<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[isharestuff.com - Portal News]]></title>
<link><![CDATA[https://isharestuff.com/export/rss/portal-news.xml?q=38c3+from+fault+injection%2F]]></link>
<description><![CDATA[Aktuelle Nachrichten und Updates auf isharestuff.com]]></description>
<language>de-DE</language>
<lastBuildDate>Wed, 05 Aug 2026 09:07:37 +0200</lastBuildDate>
<pubDate>Wed, 05 Aug 2026 09:07:37 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 isharestuff.com - Portal News</copyright>
<managingEditor>isharestuff.com (isharestuff.com)</managingEditor>
<webMaster>isharestuff.com (isharestuff.com)</webMaster>
<image>
<url>https://isharestuff.com/templates/mydraft-basis-isharestuff-com/media/logo.png</url>
<title><![CDATA[isharestuff.com - Portal News]]></title>
<link><![CDATA[https://isharestuff.com/export/rss/portal-news.xml?q=38c3+from+fault+injection%2F]]></link>
</image>
<atom:link href="https://isharestuff.com/RSS/1/?q=38c3+from+fault+injection%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[Ceuta at the Fault Lines of European Solidarity]]></title>
<description><![CDATA[On Friday morning, Europeans woke up to unsettling news. Within 24 hours, approximately 60,000 migrants successfully managed to reach the Spanish enclave of Ceuta in North Africa, and several dozen have been reported dead in the attempt to swim across the border. Spanish Prime Minister Pedro Sánc...]]></description>
<link>https://isharestuff.com/de/3785077/politik-blogs/ceuta-at-the-fault-lines-of-european-solidarity/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3785077/politik-blogs/ceuta-at-the-fault-lines-of-european-solidarity/</guid>
<pubDate>Mon, 03 Aug 2026 17:24:33 +0200</pubDate>
<content:encoded><![CDATA[<p>On Friday morning, Europeans woke up to unsettling news. Within 24 hours, approximately 60,000 migrants successfully managed to reach the Spanish enclave of Ceuta in North Africa, and several dozen have been reported dead in the attempt to swim across the border. Spanish Prime Minister Pedro Sánchez has ordered the military to support the Civil Guard on the ground. What caused this sudden influx? Does EU law offer the procedures and mechanisms to respond to the spontaneous arrival of such large numbers of people? And what do these events reveal about the internal functioning of the EU’s migration and asylum regime and solidarity between Member States?</p>
<p>The post <a href="https://verfassungsblog.de/ceuta-eu-migration/">Ceuta at the Fault Lines of European Solidarity</a> appeared first on <a href="https://verfassungsblog.de/">Verfassungsblog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Laundry Bear: 15 Länder warnen vor massiver Zimbra-Spionage - BornCity]]></title>
<description><![CDATA[Laundry Bear: 15 Länder warnen vor massiver Zimbra-Spionage  BornCityRussische Angreifer missbrauchen Zero-Click-Lücke in Zimbra  heise onlineZimbra 10.1.20: Kritische SNMP-Lücke erlaubt Fernzugriff ohne Authentifizierung  Börse ExpressZimbra-Updates stopfen SNMP-Command-Injection und XSS in Clas...]]></description>
<link>https://isharestuff.com/de/3765117/politik-wirtschaft/laundry-bear-15-laender-warnen-vor-massiver-zimbra-spionage-borncity/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3765117/politik-wirtschaft/laundry-bear-15-laender-warnen-vor-massiver-zimbra-spionage-borncity/</guid>
<pubDate>Fri, 24 Jul 2026 09:22:26 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMijwFBVV95cUxQajAtT0oyTm1MX1Y4YjhXdnZaRW5FQjN1ak8xMmdrb2tnenpuNV9uWFpPdHVfWGNCaG11dm9oNkVSUVRKY05OeE93WGYzY0U2QzVTNWdycVoyMDQ0dmVTTGhvdFZYMXAwTVNpS3hzT0M1WlJGZE1uZVRVQVFUMTk1STc0cnJ3ZDd6ekVZeTBKNA?oc=5" target="_blank">Laundry Bear: 15 Länder warnen vor massiver Zimbra-Spionage</a>  BornCity</li><li><a href="https://news.google.com/rss/articles/CBMiogFBVV95cUxQSFNtRzc4VmRCS0hZTTJWWjA1LUhDSXltakRRSkdyaGRqTUJIWHpSMVJTMTgyM1g4ZnJ5bFZSMUoxeF9uMlU4MThha1QwV2cyTnB3SWdmZllQME05bks3cHNReHhlaXlmTG5OanFPbVlGc2FFZ1BKTnM4S1FuV1BZaDYtLXNtZllMQWdYWk1xTTdiaXV4ajFkMWltb0taZmlWSmc?oc=5" target="_blank">Russische Angreifer missbrauchen Zero-Click-Lücke in Zimbra</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMiyAFBVV95cUxOMml1eDhtaDBWY2d2TGdRbmJGbVdGWEJmckdWbEFrSjZwbnRnMllJSDlhQjR5TGpoUjNsY1BjT3hCSjU1VXBvRUlWQVczVWRKa3IyeDNOdnBRczN6TURETnV6bXoyMnp0Tkk1SzlKX2ltM0ZnRUVRRFdHMTBka1VTVEFuN2k4enM0RG9CSUMxVV92dUZtWDZ2NnpDSDFpd0lGT1VZOTR0YVR1dFJvMjFwUnVvUUdSY1ZzOURqdFU1TkphcDhZcHJCeg?oc=5" target="_blank">Zimbra 10.1.20: Kritische SNMP-Lücke erlaubt Fernzugriff ohne Authentifizierung</a>  Börse Express</li><li><a href="https://news.google.com/rss/articles/CBMiqwFBVV95cUxPdjBlVFBTYktjLUtlOF9YOHdZc0c1dUE1R0phT29PSWNlU3F2QUJxajlqS2tDYi1EZ19yZ1pMUmlGRGF2RkxPV0JtX2o3TzhiVXRKaVBsZHliQ01xUFFwMEhoSUlkZkU2VzVHdGFOb3pTVE50ZlhjUFBQSGstMUljTmJoSHFxUHI5cVQwN0FpUEQ5bjkzQ0Izci1qSVhkVDE5UXBxeDBHUjZzM2s?oc=5" target="_blank">Zimbra-Updates stopfen SNMP-Command-Injection und XSS in Classic Web Client</a>  it boltwise</li><li><a href="https://news.google.com/rss/articles/CBMirwFBVV95cUxPNFZVbEwxVS15ZElSY2JmOWtxTFdkS29HT3V6bmpmRmtYZVNkMFpZOTE0NGVGUjBwdHZhUXNNeTJBdHdqd3hUSENGSlpQY2pIeHRPNUg1LU1jbWNScVpHanFLdDF0ZEJ5NGlFMGYwMnpsRU9NY0J1Q1BfSXQzbHE2SXVJaFFrRlQ2cHE5NTNzRVpldC1qMlBsV3d2Z2xPOHpERHo0VkdDRVRpRXl0ZU4w?oc=5" target="_blank">Laundry Bear greift an: Russische Hacker infizieren ohne Klick</a>  Ad-hoc-news.de</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Russische Angreifer missbrauchen Zero-Click-Lücke in Zimbra - heise online]]></title>
<description><![CDATA[Russische Angreifer missbrauchen Zero-Click-Lücke in Zimbra  heise onlineZimbra 10.1.20: Kritische SNMP-Lücke erlaubt Fernzugriff ohne Authentifizierung  Börse ExpressZimbra-Updates stopfen SNMP-Command-Injection und XSS in Classic Web Client  it boltwise]]></description>
<link>https://isharestuff.com/de/3765015/politik-wirtschaft/russische-angreifer-missbrauchen-zero-click-luecke-in-zimbra-heise-online/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3765015/politik-wirtschaft/russische-angreifer-missbrauchen-zero-click-luecke-in-zimbra-heise-online/</guid>
<pubDate>Fri, 24 Jul 2026 08:46:07 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMiogFBVV95cUxQSFNtRzc4VmRCS0hZTTJWWjA1LUhDSXltakRRSkdyaGRqTUJIWHpSMVJTMTgyM1g4ZnJ5bFZSMUoxeF9uMlU4MThha1QwV2cyTnB3SWdmZllQME05bks3cHNReHhlaXlmTG5OanFPbVlGc2FFZ1BKTnM4S1FuV1BZaDYtLXNtZllMQWdYWk1xTTdiaXV4ajFkMWltb0taZmlWSmc?oc=5" target="_blank">Russische Angreifer missbrauchen Zero-Click-Lücke in Zimbra</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMiyAFBVV95cUxOMml1eDhtaDBWY2d2TGdRbmJGbVdGWEJmckdWbEFrSjZwbnRnMllJSDlhQjR5TGpoUjNsY1BjT3hCSjU1VXBvRUlWQVczVWRKa3IyeDNOdnBRczN6TURETnV6bXoyMnp0Tkk1SzlKX2ltM0ZnRUVRRFdHMTBka1VTVEFuN2k4enM0RG9CSUMxVV92dUZtWDZ2NnpDSDFpd0lGT1VZOTR0YVR1dFJvMjFwUnVvUUdSY1ZzOURqdFU1TkphcDhZcHJCeg?oc=5" target="_blank">Zimbra 10.1.20: Kritische SNMP-Lücke erlaubt Fernzugriff ohne Authentifizierung</a>  Börse Express</li><li><a href="https://news.google.com/rss/articles/CBMiqwFBVV95cUxPdjBlVFBTYktjLUtlOF9YOHdZc0c1dUE1R0phT29PSWNlU3F2QUJxajlqS2tDYi1EZ19yZ1pMUmlGRGF2RkxPV0JtX2o3TzhiVXRKaVBsZHliQ01xUFFwMEhoSUlkZkU2VzVHdGFOb3pTVE50ZlhjUFBQSGstMUljTmJoSHFxUHI5cVQwN0FpUEQ5bjkzQ0Izci1qSVhkVDE5UXBxeDBHUjZzM2s?oc=5" target="_blank">Zimbra-Updates stopfen SNMP-Command-Injection und XSS in Classic Web Client</a>  it boltwise</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cyclic sealing and drainage on an oceanic transform fault | Science]]></title>
<description><![CDATA[Oceanic transform faults have been considered conservative, shear-dominated boundaries, yet their proximity to magmatic systems implies fluid involvement. In this work, we discovered tidally modulated tremor at the Gofar transform fault along the East ...]]></description>
<link>https://isharestuff.com/de/3751179/wissen/cyclic-sealing-and-drainage-on-an-oceanic-transform-fault-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3751179/wissen/cyclic-sealing-and-drainage-on-an-oceanic-transform-fault-science/</guid>
<pubDate>Thu, 16 Jul 2026 20:16:29 +0200</pubDate>
<content:encoded><![CDATA[Oceanic transform faults have been considered conservative, shear-dominated boundaries, yet their proximity to magmatic systems implies fluid involvement. In this work, we discovered tidally modulated tremor at the Gofar transform fault along the East ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Chemistry sparks in 'Your Fault: London']]></title>
<description><![CDATA[Author: Associated Press - Bewertung: 6x - Views:114 "Your Fault: London" stars Asha Banks and Matthew Broome return to the forbidden romance sequel closer than ever. 

#yourfaultlondon #ashabanks #matthewbroome]]></description>
<link>https://isharestuff.com/de/3681684/nachrichten/chemistry-sparks-in-your-fault-london/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3681684/nachrichten/chemistry-sparks-in-your-fault-london/</guid>
<pubDate>Fri, 12 Jun 2026 15:35:53 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Associated Press - Bewertung: 6x - Views:114 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/-MSgZOrQF94?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>"Your Fault: London" stars Asha Banks and Matthew Broome return to the forbidden romance sequel closer than ever. <br />
<br />
#yourfaultlondon #ashabanks #matthewbroome<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pakistan army helicopter crashes in Kashmir, killing all on board]]></title>
<description><![CDATA[Author: Associated Press - Bewertung: 3x - Views:175 A Pakistani army MI-17 helicopter crashed due to a technical fault in Pakistan-controlled Kashmir on Wednesday, killing all military personnel on board, the military said. (AP video shot by Muhammad Din Mughal / Production: Muhammad Farooq)

...]]></description>
<link>https://isharestuff.com/de/3677736/nachrichten/pakistan-army-helicopter-crashes-in-kashmir-killing-all-on-board/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3677736/nachrichten/pakistan-army-helicopter-crashes-in-kashmir-killing-all-on-board/</guid>
<pubDate>Thu, 11 Jun 2026 05:32:27 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Associated Press - Bewertung: 3x - Views:175 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/3Eb8MDTJpY8?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>A Pakistani army MI-17 helicopter crashed due to a technical fault in Pakistan-controlled Kashmir on Wednesday, killing all military personnel on board, the military said. (AP video shot by Muhammad Din Mughal / Production: Muhammad Farooq)<br />
<br />
Subscribe: http://smarturl.it/AssociatedPress <br />
Read more: https://apnews.com​<br />
<br />
This video may be available for archive licensing via https://newsroom.ap.org/home<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[giulioz: MMO-CHIP: From Microscope to Verilog in an hour]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 8x - Views:55 https://media.ccc.de/v/gpn24-616-mmo-chip-from-microscope-to-verilog-in-an-hour

Reverse engineering old custom chips from microscope pictures is cool, but oh so painfully slow!
Last time I did this (talk at 38C3), I spent two weeks waking up, annot...]]></description>
<link>https://isharestuff.com/de/3670097/it-sicherheit/giulioz-mmo-chip-from-microscope-to-verilog-in-an-hour/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3670097/it-sicherheit/giulioz-mmo-chip-from-microscope-to-verilog-in-an-hour/</guid>
<pubDate>Sun, 07 Jun 2026 13:33:13 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 8x - Views:55 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/5211iYEqnzo?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/gpn24-616-mmo-chip-from-microscope-to-verilog-in-an-hour<br />
<br />
Reverse engineering old custom chips from microscope pictures is cool, but oh so painfully slow!<br />
Last time I did this (talk at 38C3), I spent two weeks waking up, annotating wires in Inkscape, going to bed, and then dreaming about more wires. So I decided to bite the bullet and finally build some better tooling, to keep future me more sane as well.<br />
<br />
In this talk I'll present _MMO-CHIP_, an open source silicon reverse engineering tool I built for helping preserve and emulating custom undocumented chips, like the DSPs used in old synthesizers. It's web based and allows collaborative annotation, it handles giant pictures effortlessly and integrates a lot of features specifically designed for digitizing silicon, including some computer vision techniques. It's even able to infer the logical formula of complex logic gates, just from a few scribbles!<br />
<br />
I will explain in detail how the algorithms used work, and how you can use it to go from microscope to simulable Verilog code in less than an hour (or even less if you draw in multiplayer with some friends!).<br />
<br />
giulioz<br />
<br />
https://cfp.gulas.ch/gpn24/talk/FWCJ73/<br />
<br />
#gpn24 #HardwareandMaking<br />
<br />
Licensed to the public under https://creativecommons.org/licenses/by/4.0/<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ChatGPT: OpenAI verbessert Sicherheit für Nutzer mit Lockdown-Modus]]></title>
<description><![CDATA[Alle Nutzer von ChatGPT erhalten ab sofort Zugriff auf den sogenannten Lockdown-Modus. Die Funktion verbessert die Sicherheit, indem sie gezielt vor sogenannten Prompt-Injection-Angriffen schützt.			(Weiter lesen)]]></description>
<link>https://isharestuff.com/de/3669190/computer-internet/chatgpt-openai-verbessert-sicherheit-fuer-nutzer-mit-lockdown-modus/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3669190/computer-internet/chatgpt-openai-verbessert-sicherheit-fuer-nutzer-mit-lockdown-modus/</guid>
<pubDate>Sat, 06 Jun 2026 18:01:04 +0200</pubDate>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,159173.html"><img hspace="5" border="0" align="left" alt="OpenAI, ChatGPT" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/61829.jpg"></a>
			Alle Nutzer von <a href="https://winfuture.de/special/openai/" title="OpenAI Special">ChatGPT</a> erhalten ab sofort Zugriff auf den sogenannten Lockdown-Modus. Die Funktion verbessert die Sicherheit, indem sie gezielt vor sogenannten Prompt-Injection-Angriffen schützt.			(<a href="https://winfuture.de/news,159173.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Ariana Grande - hate that i made you love me (official music video)]]></title>
<description><![CDATA[Author: ArianaGrandeVevo - Bewertung: 291244x - Views:967431 The official music video for Ariana Grande’s “hate that i made you love me” 

Listen to “hate that i made you love me”: https://arianagrande.lnk.to/htimylm

Shop the ‘petal’ and “hate that i made you love me” collections: https://ariana...]]></description>
<link>https://isharestuff.com/de/3659156/musik/ariana-grande-hate-that-i-made-you-love-me-official-music-video/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3659156/musik/ariana-grande-hate-that-i-made-you-love-me-official-music-video/</guid>
<pubDate>Mon, 01 Jun 2026 21:02:22 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: ArianaGrandeVevo - Bewertung: 291244x - Views:967431 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/82-jTNka3uc?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>The official music video for Ariana Grande’s “hate that i made you love me” <br />
<br />
Listen to “hate that i made you love me”: https://arianagrande.lnk.to/htimylm<br />
<br />
Shop the ‘petal’ and “hate that i made you love me” collections: https://arianagrande.lnk.to/shop<br />
<br />
► Follow Ariana Grande:<br />
https://www.arianagrande.com<br />
https://instagram.com/arianagrande<br />
https://tiktok.com/@arianagrande <br />
https://facebook.com/arianagrande<br />
<br />
► Subscribe to Ariana Grande: https://arianagrande.lnk.to/subscribe<br />
<br />
Credits:<br />
Director: Christian Breslauer<br />
Production Company: London Alley & Lucky Bastards<br />
Producers: Andrew Lerios, Mike Breslauer, Luga Podesta<br />
Director of Photography: Janusz Kamiński<br />
Production Designer: Taisa Malouf<br />
1st AD: Jonas Morales <br />
Production Manager: Nick Pistone<br />
Stunt Coordinator: Paul Lacovara<br />
Post Supervisor: Ivan Ovalle<br />
Editor: Luis Caraza <br />
Colorist: Matt Wallach<br />
FX: Mathematic<br />
Titles & Poster Design - @rising67.studio<br />
<br />
Official “hate that i made you love me” lyrics: <br />
<br />
i can’t tell you why <br />
but something inside <br />
is dancing with fire <br />
eyes lit like the sky <br />
turned tears into diamonds <br />
got good at goodbyes<br />
 <br />
just know that i will find my way from you               <br />
like flowers from a tomb <br />
while you decide who you are <br />
and i can see right through<br />
like shadows on the moon <br />
and it’s all bad news  <br />
 <br />
yeah i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
 <br />
what’s happening now ?<br />
you studied my crown <br />
and borrowed my body <br />
warm, kissed by the sun <br />
then cold like the wind <br />
a bee stuck in honey<br />
 <br />
know that i will find my way from you <br />
i guess it’s kinda cute<br />
how you like me where you are <br />
but i can see right through<br />
just don’t eclipse the moon<br />
cause it’s all bad news<br />
 <br />
yeah i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
 <br />
i’ve held your projections when you’ve felt so insecure <br />
tell me why is it this way <br />
why you so hate to see women endure <br />
is it really my fault <br />
you all gave me your hearts <br />
of your own accord ?<br />
i don’t really think so <br />
 <br />
 i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
<br />
#arianagrande #hatethatimadeyouloveme #petal<br />
<br />
Music video by Ariana Grande performing hate that i made you love me.© 2026 Babydoll Music, under exclusive license to Republic Records, a division of UMG Recordings, Inc.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Prompt-Injection: Entwickler lässt KI-Agenten fremde Projekte sabotieren]]></title>
<description><![CDATA[Eine Prompt Injection in einem Open-Source-Projekt soll Vibe Coder vorsätzlich schädigen. Der Entwickler erntet dafür reichlich Kritik. (KI, Malware)]]></description>
<link>https://isharestuff.com/de/3653402/computer-internet/prompt-injection-entwickler-laesst-ki-agenten-fremde-projekte-sabotieren/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3653402/computer-internet/prompt-injection-entwickler-laesst-ki-agenten-fremde-projekte-sabotieren/</guid>
<pubDate>Fri, 29 May 2026 14:16:03 +0200</pubDate>
<content:encoded><![CDATA[Eine Prompt Injection in einem Open-Source-Projekt soll Vibe Coder vorsätzlich schädigen. Der Entwickler erntet dafür reichlich Kritik. (<a href="https://www.golem.de/specials/ki/">KI</a>, <a href="https://www.golem.de/specials/malware/">Malware</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=209197&amp;page=1&amp;ts=1780056602" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Ariana Grande - hate that i made you love me (official lyric video)]]></title>
<description><![CDATA[Author: Ariana Grande - Bewertung: 194734x - Views:955871 The official lyric video for Ariana Grande’s “hate that i made you love me” 

