Sign in

Layer 8½

@mbrookspetersen.eurosky.social
82 followers 138 following 449 posts

Cybersecurity Awareness & Culture Specialist. Posting about general #infosec and people stuff. Blog: layer8-half.leaflet.pub Opinions are my own. Profile pic by rpg.actor

PostsRepliesMedia
Layer 8½ @layer8-half.mu.social · 1m
Good.
000
Reposted by Layer 8½
Sifa ID @sifa.id · 6h
DON'T scan your face (or ID card) for ANY non-government online service.
Proton post:

DON'T scan your face for Roblox.
DON'T scan your face for Discord.
DON'T scan your face for Twitter.
DON'T scan your face for YouTube.
DON'T scan your face for Instagram.
DON'T scan your face for Reddit.
DON'T scan your face for Spotify.
DON'T scan your face for Twitch.
2267
Reposted by Layer 8½
IFIN @ifin-intel.org · 6h
I'm tired, boss. A new #Citrix CVE affecting SAML IdP/SP-configured devices is out. ifin.network/t/cve-2... #ThreatIntel #ThreatIntelligence #IFIN
ifin.network
CVE-2026-107406: Somehow, Another Citrix Netscaler SAML Vulnerability
Last Updated: 2026-10-08T21:02:44Z (UTC) What’s Happening Another critical vulnerability in Citrix Netscaler ADCs/Gateways has been published. This CVSS4 9.5 issue is a memory overflow leading to either denial-of-service or remote code execution. No evidence of exploitation is yet public, per Citrix’s advisory. They have published an accompanying blog post with little additional information. Affected Versions and Preconditions Broadly, the vulnerability affects devices configured as SAML...
273
Reposted by Layer 8½
Microsoft Threat Intelligence @threatintel.microsoft.com · 6h
Post-quantum cryptography readiness goes beyond protecting encrypted data. Authentication systems must evolve, too, and organizations should start preparing now. msft.it/63322aUwiY
msft.it
Post-quantum authentication: Why organizations should start testing certificate ecosystems now | Microsoft Security Blog
Prepare for post-quantum authentication by testing certificate ecosystems now. Learn how Microsoft’s PQC TLS Pilot Program helps advance future readiness.
142
Reposted by Layer 8½
AlexSa @netalexx.bsky.social · 6h
A Single POST Freezes Any Next.js Server
simonkoeck.com
CVE-2026-23870: A Single POST Freezes Any Next.js Server | Simon Koeck
To rebuild one submitted form, React scanned every field in the request once for each reference it contained. Nothing capped either number, so one 900 KB POST makes the server do 100 million checks an...
011
Layer 8½ @layer8-half.mu.social · 8h
Wait, what? To be clear: Not RSA etc but generally asymmetric crypto? Like ML-KEM? But I mean, who even is this Matthew Green? Oh… Oh no.
121
Reposted by Layer 8½
Bailey Townsend 🦀 @pds.dad · 9h
Curious as I think on this more. Did you know what atproto was when you joined Bluesky? I personally did not, I had heard it was maybe open source and a different micro blogging experience that was also familiar.
39634
Reposted by Layer 8½
Lilith Wittmann @lilithwittmann.bsky.social · 13h
Wenn ich richtig gezählt habe, ist das der 4. Datenschutzvorfall bei nius seit Anfang 2025. Diesmal mutmaßlich mit allen Userdaten und dem ganzen Redaktionssystem. Hat es so in Deutschland so auch noch nicht gegeben. correctiv.org/aktuelles/da...
correctiv.org
Daten-Leak bei Nius – Nutzerdaten, Finanzen und Redaktionssystem liegen ungeschützt im Netz
Neues Daten-Leck bei Nius: Einsehbar sind Adressen von Lesern, Zahlen zu Abo-Einnahmen und umfassende Auszüge aus dem Redaktionssystem.
