Goupil
@furaxfox.bsky.social
210 followers 400 following 75 posts
Parceque ! (mes opinions n'engagent que moi) Ailleurs en ligne: http://goupilland.net http://github.com/FuraxFox/ http://mastodon.acm.org/@FuraxFox
Posts Media Videos Starter Packs
Reposted by Goupil
cert-fr.bsky.social
Dans son dernier bulletin d'actualité, le CERT-FR revient sur certaines vulnérabilités significatives de la semaine dernière.
https://www.cert.ssi.gouv.fr/actualite/CERTFR-2025-ACT-042/
furaxfox.bsky.social
And when strategic choices make the organisation fragile, it is not only IT which suffers but the whole organization and its partners.
furaxfox.bsky.social
The impact of a serious cyber attack is not about IT it is about business. And restoring full business function after an emergency interruption can be very, VERY, long.

Cyber-resilience is not just an IT problem, and it has to be dealt with as an organisation level strategy.
furaxfox.bsky.social
...Anybody who has been in the trenches of these incidents will tell you that two things happen: your business IT has a heart attack, and paying does not equal restoration. In almost every case, even with payment, restoration takes weeks to months[...]
furaxfox.bsky.social
[...]Many organisations think IT disaster recovery plans deal with ransomware. It doesn’t. [...]. I’ve talked to business after business after business whose real plan with ransomware is simply: the insurance covers it, we’d pay. ...
Reposted by Goupil
lauriewired.bsky.social
Virtual Machines render fonts. It’s kind of insane.



TrueType has its own instruction set, memory stack, and function calls.



You can debug it like assembly. It’s also exploitable:
Reposted by Goupil
legrugru.fr
Sa très belle exposition avait été installée à Besançon. La Russie est un état terroriste.
noelreports.com
A French journalist, Anthony Lallikan, was killed by a Russian FPV drone strike near Druzhkivka. His colleague, Hryhorii Ivanchenko from the Kyiv Independent, was wounded in the same attack.
Reposted by Goupil
cert-fr.bsky.social
Dans son dernier bulletin d'actualité, le CERT-FR revient sur certaines vulnérabilités significatives de la semaine dernière.
https://www.cert.ssi.gouv.fr/actualite/CERTFR-2025-ACT-041/
Reposted by Goupil
cert-fr.bsky.social
⚠️ Alerte CERT-FR ⚠️

Les vulnérabilités CVE-2025-20362 et CVE-2025-20333 sont activement exploitées sur Cisco ASA et FTD.
Un attaquant non authentifié peut exécuter du code arbitraire à distance.

www.cert.ssi.gouv.fr/alerte/CERTF...
Reposted by Goupil
lauriewired.bsky.social
This processor doesn’t (officially) exist.



Pre-production Engineering Samples sometimes make it into the grey market.



Rarer still are Employee Loaner Chips.

Ghosts abandoned before ever becoming products:
Reposted by Goupil
antoinehasday.bsky.social
Enquête pour @numerama.com: comment Rohan Rane, fondateur de l'organisation CVLT incarcéré en France, a posé les bases méthodologiques et idéologiques d'une vague mondiale de cyber-sextortion sadique, qui a ciblé des centaines de mineures. Le fondateur de 764 a ainsi été "formé" au sein de CVLT.
Reposted by Goupil
occrp.org
Russia has become the largest single-country buyer of Ecuadorian bananas, purchasing 1.5 million metric tons during 2024 and the first half of 2025.

How is it related to global diversification of cocaine trafficking routes? 🤔
Reposted by Goupil
lauriewired.bsky.social
SSDs are pretty reliable in a technical sense.


That is, unless you make a really, really bad mistake in firmware.

HP had a line of ~20 different Enterprise SSD models for datacenter use.


In exactly 3 years, 270 days and 8 hours, every one is irrecoverably bricked.
Reposted by Goupil
nolimitsecu.bsky.social
#Podcast #Cybersécurité

Épisode #513 consacré à l'outil de cartographie open source Mercator, avec son créateur Didier Barzin

www.nolimitsecu.fr/mercator/
Mercator - NoLimitSecu
Episode #513 consacré à Mercator Avec Didier Barzin
www.nolimitsecu.fr
Reposted by Goupil
cert-fr.bsky.social
Dans son dernier bulletin d'actualité, le CERT-FR revient sur certaines vulnérabilités significatives de la semaine dernière.
https://www.cert.ssi.gouv.fr/actualite/CERTFR-2025-ACT-040/
Reposted by Goupil
artefr.bsky.social
Seuls des rois de la cryptanalyse pouvaient percer le mystère des lettres codées d'une reine ✍️
Reposted by Goupil
romanad.bsky.social
In-depth investigation from the BBC, which infiltrated a disinformation operation to interfere in the Moldovan elections.

This operation is coordinated remotely by pro-Russian actors through Telegram.
www.bbc.co.uk/news/article...
How Russian-funded fake news network aims to disrupt European election - BBC investigation
An undercover reporter discovers a network is offering to pay for social media posts undermining Moldova’s ruling party.
www.bbc.co.uk