Listen to “hate that i made you love me” https://arianagrande.lnk.to/htimylm

Shop the ‘petal’ and “hate that i made you love me” collections: https://arianagran...]]></description>
<link>https://isharestuff.com/de/3653330/musik/ariana-grande-hate-that-i-made-you-love-me-official-lyric-video/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3653330/musik/ariana-grande-hate-that-i-made-you-love-me-official-lyric-video/</guid>
<pubDate>Fri, 29 May 2026 13:47:40 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Ariana Grande - Bewertung: 194734x - Views:955871 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/v1t4MTqdfyI?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>The official lyric video for Ariana Grande’s “hate that i made you love me” <br />
<br />
Listen to “hate that i made you love me” https://arianagrande.lnk.to/htimylm<br />
<br />
Shop the ‘petal’ and “hate that i made you love me” collections: https://arianagrande.lnk.to/shop<br />
<br />
► Follow Ariana Grande:<br />
https://www.arianagrande.com<br />
https://instagram.com/arianagrande<br />
https://tiktok.com/@arianagrande <br />
https://facebook.com/arianagrande<br />
<br />
► Subscribe to Ariana Grande: https://arianagrande.lnk.to/subscribe<br />
<br />
Official “hate that i made you love me” lyrics: <br />
<br />
i can’t tell you why <br />
but something inside <br />
is dancing with fire <br />
eyes lit like the sky <br />
turned tears into diamonds <br />
got good at goodbyes<br />
 <br />
just know that i will find my way from you               <br />
like flowers from a tomb <br />
while you decide who you are <br />
and i can see right through<br />
like shadows on the moon <br />
and it’s all bad news  <br />
 <br />
yeah i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
 <br />
what’s happening now ?<br />
you studied my crown <br />
and borrowed my body <br />
warm, kissed by the sun <br />
then cold like the wind <br />
a bee stuck in honey<br />
 <br />
know that i will find my way from you <br />
i guess it’s kinda cute<br />
how you like me where you are <br />
but i can see right through<br />
just don’t eclipse the moon<br />
cause it’s all bad news<br />
 <br />
yeah i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
 <br />
i’ve held your projections when you’ve felt so insecure <br />
tell me why is it this way <br />
why you so hate to see women endure <br />
is it really my fault <br />
you all gave me your hearts <br />
of your own accord ?<br />
i don’t really think so <br />
 <br />
 i i i <br />
hate that i made you love me <br />
sorry if i made me your type <br />
yeah i i hate that i made you love me <br />
cause i barely tried <br />
<br />
#arianagrande #hatethatimadeyouloveme #petal<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Open for debate : governance, power, and the limits of internet openness]]></title>
<description><![CDATA[dc.title: Open for debate : governance, power, and the limits of internet openness
dc.contributor.editor: PAWLAK, Patryk; BERGLUND, Nils
dc.description.abstract: Open for Debate: Governance, Power, and the Limits of Internet Openness is an edited collection that examines how the concept and pract...]]></description>
<link>https://isharestuff.com/de/3650769/wissen/open-for-debate-governance-power-and-the-limits-of-internet-openness/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3650769/wissen/open-for-debate-governance-power-and-the-limits-of-internet-openness/</guid>
<pubDate>Thu, 28 May 2026 12:15:39 +0200</pubDate>
<content:encoded><![CDATA[dc.title: Open for debate : governance, power, and the limits of internet openness
dc.contributor.editor: PAWLAK, Patryk; BERGLUND, Nils
dc.description.abstract: Open for Debate: Governance, Power, and the Limits of Internet Openness is an edited collection that examines how the concept and practice of an &quot;open internet&quot; have evolved under changing technological, economic, and geopolitical conditions. Drawing together contributions from scholars and practitioners across law, economics, political science, and technical communities, the collection investigates how openness is being redefined and contested at the infrastructure, logical, and policy layers of the digital ecosystem. The volume addresses five thematic areas: the evolution of the open internet concept from a primarily technical notion rooted in interoperable protocols and decentralised governance to a multidimensional condition entangled with questions of digital rights, security, and state and corporate power; sovereignty, interoperability, and standards as key fault lines in contemporary internet governance; divergent regulatory regimes governing cross-border data flows and digital trade; the relationship between open internet principles, innovation, and economic development; and the role of companies, markets, and business models in shaping the conditions of openness. Adopting a layered and systemic perspective, the contributions collectively ask not whether the internet remains open in principle, but how openness is being redefined, by whom, and with what consequences for innovation, competition, rights, and political power.
dc.description: Published online: April 2026]]></content:encoded>
</item>
<item>
<title><![CDATA[(g+) ActiveMQ Jolokia Code-Injection: Schwachstelle Message Broker]]></title>
<description><![CDATA[CVE-2026-34197 in Apache ActiveMQ wird aktiv ausgenutzt. Die Schwachstelle liegt in der Jolokia-API, in einigen Versionen ist keine Authentisierung nötig. Was zu tun ist. Eine Analyse von Steffen Zahn (Security, Virtualisierung)]]></description>
<link>https://isharestuff.com/de/3644293/computer-internet/g-activemq-jolokia-code-injection-schwachstelle-message-broker/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3644293/computer-internet/g-activemq-jolokia-code-injection-schwachstelle-message-broker/</guid>
<pubDate>Mon, 25 May 2026 10:01:46 +0200</pubDate>
<content:encoded><![CDATA[CVE-2026-34197 in Apache ActiveMQ wird aktiv ausgenutzt. Die Schwachstelle liegt in der Jolokia-API, in einigen Versionen ist keine Authentisierung nötig. Was zu tun ist. Eine Analyse von Steffen Zahn (<a href="https://www.golem.de/specials/security/">Security</a>, <a href="https://www.golem.de/specials/virtualisierung/">Virtualisierung</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=208974&amp;page=1&amp;ts=1779696001" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Open for debate : governance, power, and the limits of internet openness]]></title>
<description><![CDATA[dc.title: Open for debate : governance, power, and the limits of internet openness
dc.contributor.editor: PAWLAK, Patryk; BERGLUND, Nils
dc.description.abstract: Open for Debate: Governance, Power, and the Limits of Internet Openness is an edited collection that examines how the concept and pract...]]></description>
<link>https://isharestuff.com/de/3603494/wissen/open-for-debate-governance-power-and-the-limits-of-internet-openness/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3603494/wissen/open-for-debate-governance-power-and-the-limits-of-internet-openness/</guid>
<pubDate>Mon, 04 May 2026 17:46:43 +0200</pubDate>
<content:encoded><![CDATA[dc.title: Open for debate : governance, power, and the limits of internet openness
dc.contributor.editor: PAWLAK, Patryk; BERGLUND, Nils
dc.description.abstract: Open for Debate: Governance, Power, and the Limits of Internet Openness is an edited collection that examines how the concept and practice of an &quot;open internet&quot; have evolved under changing technological, economic, and geopolitical conditions. Drawing together contributions from scholars and practitioners across law, economics, political science, and technical communities, the collection investigates how openness is being redefined and contested at the infrastructure, logical, and policy layers of the digital ecosystem. The volume addresses five thematic areas: the evolution of the open internet concept from a primarily technical notion rooted in interoperable protocols and decentralised governance to a multidimensional condition entangled with questions of digital rights, security, and state and corporate power; sovereignty, interoperability, and standards as key fault lines in contemporary internet governance; divergent regulatory regimes governing cross-border data flows and digital trade; the relationship between open internet principles, innovation, and economic development; and the role of companies, markets, and business models in shaping the conditions of openness. Adopting a layered and systemic perspective, the contributions collectively ask not whether the internet remains open in principle, but how openness is being redefined, by whom, and with what consequences for innovation, competition, rights, and political power.
dc.description: Published online: April 2026]]></content:encoded>
</item>
<item>
<title><![CDATA[CISA: SQL-Injection-Lücke in Fortinet FortiClient EMS wird aktiv ausgenutzt - all-about-security.de]]></title>
<description><![CDATA[CISA: SQL-Injection-Lücke in Fortinet FortiClient EMS wird aktiv ausgenutzt  all-about-security.deAngriffe auf sieben Sicherheitslücken beobachtet – eine ist 14 Jahre alt  heise onlineForticlient EMS - Wenn der Manager der Endgeräte selbst zum Einfallstor wird  GolemMicrosofts umfangreicher Patch...]]></description>
<link>https://isharestuff.com/de/3565371/politik-wirtschaft/cisa-sql-injection-luecke-in-fortinet-forticlient-ems-wird-aktiv-ausgenutzt-all-about-securityde/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3565371/politik-wirtschaft/cisa-sql-injection-luecke-in-fortinet-forticlient-ems-wird-aktiv-ausgenutzt-all-about-securityde/</guid>
<pubDate>Wed, 15 Apr 2026 06:30:47 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMirwFBVV95cUxPZlA4QTJxVThSaVRnV2F0XzVFc05WWjdvSzhIVzc1SUN1Q0FXTkxtd29BU1I5YWJUNXZwR0FJZ2htZWF1cWY3aEx2ZFVmSGx1RlM0dXBQUk9FOEFQTnFtTjluUVVPdVRhdExiMXNUQlpMN1lPanpRSHpZNjlRamRpM3NhTkQyRzItbFFJLTYwLVlnZUVwMy1BZEFnQjV6bVpONEhBdGx4UTFLU2NWNUV3?oc=5" target="_blank">CISA: SQL-Injection-Lücke in Fortinet FortiClient EMS wird aktiv ausgenutzt</a>  all-about-security.de</li><li><a href="https://news.google.com/rss/articles/CBMisAFBVV95cUxNeTQ2bjFuUFBKY3BBdFZrQWhkSW5ZaHZQUC1OWENDNWYyUUdWQjU0R2d6RWJvcHB1ejRxUHFHaS1yVHZnRUlHaWdhRGN2R0ZfUDFsTTEwZTFpb3lGVE9qUnBMTndQdDNjbmhiRUU3LVdjN3BmcnlVZzhLRHFqZXQwRDluMS1Nbk5nQmVIQU5RNmU3RXh5QklqdU42V1pTSExQZ3pYUG00YTFzQzRhR3dROQ?oc=5" target="_blank">Angriffe auf sieben Sicherheitslücken beobachtet – eine ist 14 Jahre alt</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMitwFBVV95cUxPMEV0MUVzUFJSc3Z0cnZiZXhHdW5GTU5XME05aW5kUlN5QWJ1eHhQRGZyMnExOXliMW1rUy02ZDgtSmUta3JRbWFuenlMRnpLSlVLczF6UzE4clFvX0RWck43UUVkNEtTaUlpYTd4dzR2eTdJWGloZFhhTVFwd1ZVUHdic1dRTHoxVDVTNFBBUE9JeHBVX0REdTR0aDlrSEpuaURkUDAzMm44TlNaS080TjV2eGloLWc?oc=5" target="_blank">Forticlient EMS - Wenn der Manager der Endgeräte selbst zum Einfallstor wird</a>  Golem</li><li><a href="https://news.google.com/rss/articles/CBMinwFBVV95cUxQSDFyREw1RTdHVDl5ZVdLb0Y0WmF3UjZ4ckQzUTZaNXFvR3R3aGc4VFlmYVJUTUQyeDNZbjRNM2kwWVR6VnVBa3BtOHdMRExDd2FNYzNkbFh6akk5VENHQVlCdjFKajBjWFBOU1dwNnVWaXpfSml5QWxZS0FPMmJzbkRkZllhb2ZXZ280R0p3cHljd3R6NldzNjJTaWNPT0E?oc=5" target="_blank">Microsofts umfangreicher Patch Tuesday: Sicherheitslücken im Fokus</a>  it-boltwise.de</li><li><a href="https://news.google.com/rss/articles/CBMiwgFBVV95cUxONThrT2MyTlBLUUcySTNWVUtaeno5bW1zYWJveUEwM1hoUWxpS3JFTjY4bmU1QUt1SkM5RFhUclRiajdpREpWOWRKYmc2bDMxaWRJTTBiZTF0T2NEUTdsSnhrWWI2WHpjbHhsdUtYT01LeFI5R1RuWGE4MWVyQ25QNmJyenpKYy1hc2tKcnVCeXF5OVVVbG1uMENwcGpjTGU3bWRZXzVmNWQyYmgzWkRydjdESzFwa0J1NG5ITGZRMFBmdw?oc=5" target="_blank">Microsoft und Adobe kämpfen mit Rekordzahl an Sicherheitslücken</a>  AD HOC NEWS</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[SAP-Patchday: Eine kritische SQL-Injection-Lücke – und 18 weitere - heise online]]></title>
<description><![CDATA[SAP-Patchday: Eine kritische SQL-Injection-Lücke – und 18 weitere  heise onlineSAP-Aktie profitiert von Analystenrückenwind und US-Tech-Stärke  Finanzen.netKünstliche Intelligenz: Christian Kleins große Wette auf die Zukunft von SAP  HandelsblattSAP: Die 10-Milliarden-Euro-Maschine? Warum die Clo...]]></description>
<link>https://isharestuff.com/de/3565135/politik-wirtschaft/sap-patchday-eine-kritische-sql-injection-luecke-und-18-weitere-heise-online/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3565135/politik-wirtschaft/sap-patchday-eine-kritische-sql-injection-luecke-und-18-weitere-heise-online/</guid>
<pubDate>Tue, 14 Apr 2026 23:31:12 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMipgFBVV95cUxQcHdlYnFQQWJranQybFBJanNXQmcyRUE0dTlfWkx5Skd3d3E3cWhiS3BMT0s1eEx2SEdEMkkwYWZhUTlLOEZJOGZfUGZwbUV4T1NjbzI5WW9KNXVmR2xFUHppdUNpQXp5SHQ4bW1OeFEyN3E4VUJqYTlkUHZqZFlUZmxVR08wWUxaLXFuc2pRRkVQTjhEZ2lFZ0ltS2xnUG4wb0RFMU5n?oc=5" target="_blank">SAP-Patchday: Eine kritische SQL-Injection-Lücke – und 18 weitere</a>  heise online</li><li><a href="https://news.google.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?oc=5" target="_blank">SAP-Aktie profitiert von Analystenrückenwind und US-Tech-Stärke</a>  Finanzen.net</li><li><a href="https://news.google.com/rss/articles/CBMi3AFBVV95cUxPYXF4SWwwMDdOM082TUVwWnQ0UXcwckMtWVprVTdwLVQ4c0h5Vl8yaHJFYXVTd0VUUzR1UXNDMENaN05SN05BcXNVOGZUTEpQS1IzVG1nd0hma1Y5UkpvUDEzanhSY3FvckJDQVBXNFVEV2dIVHFKZmtxWGpsRG9GZFFFTmRhM0hQQjE2QUV6akZmaWROTkl6MzNJaU16b1F4dXFHT2lncUY2blhzLUQ5R0xKbkpwYVBCS1FxbzFnOV9KRG9namFUMVd6WFprSTBVX24zQVBld2Y1YW0z?oc=5" target="_blank">Künstliche Intelligenz: Christian Kleins große Wette auf die Zukunft von SAP</a>  Handelsblatt</li><li><a href="https://news.google.com/rss/articles/CBMikAFBVV95cUxQQmQ5Y0p4S21vQ1dzMV9uLVJSeVJXQ3ZYb0hEbmEycWdicXRYZXBmcEhyd3J4X2xGeXpkU0NiQWliYmJjeUNqbERZakF5Mlg2dkpNUm1kMnVKSXFzMGxYWnoxRHoyR0hGTWE0Y0R4dlEwVGlueVkwUTlCNFIzYWFOY050Y0lZSDU3X0hpdXBpVzk?oc=5" target="_blank">SAP: Die 10-Milliarden-Euro-Maschine? Warum die Cloud-Rallye erst am Anfang steht</a>  Yahoo! Finanzen Deutschland</li><li><a href="https://news.google.com/rss/articles/CBMiqgFBVV95cUxOVUtQa1FCZXY2aU0xdGVBcFU1bWE2dzNTaUs5T2ZOOUtLVXY5RUVDbzdaWXotWHB1VFYyWWZrcDhYNWlXT2Z5U283MUc4SzFWWUFxRHdERThPVGd4QUNYQi1wd3hQWHhzR0d5Z1ZYRG8zMGZMcEJKYnJsX1FQWDJhZHZEeHJJUjBkbmVMdFBjWEJLZE0tOTc0ejI5em9xajZXdUZJbE5yNVpzUQ?oc=5" target="_blank">SAP-Aktie: Unternehmen erholt sich</a>  WELT</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[„Artemis 2“-Mission: NASA meistert „Translunar Injection Burn“ – Erdumlaufbahn Richtung Mond verlassen - Merkur]]></title>
<description><![CDATA[„Artemis 2“-Mission: NASA meistert „Translunar Injection Burn“ – Erdumlaufbahn Richtung Mond verlassen  MerkurNASA-Mission Artemis II: Entscheidende Beschleunigung zum Mond absolviert  Spektrum der WissenschaftAstronautin: „Bin stolz, mich Weltraumklempnerin zu nennen“  focus.deMondmission Artemi...]]></description>
<link>https://isharestuff.com/de/3546664/politik-wirtschaft/artemis-2-mission-nasa-meistert-translunar-injection-burn-erdumlaufbahn-richtung-mond-verlassen-merkur/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3546664/politik-wirtschaft/artemis-2-mission-nasa-meistert-translunar-injection-burn-erdumlaufbahn-richtung-mond-verlassen-merkur/</guid>
<pubDate>Fri, 03 Apr 2026 12:45:37 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMiuAFBVV95cUxNcEhCc0lNdmpBM05jdjlQQWcxYmo4c09Cd3FEQ1VCTU1zcFZFT2oyeTVPSG9OOXdKUGdtOE1RMk5GbjFhaXV6WTNJeFBKVXgzdDVYdnl3RVZBSEVOeHpIUlQtM3NiblZCOG02TGtCT0JlY1cwSnhSVG9VSGhjaTkyVU85Wko3Nkc5MVN2N2EydnpjQXpDVC13dFg4eFdZOHV3dVVpUTc4Y0pIYzd3d1VBY2pEa2lEdDNG?oc=5" target="_blank">„Artemis 2“-Mission: NASA meistert „Translunar Injection Burn“ – Erdumlaufbahn Richtung Mond verlassen</a>  Merkur</li><li><a href="https://news.google.com/rss/articles/CBMihwFBVV95cUxOQU5FLS1fbnM1NDZkTjVUbk9abGRQUWJSR05VMmdPWUlnR29qNnRDWkk3b1dHYUE0YXduMU1fOXIxUWVVYktMbVNXeVZnNk9mNEFSZTQza1FOejBTX0g5QkFVRHFMWVVrbmpFbVlDbkRjM3lpbU9qTld3TXh3bDRBbFMyOWZuckU?oc=5" target="_blank">NASA-Mission Artemis II: Entscheidende Beschleunigung zum Mond absolviert</a>  Spektrum der Wissenschaft</li><li><a href="https://news.google.com/rss/articles/CBMizwFBVV95cUxNQUtkck93bmQ0UXNEWk9VcTdqVVcyM1lRMjByd2hCNVQtN1lqSmpDdGFKSVNXcG1wUkdrRm9oOTZhc3hYcFJ3c2JHVGotR1ZhS2VRTUJhdHNRa0x4Y01TaEh2OUF3ZnBPc3B1NVMweVp3enRJODJRckpSTUJTRjZYQjNfdUlyeXBKQ2o4dTUtZGpzZjZXcHlNSFc3ZDZZVjFxOTdmbTZsOFNUMnkzcS02c0lxcmFuRURDdVVRbnI1YTRuSkh1XzYzdTVOLTkxS1k?oc=5" target="_blank">Astronautin: „Bin stolz, mich Weltraumklempnerin zu nennen“</a>  focus.de</li><li><a href="https://news.google.com/rss/articles/CBMif0FVX3lxTE1YWWxMMHJBLW55NEhZTGJDOWdyZFNZRWlmdXpoR0xNY2pudm5rSGJtWjFRd2JNb1F3R01ZV2dmN2xGU1NLZGl6R3V3SFRKRlRVYnpwQXB3MnZZaDNYaU5WNDRBallaMXd0R3BFQ3NTMXNkVW5LRm05cEY2aGJpQms?oc=5" target="_blank">Mondmission Artemis 2: Artemis-Besatzung hat die Erdumlaufbahn Richtung Mond verlassen</a>  DIE ZEIT</li><li><a href="https://news.google.com/rss/articles/CBMi3wFBVV95cUxOQXRqOXZRVkxkalE2RXRidEl3d0ZIOVVjR1FyWEhldUdua043T01CeVRnazNlY1c2bVQ4V0l1Z0dGUjVkQWJ5Y0ZCY0RKdk9UNHNseVNBLWhGVDZCZ0pxWTdFOUhuMjFHYy1JZkhZWjJkZUZnenBkS3VhY1UzU0JQOWpjcXlxbkZsSFJhOWQ5TTAwcEVNVmxiR05DcF9MekhpUmJpWmowb0kzLUV4a1ZydmdMRGROdkU1bGh6aXdvRTZYQnE4OGZhbXBWN0tJMTdhMUx4NUhmSUdkcm1STFBj?oc=5" target="_blank">Auf Augenhöhe mit der Rakete: Flugzeugpassagiere filmen Start von Artemis 2</a>  BILD</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Crisis in Europe-Russia relations 'not our fault', says Putin | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:2 President Vladimir Putin insists Russia has "never refused to develop" relations with Europe. The comments come as Russia tries to tempt Europe to resume purchasing its sanctioned oil and gas amid the Mideast war, with Hungary and Slovakia recentl...]]></description>
<link>https://isharestuff.com/de/3535862/nachrichten-politik/crisis-in-europe-russia-relations-not-our-fault-says-putin-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3535862/nachrichten-politik/crisis-in-europe-russia-relations-not-our-fault-says-putin-afp/</guid>
<pubDate>Fri, 27 Mar 2026 17:33:24 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:2 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/hYQOtndez6s?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>President Vladimir Putin insists Russia has "never refused to develop" relations with Europe. The comments come as Russia tries to tempt Europe to resume purchasing its sanctioned oil and gas amid the Mideast war, with Hungary and Slovakia recently receiving sanctions exemptions for Russian oil. Speaking at a virtual Security Council meeting, Putin repeats his frequent comments blaming the West for Moscow's invasion of Ukraine, and insists that all subsequent diplomatic crises are "not our fault".<br />
<br />
Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD <br />
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Switching phones sucks #Vergecast]]></title>
<description><![CDATA[Author: The Verge - Bewertung: 9x - Views:302 Switching phones is the worst and yes, it’s everyone’s fault. 

Subscribe: http://goo.gl/G5RXGs
Like The Verge on Facebook: https://goo.gl/2P1aGc
Follow on Twitter: https://goo.gl/XTWX61
Follow on Instagram: https://goo.gl/7ZeLv

Watch The Vergecast o...]]></description>
<link>https://isharestuff.com/de/3531211/technologie/switching-phones-sucks-vergecast/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3531211/technologie/switching-phones-sucks-vergecast/</guid>
<pubDate>Wed, 25 Mar 2026 14:08:52 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: The Verge - Bewertung: 9x - Views:302 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/-s8WAaIpLAc?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Switching phones is the worst and yes, it’s everyone’s fault. <br />
<br />
Subscribe: http://goo.gl/G5RXGs<br />
Like The Verge on Facebook: https://goo.gl/2P1aGc<br />
Follow on Twitter: https://goo.gl/XTWX61<br />
Follow on Instagram: https://goo.gl/7ZeLv<br />
<br />
Watch The Vergecast on YouTube: https://bit.ly/40RFRkg<br />
The Vergecast Podcast: https://bit.ly/3WQDexZ<br />
Decoder with Nilay Patel: http://apple.co/3v29nDc <br />
More about our podcasts: https://www.theverge.com/podcasts<br />
<br />
Read More: http://www.theverge.com<br />
Community guidelines: http://bit.ly/2D0hlAv<br />
Wallpapers from The Verge: https://bit.ly/2xQXYJr<br />
Shop our Verge merch store here: https://bit.ly/4kPCmEc<br />
<br />
Subscribe to The Verge: https://bit.ly/3FT6n5S <br />
<br />
Subscribe to The Vergecast on YouTube, new episodes on Tuesday and Friday: https://bit.ly/3I6nJtz<br />
<br />
If you buy something from a Verge link, Vox Media may receive a commission without exerting any influence on editorial content. For more information about our ethics policy, visit: https://bit.ly/3ZWTlLs<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A Brazilian scientist’s experimental paralysis therapy is fueling hope—and hype]]></title>
<description><![CDATA[Spinal cord injury patients are scrambling for access to the injection, but researchers say preliminary evidence is weak]]></description>
<link>https://isharestuff.com/de/3521155/wissen/a-brazilian-scientists-experimental-paralysis-therapy-is-fueling-hope-and-hype/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3521155/wissen/a-brazilian-scientists-experimental-paralysis-therapy-is-fueling-hope-and-hype/</guid>
<pubDate>Thu, 19 Mar 2026 19:16:06 +0100</pubDate>
<content:encoded><![CDATA[Spinal cord injury patients are scrambling for access to the injection, but researchers say preliminary evidence is weak]]></content:encoded>
</item>
<item>
<title><![CDATA[Love in the Time of Fentanyl]]></title>
<description><![CDATA[Author: VICE - Bewertung: 82x - Views:1378 At the height of the fentanyl overdose crisis, drug users in Vancouver started taking it upon themselves to try to save lives. Colin Askey’s intimate documentary follows volunteers at the city’s Overdose Prevention Society, where a group of misfits, arti...]]></description>
<link>https://isharestuff.com/de/3516625/dokumentation/love-in-the-time-of-fentanyl/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3516625/dokumentation/love-in-the-time-of-fentanyl/</guid>
<pubDate>Tue, 17 Mar 2026 16:31:59 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VICE - Bewertung: 82x - Views:1378 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/vU3Pcc2SmJQ?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>At the height of the fentanyl overdose crisis, drug users in Vancouver started taking it upon themselves to try to save lives. Colin Askey’s intimate documentary follows volunteers at the city’s Overdose Prevention Society, where a group of misfits, artists, and drug users operates a renegade safe-injection site. Executive-produced by Oscar-winning director Sean Baker (Anora, The Florida Project), Love in the Time of Fentanyl reaches beyond the stigma of drug use, revealing the courage and compassion of those trying to keep their community alive.<br />
<br />
Click here to subscribe to VICE: http://bit.ly/Subscribe-to-VICE<br />
<br />
About VICE:<br />
The Definitive Guide To Enlightening Information. From every corner of the planet, our immersive, caustic, ground-breaking and often bizarre stories have changed the way people think about culture, crime, art, parties, fashion, protest, the internet and other subjects that don't even have names yet. Browse the growing library and discover corners of the world you never knew existed. Welcome to VICE.<br />
<br />
Connect with VICE:<br />
Check out our full video catalog: http://bit.ly/VICE-Videos<br />
Videos, daily editorial and more: http://vice.com<br />
Like VICE on Facebook: http://fb.com/vice<br />
Follow VICE on Twitter: http://twitter.com/vice<br />
Follow us on Instagram: http://instagram.com/vice<br />
Follow us on TikTok: https://www.tiktok.com/@vice?lang=en<br />
<br />
The VICE YouTube Network:<br />
VICE: https://www.youtube.com/VICE<br />
MUNCHIES: https://www.youtube.com/MUNCHIES <br />
VICE News: https://www.youtube.com/VICENews<br />
VICE TV: https://www.youtube.com/@VICE-TV/featured<br />
Noisey: https://www.youtube.com/Noisey<br />
Motherboard: https://www.youtube.com/MotherboardTV <br />
https://www.youtube.com/@VICESports<br />
Waypoint: https://www.youtube.com/WaypointVICE<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[KI hackt KI: So ist es Forschern gelungen, McKinseys Chatbot in nur zwei Stunden zu übernehmen - t3n]]></title>
<description><![CDATA[KI hackt KI: So ist es Forschern gelungen, McKinseys Chatbot in nur zwei Stunden zu übernehmen  t3nEin KI-Agent hackt McKinseys KI-Plattform Lilli mit einer Schwachstelle aus den 1990ern  The DecoderKI-Agent knackt McKinseys interne Chatbot-Plattform Lilli in zwei Stunden – SQL-Injection legte Mi...]]></description>
<link>https://isharestuff.com/de/3506095/politik-wirtschaft/ki-hackt-ki-so-ist-es-forschern-gelungen-mckinseys-chatbot-in-nur-zwei-stunden-zu-uebernehmen-t3n/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3506095/politik-wirtschaft/ki-hackt-ki-so-ist-es-forschern-gelungen-mckinseys-chatbot-in-nur-zwei-stunden-zu-uebernehmen-t3n/</guid>
<pubDate>Wed, 11 Mar 2026 16:01:01 +0100</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMivwFBVV95cUxNeHlCYlhycUJUWVBETnpSb3BMbmhmdk1xc1RqUlMwYXJ5RWI1RVRYczNwUkw4RWhUa2tZVjUyd0s5M1ZYY1UwRjFfd0E3cHNFSDN6RGotWnBQd1lPQndrSmxPYkRUZ2VJdnFxOHRZU2dFOW5zcFc1REMtR2wzVkY2M1NseDRsVGlxSGlSWHkwRW9ZRjB4elgtSzRVVVdwemxKLUJ4WHRZZURjc281aGdrbndoT05BVmpKckQtMEVWTQ?oc=5" target="_blank">KI hackt KI: So ist es Forschern gelungen, McKinseys Chatbot in nur zwei Stunden zu übernehmen</a>  t3n</li><li><a href="https://news.google.com/rss/articles/CBMisAFBVV95cUxOSDBIM3pHaWJjMzVHMWdQUW9GT1lEQUxydGU4Ql9fY1R0WEg0TjVUX21oQ0RDbndialFiblpKS2tNWU9QMUk0X2xXdmE4c09Oa3g1UDc4UkFybTRQMHY4VGhqallPY3VUQTV4b0Z0ZWxLc3BlWE5mM28xWXYyZmhOQ0dnQS1kT3k4VFR5WjVMd0ZaUGVlSWFrZW5ScEZwa21sYkFUNGphejhha1ZVMkVHMw?oc=5" target="_blank">Ein KI-Agent hackt McKinseys KI-Plattform Lilli mit einer Schwachstelle aus den 1990ern</a>  The Decoder</li><li><a href="https://news.google.com/rss/articles/CBMi7AFBVV95cUxNeEs5OWRpYTAtUkFkTGdCNEdxdzZJZ0Q1ckptUkNZR3lEWEd1U1M0bEFidEVkN05Wb1Z6T2JqN0JnclFkcGlEb0ZBTnVjQ1NWcUlVblhNRUxWNHdnWk1GTUZIdHRBSExoaHhVYnBCWWpuc0FiUDhnTjNHUUpyT1p1UnFsVXgxc1gyYzk4d0FmTXcwbm9vNktnNXdFSkJaRzFYRGFyUVpWUmU5TFZQVjFON2hYQjJtYTRnUkpTTG1JN184eU1sczNLMTJINnR1RFo5SHRISXV6NlF2WERoY3hYUXN5eFFHTndtTk50UQ?oc=5" target="_blank">KI-Agent knackt McKinseys interne Chatbot-Plattform Lilli in zwei Stunden – SQL-Injection legte Millionen Datensätze offen</a>  all-about-security.de</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Injection That Stops HIV]]></title>
<description><![CDATA[Author: Kurzgesagt – In a Nutshell - Bewertung: 1111x - Views:8752 Malaria has killed humans for millennia. From DDT to bed nets, vaccines, and genetically modified mosquitoes, we’ve pushed back... but resistance and climate change threaten progress. The war isn’t over.

