@GossiTheDog@cyberplace.social cover
@GossiTheDog@cyberplace.social avatar

GossiTheDog

@GossiTheDog@cyberplace.social

Cybersecurity weather person and award winning shitposter. Shitposting is an anagram of Top Insights. You may be surprised to know I am not representing my employer here and these are not their opinions.

I have Direct Messages disabled - you can send them, but I will never receive them.

This profile is from a federated server and may be incomplete. View on remote instance

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

The northern lights even reached here.

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

I’m not sure will win any awards for diversity this year. It’s like a Storm Trooper convention.

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

New Doctor Who was great fun.

malwaretech , to Random stuff
@malwaretech@infosec.exchange avatar

I'd heard about the price war between BYD and Tesla, but I'd never actually seen any of the BYD cars because they're banned in the US. Some influencer imported one and did a review and now I'm pretty sure the ban is the only thing keeping Tesla alive

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar

@malwaretech they’re banned in the US? They’re a regular fixture here in the UK, a bunch of my neighbours have them

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar
GossiTheDog ,
@GossiTheDog@cyberplace.social avatar

@malwaretech need to keep a lead in electric cars and space globally? put all your chips in with Elon Musk and protectionism

Well Done Cats GIF by ed.motions

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Me watching the aurora last night

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Gonna be interesting to see if Israel wins Eurovision today, they're quickly becoming betting odds favourites.

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Niche reference 3 of you will get - somebody replied to this picture and said, of me, ‘Victor has let himself go!’. I laughed a lot.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar
GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@JustinAzoff ❤️❤️

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Fun mastodon search if you’re looking for Black Basta ransomware woes - from:gossithedog black basta

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

I know one of the actors in Fallout season 2

I better get to wear a Pip Boy

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Kingdom of the Planet of the Apes was good.

Planet Of The Apes King GIF by 20th Century Studios

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar
GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@joshbal4 lol I didn’t realise screenshots on iPhone had brightness

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

I thought the FBI were about evidence? Maybe the evidence was stolen on the made up USB airport devices they keep warning about.

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

There should probably be a sequel to this article about how DNS TLD providers sell their traffic logs. https://www.vice.com/en/article/jg84yy/data-brokers-netflow-data-team-cymru

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Can’t wait until AI starts spitting out recycled privacy policies with this included. https://www.bbc.co.uk/news/articles/c84z2jqpvpko

howelloneill , to Random stuff
@howelloneill@infosec.exchange avatar

I have a genuine question: Who thinks basic cybersecurity goals like "enable MFA by default for users and administrators" or "instead of bad default passwords, enable random, instance-unique initial passwords for your product" or "require the user who installs the product to create a strong password at the start of the installation process" couldn't be mandatory?

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar

@howelloneill the later two are already mandatory in law for internet connected devices in the UK.

GossiTheDog , (edited ) to Random stuff
@GossiTheDog@cyberplace.social avatar

Keytronic have filed an 8-K for a cybersecurity breach with the SEC. Sounds like ransomware. https://www.sec.gov/Archives/edgar/data/719733/000071973324000015/ktcc-20240506.htm

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar
GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@witewulf there’s a limit to the To field, I gather they were multiple emails sent 😅

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@423321 they will get fined about $0

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Looks like Anne beat me to it - Ascension is ransomware, in Netflow I could see ‘em connecting to known ransomware infrastructure since a week ago. They had data exfil too.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

There’s a continuing and growing pivot by ransomware on US healthcare.

I suspect it’s driven by various factors, including US healthcare have a very high payout rate, and they’ve focused on compliance based cybersecurity to meet regulations - which translates to setup to fail operationally to deal with ransomware.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@systemadminihater yes, ISPs sell that. Same with DNS lookups, the TLD providers sell them.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar
Kavthunder , to Random stuff

@GossiTheDog I was just re-reading about the Capita breach and Black Basta. I couldn't find anything on Black Basta making any data public that they claimed to have exfiltrated. Only one article mentioning the link to access the data didn't work. I just wondered if you're aware of anything else? £25 million for that incident seems quite high.

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar

@Kavthunder they posted various documents on their site - passport scans and such

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Ouch. Warner Bros has booked a $200m impairment charge over the disastrous launch of Suicide Squad: Kill the Justice League.

