mastouille.fr est l'un des nombreux serveurs Mastodon indépendants que vous pouvez utiliser pour participer au fédiverse.
Mastouille est une instance Mastodon durable, ouverte, et hébergée en France.

Administré par :

Statistiques du serveur :

594
comptes actifs

#nist

0 message0 participant0 message aujourd’hui
BCWHS<p>MITRE ATT&amp;CK &amp; NIST 800-53 Mapping<br>33,579 mappings have been magically connected between MITRE ATT&amp;CK and NIST 800-53.<br><a href="https://wadebach.blackcatwhitehatsecurity.com/blog.cfm#80053mapping" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">wadebach.blackcatwhitehatsecur</span><span class="invisible">ity.com/blog.cfm#80053mapping</span></a><br><a href="https://mastodon.social/tags/Blog" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Blog</span></a> <a href="https://mastodon.social/tags/MITRE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MITRE</span></a> <a href="https://mastodon.social/tags/ATT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ATT</span></a>&amp;CK <a href="https://mastodon.social/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://mastodon.social/tags/Mapping" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mapping</span></a> <a href="https://mastodon.social/tags/programming" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>programming</span></a></p>
Matti Schneider<p>“We need some sort of 🇪🇺 crypto. We shouldn't depend on <a href="https://maly.io/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a>. That's what we're building, and we wouldn't have been able to do without <a href="https://maly.io/tags/NGI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NGI</span></a> funding.” — Karolin Varner from <span class="h-card" translate="no"><a href="https://chaos.social/@rosenpass" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>rosenpass</span></a></span> <a href="https://maly.io/tags/NGIForum25" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NGIForum25</span></a> <a href="https://maly.io/tags/OpenSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSource</span></a></p>
LMG Security<p>Are your defenses ready for the quantum future?</p><p>Quantum computing and cybersecurity are on a collision course—and it's time to start thinking about the impacts it will have on your organization.</p><p>Check out our latest blog to learn what quantum computing means for your organization, the NIST standards, how to protect your data, and what steps to take right now to stay ahead of the curve. </p><p>Read more: <a href="https://www.lmgsecurity.com/quantum-computing-and-cybersecurity-how-to-secure-the-quantum-future/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">lmgsecurity.com/quantum-comput</span><span class="invisible">ing-and-cybersecurity-how-to-secure-the-quantum-future/</span></a></p><p><a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/QuantumComputing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>QuantumComputing</span></a> <a href="https://infosec.exchange/tags/PostQuantum" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostQuantum</span></a> <a href="https://infosec.exchange/tags/DataSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DataSecurity</span></a> <a href="https://infosec.exchange/tags/Tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tech</span></a> <a href="https://infosec.exchange/tags/Cyberaware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cyberaware</span></a> <a href="https://infosec.exchange/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://infosec.exchange/tags/Encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Encryption</span></a> <a href="https://infosec.exchange/tags/Infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Infosec</span></a> <a href="https://infosec.exchange/tags/CISO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CISO</span></a> <a href="https://infosec.exchange/tags/RiskManagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RiskManagement</span></a> <a href="https://infosec.exchange/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://infosec.exchange/tags/Cyber" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cyber</span></a></p>
IT News<p>Windows 11’s most important new feature is post-quantum cryptography. Here’s why. - Microsoft is updating Windows 11 with a set of new encryptio... - <a href="https://arstechnica.com/security/2025/05/heres-how-windows-11-aims-to-make-the-world-safe-in-the-post-quantum-era/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/security/2025/</span><span class="invisible">05/heres-how-windows-11-aims-to-make-the-world-safe-in-the-post-quantum-era/</span></a> <a href="https://schleuss.online/tags/quantumcomputing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quantumcomputing</span></a> <a href="https://schleuss.online/tags/encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>encryption</span></a> <a href="https://schleuss.online/tags/microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>microsoft</span></a> <a href="https://schleuss.online/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://schleuss.online/tags/biz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>biz</span></a>⁢ <a href="https://schleuss.online/tags/nist" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nist</span></a></p>
Linux Magazine<p>Powerhouse Linux server announced by IBM<br><a href="https://www.linux-magazine.com/Online/News/IBM-Announces-Powerhouse-Linux-Server?utm_source=mlm" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">linux-magazine.com/Online/News</span><span class="invisible">/IBM-Announces-Powerhouse-Linux-Server?utm_source=mlm</span></a><br><a href="https://fosstodon.org/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> <a href="https://fosstodon.org/tags/server" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>server</span></a> <a href="https://fosstodon.org/tags/IBM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IBM</span></a> <a href="https://fosstodon.org/tags/LinuxONE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LinuxONE</span></a> <a href="https://fosstodon.org/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://fosstodon.org/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://fosstodon.org/tags/quantum" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quantum</span></a> <a href="https://fosstodon.org/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a></p>