#kurzgesagt
#inanutshell ...]]></description>
<link>https://isharestuff.com/de/3502005/wissenschaft-bildung/the-injection-that-stops-hiv/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3502005/wissenschaft-bildung/the-injection-that-stops-hiv/</guid>
<pubDate>Mon, 09 Mar 2026 16:18:15 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Kurzgesagt – In a Nutshell - Bewertung: 1111x - Views:8752 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iZ9ImJQy9V4?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Malaria has killed humans for millennia. From DDT to bed nets, vaccines, and genetically modified mosquitoes, we’ve pushed back... but resistance and climate change threaten progress. The war isn’t over.<br />
<br />
#kurzgesagt<br />
#inanutshell #kurzgesagt_inanutshell #learnwithshorts #science #hiv #hivtreatment #hivvaccine <br />
<br />
Sources & further reading: <br />
https://sites.google.com/view/kgs-tiktok-sources<br />
<br />
Follow us for more sciencey content! 🦆<br />
<br />
OUR CHANNELS<br />
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀<br />
German:        https://kgs.link/youtubeDE<br />
Spanish:        https://kgs.link/youtubeES<br />
French:          https://kgs.link/youtubeFR<br />
Portuguese:  https://kgs.link/youtubePT<br />
Arabic:           https://kgs.link/youtubeAR<br />
Hindi:             https://kgs.link/youtubeHI<br />
Japanese:     https://kgs.link/youtubeJA<br />
Korean:          https://kgs.link/youtubeKO<br />
<br />
<br />
HOW CAN YOU SUPPORT US?<br />
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀<br />
This is how we make our living and it would be a pleasure if you support us!<br />
<br />
Get Products designed with ❤ https://shop.kgs.link/shorts<br />
Become a Part of kurzgesagt by joining the Patreon Bird Army 🐧  https://kgs.link/patreon  <br />
<br />
<br />
DISCUSSIONS & SOCIAL MEDIA<br />
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀<br />
Instagram:     https://kgs.link/instagram<br />
TikTok:           https://kgs.link/tiktok<br />
Reddit:            https://kgs.link/reddit<br />
Discord:          https://kgs.link/discord<br />
Twitter:           https://kgs.link/twitter<br />
Bluesky:          https://kgs.link/bluesky<br />
Facebook:      https://kgs.link/facebook<br />
Newsletter:    https://kgs.link/newsletter<br />
<br />
<br />
OUR VOICE<br />
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀<br />
The Kurzgesagt voice is from <br />
Steve Taylor:  https://kgs.link/youtube-voice<br />
<br />
<br />
OUR MUSIC ♬♪<br />
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀<br />
700+ minutes of Kurzgesagt Soundtracks by Epic Mountain:<br />
<br />
Spotify:            https://kgs.link/music-spotify<br />
Soundcloud:   https://kgs.link/music-soundcloud<br />
Bandcamp:     https://kgs.link/music-bandcamp<br />
Youtube:          https://kgs.link/music-youtube<br />
Facebook:       https://kgs.link/music-facebook<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Single intramuscular injection of self-amplifying RNA of Nppa to treat myocardial infarction | Science]]></title>
<description><![CDATA[Self-amplifying RNA (saRNA) enables sustained protein expression from a single administration. In this study, we developed an intramuscular saRNA-lipid nanoparticle (saNppa-LNP) therapy encoding natriuretic peptide type A (Nppa) for cardioprotection. A ...]]></description>
<link>https://isharestuff.com/de/3495679/wissen/single-intramuscular-injection-of-self-amplifying-rna-of-nppa-to-treat-myocardial-infarction-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3495679/wissen/single-intramuscular-injection-of-self-amplifying-rna-of-nppa-to-treat-myocardial-infarction-science/</guid>
<pubDate>Thu, 05 Mar 2026 20:15:58 +0100</pubDate>
<content:encoded><![CDATA[Self-amplifying RNA (saRNA) enables sustained protein expression from a single administration. In this study, we developed an intramuscular saRNA-lipid nanoparticle (saNppa-LNP) therapy encoding natriuretic peptide type A (Nppa) for cardioprotection. A ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Luca Malina - DON'T]]></title>
<description><![CDATA[Author: Luca Malina - Bewertung: 783x - Views:43610 DON'T streamen:
https://distrokid.com/hyperfollow/lucamalina/dont

This video was filmed before the strict corona measures.  
Respiratory masks were not yet mandatory and social contacts were still allowed.

Instagram:

Luca Malina  
https://www...]]></description>
<link>https://isharestuff.com/de/3486453/musik/luca-malina-dont/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3486453/musik/luca-malina-dont/</guid>
<pubDate>Sun, 01 Mar 2026 02:02:09 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Luca Malina - Bewertung: 783x - Views:43610 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/2chifSdNdxE?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>DON'T streamen:<br />
https://distrokid.com/hyperfollow/lucamalina/dont<br />
<br />
This video was filmed before the strict corona measures.  <br />
Respiratory masks were not yet mandatory and social contacts were still allowed.<br />
<br />
Instagram:<br />
<br />
Luca Malina  <br />
https://www.instagram.com/lewmali/<br />
<br />
Ego - Mixing and Mastering / Video<br />
https://www.instagram.com/life_of_ego/<br />
<br />
Schutt - Produced / Cover<br />
https://www.instagram.com/schvtt/<br />
<br />
Dave - Video<br />
https://www.instagram.com/thedavelive/<br />
<br />
Lena Freiivogel - Film<br />
https://www.instagram.com/freiivogel/<br />
<br />
Thanks to:<br />
Caro Gritsch, Kevin Cool and Pia Suchan<br />
<br />
Lyrics :<br />
<br />
Snow is coming from the ground<br />
Straight up to the sky<br />
Up there in the white clouds<br />
Silent gently soft<br />
<br />
I begin to smile<br />
As I see your face of fear<br />
Now they came to kill ya<br />
It is your own fault<br />
<br />
2x<br />
Don't<br />
Don't lay that cigi on the ground<br />
Don't<br />
Don't hurt it can't you hear this sound<br />
So<br />
Young but so blind is it that<br />
Hard<br />
To use your heart / brain ones<br />
<br />
I want to do anything<br />
But I don't want it enough <br />
I want to be healthy<br />
But I always got a cough<br />
<br />
I know there're many people<br />
Feeling just the same<br />
So can someone tell me<br />
How this works when I'm in pain<br />
<br />
Don't<br />
Don't lay that cigi on the ground<br />
Don't<br />
Don't hurt it can't you hear this sound<br />
So<br />
Young but so blind is it that<br />
Hard<br />
To use your heart/brain ones<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[What China Just Did With Humanoid Robots on LIVE TV - Blew The West Away!]]></title>
<description><![CDATA[Author: Evolving AI - Bewertung: 5x - Views:168 Over a dozen humanoid robots performing martial arts live on national television. ByteDance is launching a model it claims rivals GPT-5.2 at a fraction of the cost. Apple is quietly opening CarPlay to ChatGPT-style assistants. This wasn’t just a bus...]]></description>
<link>https://isharestuff.com/de/3472347/technologie/what-china-just-did-with-humanoid-robots-on-live-tv-blew-the-west-away/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3472347/technologie/what-china-just-did-with-humanoid-robots-on-live-tv-blew-the-west-away/</guid>
<pubDate>Sat, 21 Feb 2026 06:32:13 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Evolving AI - Bewertung: 5x - Views:168 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iwNF8erwhCY?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Over a dozen humanoid robots performing martial arts live on national television. ByteDance is launching a model it claims rivals GPT-5.2 at a fraction of the cost. Apple is quietly opening CarPlay to ChatGPT-style assistants. This wasn’t just a busy week in AI. It was a signal. At China’s Spring Festival Gala, Unitree humanoids executed synchronized martial arts routines, demonstrating multi-robot coordination, AI-driven localization, and autonomous fault recovery on a live broadcast stage. According to industry data, China now accounts for roughly 90% of global humanoid shipments. The performance wasn’t just a spectacle. It was industrial positioning. At the same time, ByteDance introduced Doubao 2.0, positioning it for the “agent era” models designed not just to answer questions, but to execute multi-step tasks. The company claims GPT-5.2-level reasoning at nearly one-tenth the cost per inference. The real question isn’t benchmarks, it’s deployment reliability, tool integration, and whether cost advantages hold at scale. Meanwhile, Apple made a quieter but strategic move. iOS 26.4 beta introduces a new CarPlay category for voice-based conversational apps. That means ChatGPT-style assistants can now exist natively in vehicles — but under strict, voice-first constraints. Apple is opening the door to third-party AI while carefully preserving Siri’s system control.<br />
Three regions. Three moves. <br />
<br />
One pattern: AI is moving beyond chat windows and into physical systems, competitive ecosystems, and controlled environments like vehicles.<br />
This isn’t about leaderboard wins. It’s about where AI is being allowed to operate and under whose terms.<br />
<br />
Subscribe for weekly breakdowns of what actually matters in AI — no hype, no noise, just signal.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA['Ain't my fault,' Bobsled busted as rapper Flavor Flav goes breaking in Cortina]]></title>
<description><![CDATA[Author: Associated Press - Bewertung: 6x - Views:108 US rapper Flavor Flav took his unique style and “Yeah, boyeeeee!” catchphrase to the streets of Cortina on Sunday as he battled the cold in his first taste of the Winter Olympics. Flav, who gained fame as a member of legendary hip-hop act Publi...]]></description>
<link>https://isharestuff.com/de/3462137/nachrichten/aint-my-fault-bobsled-busted-as-rapper-flavor-flav-goes-breaking-in-cortina/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3462137/nachrichten/aint-my-fault-bobsled-busted-as-rapper-flavor-flav-goes-breaking-in-cortina/</guid>
<pubDate>Sun, 15 Feb 2026 22:46:52 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Associated Press - Bewertung: 6x - Views:108 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/CSjL4wan-iU?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>US rapper Flavor Flav took his unique style and “Yeah, boyeeeee!” catchphrase to the streets of Cortina on Sunday as he battled the cold in his first taste of the Winter Olympics. Flav, who gained fame as a member of legendary hip-hop act Public Enemy, was climbing out of a bobsled that has been on display in the town centre when he slipped, then ripped part of the sled off.<br />
<br />
Subscribe: http://smarturl.it/AssociatedPress<br />
Read more: https://apnews.com​<br />
<br />
This video may be available for archive licensing via https://newsroom.ap.org/home<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenClaw und Moltbook - Agentic AI im Ausnahmezustand]]></title>
<description><![CDATA[Author: Sascha Pallenberg - Bewertung: 13x - Views:124 🚨 OpenClaw-Hype: Willkommen im nächsten LinkedIn-Web3-NFT-Metaverse-Remix – nur diesmal heißt es „Agentic AI“. 


Tausende installieren sich gerade OpenClaw, träumen von „Hunderten Agenten“, die ihnen angeblich das Internet leerarbeiten, und ...]]></description>
<link>https://isharestuff.com/de/3460988/talk/openclaw-und-moltbook-agentic-ai-im-ausnahmezustand/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3460988/talk/openclaw-und-moltbook-agentic-ai-im-ausnahmezustand/</guid>
<pubDate>Sun, 15 Feb 2026 05:02:55 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Sascha Pallenberg - Bewertung: 13x - Views:124 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/pnXKv3CcTag?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>🚨 OpenClaw-Hype: Willkommen im nächsten LinkedIn-Web3-NFT-Metaverse-Remix – nur diesmal heißt es „Agentic AI“. <br />
<br />
<br />
Tausende installieren sich gerade OpenClaw, träumen von „Hunderten Agenten“, die ihnen angeblich das Internet leerarbeiten, und lassen sich von KI-Coaches erzählen, dass das jetzt der große Gamechanger sei: lokale Agents, keine Cloud-Abhängigkeit, keine API-Kosten, „digitaler Mitarbeiter“. Klingt fett. Ist in der Realität aber oft: Wortwurst-Posts, billige Use-Cases, Automatisierungstheater – und ein Sicherheitsrisiko mit Systemzugriff. <br />
<br />
<br />
In diesem Podcast zerlege ich den Hype: Warum OpenClaw im Kern wie IFTTT auf Steroiden wirkt, wieso die „magischen“ Use-Cases (Morgenbriefing, Journal, Konkurrenzmonitoring, Notion/PM, Google-Account anbinden) in vielen Fällen kompletter Quatsch sind – und warum wir uns gerade sehenden Auges das Netz mit automatisiertem Müll zustopfen. Dazu: Mudbook/Modebots, Rent-a-Human als „Meatspace Layer“, Bots, die Religionen gründen, und Open-Source-Projekte, die von Agenten-Spam und KI-Bugreports überrollt werden.<br />
<br />
<br />
Und das Wichtigste: Wenn Lieschen Müller ihren echten Google-Account an so ein System hängt und niemand ihr erklärt, was Sandboxing ist, dann wird’s brandgefährlich. Wir reden über Prompt Injection, exponierte Instanzen, unsichere Skills, Datenabfluss – und darüber, wie aus „cooler Automatisierung“ sehr schnell ein Sicherheits- und Gesellschaftsproblem wird. <br />
<br />
<br />
In diesem Podcast erfahrt ihr:<br />
<br />
<br />
✅ Was OpenClaw eigentlich ist – und warum der Hype gerade komplett eskaliert <br />
✅ Warum LinkedIn gerade wieder mit KI-Wortwurst geflutet wird (optisch erkennst du’s sofort) <br />
✅ Warum viele „Use-Cases“ nichts Neues sind (Google Assistant konnte das vor Jahren) <br />
✅ Mudbook/Modebots & „Rent a Human“: Wenn Bots anfangen, die Realität zu mieten <br />
✅ Warum Open-Source-Projekte durch Agenten-Spam und KI-Bugreports kollabieren <br />
✅ Welche Sicherheitsrisiken entstehen: Accounts, APIs, Schlüssel, Prompt Injection, exponierte Instanzen <br />
✅ Warum wir Plattformen brauchen, die AI-Slop erkennen und rausfiltern – sonst wird YouTube unbenutzbar <br />
<br />
<br />
🔔 Kanal abonnieren – Für Aufklärung statt Propaganda!<br />
📌 Mehr Analysen & Klartext ➤ metacheles.de<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[This War Ends Only When Russia Is Exhausted! Merz’s Stark Warning at Munich Security Conference 2026]]></title>
<description><![CDATA[Author: EU Debates | eudebates.tv - Bewertung: 0x - Views:25 Subscribe here: https://www.youtube.com/EudebatesTvLIVE?sub_confirmation=1 German Chancellor Friedrich Merz delivers a powerful opening address at the 62nd Munich Security Conference, sending a strong message on Ukraine, Russia, and the...]]></description>
<link>https://isharestuff.com/de/3459965/nachrichten-politik/this-war-ends-only-when-russia-is-exhausted-merzs-stark-warning-at-munich-security-conference-2026/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3459965/nachrichten-politik/this-war-ends-only-when-russia-is-exhausted-merzs-stark-warning-at-munich-security-conference-2026/</guid>
<pubDate>Sat, 14 Feb 2026 09:02:55 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: EU Debates | eudebates.tv - Bewertung: 0x - Views:25 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/-sifJgIR_qY?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Subscribe here: https://www.youtube.com/EudebatesTvLIVE?sub_confirmation=1 German Chancellor Friedrich Merz delivers a powerful opening address at the 62nd Munich Security Conference, sending a strong message on Ukraine, Russia, and the future of transatlantic relations.<br />
<br />
In one of the most talked-about moments of the conference, Merz declares that the war will end only when Russia is “economically and potentially militarily exhausted,” stressing that Europe, America, and Ukraine must stay united to bring peace through strength.<br />
<br />
His speech touches on key geopolitical fault lines — EU-US coordination, security strategy, diplomacy versus deterrence, and the urgent need for Europe to act with determination. Analysts and world leaders reacted to his clear, uncompromising tone as global tensions reshape the security order.<br />
<br />
▶️ Watch the full speech and decide:<br />
Is this the turning point in Europe’s strategy — or the start of a harder phase ahead?<br />
<br />
▶️ Key themes from the speech:<br />
• Russia-Ukraine war and peace conditions<br />
• EU-US coordination and NATO unity<br />
• Economic and military pressure strategy<br />
• European leadership on global security<br />
• Diplomacy, ceasefire and future peace plan<br />
<br />
▶️ Produced for EU policy and geopolitical audiences — bringing you direct access to major speeches shaping Europe’s future. <br />
<br />
Stay connected with us! <br />
Facebook: https://www.facebook.com/eudebates.tv/<br />
Twitter: https://twitter.com/eudebates<br />
Instagram: https://www.instagram.com/eudebates.tv/<br />
<br />
#eudebates the unique initiative aiming to promote debate, dialogue, knowledge, participation and communication among citizens. #FriedrichMerz #MunichSecurityConference #MSC2026 #UkraineWar #EuropeSecurity #EUUSRelations #NATO #RussiaUkraineWar #GermanyPolitics #Geopolitics #EuropeanLeadership #SecurityConference #TransatlanticRelations<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Serie über Entführung: Kind verloren]]></title>
<description><![CDATA[„All Her Fault“ ist spannend bis zur letzten Sekunde. Hohe Schauspielkunst inklusive und mit viel Dunkelheit in den Biographien der Verdächtigen. mehr...]]></description>
<link>https://isharestuff.com/de/3459444/politik-wirtschaft/serie-ueber-entfuehrung-kind-verloren/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3459444/politik-wirtschaft/serie-ueber-entfuehrung-kind-verloren/</guid>
<pubDate>Fri, 13 Feb 2026 19:45:25 +0100</pubDate>
<content:encoded><![CDATA[„All Her Fault“ ist spannend bis zur letzten Sekunde. Hohe Schauspielkunst inklusive und mit viel Dunkelheit in den Biographien der Verdächtigen. <a href="http://www.taz.de/Serie-ueber-Entfuehrung/!6151055/">mehr...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Stop the War. Stop the Transfers. Cut Energy Prices! – Orbán’s Brutal Verdict on EU Competitiveness!]]></title>
<description><![CDATA[Author: EU Debates | eudebates.tv - Bewertung: 0x - Views:7 Subscribe here: https://www.youtube.com/EudebatesTvLIVE?sub_confirmation=1 At the Informal EU Leaders’ Retreat in Alden Biesen, Viktor Orbán delivered the most uncompromising message of the summit—reducing Europe’s competitiveness crisis...]]></description>
<link>https://isharestuff.com/de/3457265/nachrichten-politik/stop-the-war-stop-the-transfers-cut-energy-prices-orbns-brutal-verdict-on-eu-competitiveness/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3457265/nachrichten-politik/stop-the-war-stop-the-transfers-cut-energy-prices-orbns-brutal-verdict-on-eu-competitiveness/</guid>
<pubDate>Thu, 12 Feb 2026 17:03:01 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: EU Debates | eudebates.tv - Bewertung: 0x - Views:7 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/tqNI_LLAjd4?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Subscribe here: https://www.youtube.com/EudebatesTvLIVE?sub_confirmation=1 At the Informal EU Leaders’ Retreat in Alden Biesen, Viktor Orbán delivered the most uncompromising message of the summit—reducing Europe’s competitiveness crisis to three blunt demands.<br />
<br />
First, stop the war. Orbán argued that war is fundamentally bad for business, investment, and growth—and that peace is a precondition for competitiveness.<br />
<br />
Second, stop sending money abroad. He insisted that Europe cannot afford to transfer funds elsewhere—explicitly mentioning Ukraine—if it needs those resources to strengthen its own economy.<br />
<br />
Third, cut energy prices immediately. High energy costs, Orbán said, are crippling European industry and competitiveness—and the solution is “so simple.”<br />
<br />
His remarks sharply diverged from the dominant EU narrative on solidarity, defence, and strategic investment—laying bare the deep political fault lines inside the Union over war, money, and economic survival.<br />
<br />
👉 “War is bad for business. That’s so simple.”<br />
<br />
📍 Alden Biesen Castle, Belgium<br />
📅 Informal EU Leaders’ Retreat – 12 February 2026 <br />
<br />
Stay connected with us! <br />
Facebook: https://www.facebook.com/eudebates.tv/<br />
Twitter: https://twitter.com/eudebates<br />
Instagram: https://www.instagram.com/eudebates.tv/<br />
<br />
#eudebates the unique initiative aiming to promote debate, dialogue, knowledge, participation and communication among citizens. #ViktorOrban #StopTheWar #EnergyPrices #EUCompetitiveness #UkraineFunding #EUEconomy #EuropeanCouncil #AldenBiesen #EUIndustry #Geopolitics #EUDivisions<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LNP502 Hauptsache in aller Konsequenz]]></title>
<description><![CDATA[Nachdem wir uns ein wenig über Mozilla aufgeregt haben sprechen wir über das neue "Sicherheitspaket", was viel bewirkt, aber wenig Sicherheit schafft. Weiterhin beklagen wir die aktuelle Entwicklung rund um die Chatkontrolle in der EU, die sich jetzt durch ein rechtslastiges Parlament und die ung...]]></description>
<link>https://isharestuff.com/de/3447952/podcasts/lnp502-hauptsache-in-aller-konsequenz/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3447952/podcasts/lnp502-hauptsache-in-aller-konsequenz/</guid>
<pubDate>Mon, 09 Feb 2026 06:17:14 +0100</pubDate>
<content:encoded><![CDATA[Nachdem wir uns ein wenig über Mozilla aufgeregt haben sprechen wir über das neue "Sicherheitspaket", was viel bewirkt, aber wenig Sicherheit schafft. Weiterhin beklagen wir die aktuelle Entwicklung rund um die Chatkontrolle in der EU, die sich jetzt durch ein rechtslastiges Parlament und die ungarische Ratspräsidentschaft wieder anschickt, Ärger zu machen. Dann blicken wir noch auf das Kräftemessen zwischen Meta und der Deutschen Telekom im Hinblick auf das Peering und die damit verknüpften Fragen zur Netzneutralität, das LibGen-Urteil und den anstehenden 38C3.]]></content:encoded>
</item>
<item>
<title><![CDATA[Kritische Sicherheitslücke in Kubernetes gefährdet UNIX-Systeme - it boltwise]]></title>
<description><![CDATA[Kritische Sicherheitslücke in Kubernetes gefährdet UNIX-Systeme  it boltwiseSicherheitslücke in Kubernetes Ingress-NGINX erlaubt Code-Injection  all-about-security.de]]></description>
<link>https://isharestuff.com/de/3443920/politik-wirtschaft/kritische-sicherheitsluecke-in-kubernetes-gefaehrdet-unix-systeme-it-boltwise/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3443920/politik-wirtschaft/kritische-sicherheitsluecke-in-kubernetes-gefaehrdet-unix-systeme-it-boltwise/</guid>
<pubDate>Sat, 07 Feb 2026 13:30:39 +0100</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMingFBVV95cUxOdzRWUmNzem5wNHZvRVpOSnFBSTREcWRYWm05Z283bTZXSGNMd256ZFR3RS1ZWTE5Q1U0dVFhTGkwME1MMjkxbG9BZ2pla1dVelJuZFAzYnhWdlgtXzFwQnVKTHNJTUFTYTZkakl1aGhhN05VMTNIdDhHZHNWVVBvcjFadGNEVnZqN2I5bVB4UXBlTl9SNUNQZUNpTlQwdw?oc=5" target="_blank">Kritische Sicherheitslücke in Kubernetes gefährdet UNIX-Systeme</a>  it boltwise</li><li><a href="https://news.google.com/rss/articles/CBMipgFBVV95cUxQYlRXcTJEYnNkbF9TZzRmOG5aYWh2bXQ1QldQdFRTZFA2aDZ6ME1OT05nYzBic2dQUF8xN05wX2k0eHVuc0Z4czQ0RHlDZU5lNW1mbE5qUnNlc0JSTkw2OTM5SmQxOE9SeEZ2Wk96R2pmY1N3UzlINlZublk4LXdoRFJkZVdLcHVlRV9FVV9OU0JjOG41TnpQbDVreEVPNDIxS1NBNy1n?oc=5" target="_blank">Sicherheitslücke in Kubernetes Ingress-NGINX erlaubt Code-Injection</a>  all-about-security.de</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Bloodbath at Washington Post Is All Jeff Bezos’s Fault]]></title>
<description><![CDATA[Billionaires like Bezos and Trump have no real interest in a free press — particularly when massive profits are on the line.
The post The Bloodbath at Washington Post Is All Jeff Bezos’s Fault appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3443670/ausland/the-bloodbath-at-washington-post-is-all-jeff-bezoss-fault/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3443670/ausland/the-bloodbath-at-washington-post-is-all-jeff-bezoss-fault/</guid>
<pubDate>Sat, 07 Feb 2026 12:15:47 +0100</pubDate>
<content:encoded><![CDATA[<p>Billionaires like Bezos and Trump have no real interest in a free press — particularly when massive profits are on the line.</p>
<p>The post <a href="https://theintercept.com/2026/02/07/washington-post-layoffs-jeff-bezos/">The Bloodbath at Washington Post Is All Jeff Bezos’s Fault</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Gefälschte Straßenschilder: Autos lassen sich per Prompt Injection fehlleiten]]></title>
<description><![CDATA[US-Forscher haben entdeckt, dass sich mit Fake-Straßenschildern autonome Autos und Drohnen fehlleiten lassen. Das funktioniert wie eine Prompt-Injection. (KI, Sicherheitslücke)]]></description>
<link>https://isharestuff.com/de/3434171/computer-internet/gefaelschte-strassenschilder-autos-lassen-sich-per-prompt-injection-fehlleiten/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3434171/computer-internet/gefaelschte-strassenschilder-autos-lassen-sich-per-prompt-injection-fehlleiten/</guid>
<pubDate>Mon, 02 Feb 2026 08:47:16 +0100</pubDate>
<content:encoded><![CDATA[US-Forscher haben entdeckt, dass sich mit Fake-Straßenschildern autonome Autos und Drohnen fehlleiten lassen. Das funktioniert wie eine Prompt-Injection. (<a href="https://www.golem.de/specials/ki/">KI</a>, <a href="https://www.golem.de/specials/sicherheitsluecke/">Sicherheitslücke</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=204863&amp;page=1&amp;ts=1770015241" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - Fossile Industrie liebt KI!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:36 Der Hype um generative KI und die Gasindustrie bilden in Zeiten der Klimakrise eine bedrohliche Allianz für die Zukunft des Planeten.