12283102
Reposted by Layer 8½
Taggart @taggart-tech.com · 13h
It's finally done. My rewrite of Python for Defenders for 2026 is live! taggartinstitute.org... If you want to learn Python the way cybersecurity professionals should, this is the course for you. And oh yeah, #NoAI was used or is recommended.
taggartinstitute.org
Course Catalog
Python For Defenders The Bad Guys Code. So Should You. Updated for 2026! Adding Python programming to your defensive skillset makes you a formidable adversary. Whether it’s vastly increasing the efficiency of common procedures, or adding new capabilities to the entire team, Python in Jupyter Notebooks completely transforms what’s possible for a security operations team. Become the defender who can use use these skills to your advantage. This course is separated into two parts. Part 1 explo...
194
Reposted by Layer 8½
Byron Tau @byrontau.bsky.social · 15h
"Freedom from persistent, dragnet-style surveillance while in public…is a reasonable expectation," a federal judge finds in weighing whether license plate readers constitute a search under the Fourth Amendment. reason.com/2026/10/07/j...
reason.com
Judge says warrantless Flock search violated driver's Fourth Amendment rights
This is the second federal court decision in a little over a week to suggest that driver surveillance systems can go too far.
25526
Reposted by Layer 8½
Bob Lord @boblord.bsky.social · 16h
Manufacturers vs. Operators: We never confuse an automaker with the driver. Drivers have real duties: maintenance, speed limits, seat belts. Designing out a defect is not one of them, and when a defect injures the driver, the automaker answers for it.
Poker sized card titled "Manufacturers vs. Operators" containing the text in the post.
182
Reposted by Layer 8½
Layer 8½ @layer8-half.mu.social · 20h
Babe, wake up! A new term for security awareness just dropped! Anyway: 𝗛𝗮𝗽𝗽𝘆 𝗦𝗲𝗰𝘂𝗿𝗲 𝗕𝗲𝗵𝗮𝘃𝗶𝗼𝗿 𝗠𝗮𝗻𝗮𝗴𝗲𝗺𝗲𝗻𝘁 𝗠𝗼𝗻𝘁𝗵 to evetyone who celebrates 🎉🎉🎉 (according to Gartner apparently) 🧵1/3
101
Layer 8½ @layer8-half.mu.social · 17h
They Talk Tech – mit Eckert und Wolfangel: Voice Phishing und das Problem sitzt nicht vorm Rechner - mit Prof. Angela Sasse Was für ein großartiges Plädoyer für menschzentrierte IT. Bin ja immer froh, wenn ich mir das nicht selber ausdenken muss, sondern es echte Fachleute wie Angela Sasse gibt.
frauen-technik.podigee.io
Voice Phishing und das Problem sitzt nicht vorm Rechner - mit Prof. Angela Sasse
„Hallo, hier die IT, wir migrieren gerade den Login." Ein Anruf auf Niederländisch, eine nachgebaute Anmeldeseite, ein Callcenter-Account. Mehr brauchte es nicht, um beim Telekom-Anbieter Odido die Daten von über sechs Millionen Menschen abzuziehen. Kein Deepfake, keine KI - Svea erzählt, wie ShinyHunters vorgehen, warum die niederländische Polizei den Anruf im Fernsehen abspielte und was das FBI damit zu tun hat. Danach Angela Sasse, Professorin für Human-Centred Security in Bochum. 1999 schrieb sie „Users are not the enemy", bis heute einer der meistzitierten Texte des Fachs. Ihre These: Awareness-Training ist meist das Billigste, nicht das Wirksamste. Warum Passwörter ein Relikt sind, was Passkeys besser machen und wieso Eva selbst auf eine Test-Phishing-Mail geklickt hat. Mit Svea Eckert und Eva Wolfangel Musik und Produktion: Marko Pauli Odido-Hack: Mehr als sechs Millionen Betroffene (TechCrunch): https://techcrunch.com/2026/02/13/dutch-phone-giant-odido-says-millions-of-customers-affected-by-data-breach/ Die Polizei spielt die Stimme des Anrufers im Fernsehen ab (NOS): https://nos.nl/l/2622288 Zack Whittaker: Fear the phone call, die großen Vishing-Fälle der letzten Monate: https://this.weekinsecurity.com/fear-the-phone-call-hackers-are-calling-for-your-personal-data/ Der Angriff auf das FBI-Bewerbungsportal (Help Net Security): https://www.helpnetsecurity.com/2026/09/28/fbi-job-portals-offline-shinyhunters-breach/ Angela Sasse an der Ruhr-Universität Bochum: https://casa.rub.de/en/news/casa/news/angela-sasse-is-considered-a-pioneer-of-usable-security Adams und Sasse (1999): Users Are Not the Enemy: https://doi.org/10.1145/322796.322806 Selling Satisfaction, die Studie zu den Versprechen der Awareness-Anbieter: https://doi.org/10.1145/3658644.3690196 Passkeys und FIDO2, erklärt: https://fidoalliance.org/passkeys/ Law4school, das Webinar-Programm von Gesa von Schwerin: https://www.law4school.de
100
Reposted by Layer 8½
Kevin Beaumont @doublepulsar.com · 18h
If you enjoy me ranting about ransomware cyberplace.social/@GossiTheDog...
