Black belt in Mikado, Photo model, for the photos where they put under ‘BEFORE’

  • 24 Posts
  • 34 Comments
Joined 4 年前
cake
Cake day: 2021年4月25日

help-circle


























  • Andisearch Writeup

    A threat actor known as “Orange” has leaked nearly 500,000 Fortinet VPN login names and passwords, a move that has sent ripples through the cybersecurity community. These credentials were allegedly scraped from vulnerable FortiGate SSL-VPN devices, exploiting a known vulnerability, CVE-2018-13379, which had been patched since May 2019. Despite the availability of patches, many systems remained unpatched, leaving them susceptible to this breach.

    The leaked credentials were posted for free on the RAMP hacking forum, a platform managed by Orange, who was previously associated with the Babuk Ransomware operation. This leak is believed to be a promotional tactic for the RAMP forum and the Groove ransomware operation, aiming to attract other cybercriminals by offering a “freebie”.

    The breach has affected organizations across 74 countries, with a significant number of compromised devices located in the USA. The leaked data includes VPN credentials for 498,908 users over 12,856 devices. While some sources confirm the validity of these credentials, others provide mixed reports, indicating that not all credentials may be functional.

    Fortinet has acknowledged the breach, emphasizing the importance of patching and resetting passwords to mitigate the risk. They have urged affected users to upgrade their devices to the latest FortiOS versions and perform an organization-wide password reset. The incident underscores the critical need for timely patching and robust security practices to protect against such vulnerabilities.













  • Zerush@lemmy.mltoMemes@lemmy.mlfirefox
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 年前

    Not a problem, in Vivaldi there a lot of patches against Google interests. Even Google can do nothing if the devs of other companies eliminate the tracking APIs from Chromium, precisely because it’s FOSS an even Google can’t revert it and can’t do nothing against modified forks. There are several intends in the past, with idle tracking, FloC, and some others, also cutting of Google sync for others than Chrome, discriminative Browsersniffing in some websites to block Vivaldi and others. Nothing of this worked. Vivaldi is a small european cooperative with few devs, but which are among the bests out there. Now on top of that they have managed to introduce Vivaldi into the world of Browsers and its use in Mercedes, Renault and VAG, that has not even been achieved by Google and with this also eliminated the possibility of acting against Vivaldi, without messing with these Companies. This is showing a really big middle finger.


  • Zerush@lemmy.mltoMemes@lemmy.mlfirefox
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    10
    ·
    2 年前

    No, Google no controls Chromium, despite Chromium as is use a lot or Google APIs. But Chromium is FOSS and because of this a lot of Chromiums are “degoogled” or parcial “degoogled” leaving some APIs as Option in the settings (Vivaldi permits even to quit the API for the Chrome Store in the settings page, if you don’t want extension from there). The difference in Chrome itself, EDGE, Opera and others, is that they all use a lot of own tracking APIs above the default from Chromium.