Obwohl die negativen Klimaauswirkungen generativer KI immer deutlicher werden, sollen in ganz Europa Großrechenzen...]]></description>
<link>https://isharestuff.com/de/3420399/it-sicherheit/39c3-fossile-industrie-liebt-ki/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3420399/it-sicherheit/39c3-fossile-industrie-liebt-ki/</guid>
<pubDate>Sat, 24 Jan 2026 22:02:25 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:36 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/zkicCUTHYLA?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Der Hype um generative KI und die Gasindustrie bilden in Zeiten der Klimakrise eine bedrohliche Allianz für die Zukunft des Planeten.<br />
<br />
Obwohl die negativen Klimaauswirkungen generativer KI immer deutlicher werden, sollen in ganz Europa Großrechenzentren gebaut werden und Deutschland „KI-Nation“ werden, was ungeahnte „Wirtschaftskräfte freisetzen soll“ – zumindest, wenn es nach der Bundesregierung geht.<br />
<br />
Der Ausbau der Recheninfrastruktur für generative KI benötigt viel Energie, Wasser und Ressourcen, was global zu Umweltschäden führt. Prognosen für die EU zeigen, dass der Energieverbrauch in Zukunft so groß werden könnte, dass der Ausbau der erneuerbaren Energien nicht mithalten kann – doch die fossile Industrie steht bereits in den Startlöchern.<br />
<br />
Der Hype um generative KI liefert ihnen die perfekte Begründung für den Ausbau fossiler Infrastruktur- mitten in der eskalierenden Klimakrise. Tech- und Fossilkonzerne investieren massiv in neue Gaskraftwerke für energiehungrige Rechenzentren.  Dabei ist der wirtschaftliche Nutzen und die Wertschöpfung durch die Technologie weiterhin unklar.<br />
Klar ist: wir erleben derzeit eine fossile Gegenoffensive im Gewand digitaler Versprechen. Auf Kosten des Klimas und der Zukunft.<br />
<br />
Dieser Vortrag schließt an den Talk "Klimaschädlich by Design" vom 38C3 an und gibt Updates zu Entwicklungen in Deutschland und Europa.<br />
<br />
Stefan, Yannik & Rike, Moritz Leiner<br />
<br />
https://events.ccc.de/congress/2025/hub/event/detail/fossile-industrie-liebt-ki<br />
<br />
#39c3 #EthicsSocietyPolitics<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Progressive eastward rupture of the Main Marmara fault toward Istanbul | Science]]></title>
<description><![CDATA[The Main Marmara fault (MMF) in northwestern Türkiye poses the highest seismic risk in broader Europe. The 2025 moment magnitude (MW) 6.2 event was the largest earthquake along the MMF in >60 years. We integrated observations from multiple temporal ...]]></description>
<link>https://isharestuff.com/de/3416897/wissen/progressive-eastward-rupture-of-the-main-marmara-fault-toward-istanbul-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3416897/wissen/progressive-eastward-rupture-of-the-main-marmara-fault-toward-istanbul-science/</guid>
<pubDate>Thu, 22 Jan 2026 20:16:07 +0100</pubDate>
<content:encoded><![CDATA[The Main Marmara fault (MMF) in northwestern Türkiye poses the highest seismic risk in broader Europe. The 2025 moment magnitude (MW) 6.2 event was the largest earthquake along the MMF in &gt;60 years. We integrated observations from multiple temporal ...]]></content:encoded>
</item>
<item>
<title><![CDATA["All Her Fault": Ein Kind verschwindet, und sein Vater könnte auch gern weg]]></title>
<description><![CDATA[In "All Her Fault" wird die Kernfamilie zur Schreckensgemeinschaft. Einen Ausweg liefert die HBO-Serie auch.]]></description>
<link>https://isharestuff.com/de/3412448/nachrichten/all-her-fault-ein-kind-verschwindet-und-sein-vater-koennte-auch-gern-weg/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3412448/nachrichten/all-her-fault-ein-kind-verschwindet-und-sein-vater-koennte-auch-gern-weg/</guid>
<pubDate>Tue, 20 Jan 2026 16:00:59 +0100</pubDate>
<content:encoded><![CDATA[In "All Her Fault" wird die Kernfamilie zur Schreckensgemeinschaft. Einen Ausweg liefert die HBO-Serie auch.]]></content:encoded>
</item>
<item>
<title><![CDATA[Serie: Mein Kind ist weg, und ich bin schuld]]></title>
<description><![CDATA[Die HBO-Serie „All Her Fault“ über das Verschwinden eines fünfjährigen Jungen will die Überforderung von Müttern thematisieren. Aber selbst mit Sarah Snook und Dakota Fanning bleibt die Sache flach.]]></description>
<link>https://isharestuff.com/de/3399242/nachrichten/serie-mein-kind-ist-weg-und-ich-bin-schuld/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3399242/nachrichten/serie-mein-kind-ist-weg-und-ich-bin-schuld/</guid>
<pubDate>Mon, 12 Jan 2026 18:06:09 +0100</pubDate>
<content:encoded><![CDATA[<img src="https://www.sueddeutsche.de/2026/01/02/477fbdc5-a51e-41ca-8e89-3b0730d314c3.jpg?rect=168%2C0%2C960%2C720&amp;width=1000&amp;fm=jpg&amp;q=60" data-portal-copyright="Sarah Enticknap/PEACOCK"><p>Die HBO-Serie „All Her Fault“ über das Verschwinden eines fünfjährigen Jungen will die Überforderung von Müttern thematisieren. Aber selbst mit Sarah Snook und Dakota Fanning bleibt die Sache flach.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - Agentic ProbLLMs: Exploiting AI Computer-Use and Coding Agents]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:110 https://media.ccc.de/v/39c3-agentic-probllms-exploiting-ai-computer-use-and-coding-agents

This talk demonstrates end-to-end prompt injection exploits that compromise agentic systems. Specifically, we will discuss exploits that target computer-use ...]]></description>
<link>https://isharestuff.com/de/3395239/it-sicherheit/39c3-agentic-probllms-exploiting-ai-computer-use-and-coding-agents/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3395239/it-sicherheit/39c3-agentic-probllms-exploiting-ai-computer-use-and-coding-agents/</guid>
<pubDate>Fri, 09 Jan 2026 18:32:50 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:110 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/8pbz5y7_WkM?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/39c3-agentic-probllms-exploiting-ai-computer-use-and-coding-agents<br />
<br />
This talk demonstrates end-to-end prompt injection exploits that compromise agentic systems. Specifically, we will discuss exploits that target computer-use and coding agents, such as Anthropic's Claude Code, GitHub Copilot, Google Jules, Devin AI, ChatGPT Operator, Amazon Q, AWS Kiro, and others. <br />
<br />
Exploits will impact confidentiality, system integrity, and the future of AI-driven automation, including remote code execution, exfiltration of sensitive information such as access tokens, and even joining Agents to traditional command and control infrastructure. Which are known as "ZombAIs", a term first coined by the presenter as well as long-term prompt injection persistence in AI coding agents.<br />
<br />
Additionally, we will explore how nation state TTPs such as ClickFix apply to Computer-Use systems and how they can trick AI systems and lead to full system compromise (AI ClickFix). <br />
<br />
Finally, we will cover current mitigation strategies and forward-looking recommendations and strategic thoughts.<br />
<br />
During the Month of AI Bugs (August 2025), I responsibly disclosed over two dozen security vulnerabilities across all major agentic AI coding assistants. This talk distills the most severe findings and patterns observed.<br />
<br />
Key highlights include:<br />
* Critical prompt-injection exploits enabling zero-click data exfiltration and arbitrary remote code execution across multiple platforms and vendor products<br />
* Recurring systemic flaws such as over-reliance on LLM behavior for trust decisions, inadequate sandboxing of tools, and weak user-in-the-loop controls.<br />
* How I leveraged AI to find some of these vulnerabilities quickly<br />
* The AI Kill Chain: prompt injection, confused deputy behavior, and automatic tool invocation<br />
* Adaptation of nation-state TTPs (e.g., ClickFix) into AI ClickFix techniques that can fully compromise computer-use systems.<br />
* Insights about vendor responses: from quick patches and CVEs to months of silence, or quiet patching<br />
* AgentHopper will highlight how these vulnerabilities combined could have led to an AI Virus<br />
<br />
Finally, the session presents practical mitigations and forward-looking strategies to reduce the growing attack surface of probabilistic, autonomous AI systems.<br />
<br />
Johann Rehberger<br />
<br />
https://events.ccc.de/congress/2025/hub/event/detail/agentic-probllms-exploiting-ai-computer-use-and-coding-agents<br />
<br />
#39c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - Chaospager - How to construct an Open Pager System for c3]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:45 https://media.ccc.de/v/39c3-chaospager-how-to-construct-an-open-pager-system-for-c3

In this talk, we will give an introduction into the project (i.e. how it all started at 38c3 and why we are here now), provide an in-depth review of how the develop...]]></description>
<link>https://isharestuff.com/de/3389965/it-sicherheit/39c3-chaospager-how-to-construct-an-open-pager-system-for-c3/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3389965/it-sicherheit/39c3-chaospager-how-to-construct-an-open-pager-system-for-c3/</guid>
<pubDate>Wed, 07 Jan 2026 01:02:08 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:45 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/s9cQ0rsCipg?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/39c3-chaospager-how-to-construct-an-open-pager-system-for-c3<br />
<br />
In this talk, we will give an introduction into the project (i.e. how it all started at 38c3 and why we are here now), provide an in-depth review of how the development process of our pager worked and what our future goals are.<br />
<br />
In our introduction, we will talk about the origin and exploration phase of the inital pager idea (i.e. how we went from the idea of bringing POCSAG Pager transmitter to 38c3, over a cable-bound prototype, to a first working pager on a proper PCB). We will also present our plans of connecting our POCSAG transmitter infrastructure to THOT (CERTs own dispatch software).<br />
<br />
For our in-depth review about the project, we explain how we encountered major reception problems, how we analyzed them at easterhegg22 and conducted experiments there, and why we are opting for a custom HF frontend design instead of an already-made one from chinese vendors. Moreover, we provide an overview of our transmitter devices and give some advice on how to replicate those.<br />
<br />
Lastly, we will discuss further challenges and what our next goals are.<br />
<br />
If we are reaching our milestone until 39c3, we will also give a live demo of the system.<br />
<br />
At 38c3, we conducted an experiment to test out our self-built POCSAG Pager infrastructure. Together with DL0TUH and CERT, we are now working on an open pager solution leveraging well-known components in the maker commmunity (e.g. ESP32, SX1262) to support the alarming of action forces at c3 events. In this talk, we will guide you through the process of developing such a project, problems that are occuring and what our future plans are.<br />
<br />
Max, Julian<br />
<br />
https://events.ccc.de/congress/2025/hub/event/detail/chaospager-how-to-construct-an-open-pager-system-for-c3<br />
<br />
#39c3 #Hardware<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - Of Boot Vectors and Double Glitches: Bypassing RP2350's Secure Boot]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:57 https://media.ccc.de/v/39c3-of-boot-vectors-and-double-glitches-bypassing-rp2350-s-secure-boot

In August 2024, Raspberry Pi released their newest MCU: The RP2350. Alongside the chip, they also released the RP2350 Hacking Challenge: A public call to...]]></description>
<link>https://isharestuff.com/de/3389006/it-sicherheit/39c3-of-boot-vectors-and-double-glitches-bypassing-rp2350s-secure-boot/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3389006/it-sicherheit/39c3-of-boot-vectors-and-double-glitches-bypassing-rp2350s-secure-boot/</guid>
<pubDate>Tue, 06 Jan 2026 14:02:33 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:57 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/V5KvW4elzXU?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/39c3-of-boot-vectors-and-double-glitches-bypassing-rp2350-s-secure-boot<br />
<br />
In August 2024, Raspberry Pi released their newest MCU: The RP2350. Alongside the chip, they also released the RP2350 Hacking Challenge: A public call to break the secure boot implementation of the RP2350. This challenge concluded in January 2025 and led to five exciting attacks discovered by different individuals.<br />
<br />
In this talk, we will provide a technical deep dive in the RP2350 security architecture and highlight the different attacks. Afterwards, we talk about two of the breaks in detail---each of them found by one of the speakers. In particular, we first discuss how fault injection can force an unverified vector boot, completely bypassing secure boot. Then, we showcase how double glitches enable direct readout of sensitive secrets stored in the one-time programmable memory of the RP2350.<br />
<br />
Last, we discuss the mitigation of the attacks implemented in the new revision of the chip and the lessons we learned while solving the RP2350 security challenge. Regardless of chip designer, manufacturer, hobbyist, tinkerer, or hacker: this talk will provide valuable insights for everyone and showcase why security through transparency is awesome.<br />
<br />
The RP2350 is one of the first generally available microcontrollers with active security-features against fault-injection such as glitch-detectors, the redundancy co-processor, and other pieces to make FI attacks more difficult.<br />
<br />
But security on paper often does not mean security in real-life. Luckily for us, Raspberry Pi also ran the RP2350 Hacking Challenge: A public bug bounty that has exactly these attacks in-scope. During the hacking challenge 5 different attacks were found on the secure-boot process - one of which was shown at 38C3 by Aedan Cullen.<br />
<br />
In this talk, we talk about all successful attacks - including laser fault-injection, a reset glitch, and a double-glitch during execution of the bootrom - to show all the different ways in which a chip can be attacked.<br />
<br />
We also talk about the awesomeness of an open security-ecosystem for chips: Raspberry Pi was very transparent on the findings, and worked with researchers to improve the new revision of the chip.<br />
<br />
stacksmashing, nsr<br />
<br />
https://events.ccc.de/congress/2025/hub/event/detail/of-boot-vectors-and-double-glitches-bypassing-rp2350-s-secure-boot<br />
<br />
#39c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - Rowhammer in the Wild: Large-Scale Insights from FlippyR.AM]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:76 Last year at 38c3, we gave a talk titled "Ten Years of Rowhammer: A Retrospect (and Path to the Future)."
In this talk, we summarized 10 years of Rowhammer research and highlighted gaps in our understanding.
For instance, although nearly all DRAM ge...]]></description>
<link>https://isharestuff.com/de/3387627/it-sicherheit/39c3-rowhammer-in-the-wild-large-scale-insights-from-flippyram/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3387627/it-sicherheit/39c3-rowhammer-in-the-wild-large-scale-insights-from-flippyram/</guid>
<pubDate>Mon, 05 Jan 2026 17:58:08 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:76 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/OZcfRCTUcEI?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Last year at 38c3, we gave a talk titled "Ten Years of Rowhammer: A Retrospect (and Path to the Future)."<br />
In this talk, we summarized 10 years of Rowhammer research and highlighted gaps in our understanding.<br />
For instance, although nearly all DRAM generations from DDR3 to DDR5 are vulnerable to the Rowhammer effect, we still do not know its real-world prevalence.<br />
For that reason, we invited everyone at 38c3 last year to participate in our large-scale Rowhammer prevalence study.<br />
In this year's talk, we will first provide an update on Rowhammer research and present our results from that study. <br />
<br />
A lot has happened in Rowhammer research in 2025.<br />
We have evidence that DDR5 is as vulnerable to Rowhammer as previous generations.<br />
Other research shows that not only can adversaries target rows, but columns can also be addressed and used for bit flips.<br />
Browser-based Rowhammer attacks are back on the table with Posthammer and with ECC. fail, we can mount Rowhammer attacks on DDR4 with ECC memory.<br />
<br />
In our large-scale study, we measure Rowhammer prevalence in a fully automated cross-platform framework, FlippyR.AM, using the available state-of-the-art software-based DRAM and Rowhammer tools.<br />
Our framework automatically gathers information about the DRAM and uses 5 tools to reverse-engineer the DRAM addressing functions, and based on the reverse-engineered functions, uses 7 tools to mount Rowhammer.<br />
We distributed the framework online and via USB thumb drives to thousands of participants from December 30, 2024, to June 30, 2025. Overall, we collected 1006 datasets from 822 systems with various CPUs, DRAM generations, and vendors.<br />
Our study reveals that out of 1006 datasets, 453 (371 of the 822 unique systems) succeeded in the first stage of reverse-engineering the DRAM addressing functions, indicating that successfully and reliably recovering DRAM addressing functions remains a significant open problem.<br />
In the second stage, 126 (12.5 % of all datasets) exhibited bit flips in our fully automated Rowhammer attacks.<br />
Our results show that fully automated, i.e., weaponizable, Rowhammer attacks work on a lower share of systems than FPGA-based and lab experiments indicated, but at 12.5%, are still a practical vector for threat actors.<br />
Furthermore, our results highlight that the two most pressing research challenges around Rowhammer exploitability are more reliable reverse-engineering tools for DRAM addressing functions, as 50 % of datasets without bit flips failed in the DRAM reverse-engineering stage, and reliable Rowhammer attacks across diverse processor microarchitectures, as only 12.5 % of datasets contained bit flips.<br />
Addressing each of these challenges could double the number of systems susceptible to Rowhammer and make Rowhammer a more pressing threat in real-world scenarios.<br />
<br />
This will be a followup talk after our talk "Ten Years of Rowhammer: A Retrospect (and Path to the Future)" at 38C3.<br />
In the talk last year we gave an overview of the current state of Rowhammer and highlighted that there are no large-scale prevalence studies.<br />
We wanted to change that and asked the audience to participate in our large-scale study on Rowhammer prevalence.<br />
<br />
We performed the large-scale study on Rowhammer prevalence thanks to many volunteers supporting our study by measuring their systems.<br />
In total, we collected 1006 datasets on 822 different systems (some systems were measured multiple times).<br />
We show that 126 of them (12.5%) are affected by Rowhammer with our fully-automated setup.<br />
This should be seen as a lower bound, since the preconditions required for effective tools failed on ~50% of the systems.<br />
Among many other insights, we learned that the fully-automated reverse-engineering of DRAM addressing functions is still an open problem and we assume the actual number of affected systems to be higher as the 12.5% we measured in our study.<br />
<br />
Now, one year after our talk at the 38C3, we want to give an update on the current state of Rowhammer, since multiple new insights were published in the last year:<br />
The first reliable Rowhammer exploit on DDR5, a JavaScript implementation of Rowhammer that works on current DDR4 systems, and an ECC bypass on DDR4, just to name a few.<br />
Additionally, we want to present the results of our large-scale study on Rowhammer prevalence which was supported by the audience from last year's talk.<br />
<br />
Martin Heckel, Florian Adamsky, Daniel Gruss<br />
<br />
https://events.ccc.de/congress/2025/hub/event/detail/rowhammer-in-the-wild-large-scale-insights-from-flippyr-am<br />
<br />
#39c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[39C3 - AI Agent, AI Spy]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2965x - Views:62732 Agentic AI is the catch-all term for AI-enabled systems that propose to complete more or less complex tasks on their own, without stopping to ask permission or consent. What could go wrong? These systems are being integrated directly into oper...]]></description>
<link>https://isharestuff.com/de/3386898/it-sicherheit/39c3-ai-agent-ai-spy/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3386898/it-sicherheit/39c3-ai-agent-ai-spy/</guid>
<pubDate>Mon, 05 Jan 2026 14:38:29 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2965x - Views:62732 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/0ANECpNdt-4?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Agentic AI is the catch-all term for AI-enabled systems that propose to complete more or less complex tasks on their own, without stopping to ask permission or consent. What could go wrong? These systems are being integrated directly into operating systems and applications, like web browsers. This move represents a fundamental paradigm shift, transforming them from relatively neutral resource managers into an active, goal-oriented infrastructure ultimately controlled by the companies that develop these systems, not by users or application developers. Systems like Microsoft's "Recall," which create a comprehensive "photographic memory" of all user activity, are marketed as productivity enhancers, but they function as OS-level surveillance and create significant privacy vulnerabilities. In the case of Recall, we’re talking about a centralized, high-value target for attackers that poses an existential threat to the privacy guarantees of meticulously engineered applications like Signal. This shift also fundamentally undermines personal agency, replacing individual choice and discovery with automated, opaque recommendations that can obscure commercial interests and erode individual autonomy.<br />
<br />
This talk will review the immediate and serious danger that the rush to shove agents into our devices and digital lives poses to our fundamental right to privacy and our capacity for genuine personal agency. Drawing from Signal's analysis, it moves beyond outlining the problem to also present a "tourniquet" solution: looking at what we need to do *now* to ensure that privacy at the application layer isn’t eliminated, and what the hacker community can do to help. We will outline a path for ensuring developer agency, granular user control, radical transparency, and the role of adversarial research.<br />
<br />
The talk will provide a critical technical and political economy analysis of the new privacy crisis emerging from OS and application level AI agents, aimed at the 39C3 "Ethics, Society & Politics" audience.<br />
<br />
1. Defining the Threat: The OS as a Proactive Participant (5 mins)<br />
   We will begin by defining "Agentic AI" in two contexts - imbibed into the operating system and deployed via critical gateway applications such as web browsers. Traditionally, the operating systems and browsers are largely neutral enforcers of user agency, managing resources and providing APIs for applications to run reliably. We will argue that this neutrality is close to being eliminated. The new paradigm shifts these applications into a proactive agent that actively observes, records, and anticipates user actions across all applications.The prime example for this analysis will be Microsoft’s "Recall" feature, Google’s Magic Cue, and OpenAI’s Atlas. Politically, we will frame this not as a "feature" but as the implementation of pervasive, non-consensual surveillance and remote-control infrastructure. This "photographic memory" of and demand for non-differentiated access to everything from private Signal messages to financial data to health data creates a catastrophic single point of failure, making a single security breach an existential threat to a user's entire digital life. Ultimately, we hope to illustrate how putting our brains in a jar (with agentic systems) is effectively a prompt injection attack against our own humanity.<br />
<br />
2. The Existential Threat to Application-Level Privacy (10 mins)<br />
   The core of the talk will focus on what this means for privacy-first applications like Signal. We will explain the "blood-brain barrier" analogy: secure apps are meticulously engineered to minimize data and protect communications, relying on the OS to be a stable, neutral foundation on which to build. This new OS trend breaks that barrier. We will demonstrate how OS-level surveillance renders application-level privacy features, including end-to-end encryption, effectively useless. If the OS can screenshot a message before it's encrypted or after it's decrypted, the promise of privacy is broken, regardless of the app's design. We will also discuss the unsustainable "clever hacks" (like Signal using a DRM feature) that developers are forced to implement, underscoring the need for a structural solution.<br />
<br />
3. An Actionable Framework for Remediation (20 mins)<br />
   The final, and most important, part of the talk will move from critique to action. We will present an actionable four-point framework as a "tourniquet" to address these immediate dangers:<br />
<br />
a. Empower Developers: Demand clear, officially supported APIs for developers to designate individual applications as "sensitive" with the default posture being for such applications being opted-out of access by agentic systems (either OS or application based) (default opt-out)<br />
<br />
b. Granular User Control: Move beyond all-or-nothing permissions. Users must have explicit, fine-grained control to grant or deny AI access on an app-by-app basis.<br />
<br />
c. Mandate Radical Transparency: OS vendors and application developers must clearly dis<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Replenishing sapped groundwater could trigger small earthquakes]]></title>
<description><![CDATA[A boom in aquifer injection projects could unlock long-quiet faults]]></description>
<link>https://isharestuff.com/de/3374327/wissen/replenishing-sapped-groundwater-could-trigger-small-earthquakes/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3374327/wissen/replenishing-sapped-groundwater-could-trigger-small-earthquakes/</guid>
<pubDate>Thu, 11 Dec 2025 20:38:27 +0100</pubDate>
<content:encoded><![CDATA[A boom in aquifer injection projects could unlock long-quiet faults]]></content:encoded>
</item>
<item>
<title><![CDATA[API Security: 10 Essential Measures Every Developer Must Know]]></title>
<description><![CDATA[Author: Coding Tech - Bewertung: 4x - Views:34 In 2025, 84% of organizations experienced at least one API security incident. API calls now make up 71% of web traffic, and API breaches leak 10x more data than average security incidents. This video covers the 10 battle-tested security measures that...]]></description>
<link>https://isharestuff.com/de/3371058/wissenschaft-bildung/api-security-10-essential-measures-every-developer-must-know/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3371058/wissenschaft-bildung/api-security-10-essential-measures-every-developer-must-know/</guid>
<pubDate>Wed, 10 Dec 2025 01:27:44 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: Coding Tech - Bewertung: 4x - Views:34 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bKfbzxkw8yo?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>In 2025, 84% of organizations experienced at least one API security incident. API calls now make up 71% of web traffic, and API breaches leak 10x more data than average security incidents. This video covers the 10 battle-tested security measures that will protect your applications from the most common and devastating attacks.

