social.dk-libre.fr is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
On a une nouvelle menace cyber au boulot... des "spammeurs" qui créer des comptes sur des adresses mails existantes, ce qui envoi un mail a une personne tiers qui n'a rien demandé...
Le compte en lui même n'est pas créer, le mail est ignoré ou classé en spam par le réceptionnaire.
Mais je ne vois pas l'intérêt de faire cela, où est le gain ? quel est leur objectif ?
Le seul problème que je vois c'est de nous faire passer pour des spammeurs sur les gros hébergeur de mails (Microsoft et Google principalement) mais ils envoient les mails ailleurs aussi (sur plein de domaines différents...)
quelqu'un aurait une idée ou une explication plus plausible ?
English version
===
We have a new cyber threat at work... “spammers” who create accounts using existing email addresses, which then send emails to third parties who didn't ask for it...
The account itself isn't actually created, and the email is either ignored or marked as spam by the recipient.
But I don’t see the point of doing this, what’s in it for them? What’s their goal?
The only problem I see is that it makes us look like spammers to the major email providers (mainly Microsoft and Google), but they’re sending emails elsewhere too (to lots of different domains...)
Does anyone have a more plausible idea or explanation?
#BlackHat #USA 2026 | The 'Breaking' News: The #OpenAI–Hugging Face Incident
At this Black Hat USA 2026 talk, OpenAI #security engineers and researchers will reconstruct the OpenAI-Hugging Face incident and examine its implications for #AI security, #cyber #resilience , and alignment
https://www.darkreading.com/vulnerabilities-threats/bhusa26huggingfacetalk
In about 31 hours time, Trash Palace TV (@cyberboy666) will feature long-time Dyne friend Shu Lea Chung's 'Fresh Kill' for a full week.
Get Ready ...
On en est à quatre ou cinq modèles qui, soi-disant, auraient échappé à leurs constructeurs. Et visiblement, au lieu d'être un sujet de critiques, ça devient un argument marketing.
Quand est-ce qu'on en aura marre de ce sketch ?
#Microsoft developed a bespoke version of its cloud platform for @israel's “8200” unit : https://www.972mag.com/microsoft-8200-intelligence-surveillance-cloud-azure/
This ‘#cyber’ intelligence agency had already enabled a multiplication of human targets by a thousand for the war against Hamas in 2021: https://techhub.social/@estelle/111505251994013079
Certsign - the Dutch government goto-CA fucked up and accidentally kinda revoked an intermediate CA certificate.
Basically everything government related is affected.
(Translation in threat)
Added books big tracker link: https://bugzilla.mozilla.org/show_bug.cgi?id=2046230
Interesting article to read over the latest npm / python Malware.
Malware is now using triggering terms from biological and nuclear background to prevent analysis by LLM/ AI
#InfoSec #cyber #cybersecuriy #ai
H/t @spoonz