c.im is one of the many independent Mastodon servers you can use to participate in the fediverse.
C.IM is a general, mainly English-speaking Mastodon instance.

Server stats:

2.9K
active users

#password

17 posts17 participants0 posts today

This dumb password rule is from NBC (National Bank of Canada).

- Password length must be 8 to 25 characters
- Password must contain at least one lower letter (any position)
- Password must contain at least one digit (any position)
- Password cannot contain spaces.
- Copy/paste is not allowed when trying to set a new password

dumbpasswordrules.com/sites/nb

dumbpasswordrules.comNBC (National Bank of Canada) - Dumb Password Rules- Password length must be 8 to 25 characters - Password must contain at least one lower letter (any position) - Password must contain at least one digit (any position) - Password cannot contain spaces. - Copy/paste is not allowed when trying to set a new password

Trump Cryptocurrency Delivers ConnectWise RAT

An email campaign impersonating Binance is offering fake TRUMP coins to lure victims into downloading a malicious 'Binance Desktop' application, which actually installs ConnectWise RAT. The attackers have created a convincing web page mimicking Binance's interface to host the malware download. Once infected, threat actors quickly establish remote control of the victim's computer, targeting saved passwords in applications like Microsoft Edge. The campaign employs sophisticated social engineering tactics, including sender name spoofing and risk warnings, to appear legitimate. Threat actors are actively monitoring infections and can connect to compromised systems within minutes of installation.

Pulse ID: 67d0743fa696bc6ef3985a7d
Pulse Link: otx.alienvault.com/pulse/67d07
Pulse Author: AlienVault
Created: 2025-03-11 17:34:55

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

LevelBlue Open Threat ExchangeLevelBlue - Open Threat ExchangeLearn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.


Episode 461 - The new NIST password guidance
traffic.libsyn.com/secure/open

Josh and Kurt talk about new NIST password guidance. There's some really good stuff in this new document. Ideas like usability and equity show up (which is amazing). There's more strict guidance against rotating passwords and complex passwords. This new guidance gives us a lot to look forward to. Show Notes Usagi Electric NIST proposes barring some of the most nonsensical password rules NIST SP 800-63(B) STRIDE threat model PASTA threat model

Searching for advice from security experts.

What is recommended for unlocking a device - biometric or long PIN/password?

Long PIN/password is secure against if someone holds you down and forces you to lock at the phone, but it's not as secure against shoulder surfing.

Biometric is secure against shoulder surfing, but it can have false positives. It's more convenient than going PIN/password.

🧐🤷🏼‍♂️

#AskFedi #Security #iPhone #MacBook #PIN #Password #Passwords #Biometric #Infosec

The #OpenWebCalendar has a new #UI!

You can head over to open-web-calendar.hosted.quell and try it out:

- #edit the #calendar AND see it updating
- #encryption protects #private calendars and the #password
- #CalDAV support
- Change the size to see how it works on other screens

In the picture, the URL to the Personal CalDAV calendar is encrypted and the events show up.

Technically, I really enjoyed #flexbox and #CSS variables i.e. for the dynamic resizing.

I have tried to log onto #Mastodon on #Librewulf TWICE and both times librewulf or mastodon insisted that either my #email or my #password didn't match.

I then went onto mastodon in #firefox, and in my profile confirmed that my listed email and password are EXACTLY what I tried to sign in.

If you want people to give up firefox, it would help if the few of us NOT code wizards could use the alternatives.