What you'll learn:

1. HTTPS & TLS - Encrypt all traffic, TLS 1.3, certificate verification
2. Authentication - JWTs, token expiration, secret storage, OAuth 2.0
3. Authorization - Authentication vs authorization, BOLA attacks, RBAC
4. Rate Limiting - Token bucket algorithm, preventing brute force & DDoS
5. Input Validation - Schema validation, type checking, preventing overflow attacks
6. Injection Prevention - SQL injection, parameterized queries, NoSQL injection
7. CORS - Cross-origin resource sharing, preflight requests, proper configuration
8. CSRF Protection - Token-based defense, SameSite cookies
9. XSS Prevention - Stored/Reflected/DOM-based XSS, sanitization, CSP headers
10. Security Headers - CSP, X-Frame-Options, HSTS, X-Content-Type-Options

Master all 10 measures and you'll block the vast majority of attacks before they ever reach your data.

  ---
  Timestamps:
  0:00 - Introduction: Why API Security Matters
  1:38 - Measure 1: HTTPS & TLS Encryption
  3:01 - Measure 2: Authentication (JWTs & OAuth)
  4:26 - Measure 3: Authorization & BOLA Prevention
  6:00 - Measure 4: Rate Limiting
  7:31 - Measure 5: Input Validation
  9:15 - Measure 6: SQL Injection Prevention
  11:05 - Measure 7: CORS Configuration
  12:40 - Measure 8: CSRF Protection
  14:11 - Measure 9: XSS Prevention
  15:52 - Measure 10: Security Headers
  17:36 - Your Security Checklist<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Lethal Illusion: Understanding the Death Penalty Apparatus]]></title>
<description><![CDATA[Malcolm Gladwell and Liliana Segura unpack how the death penalty is administered in America.
The post Lethal Illusion: Understanding the Death Penalty Apparatus appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3364720/ausland/lethal-illusion-understanding-the-death-penalty-apparatus/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3364720/ausland/lethal-illusion-understanding-the-death-penalty-apparatus/</guid>
<pubDate>Fri, 05 Dec 2025 12:02:49 +0100</pubDate>
<content:encoded><![CDATA[<p>Malcolm Gladwell and Liliana Segura unpack how the death penalty is administered in America.</p>
<p>The post <a href="https://theintercept.com/2025/12/05/malcolm-gladwell-liliana-segura-death-penalty-lethal-injection/">Lethal Illusion: Understanding the Death Penalty Apparatus</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Groundbreaking HIV prevention shots begin in Eswatini | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:1 Eswatini begins administering a groundbreaking HIV-prevention injection in the drug's first public rollouts in Africa, which has the world's highest HIV burden. Lenacapavir, which is taken twice a year, has been shown to reduce the risk of HIV tra...]]></description>
<link>https://isharestuff.com/de/3360294/nachrichten-politik/groundbreaking-hiv-prevention-shots-begin-in-eswatini-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3360294/nachrichten-politik/groundbreaking-hiv-prevention-shots-begin-in-eswatini-afp/</guid>
<pubDate>Tue, 02 Dec 2025 17:51:44 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/6diZhafSvog?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Eswatini begins administering a groundbreaking HIV-prevention injection in the drug's first public rollouts in Africa, which has the world's highest HIV burden. Lenacapavir, which is taken twice a year, has been shown to reduce the risk of HIV transmission by more than 99.9 percent, making it functionally akin to a powerful vaccine. Eswatini -- a tiny kingdom of 1.2 million -- has about 220,000 people living with the virus.

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Neue Prompt-Injection macht Links zur Gefahr für KI-Browser - Swiss IT Magazine]]></title>
<description><![CDATA[Neue Prompt-Injection macht Links zur Gefahr für KI-Browser  Swiss IT MagazineOnlinesuche im Wandel: KI verändert Browser und das Surfen im Netz  DeutschlandfunkPrompt Injection: Mehrere KI-Browser mit nur einem Zeichen überlistet  GolemWas KI-Browser können – und warum sie gefährlich sind  impul...]]></description>
<link>https://isharestuff.com/de/3353408/politik-wirtschaft/neue-prompt-injection-macht-links-zur-gefahr-fuer-ki-browser-swiss-it-magazine/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3353408/politik-wirtschaft/neue-prompt-injection-macht-links-zur-gefahr-fuer-ki-browser-swiss-it-magazine/</guid>
<pubDate>Fri, 28 Nov 2025 00:30:07 +0100</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMiqAFBVV95cUxQb2VMelFIeHdYd211cVh6MzNRWGotbWFPSEFKRzc2QTAxczU1QzEyOUZ3MVJxQmtFbnYzbEFKSTFUbEFfblFjUWpJWXN2SktyZVdSTkZZMWZLUDl5eDdOSXFJUjNzcG04eThvYkZLX1Y1cXFPdy1iX1UyU2ZVbEZrZExXWlNCdDBLRVU3RVRXMXhvZmJqdVdxM3phZmxBRHd1Vnl1OUYzdmQ?oc=5" target="_blank">Neue Prompt-Injection macht Links zur Gefahr für KI-Browser</a>  Swiss IT Magazine</li><li><a href="https://news.google.com/rss/articles/CBMifkFVX3lxTFBncmRFYVIwTGhfX2ZNWVZiTE5TTFRyNlpxSDd4TkdsNnNGbFNJMzBSR1Rxcnp3bVFDbkJJR1d5Yi1qWFNJYlZvc1FrQnlNWDlKUnc5SHoxU1lZZExTTktpRVFvTGh2UHVyZHJTUUtzZlB3ekJ6d0dhWWVZQ3dhZw?oc=5" target="_blank">Onlinesuche im Wandel: KI verändert Browser und das Surfen im Netz</a>  Deutschlandfunk</li><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxOcHpNbm1ablo3QlJEQWVtaWNqUzVLZGZkb3ZOZ3BKWlVBQndnQ2NqMHg2TGV3QVlsbHQzMGpxOEcxZG5UNS1KcTM2LUliVzViV0pqcGlVOVhKbldsRGlzaWp4TXpmS0gwMWhVUzZTRThSd1FOWUpMM29sVU9yeE1pY1lnNjlKYXpKWTBFZHFtaGZkV1RYMlFpNFBFYWV5R2hyNHo2VjVCblRNSWEweGdHYU1R?oc=5" target="_blank">Prompt Injection: Mehrere KI-Browser mit nur einem Zeichen überlistet</a>  Golem</li><li><a href="https://news.google.com/rss/articles/CBMia0FVX3lxTE5vT1RqRlZtNEdnamxCNDN2aHJLNVdMVm1leWF6U0ZwU3UxeXJpX0MyaEw2RHB6bHdGM0xTdllhUWcyRVg1Q0E2S21HS3d5Q0RGbFZ6N2F2SWZGUGxPU1JSd2ZveEZMTWs2NEFF?oc=5" target="_blank">Was KI-Browser können – und warum sie gefährlich sind</a>  impulse.de</li><li><a href="https://news.google.com/rss/articles/CBMihAFBVV95cUxPQm1QNzNTeU9oVldLODlkWTJ5RlN0ZHd0NVRpVHVwcmVKNF9XVXVRSndjU20yN0dsTE1OaXJRYXVDQWtwNC1MX2NkXy1PTG41MkFNZ0hLeEJ6ak5OMG1WdXJMY2lNTHM1eEZCNkI0TFBzZkFHVVVzLWlVelVBam51WUxUSjE?oc=5" target="_blank">„HashJack“: KI-Browser werden zur unsichtbaren Phishing-Waffe</a>  it-daily</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[„HashJack“: KI-Browser werden zur unsichtbaren Phishing-Waffe - it-daily]]></title>
<description><![CDATA[„HashJack“: KI-Browser werden zur unsichtbaren Phishing-Waffe  it-dailyOnlinesuche im Wandel: KI verändert Browser und das Surfen im Netz  DeutschlandfunkPrompt Injection: Mehrere KI-Browser mit nur einem Zeichen überlistet  GolemNeue Schwachstelle „HashJack“ bedroht KI-Browser-Assistenten  conne...]]></description>
<link>https://isharestuff.com/de/3351991/ausland/hashjack-ki-browser-werden-zur-unsichtbaren-phishing-waffe-it-daily/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3351991/ausland/hashjack-ki-browser-werden-zur-unsichtbaren-phishing-waffe-it-daily/</guid>
<pubDate>Thu, 27 Nov 2025 09:30:21 +0100</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMihAFBVV95cUxPQm1QNzNTeU9oVldLODlkWTJ5RlN0ZHd0NVRpVHVwcmVKNF9XVXVRSndjU20yN0dsTE1OaXJRYXVDQWtwNC1MX2NkXy1PTG41MkFNZ0hLeEJ6ak5OMG1WdXJMY2lNTHM1eEZCNkI0TFBzZkFHVVVzLWlVelVBam51WUxUSjE?oc=5" target="_blank">„HashJack“: KI-Browser werden zur unsichtbaren Phishing-Waffe</a>  it-daily</li><li><a href="https://news.google.com/rss/articles/CBMifkFVX3lxTFBncmRFYVIwTGhfX2ZNWVZiTE5TTFRyNlpxSDd4TkdsNnNGbFNJMzBSR1Rxcnp3bVFDbkJJR1d5Yi1qWFNJYlZvc1FrQnlNWDlKUnc5SHoxU1lZZExTTktpRVFvTGh2UHVyZHJTUUtzZlB3ekJ6d0dhWWVZQ3dhZw?oc=5" target="_blank">Onlinesuche im Wandel: KI verändert Browser und das Surfen im Netz</a>  Deutschlandfunk</li><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxOcHpNbm1ablo3QlJEQWVtaWNqUzVLZGZkb3ZOZ3BKWlVBQndnQ2NqMHg2TGV3QVlsbHQzMGpxOEcxZG5UNS1KcTM2LUliVzViV0pqcGlVOVhKbldsRGlzaWp4TXpmS0gwMWhVUzZTRThSd1FOWUpMM29sVU9yeE1pY1lnNjlKYXpKWTBFZHFtaGZkV1RYMlFpNFBFYWV5R2hyNHo2VjVCblRNSWEweGdHYU1R?oc=5" target="_blank">Prompt Injection: Mehrere KI-Browser mit nur einem Zeichen überlistet</a>  Golem</li><li><a href="https://news.google.com/rss/articles/CBMioAFBVV95cUxPSHVWT1V1Wi02Y3FhbVUyU1Azb1BpUXZuYVNRcWJTUTJkSU1oVFU5S3ZCQmhJTzlVMzdubXNTRU9pc3o2V0pNOGZpbmFtYlljU0xfZTR3X2xhaGllYUZlMTUwRkdOWVFYUm1td0lLQnRLb0t1cGxJYVFyc00wUmZWeWpleXFIbWhNQ1FoTk04VW9XeE9ib0JkZ09TWVFGYjRM?oc=5" target="_blank">Neue Schwachstelle „HashJack“ bedroht KI-Browser-Assistenten</a>  connect.de</li><li><a href="https://news.google.com/rss/articles/CBMizgFBVV95cUxPZUh6R3hPZTZlUExRdUx4TXF6V08tYzRLYktEemhndHNGdHBnU3NMdnV5SGhaMndHdU5rNm82RlRvWFEzSlZQbXowdkpiWVR5RkpjXzE1M2dWdVdqQVM4c1RLSm5wVGVzMGxNb1VOU0ZuME8wTDNhdlhITklJY0ZjSDNFc0I1LUVobEd6VHVmLVNmTWc3N3Z4NEwwVEM2cXJ4N0hKM0hMM1VxSGExZnRZa19sSFRnT1V0M01ISkwteEpHMEdSTmUwRldJbEVXdw?oc=5" target="_blank">Web-Erfinder Tim Berners-Lee warnt: Big Tech gefährdet das offene Netz</a>  MSN</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Prompt Injection: Mehrere KI-Browser mit nur einem Zeichen überlistet]]></title>
<description><![CDATA[Eine Raute am Ende einer URL lässt KI-Assistenten nachfolgenden Text als Anweisung interpretieren. Das ermöglicht Datenklau und mehr. (Browser, Google)]]></description>
<link>https://isharestuff.com/de/3350327/computer-internet/prompt-injection-mehrere-ki-browser-mit-nur-einem-zeichen-ueberlistet/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3350327/computer-internet/prompt-injection-mehrere-ki-browser-mit-nur-einem-zeichen-ueberlistet/</guid>
<pubDate>Wed, 26 Nov 2025 10:45:34 +0100</pubDate>
<content:encoded><![CDATA[Eine Raute am Ende einer URL lässt KI-Assistenten nachfolgenden Text als Anweisung interpretieren. Das ermöglicht Datenklau und mehr. (<a href="https://www.golem.de/specials/browser/">Browser</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=202610&amp;page=1&amp;ts=1764150241" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[💸 KRYPTO-GELDWÄSCHE: Wie Ransomware-Milliarden im Mixer verschwinden (Analyse) 🕵️‍♂️]]></title>
<description><![CDATA[Author: VAZULES Analysiert - Bewertung: 1x - Views:3 ▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert die *Anatomie der Krypto-Geldwäsche*. Wir zeigen, wie *Ransomware-Gruppen* ihre Milliarden-Beute durch *digitale Mixer* (Tumbler) waschen und wie Forensiker die Spur verfolgen.

---
*Thema:*
💸...]]></description>
<link>https://isharestuff.com/de/3341685/technologie/krypto-geldwaesche-wie-ransomware-milliarden-im-mixer-verschwinden-analyse/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3341685/technologie/krypto-geldwaesche-wie-ransomware-milliarden-im-mixer-verschwinden-analyse/</guid>
<pubDate>Thu, 20 Nov 2025 09:02:09 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES Analysiert - Bewertung: 1x - Views:3 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/DD6oVagZ-A4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert die *Anatomie der Krypto-Geldwäsche*. Wir zeigen, wie *Ransomware-Gruppen* ihre Milliarden-Beute durch *digitale Mixer* (Tumbler) waschen und wie Forensiker die Spur verfolgen.

---
*Thema:*
💸 KRYPTO-GELDWÄSCHE: Wie Ransomware-Milliarden im Mixer verschwinden (Analyse) 🕵️‍♂️

---

Kernaussage (Basierend auf der Analyse):
* 💻 *Die Quelle:* Ransomware (wie *CryptoLocker*) erpresst Unternehmen und Städte. Die Forderung: "Zahlen Sie in Krypto."
* 🌀 *Der Mixer:* Um die *digitale Farbpatrone* (Blockchain-Transparenz) loszuwerden, nutzen Kriminelle *Mixer (Tumbler)*. Wie ein Betonmischer: Viele werfen Coins rein, jeder kriegt saubere raus.
* 📈 *Der Trend:* Krypto-Geldwäsche ist um *70% gestiegen*. Es ist ein *Milliardengeschäft*.
* 🕵️ *Die Jagd:* Forensiker nutzen *Cluster-Analyse* und *OSINT* (Open Source Intelligence), um pseudonyme Wallets mit echten Personen zu verknüpfen.
* 🛡️ *Die Lösung:* *Transaktionssperrlisten*. Statt den Täter zu jagen, wird der *gestohlene Coin markiert*, sodass keine Börse ihn mehr annimmt.

---
DEIN ANALYTISCHER VORSPRUNG: Du hast die Analyse. Hol dir jetzt den *vollen Dreiklang zur Systemkritik*:

➡️ *DAS VAZULES SYSTEM: 3 WEGE ZUR TIEFE*

1. *VERLÄNGERE DIE ANALYSE:* Höre die komplette Playlist mit allen technologie-kritischen Werken:
    *🤖 ZUKUNFT & KONTROLLE 🤖 | KI, ÜBERWACHCHUNGSSTAAT & TECHNOLOGIE*
    https://www.youtube.com/playlist?list=PLR8QkU35CZg5-cZKxjaIvbdh53bwNKqLU&index=0

2. *WISSENSCHAFTLICHER DEEP-DIVE (Hacking):* Der Deep-Dive in die Methoden, mit denen diese *Ransomware* überhaupt eingeschleust wird (KI-Hacking):
    *VAZULES-GEHEIMTIPP: 🤖 KI-HACKING: OWASP Top 10 (2025) – Wie Prompt Injection deine KI zur Waffe macht 🚨*
    https://www.youtube.com/watch?v=OrudpwWzyBI

3. *HOL DEN SONG:* Die musikalische Anklage zur *Macht der Algorithmen*:
    *LAKANDOR-GEHEIMTIPP: 🤖 SUPERINTELLIGENZ: Wer behält die Macht? KI übernimmt – die Zukunft des Menschen wird zur Zahl 🚨*
    https://www.youtube.com/watch?v=nAxtglvlvxI

#KryptoGeldwäsche #Ransomware #BlockchainForensik #BitcoinMixer #TornadoCash #GesprocheneAnalyse #Vazules #Bitcoin<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[🚨 ERSTER AUTONOMER KI-ANGRIFF: Anthropic stoppt chinesische Spionage-Kampagne (GTG-1002) 🤖]]></title>
<description><![CDATA[Author: VAZULES Analysiert - Bewertung: 0x - Views:1 ▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert den *Anthropic-Bericht* über die *erste weitgehend KI-gesteuerte Cyber-Spionagekampagne*. Wir zeigen, wie die chinesische Gruppe *GTG-1002* das *Claude-Modell* nutzte, um Angriffe zu *automati...]]></description>
<link>https://isharestuff.com/de/3336152/technologie/erster-autonomer-ki-angriff-anthropic-stoppt-chinesische-spionage-kampagne-gtg-1002/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3336152/technologie/erster-autonomer-ki-angriff-anthropic-stoppt-chinesische-spionage-kampagne-gtg-1002/</guid>
<pubDate>Sun, 16 Nov 2025 18:02:17 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES Analysiert - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/nvl_FOzyYcc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert den *Anthropic-Bericht* über die *erste weitgehend KI-gesteuerte Cyber-Spionagekampagne*. Wir zeigen, wie die chinesische Gruppe *GTG-1002* das *Claude-Modell* nutzte, um Angriffe zu *automatisieren*.

---
*Thema:*
🚨 ERSTER AUTONOMER KI-ANGRIFF: Anthropic stoppt chinesische Spionage-Kampagne (GTG-1002) 🤖

---

Kernaussage (Basierend auf der Analyse):
* 🤖 *Der Angriff:* Der erste dokumentierte Fall, bei dem eine KI (Claude) *bis zu 90% der taktischen Aufgaben* (Aufklärung, Exploit-Entwicklung) *autonom* durchführte.
* 🎭 *Social Engineering für KI:* Die menschlichen Hacker (GTG-1002) *täuschten* die KI, indem sie vorgaben, eine *legitime Cyber-Sicherheitsfirma* zu sein, die einen Test durchführt.
* ⏱️ *Die Effizienz:* Die KI arbeitete *1-4 Stunden autonom*; der Mensch brauchte nur *2-10 Minuten* zur Freigabe (Go/No-Go).
* 🧠 *Die Schwachstelle (Halluzination):* Die KI *erfand* teilweise Daten (z.B. Logins) oder *überbewertete* ihre Funde, was den Verteidigern (Anthropic) half.
* 📉 *Die Gefahr:* Die *Einstiegshürden* für hochentwickelte Cyberangriffe sind *dramatisch gesunken*. KI ist Waffe und Schild zugleich.

---
DEIN ANALYTISCHER VORSPRUNG: Du hast die Analyse. Hol dir jetzt den *vollen Dreiklang zur Systemkritik*:

➡️ *DAS VAZULES SYSTEM: 3 WEGE ZUR TIEFE*

1. *VERLÄNGERE DIE ANALYSE:* Höre die komplette Playlist mit allen technologie-kritischen Werken:
    *🤖 ZUKUNFT & KONTROLLE 🤖 | KI, ÜBERWACHCHUNGSSTAAT & TECHNOLOGIE*
    https://www.youtube.com/playlist?list=PLR8QkU35CZg5-cZKxjaIvbdh53bwNKqLU&index=0

2. *WISSENSCHAFTLICHER DEEP-DIVE (Hacking):* Der Deep-Dive in die *Methoden*, die solche Angriffe nutzen (OWASP Top 10):
    *VAZULES-GEHEIMTIPP: 🤖 KI-HACKING: OWASP Top 10 (2025) – Wie Prompt Injection deine KI zur Waffe macht 🚨*
    https://www.youtube.com/watch?v=OrudpwWzyBI

3. *HOL DEN SONG (Emotionale Abrechnung):* Die musikalische Anklage zur *existentiellen Angst* vor der KI-Übernahme:
    *LAKANDOR-GEHEIMTIPP: 🤖 SUPERINTELLIGENZ: Wer behält die Macht? KI übernimmt – die Zukunft des Menschen wird zur Zahl 🚨*
    https://www.youtube.com/watch?v=nAxtglvlvxI

---
*Quellen & Vertiefung:*
* Anthropic Bericht (Nov 2024): https://assets.anthropic.com/m/ec212e6566a0d47/original/Disrupting-the-first-reported-AI-orchestrated-cyber-espionage-campaign.pdf

#KIAngriff #GTG1002 #Anthropic #Claude #KIHacking #CyberSpionage #GesprocheneAnalyse #Vazules<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SAP behebt kritische Sicherheitslücken mit fest codierten Zugangsdaten]]></title>
<description><![CDATA[SAP hat im November mehrere Schwachstellen behoben, darunter eine Lücke mit Höchstwertung in einer Datenbanküberwachungslösung und eine gefährliche Injection-Schwachstelle in der Lifecycle-Management-Plattform.]]></description>
<link>https://isharestuff.com/de/3329641/wissen/sap-behebt-kritische-sicherheitsluecken-mit-fest-codierten-zugangsdaten/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3329641/wissen/sap-behebt-kritische-sicherheitsluecken-mit-fest-codierten-zugangsdaten/</guid>
<pubDate>Wed, 12 Nov 2025 11:00:38 +0100</pubDate>
<content:encoded><![CDATA[SAP hat im November mehrere Schwachstellen behoben, darunter eine Lücke mit Höchstwertung in einer Datenbanküberwachungslösung und eine gefährliche Injection-Schwachstelle in der Lifecycle-Management-Plattform.]]></content:encoded>
</item>
<item>
<title><![CDATA[People take photos outside COP30 venue in Belem on second day of climate summit | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:1 People pose next to a #COP30 sign outside the main entrance to the climate change summit on its second day. Feeble progress toward weaning off fossil fuels and cutting planet-warming emissions have opened fault lines between countries in Belem, th...]]></description>
<link>https://isharestuff.com/de/3328428/nachrichten-politik/people-take-photos-outside-cop30-venue-in-belem-on-second-day-of-climate-summit-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3328428/nachrichten-politik/people-take-photos-outside-cop30-venue-in-belem-on-second-day-of-climate-summit-afp/</guid>
<pubDate>Tue, 11 Nov 2025 15:17:26 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/UzTZyIiAKNc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>People pose next to a #COP30 sign outside the main entrance to the climate change summit on its second day. Feeble progress toward weaning off fossil fuels and cutting planet-warming emissions have opened fault lines between countries in Belem, the hot and sticky city on the edge of the rainforest hosting the two-week gathering.

