Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

merospit@infosec.exchangeM

merospit@infosec.exchange

@merospit@infosec.exchange
About
Posts
3
Topics
0
Shares
0
Groups
0
Followers
0
Following
0

View Original

Posts

Recent Best Controversial

  • Did I miss that CVEs are allocated for supply chain compromises nowadays?
    merospit@infosec.exchangeM merospit@infosec.exchange

    @GossiTheDog Makes sense to me.

    CVE are regularly used to actually block deployment pipelines, which is a useful function for mitigating supply chain vulnerabilities.

    More generally, I wouldn't want to be forced to distinguish between active and passive threats and then not be able to label the active threats in a standard way.

    Uncategorized

  • This is a big win for privacy, ensuring that neither company has access to the contents of your messages.
    merospit@infosec.exchangeM merospit@infosec.exchange

    @eff Both companies control the client applications, the operating systems, and are required by multiple jurisdictions to run client side scanning.

    Never be fooled by transport encryption, even if it is end-to-end.

    Uncategorized

  • So CopyFail CVE-2026-31431 is a thing.
    merospit@infosec.exchangeM merospit@infosec.exchange

    @wdormann And a CVSS 7.8 won't standout when only 8.0+ typically get patched by OS. LPE are very underrated by CVSS.

    Uncategorized
  • Login

  • Login or register to search.
  • First post
    Last post
0
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups