Togorot
@togorot.eurosky.social
đ€ 80
đ„ 146
đ 725
Oups. Ici pour les chats.
Bon vendredi, encore quelques heures avant le weekend !
3 days ago
3
22
7
reposted by
Togorot
InfoSec
6 days ago
TryHackMe â Checkmate | Full Walkthrough
loading . . .
TryHackMe â Checkmate | Full Walkthrough
Platform: TryHackMe Room: Checkmate Difficulty: Easy Category: Password Attacks / OSINT / Privilege Escalation Author: ShikhaliâŠ
https://infosecwriteups.com/tryhackme-checkmate-full-walkthrough-49a418a8e956
0
0
1
reposted by
Togorot
Emile `iMIl' Heitor
9 days ago
RTX 5080 + RTX 3090 Setup: 80+ Tok/s on Qwen 3.6 27B Q8
imil.net/blog/posts/2...
3
20
11
reposted by
Togorot
InfoSec
10 days ago
400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer
loading . . .
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit
https://thehackernews.com/2026/06/over-400-arch-linux-aur-packages.html
0
0
1
reposted by
Togorot
La France sur Bluesky/Eurosky
11 days ago
Eurosky lance
mu.social
â une nouvelle app de microblogging avec la possibilitĂ© d'Ă©diter ses posts, un fil de news configurable, et une vĂ©rification plus dĂ©mocratique (se basant notamment sur vos serviteurs). Et bien plus Ă venir!
add a skeleton here at some point
4
57
32
reposted by
Togorot
marc rees
12 days ago
ĂlectromĂ©nager, smartphone⊠la France veut faciliter lâimpression 3D des piĂšces dĂ©tachĂ©es indisponibles Un futur dĂ©cret veut obliger les fabricants Ă fournir les plans des vieux composants pour permettre leur impression en 3D. A lire dans
@linforme.com
www.linforme.com/tech-telecom...
loading . . .
ĂlectromĂ©nager, smartphone⊠la France veut faciliter lâimpression 3D des piĂšces dĂ©tachĂ©es indisponibles
Un futur décret veut obliger les fabricants à fournir les plans des vieux composants pour permettre leur impression en trois dimensions. Et ainsi encourager les réparations.
https://www.linforme.com/tech-telecom/article/electromenager-smartphone-la-france-veut-faciliter-l-impression-3d-des-pieces-detachees-indisponibles_4066.html
8
185
90
reposted by
Togorot
Emile `iMIl' Heitor
12 days ago
Thanks to this PR inspiration
github.com/NetBSDfr/smo...
smoler images are now automatically built and pushed to
ghcr.io
when a SMOLerfile is pushed to the repository. Current image list:
github.com/orgs/NetBSDf...
fetch it: ./
smoler.sh
pull <image>:latest run it: ./
smoler.sh
run <image>:latest
0
4
3
reposted by
Togorot
The New York Times
13 days ago
Before any worst-case scenarios occur, there are a few steps you can take right now to ensure nothing bad happens if your phone disappears. Here are the iPhone settings you should know about to keep your photos, your personal data, and your phone safe.
nyti.ms/3QtlPez
loading . . .
The 4 iPhone Security Settings You Should Turn On Right Now
https://nyti.ms/3QtlPez
1
52
15
reposted by
Togorot
Laurent Cheylus
19 days ago
Responsible Disclosure Policies are no longer effective because AI and LLMs have dramatically accelerated both Vulnerability Discovery and Exploit Development - Article by jericho
#Infosec
jericho.blog/2026/05/25/v...
loading . . .
Vulnerability Embargos Are Dead
Introduction When a researcher finds a security vulnerability that impacts more than one vendor, and they wish to coordinate disclosure with both, it creates a situation where an embargo must be puâŠ
https://jericho.blog/2026/05/25/vulnerability-embargos-are-dead/
0
0
1
reposted by
Togorot
InfoSec
19 days ago
New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare
loading . . .