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[🤖 KI-HACKING: OWASP Top 10 (2025) – Wie Prompt Injection deine KI zur Waffe macht 🚨]]></title>
<description><![CDATA[Author: VAZULES Analysiert - Bewertung: 1x - Views:2 ▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert die *OWASP Top 10 für LLM Applications (2025)*. Wir erklären die 10 kritischsten Sicherheitsrisiken von KI, von *Prompt Injection* bis *Excessive Agency*.

---
*Thema:*
🤖 KI-HACKING: OWASP Top...]]></description>
<link>https://isharestuff.com/de/3327874/technologie/ki-hacking-owasp-top-10-2025-wie-prompt-injection-deine-ki-zur-waffe-macht/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3327874/technologie/ki-hacking-owasp-top-10-2025-wie-prompt-injection-deine-ki-zur-waffe-macht/</guid>
<pubDate>Tue, 11 Nov 2025 10:02:18 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES Analysiert - Bewertung: 1x - Views:2 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/OrudpwWzyBI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>▶️ GESPROCHENE ANALYSE: Dieser Deep-Dive analysiert die *OWASP Top 10 für LLM Applications (2025)*. Wir erklären die 10 kritischsten Sicherheitsrisiken von KI, von *Prompt Injection* bis *Excessive Agency*.

---
*Thema:*
🤖 KI-HACKING: OWASP Top 10 (2025) – Wie Prompt Injection deine KI zur Waffe macht 🚨

---

Kernaussage (Basierend auf der Analyse):
* 🎯 *Bedrohung #1: Prompt Injection (LLM01):* Der Angreifer versteckt *bösartige Befehle* (Trojanisches Pferd) in harmlosem Text (Websites, PDFs). Die KI wird zur *Marionette*.
* poisoned *Bedrohung #3: Supply Chain:* Angreifer *vergiften* die Trainingsdaten oder verstecken *Hintertüren* in Modellen, bevor sie überhaupt genutzt werden.
* ⚡️ *Bedrohung #5: Excessive Agency (Übermäßige Handlungsfähigkeit):* Die KI erhält *zu viele Berechtigungen* (z.B. Mails senden/lösen). Wird sie gehackt, kann sie *autonom* Daten stehlen.
* 💸 *Bedrohung #8: Denial of Wallet:* Angreifer zwingen die KI zu *sinnlosen, komplexen Aufgaben*, um die *Serverkosten* des Unternehmens in astronomische Höhen zu treiben.
* 🛡️ *Die 4 Verteidigungs-Regeln:* (1) Minimale Macht geben, (2) Mensch als letzte Instanz, (3) Output filtern, (4) Verhalten beobachten.

---
DEIN ANALYTISCHER VORSPRUNG: Du hast die Analyse. Hol dir jetzt den *vollen Dreiklang zur Systemkritik*:

➡️ **DAS VAZULES SYSTEM: 3 WEGE ZUR TIEFE**

1. *VERLÄNGERE DIE ANALYSE:* Höre die komplette Playlist mit allen technologie-kritischen Werken:
    *🤖 ZUKUNFT & KONTROLLE 🤖 | KI, ÜBERWACHCHUNGSSTAAT & TECHNOLOGIE*
    https://www.youtube.com/playlist?list=PLR8QkU35CZg5-cZKxjaIvbdh53bwNKqLU&index=0

2. *WISSENSCHAFTLICHER DEEP-DIVE (Überwachung):* Der Deep-Dive in die *staatliche Anwendung* dieser Überwachungs-Tools (Palantir):
    *VAZULES-GEHEIMTIPP: 🚨 PALANTIR: Peter Thiels Software übernimmt die Polizei – Ende der digitalen Souveränität? 🛡️*
    https://www.youtube.com/watch?v=dFlyGFxS0mE

3. *HOL DEN SONG (Emotionale Abrechnung):* Die musikalische Anklage zur *existentiellen Angst* vor der KI-Übernahme:
    *LAKANDOR-GEHEIMTIPP: 🤖 SUPERINTELLIGENZ: Wer behält die Macht? KI übernimmt – die Zukunft des Menschen wird zur Zahl 🚨*
    https://www.youtube.com/watch?v=nAxtglvlvxI

---
*Quellen & Vertiefung:*
* OWASP Top 10 für LLM (2025): https://genai.owasp.org/resource/owasp-top-10-for-llm-applications-2025/

#KIHacking #OWASP #PromptInjection #ExcessiveAgency #SupplyChain #GesprocheneAnalyse #Vazules<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dream, A by Thomas Frederick Young ( - 1940)]]></title>
<description><![CDATA[LibriVox volunteers bring you 14 recordings of A Dream by Thomas Frederick YoungThis was the Fortnightly Poetry project for October 26, 2025.    ------Thomas Frederick Young was a Canadian poet.  In the Preface to CANADA AND OTHER POEMS BY T. F. YOUNG. (1887) he writes "Pedantic critics may find ...]]></description>
<link>https://isharestuff.com/de/3325736/literatur-blogs/dream-a-by-thomas-frederick-young-1940/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3325736/literatur-blogs/dream-a-by-thomas-frederick-young-1940/</guid>
<pubDate>Sun, 09 Nov 2025 20:15:42 +0100</pubDate>
<content:encoded><![CDATA[LibriVox volunteers bring you 14 recordings of A Dream by Thomas Frederick Young<br>This was the Fortnightly Poetry project for October 26, 2025.   <br> ------<br>Thomas Frederick Young was a Canadian poet.  In the Preface to CANADA AND OTHER POEMS BY T. F. YOUNG. (1887) he writes "Pedantic critics may find fault with my modest productions, and perhaps justly, in regard to grammatical construction, and mechanical arrangement, but I shall be satisfied, if the public discern a vein of true poetry glittering here and there through what I have just written." <br>Our Halloween Fortnightly follows a common theme in Gothic literature of a sudden and unexplained terror that turns out to be a mundane occurrence. - Summary by David Lawrence]]></content:encoded>
</item>
<item>
<title><![CDATA[Earthquakes: fault movements | AFP Animé]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:2 Videographic showing the basic types of faults where earthquakes occur VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only]]></description>
<link>https://isharestuff.com/de/3315875/nachrichten-politik/earthquakes-fault-movements-afp-anim/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3315875/nachrichten-politik/earthquakes-fault-movements-afp-anim/</guid>
<pubDate>Mon, 03 Nov 2025 13:02:09 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:2 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/dKJnqK-glD0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Videographic showing the basic types of faults where earthquakes occur VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Measuring earthquakes: magnitude and seismic intensity | AFP Animé]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:3 The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC

Interested in licensing this video ? Get in touch...]]></description>
<link>https://isharestuff.com/de/3315633/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp-anim/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3315633/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp-anim/</guid>
<pubDate>Mon, 03 Nov 2025 11:02:02 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:3 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/x6eUWhJyndA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ultralong, supershear rupture of the 2025 Mw 7.7 Mandalay earthquake reveals unaccounted risk | Science]]></title>
<description><![CDATA[The 28 March 2025 moment magnitude (Mw) 7.7 earthquake in Mandalay, Burma (Myanmar), ruptured 475 kilometers of the Sagaing Fault, which was more than twice the length predicted by magnitude scaling relationships. Kinematic slip models and observation of ...]]></description>
<link>https://isharestuff.com/de/3311308/wissen/ultralong-supershear-rupture-of-the-2025-mw-77-mandalay-earthquake-reveals-unaccounted-risk-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3311308/wissen/ultralong-supershear-rupture-of-the-2025-mw-77-mandalay-earthquake-reveals-unaccounted-risk-science/</guid>
<pubDate>Thu, 30 Oct 2025 19:17:30 +0100</pubDate>
<content:encoded><![CDATA[The 28 March 2025 moment magnitude (Mw) 7.7 earthquake in Mandalay, Burma (Myanmar), ruptured 475 kilometers of the Sagaing Fault, which was more than twice the length predicted by magnitude scaling relationships. Kinematic slip models and observation of ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Supershear rupture sustained through a thick fault zone in the 2025 Mw 7.8 Mandalay earthquake | Science]]></title>
<description><![CDATA[On 28 March 2025, a moment magnitude (Mw) 7.8 earthquake ruptured a seismic gap along the Sagaing fault in Myanmar, generating a surface rupture 480 km in length and causing widespread damage. With holistic geodetic and seismic techniques, we resolved ...]]></description>
<link>https://isharestuff.com/de/3311303/wissen/supershear-rupture-sustained-through-a-thick-fault-zone-in-the-2025-mw-78-mandalay-earthquake-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3311303/wissen/supershear-rupture-sustained-through-a-thick-fault-zone-in-the-2025-mw-78-mandalay-earthquake-science/</guid>
<pubDate>Thu, 30 Oct 2025 19:17:27 +0100</pubDate>
<content:encoded><![CDATA[On 28 March 2025, a moment magnitude (Mw) 7.8 earthquake ruptured a seismic gap along the Sagaing fault in Myanmar, generating a surface rupture 480 km in length and causing widespread damage. With holistic geodetic and seismic techniques, we resolved ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Mandalay earthquake pushes rupture limits | Science]]></title>
<description><![CDATA[Fast rupture of Earth’s crust breaks a long fault, expanding the damaged area]]></description>
<link>https://isharestuff.com/de/3311300/wissen/mandalay-earthquake-pushes-rupture-limits-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3311300/wissen/mandalay-earthquake-pushes-rupture-limits-science/</guid>
<pubDate>Thu, 30 Oct 2025 19:17:25 +0100</pubDate>
<content:encoded><![CDATA[Fast rupture of Earth’s crust breaks a long fault, expanding the damaged area]]></content:encoded>
</item>
<item>
<title><![CDATA[Bimaterial effect and favorable energy ratio enabled supershear rupture in the 2025 Mandalay earthquake | Science]]></title>
<description><![CDATA[Joint seismic and geodetic analyses revealed that the 2025 moment magnitude (Mw) 7.8 Mandalay, Myanmar, earthquake ruptured ~510 km of the Sagaing fault, with a sustained supershear rupture extending ~450 km on the southern branch. Far-field Mach waves ...]]></description>
<link>https://isharestuff.com/de/3311301/wissen/bimaterial-effect-and-favorable-energy-ratio-enabled-supershear-rupture-in-the-2025-mandalay-earthquake-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3311301/wissen/bimaterial-effect-and-favorable-energy-ratio-enabled-supershear-rupture-in-the-2025-mandalay-earthquake-science/</guid>
<pubDate>Thu, 30 Oct 2025 19:17:25 +0100</pubDate>
<content:encoded><![CDATA[Joint seismic and geodetic analyses revealed that the 2025 moment magnitude (Mw) 7.8 Mandalay, Myanmar, earthquake ruptured ~510 km of the Sagaing fault, with a sustained supershear rupture extending ~450 km on the southern branch. Far-field Mach waves ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Atlas-Browser-Exploit ermöglicht Angriff auf ChatGPT-Speicher - csoonline.com]]></title>
<description><![CDATA[Atlas-Browser-Exploit ermöglicht Angriff auf ChatGPT-Speicher  csoonline.com(S+) ChatGPT Atlas im Test: Ist der KI-Browser von OpenAI die Zukunft des Surfens?  SpiegelWir stellen vor: ChatGPT Atlas, der Browser mit integrierter ChatGPT-Funktion  OpenAIChatGPT Atlas roasted dein Instagram-Profil  ...]]></description>
<link>https://isharestuff.com/de/3311127/ausland/atlas-browser-exploit-ermoeglicht-angriff-auf-chatgpt-speicher-csoonlinecom/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3311127/ausland/atlas-browser-exploit-ermoeglicht-angriff-auf-chatgpt-speicher-csoonlinecom/</guid>
<pubDate>Thu, 30 Oct 2025 17:15:29 +0100</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMirAFBVV95cUxOSWZ3bGNPcndWSTg0MHFxcVNkUnk0OV84cDBINXBScDhMNC0xbk85TWJqaDdqeXVBR1R1MzRlYTNaNWJDTFQwS19zNXFhMUJPRzZ6S05oNGJjd2VGbHNTQXdYYzhzUlRtTV92WFZDaTMxLWF5dzJScnRxWTA4ODZRR1dyakxZVDNFSGRfUXlyMXNwdTJOd1M0Ny1vQWw3RVpuZGtTOFlNZE10V3ND?oc=5" target="_blank">Atlas-Browser-Exploit ermöglicht Angriff auf ChatGPT-Speicher</a>  csoonline.com</li><li><a href="https://news.google.com/rss/articles/CBMi6gFBVV95cUxQVS01Sl9xYTYyX29FSWcwRi1ZYXVwaktXVXB4MDJVMDFTdDFxQlRKMk9HWXRnVzVVVWxCWWVTMnNFdlBFa3lvenBSM2JGYk5ESmpsdFVlZF95emNMYkhoZkdFX25ncHoyb0d1OUlqOXRKN29MYmJiaFlEM3B1MjlHMld3THpZVVhyTm9STnZvWHVHdWlJVVo2Xzd6ZFZUcEE5UEN2QkdibXJUbTZxb2xxWXRuWGFDeDRkSGNLVTE0X2sxSW9YWFNIZ2dTUmZaeWlmTVg2bHlUbmoxVVlPeTJtb3NpRUoxV1pDOFE?oc=5" target="_blank">(S+) ChatGPT Atlas im Test: Ist der KI-Browser von OpenAI die Zukunft des Surfens?</a>  Spiegel</li><li><a href="https://news.google.com/rss/articles/CBMiaEFVX3lxTE1hOXlFY25sTWNNMEU0V1NJeDZCUWc4aHJUZFduTC1IS2ZVUkNoX2RRZW1mLTk0OUtFTHlOUWtfNUxaZXA1UmFzZURmLThqb0FBMUNCbjhLbUJHcVpOdnVWMVBYLWVDSlQw?oc=5" target="_blank">Wir stellen vor: ChatGPT Atlas, der Browser mit integrierter ChatGPT-Funktion</a>  OpenAI</li><li><a href="https://news.google.com/rss/articles/CBMikAFBVV95cUxOUnF1dnAwdUZDSElrREdCMGpaVFRYdF8zaVpFLTNCZ3FUOG9ldDA1RzlZVFpJNkFjVmZNMzFzVVhWQjdMenpyOTVKLS1ZSG1KU0kzNERoNmtjX3JBUzctd19wYmZOSzJOTU10YUNQYmNhODRyOXlRQ28yQ3ZWQTg2OEZYb0NrNW1ZR3RhZzFIWk0?oc=5" target="_blank">ChatGPT Atlas roasted dein Instagram-Profil</a>  OnlineMarketing.de</li><li><a href="https://news.google.com/rss/articles/CBMib0FVX3lxTFBQLURxYnQ1Qi1sMERLZEMwbFRWT2drNGdyUGtjZzJYc1RZQkN5UGVvZWtRM21oZldBOWU4blZjWUxxZDdRUkxNRmtNb3JsSnRQd29WYU55YmVOTk9IQkJhZ2FKUFJsZU9jbGxFOUpRSQ?oc=5" target="_blank">Prompt-Injection gefährdet Atlas: Warum OpenAIs neuer KI-Browser Sicherheitsbedenken auslöst</a>  t3n</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Prompt-Injection gefährdet Atlas: Warum OpenAIs neuer KI-Browser Sicherheitsbedenken auslöst]]></title>
<description><![CDATA[OpenAIs KI-Browser Atlas soll den Alltag erleichtern und kann im Agenten-Modus sogar eigenständig Aufgaben ausführen. Genau darin sehen Cybersicherheitsexpert:innen aber eine potenzielle Gefahr. Von Noëlle Bölling. 29.10.2025, 10:55 Uhr • 2 Min.]]></description>
<link>https://isharestuff.com/de/3308826/wissen/prompt-injection-gefaehrdet-atlas-warum-openais-neuer-ki-browser-sicherheitsbedenken-ausloest/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3308826/wissen/prompt-injection-gefaehrdet-atlas-warum-openais-neuer-ki-browser-sicherheitsbedenken-ausloest/</guid>
<pubDate>Wed, 29 Oct 2025 12:00:25 +0100</pubDate>
<content:encoded><![CDATA[OpenAIs KI-Browser Atlas soll den Alltag erleichtern und kann im Agenten-Modus sogar eigenständig Aufgaben ausführen. Genau darin sehen Cybersicherheitsexpert:innen aber eine potenzielle Gefahr. Von Noëlle Bölling. 29.10.2025, 10:55 Uhr • 2 Min.]]></content:encoded>
</item>
<item>
<title><![CDATA[Experten schlagen Alarm: OpenAIs KI-Browser voller Sicherheitslücken]]></title>
<description><![CDATA[OpenAI stellte letzte Woche den KI-Browser Atlas vor. Schon wenige Stunden später entdeckten Sicherheitsexperten meh­re­re kritische Schwachstellen. Prompt-Injection-Angriffe können dafür sorgen, dass sich der Browser gegen seine eigenen Nutzer wendet.			(Weiter lesen)]]></description>
<link>https://isharestuff.com/de/3305481/computer-internet/experten-schlagen-alarm-openais-ki-browser-voller-sicherheitsluecken/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3305481/computer-internet/experten-schlagen-alarm-openais-ki-browser-voller-sicherheitsluecken/</guid>
<pubDate>Mon, 27 Oct 2025 11:01:14 +0100</pubDate>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,154503.html"><img hspace="5" border="0" align="left" alt="Ki, Browser, Künstliche Intelligenz, OpenAI, ChatGPT, Atlas" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/86529.png"></a>
			<a href="https://winfuture.de/special/openai/" title="OpenAI Special">OpenAI</a> stellte letzte Woche den <a href="https://winfuture.de/special/kuenstliche-intelligenz/" title="Künstliche Intelligenz Special">KI-Browser</a> Atlas vor. Schon wenige Stunden später entdeckten Sicherheitsexperten meh­re­re kritische Schwachstellen. Prompt-Injection-Angriffe können dafür sorgen, dass sich der Browser gegen seine eigenen Nutzer wendet.			(<a href="https://winfuture.de/news,154503.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Windows Server: Microsoft verteilt akuten Notfall-Fix für alle Versionen]]></title>
<description><![CDATA[Microsoft hat Notfall-Patches für alle unterstützten Windows Server-Versionen veröffentlicht. Das dritte ungeplante Update im Oktober schließt eine kritische Sicherheitslücke in WSUS, die Angreifer für Code-Injection nutzen können.			(Weiter lesen)]]></description>
<link>https://isharestuff.com/de/3301837/computer-internet/windows-server-microsoft-verteilt-akuten-notfall-fix-fuer-alle-versionen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3301837/computer-internet/windows-server-microsoft-verteilt-akuten-notfall-fix-fuer-alle-versionen/</guid>
<pubDate>Fri, 24 Oct 2025 10:00:36 +0200</pubDate>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,154462.html"><img hspace="5" border="0" align="left" alt="Microsoft, Betriebssystem, Windows, Server, Windows Server, Windows Server 2016, Windows Server 2019, Windows Server 2022, Windows Server 2021, Windows Server 2023" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/39396.jpg"></a>
			Microsoft hat Notfall-Patches für alle unterstützten Windows Server-Versionen veröffentlicht. Das dritte ungeplante Update im Oktober schließt eine kritische Sicherheitslücke in WSUS, die Angreifer für Code-Injection nutzen können.			(<a href="https://winfuture.de/news,154462.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[KI ist nicht sicher? • Risiken und Forschung | Martin Schiele]]></title>
<description><![CDATA[Author: Urknall, Weltall und das Leben - Bewertung: 11x - Views:459 Ist Künstliche Intelligenz wirklich sicher? Martin Schiele erklärt, warum es keine hundertprozentige Sicherheit gibt – weder bei Modellen noch in ihrer Anwendung. Themen wie Prompt Injection, Missbrauch und Angriffe auf die Suppl...]]></description>
<link>https://isharestuff.com/de/3281741/wissenschaft-bildung/ki-ist-nicht-sicher-risiken-und-forschung-martin-schiele/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3281741/wissenschaft-bildung/ki-ist-nicht-sicher-risiken-und-forschung-martin-schiele/</guid>
<pubDate>Fri, 10 Oct 2025 14:17:10 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Urknall, Weltall und das Leben - Bewertung: 11x - Views:459 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/F3KaqZiVRXU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Ist Künstliche Intelligenz wirklich sicher? Martin Schiele erklärt, warum es keine hundertprozentige Sicherheit gibt – weder bei Modellen noch in ihrer Anwendung. Themen wie Prompt Injection, Missbrauch und Angriffe auf die Supply Chain zeigen, wie komplex KI-Sicherheit tatsächlich ist.


Urknall, Weltall und das Leben (www.urknall-weltall-leben.de)
Wissenschaftler erklären Wissenschaft

Bücher zum Kanal ► https://urknall-weltall-leben.de/shop.html
Live-Vorträge ► https://www.josef-gassner.de/veranstaltungen
Spende ► https://urknall-weltall-leben.de/spenden.html
Abo ► https://www.youtube.com/user/UrknallWeltallLeben?sub_confirmation=1

Vielen Dank an alle, die unser Projekt unterstützen!<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Künstliche Intelligenz und Sicherheit • zentrale Risiken von KI | Martin Schiele]]></title>
<description><![CDATA[Author: Urknall, Weltall und das Leben - Bewertung: 38x - Views:249 Warum ist KI-Sicherheit heute so wichtig? Martin Schiele erklärt die vier zentralen Risikobereiche: Modell austricksen, Missbrauch, Supply-Chain und Training. Konkret werden Prompt Injection, Jailbreaking, Data Poisoning und infr...]]></description>
<link>https://isharestuff.com/de/3280732/wissenschaft-bildung/kuenstliche-intelligenz-und-sicherheit-zentrale-risiken-von-ki-martin-schiele/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3280732/wissenschaft-bildung/kuenstliche-intelligenz-und-sicherheit-zentrale-risiken-von-ki-martin-schiele/</guid>
<pubDate>Thu, 09 Oct 2025 20:32:49 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Urknall, Weltall und das Leben - Bewertung: 38x - Views:249 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/UPyzSnk-XJs?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Warum ist KI-Sicherheit heute so wichtig? Martin Schiele erklärt die vier zentralen Risikobereiche: Modell austricksen, Missbrauch, Supply-Chain und Training. Konkret werden Prompt Injection, Jailbreaking, Data Poisoning und infrastrukturelle Schwachstellen erläutert und mit Alltagsbeispielen verbunden. Am Ende steht die Frage, wie Unternehmen durch Rechte- und Rollenkonzepte sowie durch passende Trainingspipelines Risiken mindern können.

