VPNs to use while in China?

I previous tried Nord and Express VPN but neither worked. Does anyone have a suggestion for a reliable VPN to use while within China? submitted by /u/RealMrIncredible [link] [comments]

What is the point of Bitlocker with only TPM ?

Hi everyone. On my gaming laptop, I have a dual boot encrypted Windows and Linux Mint with pre-boot password and OS Login screen with another password.

On my new laptop, I only have the windows password along with my fingerprint. The TPM is used to auto-unlock.

But what I understand is that someone who can crack my Windows password (and apparently it is fearly easy) would be able to log into my session and hence Bitlocker would be useless ?

One of my friend is telling me it’s easy to crack the windows password even if bitlocker is on, the other one is telling me it’s impossible cause on the login screen, the OS is still encrypted.

Which one is right ? Can you help me understand how the TPM only Bitlocker with a windows password fingerprint is secure, and what would be the threat if my laptop if stolen for instance.

Added question : Is fast boot a security flaws regarding a TPM only Bitlocker Windows installation ?

Thanks in advance !

submitted by /u/RedeyeFR
[link] [comments]

1,000 ships impacted by a ransomware attack on maritime software supplier DNV

A ransomware attack against the maritime software supplier DNV impacted approximately 1,000 vessels. About 1,000 vessels have been impacted by a ransomware attack against DNV, one of the major maritime software suppliers.  DNV GL provides solutions and services throughout the life cycle of any vessel, from design and engineering to risk assessment and ship management. […]

The post 1,000 ships impacted by a ransomware attack on maritime software supplier DNV appeared first on Security Affairs.

How to abuse GitHub Codespaces to deliver malicious content

Researchers demonstrated how to abuse a feature in GitHub Codespaces to deliver malware to victim systems. Trend Micro researchers reported that it is possible to abuse a legitimate feature in the development environment GitHub Codespaces to deliver malware to victim systems. Users can customize their project for GitHub Codespaces by committing configuration files to their repository, which […]

The post How to abuse GitHub Codespaces to deliver malicious content appeared first on Security Affairs.

What Next?

So i gonna try it again and i hope that mods not gonna delete this post. I found way how to get into school network and get students password. It’s bad protected, my question is, if i gonna say this to somebody who manage school network can i have problem from it? And if so how can I show them the problem si they can fix it. If something is off ,english isn’t my born language.

submitted by /u/Gold-Dig-2351
[link] [comments]

Patch your Zoho ManageEngine instance immediately! PoC Exploit for CVE-2022-47966 will be released soon

A PoC exploit code for the unauthenticated remote code execution vulnerability CVE-2022-47966 in Zoho ManageEngine will be released soon. The CVE-2022-47966 flaw is an unauthenticated remote code execution vulnerability that impacts multiple Zoho products with SAML SSO enabled in the ManageEngine setup. The issue also impacts products that had the feature enabled in the past. The […]

The post Patch your Zoho ManageEngine instance immediately! PoC Exploit for CVE-2022-47966 will be released soon appeared first on Security Affairs.