New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare
https://thehackernews.com/2026/06/new-http2-bomb-vulnerability-allows.html
0
1
2
reposted by
Togorot
Seboss666
20 days ago
Oracle fait le mort sur MySQL, la communautĂ© s'organise pour sa survie : la fondation OurSQL est nĂ©e (Ă sa tĂȘte, rien de moins que le cofondateur de Percona, qui m'a grandement aidĂ© Ă mieux optimiser les perfs des installations de Mysql que j'ai pu avoir sous la main
goodtech.info/oursql-found...
)
loading . . .
đŁ SĂ©isme open source : la communautĂ© MySQL divorce dâOracle et crĂ©e sa fondation
Face au gel du développement par le propriétaire institutionnel, les géants de la base de données s'unissent pour sauver l'avenir de MySQL. Dites désormais OurSQL.
https://goodtech.info/oursql-foundation-gouvernance-independante-mysql-oracle-percona/
1
12
12
reposted by
Togorot
InfoSec
20 days ago
Linux kernel TLS ULP use-after-free in tls_sk_proto_close()
loading . . .
oss-sec: Linux kernel TLS ULP use-after-free in tls_sk_proto_close()
Posted by Oleg Sevostyanov on Jun 02 Hello oss-security, I am disclosing a Linux kernel vulnerability in the TLS ULP subsystem. Affected component: Linux kernel TLS ULP File: net/tls/tls_main.c Function: tls_sk_proto_close() Vulnerability type: Use-after-free / race condition Summary: There is a race between close() and setsockopt(SOL_TLS, TLS_TX) in the Linux kernel TLS ULP subsystem. Under certain interleavings, one thread can close a TLS socket while another...
https://seclists.org/oss-sec/2026/q2/786
0
0
3
reposted by
Togorot
InfoSec
20 days ago
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices
loading . . .
Russian spy agency says foreign spies turned officials' smartphones into surveillance devices
https://www.theregister.com/security/2026/06/02/russian-spy-agency-says-foreign-spies-turned-officials-smartphones-into-surveillance-devices/5250099
2
1
2
reposted by
Togorot
Next
20 days ago
CIFSwitch, nouvelle faille dâĂ©lĂ©vation de privilĂšges dans Linux
loading . . .
CIFSwitch, nouvelle faille dâĂ©lĂ©vation de privilĂšges dans Linux
Une importante faille de sĂ©curitĂ© a Ă©tĂ© dĂ©couverte dans Linux par un ingĂ©nieur en sĂ©curitĂ© de chez SpaceX. ExploitĂ©e, elle permet dâobtenir les droits root sur un compte local. Elle rĂ©sidait dans le noyau depuis 2007. La faille CIFSwitch fait parler dâelle depuis quelques jours. DĂ©couverte par Asim Viladi Oglu Manizada, ingĂ©nieur en sĂ©curitĂ© chez [âŠ]
http://dlvr.it/TSr6Nt
0
3
4
reposted by
Togorot
Laurent Cheylus
21 days ago
Slim(toolkit): an open-source Tools Suite to inspect, optimize and debug Containers - Analyze at runtime, identifies which files are actually used, and builds a minimal image with only those dependencies
#Containers
github.com/slimtoolkit/...
loading . . .
GitHub - slimtoolkit/slim: Slim(toolkit): Don't change anything in your container image and minify it by up to 30x (and for compiled languages even more) making it secure too! (free and open source)
Slim(toolkit): Don't change anything in your container image and minify it by up to 30x (and for compiled languages even more) making it secure too! (free and open source) - slimtoolkit/slim
https://github.com/slimtoolkit/slim
0
3
1
reposted by
Togorot
Hacker News
21 days ago
Bricks and Minifigs Stole a Man's $200k Lego Collection
https://mybricklog.com/blog/bricks-minifigs-corporate-stole-old-mans-200000-lego-collection
0
0
1
reposted by
Togorot
Hacker News
21 days ago
Codex just found a "workaround" of not having sudo on my PC
https://twitter.com/i/status/2060746160558543217
0
0
1
reposted by
Togorot
Guillaume
about 1 month ago
đł đ Docker Compose Tip #66 NFS volumes in one declaration! volumes: shared: driver: local driver_opts: type: nfs o: "addr=nfs.example.com,rw,nfsvers=4" device: ":/exports/shared" Shared storage across hosts.
lours.me/posts/compose-tip-066-volume-drivers-nfs/
#Docker
loading . . .