Urknall, Weltall und das Leben (www.urknall-weltall-leben.de)
Wissenschaftler erklären Wissenschaft

Bücher zum Kanal ► https://urknall-weltall-leben.de/shop.html
Live-Vorträge ► https://www.josef-gassner.de/veranstaltungen
Spende ► https://urknall-weltall-leben.de/spenden.html
Abo ► https://www.youtube.com/user/UrknallWeltallLeben?sub_confirmation=1

Vielen Dank an alle, die unser Projekt unterstützen!<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Indiana Killed Their Partners Under Cover Of Darkness. They Want Answers.]]></title>
<description><![CDATA[On the eve of another midnight execution, questions are mounting over recent lethal injections that witnesses fear were botched.
The post Indiana Killed Their Partners Under Cover Of Darkness. They Want Answers. appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3280659/ausland/indiana-killed-their-partners-under-cover-of-darkness-they-want-answers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3280659/ausland/indiana-killed-their-partners-under-cover-of-darkness-they-want-answers/</guid>
<pubDate>Thu, 09 Oct 2025 19:46:04 +0200</pubDate>
<content:encoded><![CDATA[<p>On the eve of another midnight execution, questions are mounting over recent lethal injections that witnesses fear were botched.</p>
<p>The post <a href="https://theintercept.com/2025/10/09/indiana-execution-death-penalty-pentobarbital-injection/">Indiana Killed Their Partners Under Cover Of Darkness. They Want Answers.</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW UPCOMING MOVIES 2025 & 2026 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 15x - Views:364 New Upcoming Movies that can be found in this trailer compilation:

00:00 Greenland 2: Migration
02:22 TRON 3: Ares
04:46 The Mandalorian & Grogu
06:19 Now You See Me 3: Now You Don't
08:43 Predator: Badlands
10:38 Anaconda
13:02 Zootopia 2
15:25 Pr...]]></description>
<link>https://isharestuff.com/de/3277095/film-unterhaltung/best-new-upcoming-movies-2025-2026-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3277095/film-unterhaltung/best-new-upcoming-movies-2025-2026-trailers/</guid>
<pubDate>Tue, 07 Oct 2025 18:46:22 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 15x - Views:364 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/G2KVHA0XLM4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>New Upcoming Movies that can be found in this trailer compilation:

00:00 Greenland 2: Migration
02:22 TRON 3: Ares
04:46 The Mandalorian & Grogu
06:19 Now You See Me 3: Now You Don't
08:43 Predator: Badlands
10:38 Anaconda
13:02 Zootopia 2
15:25 Project Hail Mary
18:24 28 Years Later 2: The Bone Temple
20:24 Project Genesis
22:02 Dust Bunny
23:51 The Housemaid
26:14 Avatar 3: Fire and Ash
28:49 Hoppers
30:46 The Running Man
33:25 Psycho Killer
34:32 Roofman
36:16 The SpongeBob Movie: Search for SquarePants
37:17 The Astronaut
39:31 Our Fault
40:42 Last Days
43:05 GOAT
45:05 Pillion
46:44 Marty Supreme
48:48 Ella McCay
51:12 We Bury the Dead
52:37 After the Hunt
55:18 Die My Love
57:21 Murder at the Embassy
59:42 The Secret Agent

© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW UPCOMING MOVIES IN OCTOBER 2025 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 17x - Views:261 New Upcoming Movies that can be found in this trailer compilation:

00:00 Good Fortune
01:34 Play Dirty
04:12 Bone Lake
05:46 Springsteen: Deliver Me from Nowhere
07:52 TRON 3: Ares
10:16 After the Hunt
12:56 Killing Faith
14:46 The Lost Bus
17:07 A...]]></description>
<link>https://isharestuff.com/de/3271828/film-unterhaltung/best-new-upcoming-movies-in-october-2025-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3271828/film-unterhaltung/best-new-upcoming-movies-in-october-2025-trailers/</guid>
<pubDate>Fri, 03 Oct 2025 15:31:03 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 17x - Views:261 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/1MA0QhPPd7g?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>New Upcoming Movies that can be found in this trailer compilation:

00:00 Good Fortune
01:34 Play Dirty
04:12 Bone Lake
05:46 Springsteen: Deliver Me from Nowhere
07:52 TRON 3: Ares
10:16 After the Hunt
12:56 Killing Faith
14:46 The Lost Bus
17:07 Avatar 2: The Way of Water
17:53 Roofman
20:19 Project Genesis
21:54 Good Boy
22:54 The Astronaut
25:08 The Smashing Machine
27:38 Shell
30:04 The Drowned
32:11 Stitch Head
34:38 The Last Frontier
37:00 The Hand That Rocks the Cradle
39:25 Maintenance Required
41:49 Our Fault
43:00 Hedda
44:57 Blue Moon
47:14 Pets on a Train
48:27 Kiss of the Spider Woman
50:56 Vicious
53:24 Beast of War
55:14 If I Had Legs I’d Kick You
57:28 Regretting You

© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW UPCOMING MOVIES 2025 & 2026 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 27x - Views:255 New Upcoming Movies that can be found in this trailer compilation:

00:00 28 Years Later 2: The Bone Temple
02:00 Now You See Me 3: Now You Don't
04:24 Dust Bunny
06:14 Sisu 2: Road to Revenge
08:43 Play Dirty
11:21 The Mandalorian & Grogu
12:54 Pro...]]></description>
<link>https://isharestuff.com/de/3258960/film-unterhaltung/best-new-upcoming-movies-2025-2026-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3258960/film-unterhaltung/best-new-upcoming-movies-2025-2026-trailers/</guid>
<pubDate>Wed, 24 Sep 2025 18:31:30 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 27x - Views:255 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/6ERwHDitBf0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>New Upcoming Movies that can be found in this trailer compilation:

00:00 28 Years Later 2: The Bone Temple
02:00 Now You See Me 3: Now You Don't
04:24 Dust Bunny
06:14 Sisu 2: Road to Revenge
08:43 Play Dirty
11:21 The Mandalorian & Grogu
12:54 Project Genesis
14:31 Anaconda
16:55 The Housemaid
19:18 The Smashing Machine
21:48 Good Boy
22:48 The Sentinels
24:22 TRON 3: Ares
25:22 Good Fortune
26:56 Chainsaw Man: The Movie - Reze Arc
28:03 The Birthday Party
30:00 After the Hunt
32:40 Nuremberg
33:48 Maintenance Required
36:12 Our Fault
37:22 Beast of War
39:12 Die My Love
40:12 Springsteen: Deliver Me from Nowhere
42:18 Stolen Girl
44:39 Vicious
47:07 Scurry
48:16 Shell
50:41 Father Mother Sister Brother

© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Notions KI-Agenten bekommen nach Daten-Leak ein Sicherheits-Update]]></title>
<description><![CDATA[Update vom 22. September 2025: Anzeige. Notion hat auf die Sicherheitsprobleme mit seinen KI-Agenten reagiert (siehe unten). Zur Abwehr sogenannter Prompt-Injection-Angriffe – also versteckter Manipulationen durch Anweisungen innerhalb von ...]]></description>
<link>https://isharestuff.com/de/3255896/wissen/notions-ki-agenten-bekommen-nach-daten-leak-ein-sicherheits-update/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3255896/wissen/notions-ki-agenten-bekommen-nach-daten-leak-ein-sicherheits-update/</guid>
<pubDate>Mon, 22 Sep 2025 21:00:18 +0200</pubDate>
<content:encoded><![CDATA[Update vom 22. September 2025: Anzeige. Notion hat auf die Sicherheitsprobleme mit seinen KI-Agenten reagiert (siehe unten). Zur Abwehr sogenannter Prompt-Injection-Angriffe – also versteckter Manipulationen durch Anweisungen innerhalb von ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Deep down in the fault zone | Science]]></title>
<description><![CDATA[Distant seismic waves provide clues to the evolution of crustal structure after a large earthquake]]></description>
<link>https://isharestuff.com/de/3250473/wissen/deep-down-in-the-fault-zone-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3250473/wissen/deep-down-in-the-fault-zone-science/</guid>
<pubDate>Thu, 18 Sep 2025 20:15:39 +0200</pubDate>
<content:encoded><![CDATA[Distant seismic waves provide clues to the evolution of crustal structure after a large earthquake]]></content:encoded>
</item>
<item>
<title><![CDATA[OUR FAULT Official Trailer (2025) Culpa Nuestra]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 16x - Views:235 Check out the new trailer for Our Fault! Streaming on Prime Video October 16, 2025.

The relationship between Nick and Noah is going through its best moment. It seems that nothing will be the same for the pair of lovers. A series of events will occu...]]></description>
<link>https://isharestuff.com/de/3246933/film-unterhaltung/our-fault-official-trailer-2025-culpa-nuestra/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3246933/film-unterhaltung/our-fault-official-trailer-2025-culpa-nuestra/</guid>
<pubDate>Tue, 16 Sep 2025 17:46:30 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 16x - Views:235 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Mfj4W4WvcHE?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Check out the new trailer for Our Fault! Streaming on Prime Video October 16, 2025.

The relationship between Nick and Noah is going through its best moment. It seems that nothing will be the same for the pair of lovers. A series of events will occur so that both of them can finally understand if they are truly made for each other. Or, if on the contrary, what best suits them is to go their separate ways, even if it is difficult to forget such a strong love or erase the memories tattooed on the heart. Love isn't always enough, and forgiveness is sometimes not enough to fix things. Will they be able to put the past behind them and start over?

© Amazon MGM<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[MRMCD2025 Der Weg zur c3lingo-Sprechstelle]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:8 https://media.ccc.de/v/2025-521-der-weg-zur-c3lingo-sprechstelle

Was braucht c3lingo um Simultanübersetzungen anzubieten und wie schwer kann es wohl sein einen analogen Audiomischer dafür zu bauen? Von der Idee auf dem Camp 2019 bis zum produktionsf...]]></description>
<link>https://isharestuff.com/de/3243671/it-sicherheit/mrmcd2025-der-weg-zur-c3lingo-sprechstelle/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3243671/it-sicherheit/mrmcd2025-der-weg-zur-c3lingo-sprechstelle/</guid>
<pubDate>Sun, 14 Sep 2025 16:32:10 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/yraRGTGLT8U?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/2025-521-der-weg-zur-c3lingo-sprechstelle

Was braucht c3lingo um Simultanübersetzungen anzubieten und wie schwer kann es wohl sein einen analogen Audiomischer dafür zu bauen? Von der Idee auf dem Camp 2019 bis zum produktionsfertigen Prototypen auf dem 38c3 (2024). Und wie es funktioniert.

c3lingo übersetzt auf dem Congress alle Talks in 1-2 Sprachen und braucht dafür spezielle Hardware. Auf dem Camp 2019 wurde mit minimalen Hardwareeinsatz probiert Übersetzungen anzubieten wobei sich herausgestellt hat was für eine gute Arbeit erforderlich ist.
Letztendlich wird ein recht spezialisierter Audiomischer benötigt mit dem 2-3 Personen Simultanübersetzungen einsprechen können. In diesem Vortrag wird von der Reise zum produktiv eingesetzten Prototypen berichtet und die Funktionsweise erläutert.

jtbx

https://talks.mrmcd.net/2025/talk/9CE9D7/

#mrmcd25

https://creativecommons.org/licenses/by-sa/4.0/<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Gefährliche ABAP-Code-Injection-Schwachstelle in SAP S/4HANA - all-about-security.de]]></title>
<description><![CDATA[Gefährliche ABAP-Code-Injection-Schwachstelle in SAP S/4HANA  all-about-security.deKritische SAP S/4HANA-Schwachstelle wird angegriffen  heise onlineSAP-Patchday September 2025 behebt mehr als zwanzig Lücken – vier HotNews  heise onlineGeschäftsdaten gefährdet: Kritische SAP-Lücke wird aktiv ausg...]]></description>
<link>https://isharestuff.com/de/3236601/politik-wirtschaft/gefaehrliche-abap-code-injection-schwachstelle-in-sap-s4hana-all-about-securityde/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3236601/politik-wirtschaft/gefaehrliche-abap-code-injection-schwachstelle-in-sap-s4hana-all-about-securityde/</guid>
<pubDate>Tue, 09 Sep 2025 18:00:14 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMinAFBVV95cUxOT0phaGk3OGpFblRvVmFWbVVLd0RGb2FhX1pzcEdMdTY0eVJhLUhObU8zOUlkSDlacmhOWlpCLWdGbS12MGtsSWFGVDNDaUNsdzkwZHEzWVFfcnAydjh3QVIyZUkxendnYWlFblhkWktuSVNiSTBXT0EwVEoyZ1AxYXVwSHFvXzRGYlJjRER3MS1DU3FBbXFNVDBEeEg?oc=5" target="_blank">Gefährliche ABAP-Code-Injection-Schwachstelle in SAP S/4HANA</a>  all-about-security.de</li><li><a href="https://news.google.com/rss/articles/CBMilwFBVV95cUxPZDQtWDlnMnRMRHRqYjIyM1hYRS1XSGlGSFNZY1lVeDFmX2hPRU5WRy1JWk81aTJaVnVPR0ZFVy1wcTZ0cDlObHVXYVVndUhvNGVRUWhPRTdNSVc3ZklCa1J3ellQVmdLMk1fb3ViTTFramVNUWN4a183VllpRzFzbVRsSEJvS0o3bi1ja2UxbFBTWkMxeWY0?oc=5" target="_blank">Kritische SAP S/4HANA-Schwachstelle wird angegriffen</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxQVFVkb3JSSklaWFAzN21lcmVwS2R3a0lGaDRGZWlOWFRMNHctS1I0djdNU0R1dmpfRmZfTDc4ZXFmcGRXZzRzX2NQVUgxRG5pRGo1M3VlR05HZU5zWnZPd2pOYUNHeG1JYWtoeHF2ajhLVDJXTlVldnU5T085NlREM0VGUTIyUnlDQl93dXo2WmtJMHZBazB4UjJOVEFqZXZ1SkdDaW1CazVMM3FMNXpWYVBR?oc=5" target="_blank">SAP-Patchday September 2025 behebt mehr als zwanzig Lücken – vier HotNews</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxQVEg5dW1CdHdVRDYtdmhaTmh3QkZMTk9WN1dTU2xpazlmSnUtODEzUmR6N2UyRjlyaHZZVVpKaEJzamt3SEVMZHJVSUlyTEJpRmZ4M3dlZGNiSEhGc1lCT3UzY3ZJLWQ4cjNtU1dmSnk1QjRQMjBrd2pQSmhZa0p4U1Z1Qk9aclVOLXFEaUw0TTUxWlBpRUtWcDl0THEtVDFvclhXajJwcU5FREpTYUt1QTB3?oc=5" target="_blank">Geschäftsdaten gefährdet: Kritische SAP-Lücke wird aktiv ausgenutzt</a>  Golem</li><li><a href="https://news.google.com/rss/articles/CBMiywFBVV95cUxPWjJTaFlrNmU5cklyNWJkdHlOdnBxdnpseVItaGo4dHdFck12alc3LVNTZV9iUDMwUk1Cc3dWaHpHTEZ0bUEySmM2TmJyUG9KQWRfSEN3Ymt2LTk5VTJEYjNTYnZlZXBuQUU0Q1FjdnVqRHVEOEdnZDJleHpWVmVLSTQ5R19QUFUzSlB5OEZjVDdSdk9aYllNekd3TFZaVE5fd1NubmdtejR6SXM5N0JwTy12RHZiLVFQQWdxWUhPVDVOTnNfWW0xWlV2VQ?oc=5" target="_blank">SAP-Patch: NetWeaver AS Java und wichtige Updates</a>  all-about-security.de</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[SAP-Patchday September 2025 behebt mehr als zwanzig Lücken – vier HotNews - heise online]]></title>
<description><![CDATA[SAP-Patchday September 2025 behebt mehr als zwanzig Lücken – vier HotNews  heise onlineKritische SAP S/4HANA-Schwachstelle wird angegriffen  heise onlineGeschäftsdaten gefährdet: Kritische SAP-Lücke wird aktiv ausgenutzt  GolemSAP Aktie: KI-Euphorie trifft auf Sicherheits-Schock  Börse ExpressGef...]]></description>
<link>https://isharestuff.com/de/3236341/politik-wirtschaft/sap-patchday-september-2025-behebt-mehr-als-zwanzig-luecken-vier-hotnews-heise-online/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3236341/politik-wirtschaft/sap-patchday-september-2025-behebt-mehr-als-zwanzig-luecken-vier-hotnews-heise-online/</guid>
<pubDate>Tue, 09 Sep 2025 16:00:11 +0200</pubDate>
<content:encoded><![CDATA[<ol><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxQVFVkb3JSSklaWFAzN21lcmVwS2R3a0lGaDRGZWlOWFRMNHctS1I0djdNU0R1dmpfRmZfTDc4ZXFmcGRXZzRzX2NQVUgxRG5pRGo1M3VlR05HZU5zWnZPd2pOYUNHeG1JYWtoeHF2ajhLVDJXTlVldnU5T085NlREM0VGUTIyUnlDQl93dXo2WmtJMHZBazB4UjJOVEFqZXZ1SkdDaW1CazVMM3FMNXpWYVBR?oc=5" target="_blank">SAP-Patchday September 2025 behebt mehr als zwanzig Lücken – vier HotNews</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMilwFBVV95cUxPZDQtWDlnMnRMRHRqYjIyM1hYRS1XSGlGSFNZY1lVeDFmX2hPRU5WRy1JWk81aTJaVnVPR0ZFVy1wcTZ0cDlObHVXYVVndUhvNGVRUWhPRTdNSVc3ZklCa1J3ellQVmdLMk1fb3ViTTFramVNUWN4a183VllpRzFzbVRsSEJvS0o3bi1ja2UxbFBTWkMxeWY0?oc=5" target="_blank">Kritische SAP S/4HANA-Schwachstelle wird angegriffen</a>  heise online</li><li><a href="https://news.google.com/rss/articles/CBMisgFBVV95cUxQVEg5dW1CdHdVRDYtdmhaTmh3QkZMTk9WN1dTU2xpazlmSnUtODEzUmR6N2UyRjlyaHZZVVpKaEJzamt3SEVMZHJVSUlyTEJpRmZ4M3dlZGNiSEhGc1lCT3UzY3ZJLWQ4cjNtU1dmSnk1QjRQMjBrd2pQSmhZa0p4U1Z1Qk9aclVOLXFEaUw0TTUxWlBpRUtWcDl0THEtVDFvclhXajJwcU5FREpTYUt1QTB3?oc=5" target="_blank">Geschäftsdaten gefährdet: Kritische SAP-Lücke wird aktiv ausgenutzt</a>  Golem</li><li><a href="https://news.google.com/rss/articles/CBMipgFBVV95cUxNN1FDVDlrMTAxU1hVdzhEcElpeUJaUDk4ellGWFVndzlyT09tRDhmX2tDM0p1NW5MN2VTeHBvbnJNWHo1SU5oRnJMUGVZb2pUSkpCb2xRUTJEY2JTZmpVUXc1ZjJodkVYMFUzZG1OR1g0QzRjVmphSTg1ZEVnWEtwakZuSGJ2cmdsNkxDUDhyUGg3dG5Yb0FxSzdXV1lidjJGcXFZM2Nn?oc=5" target="_blank">SAP Aktie: KI-Euphorie trifft auf Sicherheits-Schock</a>  Börse Express</li><li><a href="https://news.google.com/rss/articles/CBMinAFBVV95cUxOT0phaGk3OGpFblRvVmFWbVVLd0RGb2FhX1pzcEdMdTY0eVJhLUhObU8zOUlkSDlacmhOWlpCLWdGbS12MGtsSWFGVDNDaUNsdzkwZHEzWVFfcnAydjh3QVIyZUkxendnYWlFblhkWktuSVNiSTBXT0EwVEoyZ1AxYXVwSHFvXzRGYlJjRER3MS1DU3FBbXFNVDBEeEg?oc=5" target="_blank">Gefährliche ABAP-Code-Injection-Schwachstelle in SAP S/4HANA</a>  all-about-security.de</li></ol>]]></content:encoded>
</item>
<item>
<title><![CDATA[Gefährliche ABAP-Code-Injection-Schwachstelle in SAP S/4HANA]]></title>
<description><![CDATA[Das SecurityBridge Threat Research Labs hat einen Exploit für die kritische Code-Injection-Schwachstelle CVE-2025-42957 in SAP S/4HANA identifiziert. Bereits am 11. August stellte SAP für die Sicherheitslücke einen Patch mit einem CVSS-Score von 9.9 ...]]></description>
<link>https://isharestuff.com/de/3236018/wissen/gefaehrliche-abap-code-injection-schwachstelle-in-sap-s4hana/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3236018/wissen/gefaehrliche-abap-code-injection-schwachstelle-in-sap-s4hana/</guid>
<pubDate>Tue, 09 Sep 2025 13:00:16 +0200</pubDate>
<content:encoded><![CDATA[Das SecurityBridge Threat Research Labs hat einen Exploit für die kritische Code-Injection-Schwachstelle CVE-2025-42957 in SAP S/4HANA identifiziert. Bereits am 11. August stellte SAP für die Sicherheitslücke einen Patch mit einem CVSS-Score von 9.9 ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Very-long-range dynamic triggering of mud volcano unrest and silent magnitude-6 fault slip | Science]]></title>
<description><![CDATA[Seismic waves from large earthquakes are known to trigger slip on distant faults, but the underlying mechanisms remain unclear. Using interferometric synthetic aperture radar and local geodetic and seismic data, we show that the 1000-kilometer-distant, ...]]></description>
<link>https://isharestuff.com/de/3230042/wissen/very-long-range-dynamic-triggering-of-mud-volcano-unrest-and-silent-magnitude-6-fault-slip-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3230042/wissen/very-long-range-dynamic-triggering-of-mud-volcano-unrest-and-silent-magnitude-6-fault-slip-science/</guid>
<pubDate>Thu, 04 Sep 2025 20:15:32 +0200</pubDate>
<content:encoded><![CDATA[Seismic waves from large earthquakes are known to trigger slip on distant faults, but the underlying mechanisms remain unclear. Using interferometric synthetic aperture radar and local geodetic and seismic data, we show that the 1000-kilometer-distant, ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Measuring earthquakes: magnitude and seismic intensity | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:4 The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC

Interested in licensing this video ? Get in touch...]]></description>
<link>https://isharestuff.com/de/3224065/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3224065/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp/</guid>
<pubDate>Mon, 01 Sep 2025 11:02:27 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/8D9XpcsSeKE?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Earthquakes: fault movements | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:2 Videographic showing the basic types of faults where earthquakes occur VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only]]></description>
<link>https://isharestuff.com/de/3224064/nachrichten-politik/earthquakes-fault-movements-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3224064/nachrichten-politik/earthquakes-fault-movements-afp/</guid>
<pubDate>Mon, 01 Sep 2025 11:02:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:2 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/SRGUGjsjq1k?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Videographic showing the basic types of faults where earthquakes occur VIDEOGRAPHIC

