tooot.im הוא שרת אחד משרתי מסטודון עצמאיים רבים שדרגם תוכלו להשתתף בפדיוורס (רשת חברתית מבוזרת).
Tooot.im, a Mastodon instance (He | En mostly) רשת מסטודון עברית | חופשית משיקולים תאגידיים | פדרטיבית עם הFediverse

סטטיסטיקות שרת:

238
משתמשים פעילים

#hacking

116 הודעות37 משתתפיםות16 הודעות היום

Il “Double Bind” porta al Jailbreak di GPT-5: L’AI che è stata convinta di essere schizofrenica

📌 Link all'articolo : redhotcyber.com/post/il-double

Un nuovo e insolito metodo di jailbreaking, ovvero l’arte di aggirare i limiti imposti alle intelligenze artificiali, è arrivato in redazione. A idearlo è stato Alin Grig, ricercatore di sicurezza #informatica, che ha dimostrato come anche i modelli linguistici avanzati come ChatGPT possano essere “manipolati” non con la forza del #codice, ma con quella della psicologia.

Secure Boot bypass flaw affects 200K+ Linux Framework laptops ⚠️🐧
Signed UEFI shell lets attackers disable signature checks via mm command 🛠️

🔓 Bootkits like BlackLotus can persist & evade OS controls
🛑 Impacts Framework 13/16 (Intel & AMD)
🛠️ Fixes rolling out—update firmware ASAP
🧰 Workaround: delete DB key in BIOS

🔗 bleepingcomputer.com/news/secu

Hackers can steal 2FA codes and private messages from Android phones

> Android devices are vulnerable to a new attack that can covertly steal 2FA codes, location timelines, and other private data in less than 30 seconds.

> The new attack, named Pixnapping by the team of academic researchers who devised it, requires a victim to first install a malicious app on an Android phone or tablet.

> The app, which requires no system permissions, can then effectively read data that any other installed app displays on the screen. Pixnapping has been demonstrated on Google Pixel phones and the Samsung Galaxy S25 phone and likely could be modified to work on other models with additional work. Google released mitigations last month, but the researchers said a modified version of the attack works even when the update is installed.
arstechnica.com/security/2025/ #Android #Cybersecurity #InfoSec #2FA #Privacy #Pixnapping #GooglePixel #Samsung #MobileSecurity #DataBreach #ZeroDay #TechNews #Hacking

Ars Technica · Hackers can steal 2FA codes and private messages from Android phonesמאת Dan Goodin