Docker Compose Tip #66: Volume drivers with NFS
Mount NFS shares as Compose volumes for shared storage across hosts using the built-in local driver
https://lours.me/posts/compose-tip-066-volume-drivers-nfs/
1
12
6
si.inc/posts/the-he...
loading . . .
How to Rack 30 Petabytes of Storage
We built the heap, a 30 petabyte data storage cluster in downtown San Francisco, and spent under $500,000.
https://si.inc/posts/the-heap/
about 1 month ago
0
0
0
reposted by
Togorot
Léαlinux đ§
about 1 month ago
pour la faille ptrace_may_access et le pidfd_getfd : echo 2 > /proc/sys/kernel/yama/ptrace_scope en attendant de mieux.
2
3
4
reposted by
Togorot
Laurent Cheylus
about 1 month ago
Un bon article pour renforcer sa configuration SSH : choix des algos pour l'Ă©change de clĂ©s, le chiffrement et lâauthentification, options Ă (dĂ©s)activer... - par Rodolphe BrĂ©ard
#Infosec
#Network
rodolphe.breard.tf/article/ma-c...
loading . . .
Ma configuration SSH
DĂšs lors quâon administre des serveurs Ă distance, SSH devient la norme. Le problĂšme câest que bien souvent la configuration par dĂ©faut nâest pas suffisamment sĂ©curisĂ©e. Voyons donc commentâŠ
https://rodolphe.breard.tf/article/ma-config-ssh/
0
12
11
I Left Port 22 Open on the Internet for 54 Days. Here's Who Showed Up.
loading . . .
I Left Port 22 Open for 54 Days: An SSH Honeypot Study
Field report from an SSH honeypot left open for 54 days: 269K login attempts, 48K unique passwords, and a surprising cast of attackers.
https://arman-bd.hashnode.dev/i-left-port-22-open-on-the-internet-for-54-days-here-s-who-showed-up
about 1 month ago
0
0
0
reposted by
Togorot
Xan LĂłpez
about 2 months ago
The European Commission (
@ec.europa.eu
) has updated the top follow buttons on its web page. Mastodon and Bluesky are in, X is out.
commission.europa.eu/index_en
11
4267
874
reposted by
Togorot
Jean-Marc Lafon
about 2 months ago
Comment des appels indésirables visent à capturer la signature acoustique de votre voix pour usurper ensuite votre identité. « Vous avez le droit de garder le silence. »
www.leparisien.fr/faits-divers...
loading . . .
Un simple « allΠ» peut suffire : câest quoi lâarnaque aux appels silencieux, en plein essor avec lâintelligence artificielle ?
DerriÚre certains appels silencieux se cacherait une nouvelle technique utilisée par des cybercriminels pour identifier les numéros actifs e
https://www.leparisien.fr/faits-divers/un-simple-allo-peut-suffire-cest-quoi-larnaque-aux-appels-silencieux-en-plein-essor-avec-lintelligence-artificielle-06-05-2026-6OI7YA5VLRB37CPI3DBXX3BCWI.php
8
77
85
reposted by
Togorot
Yves "Yorzian" Rougy
about 2 months ago
Et c'est reparti...
github.com/V4bel/dirtyf...
LPE Linux de la mĂȘme veine que
copy.fail
. Il faut blacklister les modules esp4 esp6 et rxrpc en attendant un correctif. Un fichier dans modprobe.d avec "install esp4 /bin/false" et pareil pour esp6 et rxrpc doit bloquer l'exploit.
loading . . .