iX Magazin<p>iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren</p><p>Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.</p><p><a href="https://www.heise.de/news/iX-Workshop-IT-Sicherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10376553.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/iX-Workshop-IT-S</span><span class="invisible">icherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10376553.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/BSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSI</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/ITInfrastruktur" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInfrastruktur</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/iXWorkshops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iXWorkshops</span></a> <a href="https://social.heise.de/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://social.heise.de/tags/PenetrationTesting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PenetrationTesting</span></a> <a href="https://social.heise.de/tags/Test" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Test</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Matthew Malthouse<p>Another US institution of world-wide significance being gutted.</p><p><a href="https://mstdn.social/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://mstdn.social/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://mstdn.social/tags/RiskManagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RiskManagement</span></a> <a href="https://mstdn.social/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a></p>
Bob Carver<p>Threat Actors Don’t Care About Your Compliance Score<br><a href="https://youtu.be/mYsSUR6z6BA" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">youtu.be/mYsSUR6z6BA</span><span class="invisible"></span></a> . <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/GRC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GRC</span></a> <a href="https://infosec.exchange/tags/audits" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>audits</span></a> <a href="https://infosec.exchange/tags/documentation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>documentation</span></a> <a href="https://infosec.exchange/tags/threatactors" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threatactors</span></a> <a href="https://infosec.exchange/tags/vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerabilities</span></a> <a href="https://infosec.exchange/tags/threathunting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threathunting</span></a> <a href="https://infosec.exchange/tags/riskmanagent" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>riskmanagent</span></a> <a href="https://infosec.exchange/tags/compliance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>compliance</span></a> <a href="https://infosec.exchange/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://infosec.exchange/tags/CMMC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CMMC</span></a></p>
iX Magazin<p>iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren</p><p>Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.</p><p><a href="https://www.heise.de/news/iX-Workshop-IT-Sicherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10354228.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/iX-Workshop-IT-S</span><span class="invisible">icherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10354228.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/BSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSI</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/ITInfrastruktur" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInfrastruktur</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/iXWorkshops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iXWorkshops</span></a> <a href="https://social.heise.de/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://social.heise.de/tags/PenetrationTesting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PenetrationTesting</span></a> <a href="https://social.heise.de/tags/Test" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Test</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
C.<p>Daniel J. Bernstein (<a href="https://mindly.social/tags/djb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>djb</span></a>, to those who know and love him [1]) has a new blog entry about the NIST post-quantum <a href="https://mindly.social/tags/cryptography" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptography</span></a> standardization process that's been ongoing for some years. Also, follow him <span class="h-card" translate="no"><a href="https://mastodon.cr.yp.to/@djb" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>djb</span></a></span> .</p><p>If you're not aware of some of the controversy about how NIST is running this process, it's a must-read.</p><p><a href="https://blog.cr.yp.to/20250423-mceliece.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blog.cr.yp.to/20250423-mceliec</span><span class="invisible">e.html</span></a></p><p>My $0.02: it sure looks like NIST is backstopping an attempt by the NSA to get everyone to standardize on cryptography <a href="https://mindly.social/tags/standards" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>standards</span></a> that the <a href="https://mindly.social/tags/NSA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NSA</span></a> knows how to break.</p><p>Again.</p><p>Yes, they did it before. If you read up on the Dual_EC calamity and its fallout, and how this time it was supposed to be different - open, transparent, secure - then prepare to be disappointed. NIST is playing <a href="https://mindly.social/tags/Calvinball" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Calvinball</span></a> with their rules for this contest, yanking the rug out from under contenders that appear to be more <a href="https://mindly.social/tags/secure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secure</span></a> and better understood, while pushing alternatives that are objectively worse (<a href="https://mindly.social/tags/weaker" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>weaker</span></a> encryption, less studied, poorer <a href="https://mindly.social/tags/performance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>performance</span></a>).</p><p>Frankly, I think organizations outside of the <a href="https://mindly.social/tags/USA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USA</span></a> would be foolish to trust anything that comes out of <a href="https://mindly.social/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a>'s current work. Well, those inside the USA too, but some of those may be forced by law to use whatever NIST certifies.</p><p>[1] Some people think djb is "prickly", not lovable. Oddly, it seems that the only people who say this are those who are wildly incorrect about code/algorithms and are being gently but publicly corrected about by djb at the time</p><p><a href="https://mindly.social/tags/quantum" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>quantum</span></a> <a href="https://mindly.social/tags/PostQuantum" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostQuantum</span></a> <a href="https://mindly.social/tags/PostQuantumCryptography" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostQuantumCryptography</span></a></p>
