2025-09-10
Well I'll be damned. I might have to switch phones after all even if all the new ones are oversized. — Unfortunate this looks opt-in for third-party apps. I wonder how much adoption there will be. Hopefully WhatsApp and Signal will adopt it right away?
The Verge
Apple says the iPhone 17 and iPhone Air have Memory Integrity Enforcement, “industry-first, always-on memory safety protection”, like Microsoft and Google offer
Memory Integrity Enforcement is always-on safety protection designed to make life harder for spyware developers.
2025-04-22
Ok, this is neat. Any account can publish verification records, and the Bluesky Trusted Verifiers are just the ones preloaded in the official client. Similarly to how moderation works with labelers. [embedded post]
Wired
Bluesky starts rolling out blue check verification, initially limiting verification to select organizations and its moderation team
Bluesky's new verification process launches today. It mixes the old-school, Twitter-style blue check bestowed by the platform with a more decentralized option for trusted organiza...
2025-04-16
“I wish CISA would stop assigning out-of-context CVSS scores to our CVEs.” — * monkey paw curls * — https://www.csoonline.com/article/ 3963190/cve-program-faces-swift-end- after-dhs-fails-to-renew-contract- leaving-security-flaw-tracking-in- limbo.html
BleepingComputer
CISA says it will extend funding to Mitre, which runs the CVE Program, and “there will be no lapse in critical CVE services”, after Mitre said funding expired
CISA says the U.S. government has extended MITRE's funding to ensure no continuity issues with the critical Common Vulnerabilities and Exposures (CVE) program.
2024-04-01
Yeah ok this was 100% found by sheer luck. mastodon.social/@AndresFreun... bsky.app/profile/look... [embedded post]
Security Boulevard
Microsoft engineer Andres Freund accidentally found the malicious code in versions of the XZ Utils compression tool, likely preventing thousands of infections
Yesterday's discovery of the xz backdoor was an accident. But what a fortunate accident it was.
2024-03-31
Yeah ok this was 100% found by sheer luck. mastodon.social/@AndresFreun... bsky.app/profile/look... [embedded post]
Security Boulevard
Microsoft engineer Andres Freund accidentally found the malicious code in versions of the XZ Utils compression tool, likely preventing thousands of infections
Yesterday's discovery of the xz backdoor was an accident. But what a fortunate accident it was.