMmastodonTechnologyCybersecurity11 d ago

    National Cybersecurity Awareness Month has begun, and information security professionals are marking the first Monday of the month by focusing on security awareness training. One message circulating in the infosec community argues that current training efforts fall short and that organisations "can do better," urging practitioners to keep pushing the message to employees and leadership throughout October.

  39. 39
    Shodan hunt flags Tokyo network ASN AS2514●ASN: AS2514 Location: Tokyo, JP Added: 2026-09-29T21:49 # shodansafari # infosecMmastodonTechnologyCybersecurity21 d ago

    A newly indexed entry on the Shodan search engine lists AS2514, an autonomous system number located in Tokyo, Japan, added on 29 September 2026. Infosec practitioners use such ASN listings to track exposed services across a network operator's address space and assess what is publicly reachable.

  40. 40
    Security flaw disclosed in AhsayCBS backup software●AhsayCBS https:// radar.offseq.com/threat/a-flaw -has-been-found-in-ahsay-ahsaycbs-up-to-1032-cve-2026-105134-a9f0def985MmastodonTechnologyCybersecurity31 d ago

    A vulnerability, tracked as CVE-2026-105134, has been reported in AhsayCBS, the backup software from Ahsay, affecting versions up to 10.3.2. The flaw was published on a threat-tracking service and is circulating among infosec communities, with security professionals flagging it for administrators who run Ahsay backup infrastructure. Details on severity and exploitation remain limited so far.