Other social media profiles:
Mastodon: @[email protected]
LinkedIn: https://www.linkedin.com/in/christopherkunz/
By far the most accounts are on Googlemail (n=240736), followed by Proton (n=43319). 9th most popular is DNMX (n=2077), followed by the long tail (n=12418).
By far the most accounts are on Googlemail (n=240736), followed by Proton (n=43319). 9th most popular is DNMX (n=2077), followed by the long tail (n=12418).
Here's hoping that Bluesky won't suffer the same fate of enshittification.
Here's hoping that Bluesky won't suffer the same fate of enshittification.
Let's try and crowdsource this. A couple candidates are a given:
- Fortinet, the 2025 winner
- Ivanti, the runner-up
One comment for each vendor who you'd like to include, and I'll try to count each "like" for that comment as one vote for the vendor.
Let's try and crowdsource this. A couple candidates are a given:
- Fortinet, the 2025 winner
- Ivanti, the runner-up
One comment for each vendor who you'd like to include, and I'll try to count each "like" for that comment as one vote for the vendor.
cku.gt/appbingo25
cku.gt/appbingo25
% wc -l REDHAT_GIT_LS.txt
37665671 REDHAT_GIT_LS.txt
% wc -l REDHAT_GIT_LS.txt
37665671 REDHAT_GIT_LS.txt
Time will tell what happens, and I'll update the article as soon as official info is out.
Time will tell what happens, and I'll update the article as soon as official info is out.
heise.de/-10354324
Wenn sich was tut, versuche ich noch zu updaten.
heise.de/-10354324
Wenn sich was tut, versuche ich noch zu updaten.
cku.gt/appbingo25
cku.gt/appbingo25
www.spiegel.de/ausland/le-p...
www.spiegel.de/ausland/le-p...
Three vendors down, three to go. We're halfway there!
Three vendors down, three to go. We're halfway there!
There's a bunch of new CVEs, at least one of them critical. There's an attack campaign against unsecured web UIs. Aaaand there's a leak of fifteen thousand config files plus VPN passwords. I took a closer look here: www.heise.de/en/news/Unkn...
There's a bunch of new CVEs, at least one of them critical. There's an attack campaign against unsecured web UIs. Aaaand there's a leak of fifteen thousand config files plus VPN passwords. I took a closer look here: www.heise.de/en/news/Unkn...
FortiNet admins: Go and patch your stuff. This is being exploited ITW.
FortiNet admins: Go and patch your stuff. This is being exploited ITW.
To any of the people who wrote said items: Have you tried the attack vector?
I have, and I cannot reproduce the attack. There are various screen shots here: heise.de/-10234666
Is this a hoax? Fixed?
To any of the people who wrote said items: Have you tried the attack vector?
I have, and I cannot reproduce the attack. There are various screen shots here: heise.de/-10234666
Is this a hoax? Fixed?
I fleshed this out a little more. You can find the (In)Security Appliance Bingo 2025 in proper, two-dimensional form here:
cku.gt/appbingo25
Suggestions and submissions very welcome.
I fleshed this out a little more. You can find the (In)Security Appliance Bingo 2025 in proper, two-dimensional form here:
cku.gt/appbingo25
Suggestions and submissions very welcome.
✅ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
✅ Palo Alto
(X means pwned, check mark means "not pwned yet".)
Only new vulns, only critical vulns. Vendor CVSS score counts unless it's clearly wrong.
✅ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
✅ Palo Alto
(X means pwned, check mark means "not pwned yet".)
Only new vulns, only critical vulns. Vendor CVSS score counts unless it's clearly wrong.
❌ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
✅ Palo Alto
(X means pwned, check mark means "not pwned yet".)
Only new vulns, only critical vulns. Vendor CVSS score counts unless it's clearly wrong.
❌ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
✅ Palo Alto
(X means pwned, check mark means "not pwned yet".)
Only new vulns, only critical vulns. Vendor CVSS score counts unless it's clearly wrong.
❌ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
(X means pwned, check mark means "not pwned yet".)
❌ SonicWall
❌ Ivanti
✅ Cisco
✅ Sophos
✅ FortiGate
(X means pwned, check mark means "not pwned yet".)