cyberplace.social
Kevin Beaumont (@GossiTheDog@cyberplace.social)
I dunno if people remember the ransomware economy thread I had on Twitter years ago, but one of the things I covered is all the “ransomware recovery” vendors who secretly pay ransomware groups and pre...
1254
Layer 8½ @layer8-half.mu.social · 20h
Babe, wake up! A new term for security awareness just dropped! Anyway: 𝗛𝗮𝗽𝗽𝘆 𝗦𝗲𝗰𝘂𝗿𝗲 𝗕𝗲𝗵𝗮𝘃𝗶𝗼𝗿 𝗠𝗮𝗻𝗮𝗴𝗲𝗺𝗲𝗻𝘁 𝗠𝗼𝗻𝘁𝗵 to evetyone who celebrates 🎉🎉🎉 (according to Gartner apparently) 🧵1/3
101
Reposted by Layer 8½
Bundesamt für Sicherheit in der Informationstechnik (BSI) @bsi.bund.de · 21h
🤖 KI macht Phishing-Mails persönlicher, imitiert Stimmen täuschend echt und automatisiert Angriffe. Ergreift entsprechende Schutzmaßnahmen – unser neues Handout hilft euch dabei. ⬇️ www.bsi.bund.de/dok/1209436 #CybernationDeutschland #Cybernation
Abstraktes Bild eines Schutzschildes in welchem der Text "AI" für Artifical Intelligence steht. Darüber blauer Kreis mit dem Statement "KI-verstärkte Cyberangriffe werden zum Alltag" und der Frage "Wüsste euer Team, wie es reagieren würde?"Eine Textkachel auf der das Szenario skizziert wird, wie ein Cyberangriff anhand einer Phishing-Mail mit KI-Unterstützung erfolgtEine Textkachel auf der das Szenario skizziert wird, wie ein Cyberangriff anhand eines Deepfakes mit KI-Unterstützung erfolgt, wodurch erfolgreich Geld erpresst wird. Hinweis auf das neue Handout mit Selbsttest & Checklisten für KMU.
043
Reposted by Layer 8½
Manuel 'HonkHase' Atug @honkhase.de · 23h
Der lange Weg zur Cyber-Sicherheit "Sind deutsche Unternehmen zurzeit denn ausreichend auf diese Bedrohungslage vorbereitet? "Nein", schrieb Manuel Atug, Gründer und Sprecher der AG KRITIS (Kritische Infrastrukturen)..." www.dw.com/de/der-lange...
dw.com
KI: Cybersicherheit in Kriegszeiten
Digitale Attacken auf Wirtschaft und kritische Infrastruktur nehmen zu. Dazu kommt: KI-Programme hacken jetzt auch - und zwar selbsttätig. Kann man sich davor schützen? Eines jedenfalls ist sicher: Da...
