Andrea Fortuna
AboutRss
  • Aug 17, 2020

    SANS Institute: how to turn a data breach into an educational opportunity

    The SANS Institute is one of the largest organizations that offer information security training and security certification to users worldwide.In a notification posted recently on their site, the organization states that a phishing attack that target an employee allowed a threat actor to… read more »
  • Aug 14, 2020

    Goodbye Master Bream. Thank you for everything you did

    “I devoted my life to music for a reason, and the reason wasn’t because I wanted to get on or make money, but to try to fulfil myself and also to give people pleasure” - Julian Bream (15 July 1933… read more »
  • Aug 14, 2020

    Re­VoL­TE: decrypting LTE calls to eavesdrop on conversations

    A team of academics from the Ruhr University in Bochum, Germany, has discovered that not all mobile operators follow the 4G standard to the letter of the law: they supports encrypted voice calls, but many calls are encrypted with the… read more »
  • Aug 12, 2020

    Bypassing Biometric Scanners with 3D Printed Fingerprints

    At the DEFCON virtual security conference, security researcher Yamila Levalle outlined how she was able to bypass biometric authentication for a number of different types of fingerprint scanners. During her session [1], Levalle explained various methods of bypass including using a budget… read more »
  • Aug 11, 2020

    “Coronal Mass Ejection”, my new EP, is out now

    From Wikipedia: ”A coronal mass ejection (CME) is a significant release of plasma and accompanying magnetic field from the solar corona. They often follow solar flares and are normally present during a solar prominence eruption. The plasma is released into the solar wind, and can be observed in coronagraph imagery.“ In my… read more »
  • Aug 10, 2020

    Achilles: over 400 vulnerabilities found on Qualcomm’s Snapdragon chip

    Check Point Research reported finding more than 400 bugs in the code used to control the Digital Signal Processing (DSP) cores in Qualcomm's Snapdragon chip families. According to Check Point's Slava Makkaveev, who spoke of this vulnerabilities at DEF CON [2], the flaws are… read more »
  • Jul 31, 2020

    I'll see you in a couple of weeks!

    I really need a break, I will spend some days offline (I hope so!) https://www.youtube.com/watch?v=khyfYITIhV0 … read more »
  • Jul 30, 2020

    Cybersecurity Roundup #15

    "Security is always going to be a cat and mouse game because there'll be people out there that are hunting for the zero day award, you have people that don't have configuration management, don't have vulnerability management, don't have patch… read more »
  • Jul 29, 2020

    Why Huawei USB stick setup on linux adds a strange "Huawei Autorun" script in system start?

    "Huawei installed malware on my Linux laptop"? Let's calm down and try to collect more information! Recently I've read an interesting article [1] published on "Sunburt Technology" blog: The screenshot above shows a script called "Huawei Autorun" which executes the… read more »
  • Jul 28, 2020

    Weekly Tech Roundup #14

    "All of the books in the world contain no more information than is broadcast as video in a single large American city in a single year. Not all bits have equal value" - Carl Sagan Boot Up Windows 95 PC… read more »
  • Jul 27, 2020

    "Change Of Season": four songs, entirely written by human

    I know: lately I'm often experimented AI-aided music composition, as well algorithmic generated melodies. However, meanwhile I continued writing my own music: I have the gift (or the curse, depending on your perspective) to have always some melodies swimming in… read more »
  • Jul 24, 2020

    How secure and privacy-oriented is iOS?

    It’s a question that I’m often asked, from friends, colleagues and clients. The answer is not simple, in a nutshell: if you stay in the Apple ecosystem, security is guaranteed but you may lost control of your data privacy. In… read more »
  • Jul 23, 2020

    Weekly Privacy Roundup #14

    "My inbox is the enemy" - Glenn Greenwald 'Unforgivable': The privacy breach that exposed sensitive details of WA's virus fight One of Western Australia's biggest privacy breaches, which involves the interception of thousands of State Government communications, is under investigation.… read more »
  • Jul 22, 2020

    Vulnerable webapps and VMs for penetration testing practice: my own list

    A list that may be useful to readers that are studying for a certification exam or, more simply, to those who just want to have fun! Google Gruyere Gruyere is a Google project to teach web application exploitation and defense.… read more »
  • Jul 21, 2020

    Weekly Cybersecurity Roundup #14

    "I am regularly asked what the average Internet user can do to ensure his security. My first answer is usually 'Nothing; you're screwed." - Bruce Scheneier Iranian cyberspies leave training videos exposed online One of Iran's top hacking groups (APT35)… read more »
  • Jul 20, 2020

    Animal Kingdom: new experiments of computer aided composition

    In the past weeks, I've already written about some funny experiments that i made first with music and machine learning, then with music composed using pseudo-random algorithms. In both cases, results are some interesting, but strange, melodies that I finished… read more »
  • Jul 17, 2020

    Sara Morrison: how SDKs, hidden trackers in your phone, work

    In a good article on Recode, Sara Morrison made a useful overview on trackers hidden in smartphone SDKs. Some highlights: Your phone is the ideal tool for advertisers and data brokers, both as a means of collecting your information and… read more »
  • Jul 16, 2020

    Weekly Tech Roundup #13

    "Microsoft isn't evil, they just make really crappy operating systems." - Linus Torvalds Apple, Biden, Musk and other high-profile Twitter accounts hacked in crypto scam A number of high-profile Twitter accounts were simultaneously hacked on Wednesday by attackers who used… read more »
  • Jul 15, 2020

    SIGRed: a 17-year-old wormable vulnerability in Windows DNS server

    Last Microsoft’s Patch Tuesday addressed a 17-year-old vulnerability impacting Microsoft Windows DNS Server, tracked as CVE-2020-1350 and dubbed "SigRed" by ChekPoint's researchers. The issue received a severity rating of 10.0 on the CVSS scale and affects Windows Server versions 2003… read more »
  • Jul 14, 2020

    Will Cathcart: the future of digital communication and privacy

    The CEO of WhatsApp talking about the future of communication and privacy? Yes, in "virtual" TED-Talk! Will Cathcart is the Head of WhatsApp. He joined Facebook in 2010 and has worked on a number of Facebook’s products, becoming Vice President… read more »
« Previous page Next page »

Andrea Fortuna

  • Andrea Fortuna
  • andrea@andreafortuna.org
  • andreafortuna
  • andreafortunaig
  • andrea-fortuna
  • andrea
  • andreafortunatw

Cybersecurity expert, software developer, experienced digital forensic analyst, musician