Mastodon Digest
for the past
scorer
threshold
Posts

they pavloving Microsoft employees dawg

Scott

"As a result of that access, the attackers were able to interact with Checkmarx’s GitHub environment and subsequently publish malicious code to certain artifacts," the company explains.

On April 22, as a result of their renewed access or month-long persistence, the attacker published malicious Docker images, VSCode and Open VSX extensions for Checkmarx’s KICS security scanner, which stole credentials, keys, tokens, and config files."

oh dear

bleepingcomputer.com/news/secu

Wiz got RCE on the cloud version of Github.com and access to every customer environment.

To do this they just reversed the on prem version and found a simple vuln.

wiz.io/blog/github-rce-vulnera

You know those Brother laser printers everyone tells you to buy? This one is 7 years old, has been in bubble wrap in storage for two years, and I've never touched the toner. Today I unwrapped it, plugged it in, and immediately printed 4 pages from my phone lol.
theverge.com/tech/641940/best-

Boosts

Apparently 28th April is Terry Pratchett Day, being his birthday an' all.

A person I never met, yet I still mourn his passing, for his works brought joy and comfort to myself and millions of others. Not to mention, as a teenager, a foundational education in society, politics, justice, and puns.

#TerryPratchettDay #GNUTerryPratchett #TerryPratchett

A