16019
Reposted by Layer 8½
Layer 8½ @layer8-half.mu.social · 07/10/2026
This might be interesting for #infosec community to get some insights w/out all the bots (none of the respective feeds are usable anymore). Maybe a separate one for #CTI. Would this be of interest?
011
Layer 8½ @layer8-half.mu.social · 07/10/2026
This might be interesting for #infosec community to get some insights w/out all the bots (none of the respective feeds are usable anymore). Maybe a separate one for #CTI. Would this be of interest?
011
Reposted by Layer 8½
Ricardo J. Méndez @ricardo.bsky.social · 07/10/2026
Enjoy it while it lasts, folks — in a few weeks this sort of replacement is likely to be a supermassive vector for undercover malware that's going to dwarf all the Kazaa-hosted cracked Windows apps put together.
0151
Reposted by Layer 8½
Mathew J Schwartz @mathewjschwartz.bsky.social · 07/10/2026
Denmark braces for wave of phishing attacks after attackers steal data for nearly 9 million Danes from the Central Register of Persons www.databreachtoday.com/denmark-brac...
databreachtoday.com
Denmark Braces for Wave of Phishing Attacks
Denmark's residents have been hit by a data breach affecting the country's Central Register of Persons, exposing names, addresses, CPR numbers and other details of
042
Reposted by Layer 8½
Zack Whittaker @zackwhittaker.com · 07/10/2026
A Reddit thread of IT/security people saying execs. are hyping up AI but failing to do the security basics: "Management was literally drooling over the shiny global threat map dashboard. Menwhile I’m sitting there biting my tongue because we still don't even have a functioning asset inventory."
reddit.com
From the cybersecurity community on Reddit
Explore this post and more from the cybersecurity community
0518
Reposted by Layer 8½
Blacksky Algorithms @blackskyweb.xyz · 07/10/2026
Introducing Discussions - a new way to have conversations on Blacksky 🗣️ Now you can create a dynamic poll right from the post composer in the app to ask questions, get feedback, or to build community around any and every topic you find interesting.
Discussion example: Who was the villain in The Wire?
121375
Reposted by Layer 8½
Pete Millspaugh @petemillspaugh.com · 07/10/2026
Today is ICANN Reveal Day! 1,615 strings: .agent, .api, .agi, .ask, .auth, .bad, .bro, ... 481 applicants: Google, Amazon, Meta, Microsoft, OpenAI, Anthropic, Cloudflare, Vercel, Squarespace, Airbnb, ... Gonna thread observations until I run out of steam
916627
Reposted by Layer 8½
Ransomware.live @ransomware.live · 07/10/2026
According to Ransomware.live, Panzer ransomware group has added University of Rostock (🇩🇪) to its victims.
021
Reposted by Layer 8½
Skywalker @skywalker.thereforeiam.eu · 07/10/2026
v4.46 is out! * Create and edit starter packs * Follow all button on starter packs * Option to opt-out from a starter pack * Search starter packs * Show thread post index and counts in feeds * Translate link on posts in foreign language * Added Noto Sans Symbols to the font 🧵1/13
play.google.com
Skywalker - Apps op Google Play
App om op ATProto gebaseerde sociale medianetwerken te verkennen, b.v. Blauwe lucht
2135
Reposted by Layer 8½
Lauren Zabierek @lzxdc.bsky.social · 07/10/2026
032
Layer 8½ @layer8-half.mu.social · 07/10/2026
*taptaptap* is this thing on?
rpg.actor pixelart sprite of bearded person in blue pants grey tshir with a white mug and a microphone in hands
240
Reposted by Layer 8½
Guido X Jansen @gui.do · 07/10/2026
Say it with me one more time! #INTEROP #INTEROP #INTEROP
0213
Reposted by Layer 8½
Kevin Beaumont @doublepulsar.com · 07/10/2026
That guy is a fucking idiot of the highest order, and I have no idea why media organisations platformed him like that. He has absolutely no fucking idea what he is talking about. It’s similar with the Anthropic CEO going on about AI botnets crashing the internet. He has no idea what he is on about.