Feel really bad for the devs, making a live service game has probably killed the studio.

https://www.ign.com/articles/suicide-squad-kill-the-justice-league-flop-leads-to-200-million-impairment-charge-warner-bros-confirms

jasonkoebler , to Random stuff
@jasonkoebler@mastodon.social avatar

New: OpenAI—a company that has indiscriminately scraped vast amounts of human knowledge to build a company valued at roughly $80 billion—has made a copyright complaint against the ChatGPT subreddit because it used OpenAI’s logo.

https://www.404media.co/openai-files-copyright-claim-against-chatgpt-subreddit/

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar

@jasonkoebler lollll

MadSc13ntist , to Random stuff
@MadSc13ntist@mastodon.ie avatar

There was a loading glitch in mammoth and for the briefest of moments I thought that @GossiTheDog had seized control of @thesession . 😂

I'm not gonna lie, I was curious to see where this was going. 😂🤷‍♂️

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar
campuscodi , to Random stuff
@campuscodi@mastodon.social avatar

LockBitSupp doing the media tour with the same boring ass "you got the wrong guy" routine that all the previous ransomware dudes attempted and failed

GossiTheDog ,
@GossiTheDog@cyberplace.social avatar
GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Really good look at the problems Microsoft is facing with Xbox, which fingers an angle I think is a problem across Microsoft as a whole: growth as the only real goal.
https://www.eurogamer.net/what-is-the-point-of-xbox

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

EXCLUSIVE: interview with alleged LockBit leader Dmitry Khoroshev

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

If you ever receive intelligence on somebody called ‘IntelBroker’, know a couple of things:

  • multiple people use that alias
  • they’re not as credible as the CTI industry thinks
  • they overplay their hand all the time

tarleton state horse GIF

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

The security industry: move to passkeys, they are phishing resistant!

The thing they haven’t mentioned: phish the recovery process for the phone instead, then you have god mode across everything. Passkeys are synced across devices by design, and there’s legacy (eg SMS) recovery.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@ferralcat I’m not.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@ljrk @faebudo Google and Apple sync passkeys by design, and they’re recoverable across devices using legacy authentication (eg SMS). So I think describing it as phishing resistant is a stretch.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@ljrk @faebudo I think here is the crux of the problem. People don’t understand how recovery works. If you have a phone, chuck it in the bin and get a new one and recover your account on a new one. Your passkeys move across across on popular devices, eg Apple, Google, by design

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@ljrk @faebudo I agree, account recovery is good! It can also be phished.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@neilmadden @ljrk @faebudo the beauty is the wording. If you look at the table, Photos in iCloud are also in the same category. If you lose your phone or get a new one, you can transfer the data across. They’re talking about entirely losing access to your account - which isn’t the case with phishing, as the phished has access due to said phishing.

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@neilmadden @ljrk @faebudo your understanding would be incorrect. https://support.apple.com/en-gb/102195

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Tried Gray Zone Warfare, one of those Unreal Engine extraction shooters.

It's a real mess, but I had the funniest opening ten minutes. Spawned in, got in a random players helicopter.

He's like "BRO! I'M GOING TO A HIGH LEVEL AREA, YOU'LL GET DESTROYED WITHOUT SPENDING 200 HOURS LEVELING"

I'm like "yolooooo just installed", and he's pissed.

Anywhere, we get there, the enemy AI instantly kills him, I loot all his gear and exfil back to base and he loses everything and RAGES at me.

video/mp4

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

RIP this dude, who ran into the helicopter blades while it took off

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

LockBit victims currently running incidents with Citrix Netscaler initial entry, by sector: finance, freight, legal, defence

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar
GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar
GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

I got in loads of trouble for writing those blogs, but looking back I think they stand up, were important and helped defuse a situation where people weren’t paying enough attention.

GossiTheDog , to Random stuff
@GossiTheDog@cyberplace.social avatar

Mastodon has hit 2 million active users today. 🎉

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

July 11 2024 is gonna be harsh 😅

GossiTheDog OP ,
@GossiTheDog@cyberplace.social avatar

@ianbradbury most people who sign up drop off within a month - about 90%

  • All
  • Subscribed
  • Moderated
  • Favorites
  • Mordhau
  • WatchParties
  • Rutgers
  • loren
  • Lexington
  • cragsand
  • mead
  • RetroGamingNetwork
  • mauerstrassenwetten
  • MidnightClan
  • xyz
  • PowerRangers
  • AnarchoCapitalism
  • kamenrider
  • supersentai
  • itdept
  • neondivide
  • AgeRegression
  • Teensy
  • WarhammerFantasy
  • space_engine
  • learnviet
  • bjj
  • electropalaeography
  • steinbach
  • khanate
  • jeremy
  • fandic
  • All magazines