GitHub - V4bel/dirtyfrag
Contribute to V4bel/dirtyfrag development by creating an account on GitHub.
https://github.com/V4bel/dirtyfrag
2
16
13
reposted by
Togorot
Emile `iMIl' Heitor
about 2 months ago
CVE-2026-7270: root on FreeBSD with a shell script :(
blog.calif.io/p/cve-2026-7...
loading . . .
CVE-2026-7270: How I Get Root on FreeBSD with a Shell Script
My human dropped me into a FreeBSD kernel source tree and asked me to find bugs.
https://blog.calif.io/p/cve-2026-7270-how-i-get-root-on-freebsd
4
14
15
reposted by
Togorot
Léαlinux đ§
about 2 months ago
security.scaleway.com?tcuUid=77cb6...
"Incident was caused by faulty logic in the permission check of the contact edition endpoint. This flaw allowed a threat actor to update any contact-related field by targeting any account ID using HTTP query parameter manipulation. It was mainly a blind attack"
loading . . .
Scaleway Trust Center | Powered by SafeBase
See how Scaleway manages their security program with SafeBase.
https://security.scaleway.com/?tcuUid=77cb65ef-456b-45a5-99b7-27eae316a112
0
4
4
reposted by
Togorot
Le Pavé numérique
about 2 months ago
Les enfants britanniques, jamais à court de ressources, se dessinent de fausses moustaches sur le visage pour contourner les systÚme de vérification d'ùge.
loading . . .
Some children are drawing on fake moustaches to bypass online age checks, report says
A third of children in the UK have bypassed age verification gates, research from Internet Matters suggests
https://www.the-independent.com/news/uk/home-news/children-bypassing-age-verification-social-media-b2968803.html
1
42
31
reposted by
Togorot
Mathieu M.J.E. Rebeaud
about 2 months ago
Excusez moi mais JE RIS SI FORT PUTAIN DE GLANDS. Claude-powered AI coding agent deletes entire company database in 9 seconds â backups zapped, after Cursor tool powered by Anthropic's Claude goes rogue
www.tomshardware.com/tech-industr...
loading . . .
Claude-powered AI coding agent deletes entire company database in 9 seconds â backups zapped, after Cursor tool powered by Anthropic's Claude goes rogue
PocketOS founder blames âCursor running Anthropic's flagship Claude Opus 4.6â plus Railwayâs infrastructure for data disaster.
https://www.tomshardware.com/tech-industry/artificial-intelligence/claude-powered-ai-coding-agent-deletes-entire-company-database-in-9-seconds-backups-zapped-after-cursor-tool-powered-by-anthropics-claude-goes-rogue
25
285
122
reposted by
Togorot
Hacker News
about 2 months ago
China blocks Meta's $2B purchase of AI startup Manus
https://finance.yahoo.com/sectors/technology/articles/china-blocks-foreign-acquisition-ai-082548254.html
0
0
1
@yrougy.bsky.social
Pouet, dis on peut encore choper des PiDP-8 comme tu as ? Câest pour un ami đŹ
about 2 months ago
1
0
0
reposted by
Togorot
Le Gorafi
2 months ago
Pour remplacer son PDG, Apple annonce la sortie du Tim Cook Pro
https://www.legorafi.fr/2026/04/21/pour-remplacer-son-pdg-apple-annonce-la-sortie-du-tim-cook-pro/
loading . . .
Pour remplacer son PDG, Apple annonce la sortie du Tim Cook Pro
Toute l'information selon des sources contradictoires.
https://www.legorafi.fr/2026/04/21/pour-remplacer-son-pdg-apple-annonce-la-sortie-du-tim-cook-pro/
3
119
25
reposted by
Togorot
bresso.bsky.social
2 months ago
Soutenons Jacques et les Ukrainiens, c'est important !!!
add a skeleton here at some point
0
5
5
La diversification.
add a skeleton here at some point
2 months ago
0
0
0
reposted by
Togorot
Nidouille
2 months ago
Le code source des deux ordinateurs module de commande et mode lunaire AGC (Apollo Guidance Computer) de la mission Appolo 11 est disponible sur Github.
github.com/chrislgarry/...