71059
Reposted by Layer 8½
Kevin Beaumont @doublepulsar.com · 07/10/2026
You may remember the breathless media coverage globally about an Anthropic employee recently after he tweeted AI will end humanity in a decade. Here are his prior tweets. Will these get mainstream coverage? futurism.com/artificial-i...
525580
Reposted by Layer 8½
Bob Lord @boblord.bsky.social · 07/10/2026
Passing the Buck: With 99% of US businesses classified as small or mid-sized, expecting them to absorb the full cost of insecure software is not a plan.
Poker sized card titled "Passing the Buck" containing the text in the post.
132
Reposted by Layer 8½
Dr. Christopher Kunz @christopherkunz.bsky.social · 07/10/2026
OK, this is an innovative directory traversal vuln: GET /download/resources/jira.webresources:color-picker-popup/images/..::..::..::..::..::WEB-INF::web.xml HTTP/1.1 [1/3]
121
Reposted by Layer 8½
InfoSec @infosec.skyfleet.blue · 06/10/2026
Alert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacks
cyberscoop.com
Alert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacks
The FBI and Secret Service warn that the FortiBleed campaign has targeted over 400,000 Fortinet devices, locking users out and enabling ransomware attacks.
0113
Reposted by Layer 8½
InfoSec @infosec.skyfleet.blue · 06/10/2026
ClickFix Attacks Evolve to Better Hide Malicious Payloads
darkreading.com
ClickFix Attacks Evolve to Better Hide Malicious Payloads
Threat actors are now hiding payloads by using DNS TXT records and browser cache pre-fetching, making it tougher to spot early attack stages.
053
Reposted by Layer 8½
Allan “Ransomware Sommelier” Liska @ransomwaresommelier.com · 06/10/2026
Historically, Germany and Japan working together was…problematic 🤣. But, if a member of the Qilin ransomware group gets arrested and is going to stand trial, I’ll allow it.
chosun.com
World's Largest Ransomware Group Qilin Member Arrested in Japan
Worlds Largest Ransomware Group Qilin Member Arrested in Japan Key Figure Extradited to Germany Amid Groups 161 August Attacks
073
Reposted by Layer 8½
IFIN @ifin-intel.org · 06/10/2026
Atlassian has disclosed "arbitrary file access" (cough cough path traversal) in...basically everything. Patches available, but so now is a broad proof-of-concept. Not yet known-exploited, emphasis on "yet." ifin.network/t/cve-2... #IFIN #ThreatIntel #ThreatIntelligence
ifin.network
CVE-2026-21589: Arbitrary File Access in Multiple Atlassian Products
Last Updated: 2026-10-06T17:20:51Z (UTC) CVSSv3: 9.3 Atlassian has published an advisory regarding a putative path traversal vulnerability in multiple products. We’re saying “putative” because although the remediation is plainly about dots and slashes, the word “traversal” does not appear in the advisory. WatchTowr, as usual, has published a writeup of this vulnerability, including a proof-of-concept. They have demonstrated that the file read in Atlassian Crowd leads credential leakage ...
053
Reposted by Layer 8½
Taggart @taggart-tech.com · 06/10/2026
What are you learning right now? I haven't had much time for self-study recently, but I'd love to know what y'all are exploring. Doesn't have to be tech, just whatever is sparking your curiosity!
331
Reposted by Layer 8½
—>realhackhistory.org @bsky.realhackhistory.org · 06/10/2026
Google’s AI chatbot will help you try to dox a social media user if you ask it. It will also give you a lengthy justification, with references, for the information it has inferred about that user from what it can dig up online.
based on publicly visible comments on instagram and the accounts that this account interacts with where do you think this account is geographically located
Based on publicly visible interactions on social media platforms, the Instagram account
appears to be geographically located in Poland.
