veganism.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Veganism Social is a welcoming space on the internet for vegans to connect and engage with the broader decentralized social media community.

Administered by:

Server stats:

296
active users

#cloudsecurity

11 posts11 participants0 posts today

Are you missing key AWS security blind spots? SCPs, IAM misconfigurations, serverless risks & more could expose your cloud. SentinelOne shares 6 gaps + actionable fixes to secure your environment. #AWS #CloudSecurity #Cybersecurity #DevSecOps 🔗 zurl.co/lnZbG

SentinelOne · The Overlooked Six | AWS Security Blind SpotsIn this guest blog post, learn about six commonly missed AWS 'blind spots' that could lead to risk in your cloud infrastructure.

Amazon Detective zur Analyse und Visualisierung von Sicherheitsvorfällen 🔦
Cyberangriffe, Datenpannen und unbefugte Zugriffe auf kritische Unternehmensinformationen stehen heutzutage leider auf der Tagesordnung. An dieser Stelle kommt Amazon Detective zum Einsatz. Wie dieses Tool im Detail funktioniert, erklärt Euch Maren Witkowski im neuen Blogbeitrag.

Weitere Informationen: sohub.io/h4ad

2025 Cyber Threat Trends | Live Webinar

Cyber Security threats are becoming more advanced and unpredictable. Are you prepared for what’s ahead?

Join us on Tuesday, April 22, 2025, for a CheckMates live webinar exploring the top cyber threat trends shaping the year ahead. We’ll cover the growing impact of cyber warfare, the continued evolution of the ransomware ecosystem, and the increasing vulnerabilities in cloud environments.

Choose your session and save your seat:

EMEA: 10:00 AM CET: ow.ly/xuNT50Vwi6f

Americas: 11:00 AM EST:
lnkd.in/eTk6sj44

ZoomWelcome! You are invited to join a webinar: CPR Security Report: 2025 Cyber Threat Trends (EMEA). After registering, you will receive a confirmation email about joining the webinar.Join us for an insightful webinar that dives deep into the latest trends in cyber security! We’ll explore critical topics including the escalation of cyber wars, the intricate ransomware ecosystem, and the journey from infostealer logs to complete breaches. Additionally, we’ll discuss the evolving threats posed by edge devices and operating resource boards (ORBs), as well as the expanding attack surface of cloud environments.

New Open-Source Tool Spotlight 🚨🚨🚨

VISTA is a Python-based AI chatbot built using OpenAI GPT and LangChain. It integrates with Pinecone for vector databases, focusing on semantic search and managing context. Looks like a good starting point if you're exploring AI chatbot frameworks. #AI #Chatbots

🔗 Project link on #GitHub 👉 github.com/RitikaVerma7/VISTA

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

New Open-Source Tool Spotlight 🚨🚨🚨

SharPersist is a tool for creating persistence mechanisms on Windows, leveraging C#. It supports methods like registry runs, WMI event subscriptions, and scheduled tasks. Designed for red teams but publicly available. #CyberSecurity #Windows

🔗 Project link on #GitHub 👉 github.com/mandiant/SharPersist

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

New Open-Source Tool Spotlight 🚨🚨🚨

Seatbelt is a post-exploitation tool designed for Windows environments. It collects detailed system information to help identify potential privilege escalation paths or misconfigurations. It's lightweight, written in C#, and can be run on live systems without requiring installation.

Used responsibly, tools like this can help secure your environment by simulating attacker tactics. #CyberSecurity #InfoSec

🔗 Project link on #GitHub 👉 github.com/GhostPack/Seatbelt

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

Alright, let's get real about NIST. Yeah, it's important, no question. **But** banking solely on a certificate? That's definitely not the silver bullet for security!

Seriously, I've seen cloud environments myself that ticked all the NIST compliance boxes on paper, yet they were still wide open with security holes. 🙈 It happens!

So, what's the takeaway? You absolutely can't just blindly trust that "compliant" status. This is exactly why making regular pentests a standard part of your routine isn't just nice-to-have, it's essential. You've gotta actively look for those weaknesses.

What about you? What's your experience been with NIST frameworks and actually keeping cloud setups secure? I'm curious to hear your stories!

New Open-Source Tool Spotlight 🚨🚨🚨

Loki is an open-source malware scanner designed for threat detection. It uses YARA rules, IOC pattern matching, and file system anomaly detection to identify malicious files and artifacts. Ideal for quick triage, not full AV replacement. #malware #cybersecurity

🔗 Project link on #GitHub 👉 github.com/Neo23x0/Loki

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

📧 Gmail Adds Easy Encryption Toggle—But It’s Not True E2EE

Google just rolled out a beta encryption feature for Gmail enterprise users that simplifies secure communication:
・Toggle encryption from the email draft window
・No S/MIME exchange required
・Third-party inbox support coming later this year

But there’s a catch:
🔒 This isn’t true end-to-end encryption
🔑 Admins still control the keys and can monitor user content
🔍 Data is more secure in transit, but not completely private

IT leaders should evaluate the trade-offs: this new system offers better usability, but still requires trust in Google’s infrastructure and policies.

👉 theverge.com/news/640422/googl

The Verge · Gmail is making it easier for businesses to send encrypted emails to anyoneBy Jess Weatherbed

New Open-Source Tool Spotlight 🚨🚨🚨

GhidraMCP is an Model Context Protocol server for allowing LLMs to autonomously reverse engineer applications. It exposes numerous tools from core Ghidra functionality to MCP clients.

#ReverseEngineering #Ghidra

🔗 Project link on #GitHub 👉 lnkd.in/gRUrYpMx

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️