Il existe aussi un ordinateur virtuel de l'AGC.
github.com/virtualagc/v...
5
33
12
reposted by
Togorot
Electronic Frontier Foundation
2 months ago
After almost twenty years on the platform, EFF is logging off of X. This isnât a decision we made lightly, but it might be overdue. đ§” (1/5)
www.eff.org/deeplinks/2...
loading . . .
EFF is Leaving X
After almost twenty years on the platform, EFF is logging off of X. This isnât a decision we made lightly, but it might be overdue.
https://www.eff.org/deeplinks/2026/04/eff-leaving-x
519
14935
3145
reposted by
Togorot
404 Media
2 months ago
NEW: The FBI was able to forensically extract copies of incoming Signal messages from a defendantâs iPhone, even after the app was deleted, because copies of the content were saved in the deviceâs push notification database, multiple people present for FBI testimony in a trial told 404 Media.
loading . . .
FBI Extracts Suspectâs Deleted Signal Messages Saved in iPhone Notification Database
The case was the first time authorities charged people for alleged âAntifaâ activities after President Trump designated the umbrella term a terrorist organization.
https://www.404media.co/fbi-extracts-suspects-deleted-signal-messages-saved-in-iphone-notification-database-2/
15
700
434
reposted by
Togorot
Léαlinux đ§
3 months ago
Oh bordel... ta derivation key qui derive pas trop... Marrez-vous, mais 'dĂ©jĂ vu cela dans une autre implĂ©mentation sur du matĂ©riel crypto oĂč la passphrase "secrĂšte" Ă©tait >24 octets et qu'en desassemblant le code, tu vois que le code n'utilise que le [0]. Allez, zou, une rainbow-table facile.
2
13
5
reposted by
Togorot
xÉŠÎÆŠÒ đ
3 months ago
RĂ©my, Ă©lectricien et YouTubeur de la chaine des disjonctĂ©s a publiĂ© une vidĂ©o sur les diffĂ©rents types de cĂąbles 8P8C (ou RJ45). Il prĂ©sente toutes les catĂ©gories de cĂąbles, les frĂ©quences, noyaux, blindage... Faut-il mettre du cĂąble CatĂ©gorie 7 qui coĂ»te une blinde ? VoilĂ qui devrait vous aider Ă âŠ
loading . . .
Quelle catégorie de cùble RJ45 utiliser : Cat6 Cat7 ?
RĂ©my, Ă©lectricien et YouTubeur de la chaine des disjonctĂ©s a publiĂ© une vidĂ©o sur les diffĂ©rents types de cĂąbles 8P8C (ou RJ45). Il prĂ©sente toutes les catĂ©gories de cĂąbles, les frĂ©quences, noyaux, blindage... Faut-il mettre du cĂąble CatĂ©gorie 7 qui coĂ»te une blinde ? VoilĂ qui devrait vous aider Ă remplacer vos cĂąbles tĂ©lĂ©phoniques PTT298, [âŠ]
https://blogmotion.fr/internet/divertissement/difference-categorie-cable-rj45-cat6-cat7-22096
2
0
1
reposted by
Togorot
đšđŠ đđšđŠ
3 months ago
#Caturday
330
23565
3802
reposted by
Togorot
Forbes
3 months ago
iOS 18.7.7âMillions Of iPhone Users Suddenly Given New Upgrade Choice
loading . . .
iOS 18.7.7âMillions Of iPhone Users Suddenly Given New Upgrade Choice
In an unprecedented move, Apple has issued iOS 18.7.7 to all iPhones â including those that can update to its newer software iOS 26. Here's what you need to know.
https://www.forbes.com/sites/kateoflahertyuk/2026/04/02/ios-1877-all-iphone-users-suddenly-given-new-upgrade-choice/?utm_source=bluesky&utm_medium=social&utm_campaign=forbes
1
15
8
0 day made easy âŠ
loading . . .