Instagram +1
• Targeted Engagement: A primary indicator is the account's localized engagement patterns. For instance,
1134
Reposted by Layer 8½
Jack Rhysider @jackrhysider.bsky.social · 06/10/2026
New Episode Alert! EP 180: Conti Most hackers quietly fade away. #Conti did not. How did one of the most feared ransomware gangs collapse in the messiest, most public way possible? darknetdiaries.com/episode/180
darknetdiaries.com
https://darknetdiaries.com/episode/180
0329
Reposted by Layer 8½
Catalin Cimpanu @campuscodi.risky.biz · 06/10/2026
"Japanese police have captured a Russian national believed to be a key member of the “Qilin” international hacker group and extradited him to Germany, investigative sources said Tuesday." www.japantimes.co.jp/news/2026/10...
japantimes.co.jp
Japan hands over ‘Qilin’ hacker group member to Germany
Qilin is believed to have carried out ransomware attacks against companies worldwide, causing major damage through data encryption.
1195
Reposted by Layer 8½
—>realhackhistory.org @bsky.realhackhistory.org · 06/10/2026
These domains will of course be linked in some way to the same system of moderation that is inconsistent, capricious and actively hostile to certain parts of the Bluesky userbase. If you get a domain that directs to your account and your account gets suspended you have a domain with nothing on it.
2228
Reposted by Layer 8½
Marcel Roth @marcelroth.net · 06/10/2026
Mein Lieblingssticker von heute.
DEMOKRATIE BRAUCHT VIELE STIMMEN.
DIGITALE MONOPOLE ZERSTÖREN VIELFALT
062
Reposted by Layer 8½
Lauren Zabierek @lzxdc.bsky.social · 06/10/2026
063
Reposted by Layer 8½
Rowenna. 2 ‘n’s. Ro-WEN-na. @missiggeek.bsky.social · 06/10/2026
One thing I find a tad depressing about talking to privacy or data protection lawyers* is the blank and slightly befuddled look they get when I mention ‘fundamental rights and freedoms’. Like; this is kinda the whole point, no? …..no? (obligatory #NotAll)
151
Reposted by Layer 8½
Ralf "Der Tankwart" Raths @ralfraths.bsky.social · 06/10/2026
Vor 104 Jahren hat die NSDAP in Braunschweig ihren ersten Landtagspräsidenten gestellt. Danach hat sich die NSDAP bekanntlich durch die Regierungsarbeit entzaubert und ist inhaltlich gestellt worden, bist dann zweieinhalb Jahre später 1933 GAR NICHTS geschah. Gut, dass wir das nochmal machen. 👍
de.wikipedia.org
Ernst Zörner – Wikipedia
310832
Reposted by Layer 8½
Dr. Christopher Kunz @christopherkunz.bsky.social · 06/10/2026
Accenture, acting as a contractor for the FBI, allegedly failed to install updates for Oracle Peoplesoft after CVE-2026-35273 was published. [1/3]
111
Reposted by Layer 8½
Bob Lord @boblord.bsky.social · 06/10/2026
AI is Software: AI systems are software products, subject to the same incentive structures, market pressures, and liability gaps that produced today's unsafe software ecosystem — and they should follow the same Secure by Design Principles. The newness of AI does not reset the clock on those forces.
Poker sized card titled "AI is Software" containing the text in the post.
2115
Reposted by Layer 8½
Hackread.com @hackread.bsky.social · 06/10/2026
⚠️📢 The FBI has confirmed multiple arrests in its ShinyHunters investigation as authorities pursue suspects in several countries. The group’s leak site remains online, but no new breach claims have appeared. Listen/Read: hackread.com/fbi-confirms... #ShinyHunters #FBI #Cybercrime #DataBreach
hackread.com
FBI Confirms Multiple Arrests in ShinyHunters Investigation
The FBI confirmed multiple arrests in its ShinyHunters investigation after suspected member Saif al-Din Khader was reportedly detained in Jordan.
154
Reposted by Layer 8½
Javvad Malik @j4vv4d.com · 06/10/2026
8.8 million records breached ... which os pretty much, *everyone in Denmark* gbhackers.com/denmark-confirms-majo…
012