Security Leftovers
-
Bruce Schneier ☛ New iOS Security Feature Makes It Harder for Police to Unlock Seized Phones [Ed: But it still has back doors]
Everybody is reporting about a new security iPhone security feature with iOS 18: if the phone hasn’t been used for a few days, it automatically goes into its “Before First Unlock” state and has to be rebooted.
This is a really good security feature. But various police departments don’t like it, because it makes it harder for them to unlock suspects’ phones.
-
LWN ☛ Security updates for Thursday
Security updates have been issued by Fedora (llama-cpp, mingw-expat, python3.6, webkit2gtk4.0, and xorg-x11-server-Xwayland), Mageia (java-1.8.0-openjdk, java-11-openjdk, java-17-openjdk, java-21-openjdk & java-latest-openjdk and libarchive), Oracle (expat, gstreamer1-plugins-base, kernel, libsoup, podman, and tigervnc), SUSE (buildah, java-1_8_0-openjdk, and switchboard-plug-bluetooth), and Ubuntu (zlib).
-
PCLOS Official ☛ PCLinuxOS Recent Updates
VSCode-1.95.2 VSCodium-1.95.1.24307 signal-desktop-7.33.0 rustdesk-1.3.2 mesa-24.2.7 libalsa2-1.2.13 alsa-utils-1.2.13 thunderbird-128.4.3 neohtop-1.1.0 ocenaudio-3.14.7 mkvtoolnix-88.0 vivaldi-browser-7.0.3495.14
-
Scoop News Group ☛ HackerOne urges U.S. to advocate for research protections in UN cybercrime treaty
The company responsible for bug bounty platforms warns in a letter to top U.S. officials that the treaty’s vague language could undermine ethical security research.
-
Windows TCO
-
Scoop News Group ☛ Here’s how misconfigurations in Abusive Monopolist Microsoft Power Pages could lead to data breaches [Ed: Microsoft, the company you can never trust, is still misusing buzzwords like "zero trust"]
AppOmni researchers found that a misunderstanding of access controls can lead to PII being taken from these low-code websites.
-