FreshRSS

๐Ÿ”’
โ˜ โ˜† โœ‡ Naked Security

GitHub code-signing certificates stolen (but will be revoked this week)

By Paul Ducklin โ€” January 31st 2023 at 11:35
There was a breach, so the bad news isn't great, but the good news isn't too bad...

โ˜ โ˜† โœ‡ Naked Security

Patch Tuesday: 0-days, RCE bugs, and a curious tale of signed malware

By Paul Ducklin โ€” December 14th 2022 at 01:13
Tales of derring-do in the cyberunderground! (And some zero-days.)

โ˜ โ˜† โœ‡ Naked Security

Critical cryptographic Java security blunder patched โ€“ update now!

By Paul Ducklin โ€” April 20th 2022 at 16:43
Either know the private key and use it scrupulously in your digital signature calculation.... or just send a bunch of zeros instead.

โŒ