Corona-Whistleblowerin Dr. Sabine C. Stebel:
RKI-Leaks - Christian Drosten vor Gericht? - Neue Enthรผllungen lassen ihn auffliegen [Neue Horizonte Interview] (360p/71MiB)
Corona-Whistleblowerin Dr. Sabine C. Stebel:
RKI-Leaks - Christian Drosten vor Gericht? - Neue Enthรผllungen lassen ihn auffliegen [Neue Horizonte Interview] (360p/71MiB)
Roland Häder๐ฉ๐ช mag das.
Roland Häder๐ฉ๐ช hat dies geteilt.
Roland Häder๐ฉ๐ช mag das.
Roland Häder๐ฉ๐ช hat dies geteilt.
Roland Häder๐ฉ๐ช mag das.
Roland Häder๐ฉ๐ช hat dies geteilt.
>AMD is warning about a high-severity CPU vulnerability named SinkClose that impacts multiple generations of its EPYC, Ryzen, and Threadripper processors. The vulnerability allows attackers with Kernel-level (Ring 0) privileges [that is, device drivers] to gain Ring -2 privileges and install malware that becomes nearly undetectable.
>Ring -2 is one of the highest privilege levels on a computer, running above Ring -1 (used for hypervisors and CPU virtualization) and Ring 0, which is the privilege level used by an operating system's Kernel.
>The Ring -2 privilege level is associated with modern CPUs' System Management Mode (SMM) feature. SMM handles power management, hardware control, security, and other low-level operations required for system stability.
>Due to its high privilege level, SMM is isolated from the operating system to prevent it from being targeted easily by threat actors and malware.
>Tracked as CVE-2023-31315 and rated of high severity (CVSS score: 7.5), the flaw was discovered by IOActive Enrique Nissim and Krzysztof Okupski, who named privilege elevation attack 'Sinkclose.'
>Full details about the attack will be presented by the researchers at tomorrow in a DefCon talk titled "AMD Sinkclose: Universal Ring-2 Privilege Escalation."
>The researchers report that Sinkclose has passed undetected for almost 20 years, impacting a broad range of AMD chip models.
>Ring -2 is isolated and invisible to the OS and hypervisor, so any malicious modifications made on this level cannot be caught or remediated by security tools running on the OS.
>Okupski told Wired that the only way to detect and remove malware installed using SinkClose would be to physically connect to the CPUs using a tool called a SPI Flash programmer and scan the memory for malware.
Access to Ring 0 on Windows is trivial:
>[...] Advanced Persistent Threat (APT) actors, like the North Korean Lazarus group, have been using BYOVD (Bring Your Own Vulnerable Driver) techniques or even leveraging zero-day Windows flaws to escalate their privileges and gain kernel-level access.
>Ransomware gangs also use BYOVD tactics, employing custom EDR killing tools they sell to other cybercriminals for extra profits.
>The notorious social engineering specialists Scattered Spider have also been spotted leveraging BYOVD to turn off security products.
>These attacks are possible via various tools, from Microsoft-signed drivers, anti-virus drivers, MSI graphics drivers, bugged OEM drivers, and even game anti-cheat tools that enjoy kernel-level access.
Whose lucky Russian \ Chinese state APT group will pounce on this to create another bootkit?
bleepingcomputer.com/news/security/new-amd-sinkclose-flaw-helps-install-nearly-undetectable-malware/
Liebes fediverse
Ich hab mich etwas weiter umgesehen und bin auch auf friendica gestossen. Es scheint viel Platz zum schreiben zu bieten und nen interessanten Aufbau.
Daher meine Frage an friendica Nutzer, seid ihr zufrieden, auf welcher Instanz seid ihr? Teilt mir bitte einfach eure Erfahrungen mit.
Danke im voraus.
๐ฌ๐ง Press conference: Whistleblower leaks secret covid-19 documents of Germanys public health institute RKI (360p/156MiB)
On the morning of July 23, 2024, the freelance journalist Aya Velรกzquez published all the documents of the Covid-19 crisis team of the Robert Koch Institute (RKI). A whistleblower who worked at the RKI sent her the documents and 10GB of accompanying material.
That's right, I haven't heard from him for a long time.
The vaccination won't have done him any harm, will it?
Nach Snowden gab es eine Weile verschiedene Websites, die Tipps fรผr sichere Kommunikation oder nicht-kommerzielle Tools hatten, oder welche verglichen.. hat die noch wer in den Bookmarks?
UPDATE
Sorry wegen der Missverstรคndnisse. Ich suche nicht allgemein Tipps, sondern ganz konkret diese ersten Sammlungen, die nach Snowden entstanden.
The most reliable website for privacy tools since 2015. Software, services, apps and privacy guides to fight surveillance with encryption for better internet privacy.www.privacytools.io
๐ฉ๐ช Dann fรคllt der Schwindel auch auf, wenn die Leute merken, dass sie schon von Natur aus Antikรถrper haben.
Das RKI so:
"Auรerdem Risiko, dass Personen sich auf Antikรถrper testen und dann nicht impfen lassen wollen"
๐ฌ๐ง The fraud also becomes apparent when people realize that they already have antibodies by nature.
The RKI-(Leaks) says:
"In addition, there is a risk that people will test for antibodies and then not want to be vaccinated"
odysee.com/@Data:59/Das-RKI-soโฆ
View Das RKI so: "Auรerdem Risiko, dass Personen sich auf Antikรถrper testen und dann nicht impfen lassen wollen" (Textbeitrag) on OdyseeOdysee
Trump-Shooting:
Zapruder 2.0
(720p/65MiB)
Roland Hรคder๐ฉ๐ช
Als Antwort auf โค๐ช๐๐๐๐ฆ๐ค๐๐๐ฉ๐๐๐ฆ๐ค • • •