Andrew 🌻 Brandt 🐇<p>About 120 of my fellow Boulderites rushed to the building that houses <a href="https://infosec.exchange/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> and <a href="https://infosec.exchange/tags/NOAA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NOAA</span></a> (and <a href="https://infosec.exchange/tags/NWSBoulder" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NWSBoulder</span></a>) headquarters this morning based only on a rumor that the dodgy people had shown up and were firing people. </p><p>It turned out only to be a rumor, and our representative, Joe Neguse, came out at 1pm to address the crowd, telling folks that he appreciated them coming out to support federal workers.</p><p>But this really demonstrates that this community will step up to defend and protect the critical federal workforce at NIST and NOAA in support of the American people. We will not back down in the face of the wholesale destruction of institutions whose work protects everyone.</p><p>NIST houses some of the world's most precise atomic clocks. They were built here! They (and NTP) are partly responsible for your computer and phone not blinking 12:00 all the time.</p><p>NOAA and the related NCAR do some of the most vital weather prediction work and uses supercomputers to model the climate both for forecasting and for analysis of our climate catastrophe.</p><p>It's hard to understate the value of just these two functions of these agencies. And that's just two of them!</p>
Ehay2k<p><span class="h-card" translate="no"><a href="https://digipres.club/@foone" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>foone</span></a></span> </p><p>Oh, I can see the headline now:</p><p><a href="https://mastodon.social/tags/Doge" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Doge</span></a> replaces <a href="https://mastodon.social/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> with <a href="https://mastodon.social/tags/Grok" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Grok</span></a> to both expedite and improve testing and validation of cryptographic standards. </p><p>"AI can do this better than people," said <a href="https://mastodon.social/tags/Musk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Musk</span></a></p>
Nonilex<p>For <a href="https://masto.ai/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> professionals, a failure to log activity is a cardinal sin &amp; contradicts best practices as recommended by the National Institute of Standards &amp; Technology [<a href="https://masto.ai/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a>] &amp; the <a href="https://masto.ai/tags/DHS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DHS</span></a>'s <a href="https://masto.ai/tags/CISA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CISA</span></a>, as well as the <a href="https://masto.ai/tags/FBI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FBI</span></a> &amp; the <a href="https://masto.ai/tags/NSA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NSA</span></a>.</p><p>"That was a huge red flag," said Berulis. "That's something that you just don't do. It violates every core concept of security &amp; best practice."</p><p><a href="https://masto.ai/tags/criminal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>criminal</span></a> <a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> <a href="https://masto.ai/tags/Musk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Musk</span></a> <a href="https://masto.ai/tags/DOGE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DOGE</span></a> <a href="https://masto.ai/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://masto.ai/tags/NationalSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NationalSecurity</span></a></p>
Xavier «X» Santolaria :verified_paw: :donor:<p>📨 Latest issue of my curated <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> and <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> list of resources for week #15/2025 is out!</p><p>It includes the following and much more:</p><p>🇺🇸 The U.S. Department of Justice has disbanded its National <a href="https://infosec.exchange/tags/Cryptocurrency" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cryptocurrency</span></a> Enforcement Unit;</p><p>🇳🇱 To tackle <a href="https://infosec.exchange/tags/espionage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>espionage</span></a>, Dutch government plans to screen university students and researchers;</p><p>🐛 Another busy <a href="https://infosec.exchange/tags/PatchTuesday" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PatchTuesday</span></a>;</p><p>🐛 <a href="https://infosec.exchange/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> will mark all CVEs published before January 1, 2018, as 'Deferred';</p><p>🇺🇸 Trump Signs Memorandum Revoking Security Clearance of Former <a href="https://infosec.exchange/tags/CISA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CISA</span></a> Director Chris Krebs;</p><p>🇨🇳 <a href="https://infosec.exchange/tags/China" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>China</span></a> Admitted to Volt Typhoon <a href="https://infosec.exchange/tags/Cyberattacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cyberattacks</span></a> on US Critical Infrastructure;</p><p>Subscribe to the <a href="https://infosec.exchange/tags/infosecMASHUP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosecMASHUP</span></a> newsletter to have it piping hot in your inbox every week-end ⬇️</p><p><a href="https://infosec-mashup.santolaria.net/p/infosec-mashup-15-2025" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec-mashup.santolaria.net/</span><span class="invisible">p/infosec-mashup-15-2025</span></a></p>