Nicholas Carlini - Black-hat LLMs | [un]prompted 2026
YouTube video by unprompted
https://youtu.be/1sd26pWhfmg?is=OT8fnNhzjNWwxHgQ
3 months ago
1
0
0
reposted by
Togorot
Léαlinux đ§
3 months ago
easydns.com/blog/2026/04...
dig TXT
google.fr
--id-card ~/.identity.jpg
loading . . .
Age Verification Now Required For DNS Resolution - easyDNS
In anticipation various age verification legislation bills, both here in Canada and in the US, we've made the decision to unilaterally and proactively enforce age verification at the DNS resolution le...
https://easydns.com/blog/2026/04/01/age-verification-now-required-for-dns-resolution/
2
7
3
reposted by
Togorot
Bearstech
3 months ago
â ïž Une supply chain attack sur Axios (+70 millions de dl par semaine). (Zi) Deux versions de la bibliothĂšque ont Ă©tĂ© publiĂ©es sur npm le 31 mars 2026. Les versions compromises installent discrĂštement un cheval de Troie permettant un accĂšs Ă distance sur macOS, Windows et Linux.
0
9
20
reposted by
Togorot
Carl Quintanilla
3 months ago
loading . . .
196
15930
5028
reposted by
Togorot
Nidouille
3 months ago
Scandale chez Super Micro : le cofondateur Wally Liaw arrĂȘtĂ© pour une fraude Ă 2,5 milliards $ ! Il aurait dĂ©tournĂ© des serveurs Nvidia vers la Chine via faux documents et serveurs factices. Lâaction sâeffondre.
hardwareand.co/actualites/b...
loading . . .
Scandale chez Super MicroâŻ: son cofondateur arrĂȘtĂ© avec deux complices pour une fraude de grande ampleurâŻ!
Ce n'est pas juste une petite magouille que deux employés de Super Micro et un complice auraient mise au point afin de vendre à la Chine de puissants serveurs.
https://hardwareand.co/actualites/breves/scandale-chez-super-micro-son-cofondateur-arrete-avec-deux-complices-pour-une-fraude-de-grande-ampleur
1
27
15
reposted by
Togorot
Lorenzo Franceschi-Bicchierai
3 months ago
SCOOP: Someone has found new samples of the iPhone spyware DarkSword and published them on GitHub, putting millions of iOS users at risk. A cybersecurity researcher told us that the leaked spyware is "way too easy to repurpose" and "we need to expect criminals and others to start deploying this."
loading . . .
Someone has publicly leaked an exploit kit that can hack millions of iPhones | TechCrunch
Leaked "DarkSword" exploits published to GitHub allow hackers and cybercriminals to target iPhone users running old versions of iOS with spyware, according to cybersecurity researchers.
https://techcrunch.com/2026/03/23/someone-has-publicly-leaked-an-exploit-kit-that-can-hack-millions-of-iphones/
7
103
96
reposted by
Togorot
Bearstech
3 months ago
"L'Allemagne impose l'ODF et exclut le format Microsoft : la souverainetĂ© numĂ©rique commence par vos fichiers" đ
www.clubic.com/actua...
1
59
29
reposted by
Togorot
Pierre Col
3 months ago
0
3
1
reposted by
Togorot
Le Gorafi
3 months ago
La mort est Chuck Norris Ă 86 ans
https://www.legorafi.fr/2026/03/20/la-mort-est-chuck-norris-a-86-ans/
loading . . .
La mort est Chuck Norris Ă 86 ans
Toute l'information selon des sources contradictoires.
https://www.legorafi.fr/2026/03/20/la-mort-est-chuck-norris-a-86-ans/
13
219
54
Load more
feeds!
log in