heise Security<p>OpenSSH 10 setzt auf Standards für quantensicheren Schlüsselaustausch</p><p>Der seit Jahren abgekündigte DSA-Algorithmus verschwindet nun vollständig aus der sicheren Remote-Shell, seine Nachfolge tritt MLKEM768 an.</p><p><a href="https://www.heise.de/news/OpenSSH-10-setzt-auf-Standards-fuer-quantensicheren-Schluesselaustausch-10345975.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/OpenSSH-10-setzt</span><span class="invisible">-auf-Standards-fuer-quantensicheren-Schluesselaustausch-10345975.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://social.heise.de/tags/Verschl%C3%BCsselung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Verschlüsselung</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/SSH" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SSH</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
:mastodon: Mike Amundsen<p>Draft SP 800-228 Available for Public Comment | CSRC <a href="https://buff.ly/nPAPy94" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">buff.ly/nPAPy94</span><span class="invisible"></span></a></p><p>"The initial public draft (ipd) of NIST Special Publication (SP) 800-228, Guidelines for API Protection for Cloud-Native Systems, is now available for public comment."</p><p><a href="https://mastodon.social/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://mastodon.social/tags/secuirty" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>secuirty</span></a></p>
iX Magazin<p>iX-Workshop IT-Sicherheit: Pentests methodisch planen, anfordern und analysieren</p><p>Schritt für Schritt zum sicheren System: Penetrationstests methodisch planen, beauftragen und auswerten, um Schwachstellen in der eigenen IT aufzuspüren.</p><p><a href="https://www.heise.de/news/iX-Workshop-IT-Sicherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10335041.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/iX-Workshop-IT-S</span><span class="invisible">icherheit-Pentests-methodisch-planen-anfordern-und-analysieren-10335041.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/BSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSI</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/ITInfrastruktur" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInfrastruktur</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/iXWorkshops" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iXWorkshops</span></a> <a href="https://social.heise.de/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://social.heise.de/tags/PenetrationTesting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PenetrationTesting</span></a> <a href="https://social.heise.de/tags/Test" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Test</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Frankie ✅<p>Trump Admin Plans to Cut Team Responsible for Critical Atomic Measurement Data </p><p><a href="https://www.wired.com/story/nist-doge-layoffs-atomic-spectroscopy/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">wired.com/story/nist-doge-layo</span><span class="invisible">ffs-atomic-spectroscopy/</span></a></p><p><a href="https://mastodon.social/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.social/tags/science" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>science</span></a> <a href="https://mastodon.social/tags/nist" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nist</span></a> <a href="https://mastodon.social/tags/politics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>politics</span></a> <a href="https://mastodon.social/tags/uspol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>uspol</span></a> <a href="https://mastodon.social/tags/uspolitics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>uspolitics</span></a> <a href="https://mastodon.social/tags/GOPCult" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GOPCult</span></a> <a href="https://mastodon.social/tags/trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>trump</span></a> <a href="https://mastodon.social/tags/ethics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ethics</span></a> <a href="https://mastodon.social/tags/corruption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>corruption</span></a></p>
Henrik Schönemann<p>Do I know people working at or closely with <a href="https://fedihum.org/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a>? </p><p>Context is <span class="h-card" translate="no"><a href="https://fedihum.org/@SafeguardingResearch" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>SafeguardingResearch</span></a></span>.</p><p>You can ping me here, or:<br>- DeltaChat (<span class="h-card" translate="no"><a href="https://chaos.social/@delta" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>delta</span></a></span>): <a href="https://i.delta.chat/#C4AF870B289E4A9E4F6F8A115414567F5FFDEDB2&amp;a=lavaeolus%40mehl.cloud&amp;n=&amp;i=jeIuUpp1N4mgObIZPYvt8Nzj&amp;s=7oT_k5QB1I0vVD9KEiFs2emk" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">i.delta.chat/#C4AF870B289E4A9E</span><span class="invisible">4F6F8A115414567F5FFDEDB2&amp;a=lavaeolus%40mehl.cloud&amp;n=&amp;i=jeIuUpp1N4mgObIZPYvt8Nzj&amp;s=7oT_k5QB1I0vVD9KEiFs2emk</span></a><br>- Matrix: @schoeneh:matrix.org<br>- Signal: upon request via DM</p>
Scott Williams 🐧<p>Preliminary data for NIST and BSEE added today.</p><p><a href="https://git.lsit.ucsb.edu/publicdata/nist-gov" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">git.lsit.ucsb.edu/publicdata/n</span><span class="invisible">ist-gov</span></a><br><a href="https://git.lsit.ucsb.edu/publicdata/bsee-gov" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">git.lsit.ucsb.edu/publicdata/b</span><span class="invisible">see-gov</span></a></p><p><a href="https://mastodon.online/tags/NIST" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NIST</span></a> <a href="https://mastodon.online/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://mastodon.online/tags/BSEE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSEE</span></a> <a href="https://mastodon.online/tags/data" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>data</span></a> <a href="https://mastodon.online/tags/datarescue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>datarescue</span></a> <a href="https://mastodon.online/tags/research" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>research</span></a> <a href="https://mastodon.online/tags/publicdata" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>publicdata</span></a></p>