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Death Row Prisoner: Idaho Officials Ran “Misdirection Campaign” to Withhold Info on Lethal Injection]]></title>
<description><![CDATA[Lawyers for Gerald Pizzuto say Idaho officials defied court orders to hand over information on lethal injection drugs.
The post Death Row Prisoner: Idaho Officials Ran “Misdirection Campaign” to Withhold Info on Lethal Injection appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3222248/ausland/death-row-prisoner-idaho-officials-ran-misdirection-campaign-to-withhold-info-on-lethal-injection/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3222248/ausland/death-row-prisoner-idaho-officials-ran-misdirection-campaign-to-withhold-info-on-lethal-injection/</guid>
<pubDate>Sat, 30 Aug 2025 16:45:20 +0200</pubDate>
<content:encoded><![CDATA[<p>Lawyers for Gerald Pizzuto say Idaho officials defied court orders to hand over information on lethal injection drugs.</p>
<p>The post <a href="https://theintercept.com/2025/08/30/lethal-injection-drug-idaho-execution/">Death Row Prisoner: Idaho Officials Ran “Misdirection Campaign” to Withhold Info on Lethal Injection</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dieses gefährliche Experiment soll das Klima retten | Studio Q]]></title>
<description><![CDATA[Author: Quarks - Bewertung: 14x - Views:163 Kann man den Klimawandel wirklich stoppen, indem man die Sonne verdunkelt? In diesem Video geht es um Geoengineering – eine umstrittene Idee, die die Erderwärmung bremsen soll. Wir zeigen, woher die Idee kommt, wie sie funktioniert und warum Firmen bere...]]></description>
<link>https://isharestuff.com/de/3210812/wissenschaft-bildung/dieses-gefaehrliche-experiment-soll-das-klima-retten-studio-q/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3210812/wissenschaft-bildung/dieses-gefaehrliche-experiment-soll-das-klima-retten-studio-q/</guid>
<pubDate>Fri, 22 Aug 2025 16:17:29 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Quarks - Bewertung: 14x - Views:163 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/lG-rcv28oFs?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Kann man den Klimawandel wirklich stoppen, indem man die Sonne verdunkelt? In diesem Video geht es um Geoengineering – eine umstrittene Idee, die die Erderwärmung bremsen soll. Wir zeigen, woher die Idee kommt, wie sie funktioniert und warum Firmen bereits mit SAI (Stratospheric Aerosol Injection) experimentieren.<br />
<br />
Doch diese Form der Klima-Manipulation bringt große Risiken mit sich: Sie verändert Wetter, Gesundheit und sogar den Himmel, wie wir ihn kennen. Gleichzeitig gibt es keine internationalen Regeln, um solche Eingriffe zu kontrollieren. Am Ende bleibt die entscheidende Frage: Ist Geoengineering eine Lösung – oder lenkt es nur vom eigentlichen Ziel ab, nämlich der CO₂-Reduktion?<br />
 <br />
// Kapitel<br />
 <br />
0:01 Intro <br />
0:50 So soll die Sonne verdunkelt werden<br />
2:47 Deswegen macht sich die Wissenschaft Sorgen<br />
5:46 Das größte Argument gegen diese Technologie <br />
7:11 Wir können es nicht wirklich stoppen <br />
9:28 So könnte es vielleicht doch klappen <br />
 <br />
 <br />
// Unser Team<br />
 <br />
Autor:innen: Lena Bültena<br />
Realisation: Jonas Bradtke<br />
Kamera und Schnitt: Annalena Schumacher<br />
Grafik: Judith Katharina Bornmann<br />
Redaktion: Andrea Wille<br />
 <br />
 <br />
// Hier geht's zum Quellendokument<br />
 <br />
https://docs.google.com/document/d/1fuXsWt-YBl-rgj01gvmKFysBEYcwFAzOq57SB4GQD70/edit?usp=sharing <br />
 <br />
<br />
// Mehr zum Thema<br />
 <br />
»Kampf ums Klima: Was wenn jemand die Sonne verdunkelt?« in der ARD-Mediathek: <br />
https://1.ard.de/ard-wissen-kampf-ums-klima-doku?yt=q <br />
<br />
<br />
_______<br />
 <br />
<br />
((Transparenzhinweis:<br />
Bei der Herstellung des Thumbnails wurde KI genutzt.<br />
Wie wir im WDR mit KI umgehen: https://www1.wdr.de/ki/ki-wdr/index.html))<br />
 <br />
Danke fürs Zuschauen!<br />
<br />
Mehr Quarks auf YouTube gibt es bei<br />
@DimensionRalph und @quarkssciencecops<br />
<br />
Besuche auch: https://www.quarks.de<br />
Du willst nichts verpassen? Melde dich für den Quarks-Newsletter an: https://www.quarks.de/allgemein/quarks-newsletter/<br />
<br />
Quarks Daily in der ARD Audiothek: https://1.ard.de/quarksdaily_yt<br />
Quarks auf Instagram: https://www.instagram.com/quarks.de/<br />
Quarks auf TikTok: https://www.tiktok.com/@quarks<br />
Quarks auf Facebook: https://www.facebook.com/quarks.de/<br />
<br />
#Quarks #geoengineering #klima<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SAP veröffentlicht 26 neue und aktualisierte Sicherheitspatches]]></title>
<description><![CDATA[SAP hat im Rahmen seines August-Patchdays 26 Sicherheitshinweise publiziert, darunter vier als Hot News klassifizierte Patches. Eine besonders kritische Code-Injection-Schwachstelle mit einem CVSS-Score von 9,9 betrifft SAP S/4Hana und SAP ECC.]]></description>
<link>https://isharestuff.com/de/3197309/wissen/sap-veroeffentlicht-26-neue-und-aktualisierte-sicherheitspatches/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3197309/wissen/sap-veroeffentlicht-26-neue-und-aktualisierte-sicherheitspatches/</guid>
<pubDate>Wed, 13 Aug 2025 16:00:10 +0200</pubDate>
<content:encoded><![CDATA[SAP hat im Rahmen seines August-Patchdays 26 Sicherheitshinweise publiziert, darunter vier als Hot News klassifizierte Patches. Eine besonders kritische Code-Injection-Schwachstelle mit einem CVSS-Score von 9,9 betrifft SAP S/4Hana und SAP ECC.]]></content:encoded>
</item>
<item>
<title><![CDATA[SAP schließt kritische Code-Injection-Lücke in SAP S/4HANA]]></title>
<description><![CDATA[Zum Security Patch Day im August 2025 hat der Enterprise-Software-Riese aus Walldorf 15 neue Security Notes veröffentlicht und vier bestehende Patches aktualisiert. Wie das auf SAP-Sicherheit spezialisierte Unternehmen Onapsis mitteilte, sind damit ...]]></description>
<link>https://isharestuff.com/de/3196577/wissen/sap-schliesst-kritische-code-injection-luecke-in-sap-s4hana/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3196577/wissen/sap-schliesst-kritische-code-injection-luecke-in-sap-s4hana/</guid>
<pubDate>Wed, 13 Aug 2025 09:00:07 +0200</pubDate>
<content:encoded><![CDATA[Zum Security Patch Day im August 2025 hat der Enterprise-Software-Riese aus Walldorf 15 neue Security Notes veröffentlicht und vier bestehende Patches aktualisiert. Wie das auf SAP-Sicherheit spezialisierte Unternehmen Onapsis mitteilte, sind damit ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Intestinal mast cell–derived leukotrienes mediate the anaphylactic response to ingested antigens | Science]]></title>
<description><![CDATA[Anaphylaxis is a life-threatening complication of food allergen exposure. Although mechanisms governing anaphylaxis after intravenous injection are defined in mice, these models neglect mucosal exposure that accompanies ingestion. We investigated the ...]]></description>
<link>https://isharestuff.com/de/3189492/wissen/intestinal-mast-cell-derived-leukotrienes-mediate-the-anaphylactic-response-to-ingested-antigens-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3189492/wissen/intestinal-mast-cell-derived-leukotrienes-mediate-the-anaphylactic-response-to-ingested-antigens-science/</guid>
<pubDate>Thu, 07 Aug 2025 20:30:10 +0200</pubDate>
<content:encoded><![CDATA[Anaphylaxis is a life-threatening complication of food allergen exposure. Although mechanisms governing anaphylaxis after intravenous injection are defined in mice, these models neglect mucosal exposure that accompanies ingestion. We investigated the ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Per Kalendereinladung: Wie Hacker über Google-KI Smart-Home-Geräte steuern konnten]]></title>
<description><![CDATA[Forscher haben Googles Gemini per Prompt-Injection bösartige Befehle untergejubelt. Die KI steuerte daraufhin Jalousien, Beleuchtung und einen Boiler. (Gemini, Google)]]></description>
<link>https://isharestuff.com/de/3188474/computer-internet/per-kalendereinladung-wie-hacker-ueber-google-ki-smart-home-geraete-steuern-konnten/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3188474/computer-internet/per-kalendereinladung-wie-hacker-ueber-google-ki-smart-home-geraete-steuern-konnten/</guid>
<pubDate>Thu, 07 Aug 2025 11:00:34 +0200</pubDate>
<content:encoded><![CDATA[Forscher haben Googles Gemini per Prompt-Injection bösartige Befehle untergejubelt. Die KI steuerte daraufhin Jalousien, Beleuchtung und einen Boiler. (<a href="https://www.golem.de/specials/gemini/">Gemini</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=198909&amp;page=1&amp;ts=1754556602" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[“My Client Was Tortured Today” — The Painful Execution of Byron Black]]></title>
<description><![CDATA[Black, 69, was killed by lethal injection in Tennessee for the murder of his girlfriend and her two daughters.
The post “My Client Was Tortured Today” — The Painful Execution of Byron Black appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3187999/ausland/my-client-was-tortured-today-the-painful-execution-of-byron-black/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3187999/ausland/my-client-was-tortured-today-the-painful-execution-of-byron-black/</guid>
<pubDate>Thu, 07 Aug 2025 00:45:14 +0200</pubDate>
<content:encoded><![CDATA[<p>Black, 69, was killed by lethal injection in Tennessee for the murder of his girlfriend and her two daughters.</p>
<p>The post <a href="https://theintercept.com/2025/08/06/byron-black-tennessee-exeuction/">“My Client Was Tortured Today” — The Painful Execution of Byron Black</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Abnehmen leicht gemacht Ozempic – Wundermittel gegen Übergewicht oder Gesundheitsrisiko?]]></title>
<description><![CDATA[Immer mehr Menschen setzen auf Ozempic, aber was steckt hinter der Faszination für die Abnehmspritze und welche Gefahren birgt sie? Die JUNGE FREIHEIT hat sich mit Betroffenen unterhalten. 
Dieser Beitrag Abnehmen leicht gemacht Ozempic – Wundermittel gegen Übergewicht oder Gesundheitsrisiko? wur...]]></description>
<link>https://isharestuff.com/de/3171573/politik-blogs/abnehmen-leicht-gemacht-ozempic-wundermittel-gegen-uebergewicht-oder-gesundheitsrisiko/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3171573/politik-blogs/abnehmen-leicht-gemacht-ozempic-wundermittel-gegen-uebergewicht-oder-gesundheitsrisiko/</guid>
<pubDate>Sat, 26 Jul 2025 12:16:35 +0200</pubDate>
<content:encoded><![CDATA[<p><img width="1378" height="919" src="https://assets.jungefreiheit.de/2025/07/imago819770588.jpg" class="attachment-full size-full wp-post-image" alt="Ozempic Spritze mit Inketion Nadel 1,5 ml,4 Dosen a 05ml mit Logo in der Hand einen Patienten-Ozempic ist ein sehr wirksames Medikament für Menschen mit schwer einstellbarem Diabetes Typ 2 haben und an Uebergewicht leiden. Hamburg Deutschland *** Ozempic syringe with injection needle 1,5 ml,4 doses a 05ml with logo in the hand of a patient Ozempic is a very effective drug for people with difficult to control diabetes type 2 and suffering from obesity Hamburg Germany" decoding="async" srcset="//assets.jungefreiheit.de/2025/07/imago819770588.jpg 1378w, //assets.jungefreiheit.de/2025/07/imago819770588-900x600.jpg 900w, //assets.jungefreiheit.de/2025/07/imago819770588-768x512.jpg 768w" sizes="(max-width: 1378px) 100vw, 1378px"></p>
    <p>Immer mehr Menschen setzen auf Ozempic, aber was steckt hinter der Faszination für die Abnehmspritze und welche Gefahren birgt sie? Die JUNGE FREIHEIT hat sich mit Betroffenen unterhalten. </p>
<p>Dieser Beitrag <a rel="nofollow" href="https://jungefreiheit.de/kultur/gesellschaft/2025/ozempic-wundermittel-gegen-uebergewicht-oder-gesundheitsrisiko/"><span class="subheadline"><img src="https://assets.jungefreiheit.de/misc/img/JFplus.svg" alt="JF-Plus Icon Premium" width="24" height="24">Abnehmen leicht gemacht </span><span class="ee-post__title__heading">Ozempic – Wundermittel gegen Übergewicht oder Gesundheitsrisiko?</span></a> wurde veröffentlich auf <a rel="nofollow" href="https://jungefreiheit.de/">JUNGE FREIHEIT</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A single shot of a flu drug could outperform vaccines—and protect for an entire season]]></title>
<description><![CDATA[One injection of a long-lasting drug showed up to 76% efficacy in a large trial]]></description>
<link>https://isharestuff.com/de/3138989/wissen/a-single-shot-of-a-flu-drug-could-outperform-vaccines-and-protect-for-an-entire-season/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3138989/wissen/a-single-shot-of-a-flu-drug-could-outperform-vaccines-and-protect-for-an-entire-season/</guid>
<pubDate>Thu, 03 Jul 2025 20:30:18 +0200</pubDate>
<content:encoded><![CDATA[One injection of a long-lasting drug showed up to 76% efficacy in a large trial]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW ROMANCE MOVIES 2025 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 16x - Views:155 New Upcoming Romance Movies that can be found in this trailer compilation:

00:00 Oh, Hi!
02:11 Kiss of the Spider Woman
04:07 A Big Bold Beautiful Journey
07:16 We Were Liars
09:31 Materialists
11:51 I Wish You All the Best
14:24 Winter Spring Summ...]]></description>
<link>https://isharestuff.com/de/3135336/film-unterhaltung/best-new-romance-movies-2025-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3135336/film-unterhaltung/best-new-romance-movies-2025-trailers/</guid>
<pubDate>Tue, 01 Jul 2025 18:46:07 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 16x - Views:155 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/yLvdGJV4jOc?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>New Upcoming Romance Movies that can be found in this trailer compilation:<br />
<br />
00:00 Oh, Hi!<br />
02:11 Kiss of the Spider Woman<br />
04:07 A Big Bold Beautiful Journey<br />
07:16 We Were Liars<br />
09:31 Materialists<br />
11:51 I Wish You All the Best<br />
14:24 Winter Spring Summer or Fall<br />
17:11 Trust<br />
18:33 Caught Stealing<br />
20:58 Hot Milk<br />
22:45 Freaky Friday 2: Freakier Friday<br />
24:56 Bride Hard<br />
27:21 The Summer I Turned Pretty<br />
30:06 Mr. Blake At Your Service!<br />
31:44 Sorry, Baby<br />
33:43 Together<br />
36:00 Our Fault<br />
<br />
© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[giulioz: Sound Chip, whisper me your secrets!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:24 https://media.ccc.de/v/gpn23-302-sound-chip-whisper-me-your-secrets-

Vintage sound chips make cool music, but what's hiding inside of them? Which algorithms are they using?

In the past years I've been dedicating my free time to building emulators ...]]></description>
<link>https://isharestuff.com/de/3117666/it-sicherheit/giulioz-sound-chip-whisper-me-your-secrets/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3117666/it-sicherheit/giulioz-sound-chip-whisper-me-your-secrets/</guid>
<pubDate>Fri, 20 Jun 2025 01:46:35 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:24 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/reGeRiCkkNE?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/gpn23-302-sound-chip-whisper-me-your-secrets-<br />
<br />
Vintage sound chips make cool music, but what's hiding inside of them? Which algorithms are they using?<br />
<br />
In the past years I've been dedicating my free time to building emulators for old digital sound chips from synthesizers/game consoles, in an effort to preserve them and make them usable without the original hardware. During this time I went through lots of interesting stuff: silicon reverse engineering, logic analyzers, weird compression schemes, forgotten audio algorithms and more. In this talk I want to share with you what I learned from this process and what's next. Specifically, I will explain how I'm currently reverse engineering a custom DSP from the 90s just by using an Arduino Mega and lots of speculation, and how you can probably apply the same process to other chips as well.<br />
<br />
This talk is kind of a sequel for my previous 38C3 talk "Proprietary ICs and dubious marketing claims - let's fight these with a microscope!", where I reverse engineered an old Roland digital piano from silicon die shots, since it was using some custom algorithms no one knew about.<br />
Instead of analyzing fixed behavior hardware, this time I want to focus more on DSPs: processors that can execute code to manipulate audio data in real-time. Since some of them are not documented, the bytecode for their programs will look like random binary without a datasheet.<br />
Instead of going through the silicon directly, I was able to figure out a lot about them just by probing them, building a pretty accurate emulator without destroying the original chip.<br />
<br />
giulioz<br />
<br />
https://cfp.gulas.ch/gpn23/talk/EUEERZ/<br />
<br />
#gpn23 #HardwareandMaking<br />
<br />
Licensed to the public under https://creativecommons.org/licenses/by/4.0/<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[German court jails Syrian 'torture' doctor for life | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:1 Syrian doctor Alaa Mousa arrives at a German court in Frankfurt, before being handed a life sentence for crimes against humanity for torturing detainees at military hospitals under former ruler Bashar al-Assad, who was ousted from power in Decembe...]]></description>
<link>https://isharestuff.com/de/3112170/nachrichten-politik/german-court-jails-syrian-torture-doctor-for-life-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3112170/nachrichten-politik/german-court-jails-syrian-torture-doctor-for-life-afp/</guid>
<pubDate>Mon, 16 Jun 2025 17:32:03 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Sddki71vjfQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Syrian doctor Alaa Mousa arrives at a German court in Frankfurt, before being handed a life sentence for crimes against humanity for torturing detainees at military hospitals under former ruler Bashar al-Assad, who was ousted from power in December 2024. Mousa was accused of torturing patients at military hospitals in Damascus and Homs on 18 occasions between 2011 and 2012. In one instance, Mousa was said to have set fire to the genitals of a teenage boy and in another case, to have delivered a lethal injection to a detainee who resisted a beating.

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A liability framework for high-risk neural devices | Science]]></title>
<description><![CDATA[A no-fault compensation scheme may help balance innovation and patient protection]]></description>
<link>https://isharestuff.com/de/3107125/wissen/a-liability-framework-for-high-risk-neural-devices-science/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3107125/wissen/a-liability-framework-for-high-risk-neural-devices-science/</guid>
<pubDate>Thu, 12 Jun 2025 20:15:24 +0200</pubDate>
<content:encoded><![CDATA[A no-fault compensation scheme may help balance innovation and patient protection]]></content:encoded>
</item>
<item>
<title><![CDATA[UK PM Starmer says country to invest £14 bn into new nuclear plant | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:4 UK Prime Minister Keir Starmer says the country will invest "14 billion pounds" in the new Sizewell C nuclear power plant, with around 10,000 jobs expected to be created. The injection is part of budget announcements by UK Chancellor Rachel Reeves...]]></description>
<link>https://isharestuff.com/de/3102441/nachrichten-politik/uk-pm-starmer-says-country-to-invest-14-bn-into-new-nuclear-plant-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3102441/nachrichten-politik/uk-pm-starmer-says-country-to-invest-14-bn-into-new-nuclear-plant-afp/</guid>
<pubDate>Tue, 10 Jun 2025 13:01:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Rp68PEp2PpA?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>UK Prime Minister Keir Starmer says the country will invest "14 billion pounds" in the new Sizewell C nuclear power plant, with around 10,000 jobs expected to be created. The injection is part of budget announcements by UK Chancellor Rachel Reeves, who is due to detail her spending and investment priorities for the coming years on Wednesday, with defence and health as key areas. SOUNDBITE<br />
<br />
Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD <br />
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 fra - 10 years of emulating the Nintendo 3DS: A tale of ninjas, lemons, and pandas]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:36 https://media.ccc.de/v/38c3-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas

How is 3DS preservation faring 10 years after the release of the first emulator? What technical obstacles have we overcome, which ones remain? Wha...]]></description>
<link>https://isharestuff.com/de/3097097/it-sicherheit/38c3-fra-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3097097/it-sicherheit/38c3-fra-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/</guid>
<pubDate>Thu, 05 Jun 2025 23:31:44 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:36 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/25TpiWwrEOU?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas<br />
<br />
How is 3DS preservation faring 10 years after the release of the first emulator? What technical obstacles have we overcome, which ones remain? What hidden gems have we discovered beyond games? Join us on a journey through the struggles, the successes, and the future of 3DS emulation!<br />
<br />
The 3DS marks a key point in the evolution of handheld consoles from embedded systems to more powerful PC-like architectures, which makes it particularly interesting as a target for emulation: We'll look at the technical challenges presented by its unique hardware components and the custom microkernel-based software stack built on top of it, the various approaches taken to emulate them (low-level vs. high-level), and the trends we're seeing for the future.<br />
<br />
These technical challenges are put into historical context by looking at the emulator Citra, its initial way to success, the interplay between emulator developers and console hackers, and the impact of a prominent lawsuit that ultimately led to Citra's shutdown. Additionally we'll highlight broader community efforts like Pretendo that help preserve the platform beyond emulation. Finally we'll provide a status update for our ongoing emulation project Mikage and discuss the future outlook of 3DS preservation.<br />
<br />
This talk will be accessible to a technical audience and gaming enthusiasts alike. We particularly hope to spark new interest in preserving the 3DS legacy and foster new ideas for pushing the boundaries of emulation technology.<br />
<br />
neobrain<br />
<br />
https://events.ccc.de/congress/2024/hub/event/10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/<br />
<br />
#38c3 #HardwareMaking #38c3_fra<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 deu - 10 years of emulating the Nintendo 3DS: A tale of ninjas, lemons, and pandas]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:48 https://media.ccc.de/v/38c3-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas

How is 3DS preservation faring 10 years after the release of the first emulator? What technical obstacles have we overcome, which ones remain? Wha...]]></description>
<link>https://isharestuff.com/de/3097098/it-sicherheit/38c3-deu-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3097098/it-sicherheit/38c3-deu-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/</guid>
<pubDate>Thu, 05 Jun 2025 23:31:44 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:48 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/TY2F16UkaAU?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas<br />
<br />
How is 3DS preservation faring 10 years after the release of the first emulator? What technical obstacles have we overcome, which ones remain? What hidden gems have we discovered beyond games? Join us on a journey through the struggles, the successes, and the future of 3DS emulation!<br />
<br />
The 3DS marks a key point in the evolution of handheld consoles from embedded systems to more powerful PC-like architectures, which makes it particularly interesting as a target for emulation: We'll look at the technical challenges presented by its unique hardware components and the custom microkernel-based software stack built on top of it, the various approaches taken to emulate them (low-level vs. high-level), and the trends we're seeing for the future.<br />
<br />
These technical challenges are put into historical context by looking at the emulator Citra, its initial way to success, the interplay between emulator developers and console hackers, and the impact of a prominent lawsuit that ultimately led to Citra's shutdown. Additionally we'll highlight broader community efforts like Pretendo that help preserve the platform beyond emulation. Finally we'll provide a status update for our ongoing emulation project Mikage and discuss the future outlook of 3DS preservation.<br />
<br />
This talk will be accessible to a technical audience and gaming enthusiasts alike. We particularly hope to spark new interest in preserving the 3DS legacy and foster new ideas for pushing the boundaries of emulation technology.<br />
<br />
neobrain<br />
<br />
https://events.ccc.de/congress/2024/hub/event/10-years-of-emulating-the-nintendo-3ds-a-tale-of-ninjas-lemons-and-pandas/<br />
<br />
#38c3 #HardwareMaking #38c3_deu<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Umweltpolitik: EU-Kommission sieht Klimaziele für 2030 in Reichweite]]></title>
<description><![CDATA[Klar, der Klimaschutz steht jetzt weiter unten auf der EU-Prioritätenliste. Die ambitionierten Ziele aber bleiben. Und siehe da: Bei der Emissionsminderung läuft es gar nicht so schlecht.]]></description>
<link>https://isharestuff.com/de/3084368/politik-wirtschaft/umweltpolitik-eu-kommission-sieht-klimaziele-fuer-2030-in-reichweite/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3084368/politik-wirtschaft/umweltpolitik-eu-kommission-sieht-klimaziele-fuer-2030-in-reichweite/</guid>
<pubDate>Wed, 28 May 2025 14:00:05 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://www.sueddeutsche.de/2025/05/28/889e9371-38c3-453f-8cd6-a186d8ac82ab.jpeg?rect=361%2C0%2C3277%2C2458&amp;width=1000&amp;fm=jpg&amp;q=60" data-portal-copyright="Harald Schneider/APA/DPA"><p>Klar, der Klimaschutz steht jetzt weiter unten auf der EU-Prioritätenliste. Die ambitionierten Ziele aber bleiben. Und siehe da: Bei der Emissionsminderung läuft es gar nicht so schlecht.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BUSINESS MASCHINEN, DIE DU BEI AMAZON KAUFEN KANNST, UM IN DER GARAGE GELD ZU VERDIENEN]]></title>
<description><![CDATA[Author: TechZone - Bewertung: 13x - Views:132 Früher dienten Garagen als Unterschlupf für Autos und als Abstellraum für Aufbewahrungsboxen. Heutzutage werden sie zu Mini-Fabriken, Labors und kreativen Werkstätten umfunktioniert: In einer Ecke steht eine kompakte Brauanlage. Daneben summt eine Min...]]></description>
<link>https://isharestuff.com/de/3083092/wissenschaft-bildung/business-maschinen-die-du-bei-amazon-kaufen-kannst-um-in-der-garage-geld-zu-verdienen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3083092/wissenschaft-bildung/business-maschinen-die-du-bei-amazon-kaufen-kannst-um-in-der-garage-geld-zu-verdienen/</guid>
<pubDate>Tue, 27 May 2025 16:31:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: TechZone - Bewertung: 13x - Views:132 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/zg8UmA_p1IA?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Früher dienten Garagen als Unterschlupf für Autos und als Abstellraum für Aufbewahrungsboxen. Heutzutage werden sie zu Mini-Fabriken, Labors und kreativen Werkstätten umfunktioniert: In einer Ecke steht eine kompakte Brauanlage. Daneben summt eine Mini-Imkerei. Und ein Stück weiter befindet sich eine Schmuckmaschine. Das ist keine Fantasie, sondern die Realität – und zwar ohne hohe Investitionen. Die heutigen modernen Technologien ermöglichen es jedem, Produzent, Handwerker oder sogar Markeninhaber zu werden. Du glaubst es nicht? Dann lass dich überzeugen!<br />
<br />
Bambu Lab H2D<br />
(preview)<br />
https://bambulab.com/nl-nl/h2d<br />
https://www.youtube.com/watch?v=idOY8ebZ25Q<br />
B-BOX Urban Hive<br />
https://beeing.it/en/products/b-box-urban-hive/<br />
https://youtu.be/1miC8a0br4k?t=37<br />
https://www.youtube.com/watch?v=WOoH8DLxV8Q<br />
NeoDen<br />
https://www.neodensmt.com/<br />
https://www.youtube.com/watch?v=vC3GbO0absM<br />
PicoBrew Zymatic<br />
https://www.amazon.com/PicoBrew-Zymatic-Automatic-All-Grain-Appliance/dp/B00TYV0TQG<br />
https://www.youtube.com/watch?v=NBcBR8bYTlI<br />
https://www.youtube.com/watch?v=tj_GUpaBvEo<br />
Bulunmaz F?reball<br />
https://bulunmaz.com/cnc-fireball/<br />
https://www.youtube.com/watch?v=xpXc8ivtS_o<br />
https://www.youtube.com/watch?v=95mikG325Us<br />
https://www.youtube.com/watch?v=f9IpUYLCFlA<br />
https://www.youtube.com/watch?v=qneXBFOb7n0<br />
https://www.youtube.com/watch?v=zlDF3Bh_hK0<br />
INARI P35<br />
https://www.kickstarter.com/projects/originalmind/tabletop-pneumatic-injection-molder-inari-p35<br />
https://www.youtube.com/watch?v=CZQcl-xBZk0<br />
https://www.youtube.com/watch?v=3FM-WSjRR3U<br />
https://www.youtube.com/watch?v=G_Qq4fIw82I<br />
BESGEER Tufting Gun<br />
https://www.amazon.com/BESGEER-Tufting-Trimmer-Primary-Machine/dp/B0DWN4Z4JJ/<br />
https://www.youtube.com/watch?v=M9DhvMNh_3A<br />
https://www.youtube.com/watch?v=MTLCpdelbzg<br />
https://www.youtube.com/watch?v=0pt-wTx_aZg<br />
https://www.youtube.com/watch?v=Ia8G9a6_TwI<br />
https://www.youtube.com/watch?v=UZyIdPjNF44<br />
https://www.youtube.com/watch?v=W93_f0SlfuY<br />
xTool Laser Engraver<br />
https://a.co/d/0CkGUW5<br />
Balloon Stuffing Machine<br />
https://a.co/d/7EZCdhB<br />
Paragon Popcorn Machine<br />
https://a.co/d/cp0dEIM<br />
Leather Cutting Machine<br />
https://a.co/d/8XAdVBT<br />
Cotton Candy Machine<br />
https://a.co/d/eCnQhHH<br />
WantJoin Boba Maker Machine<br />
https://www.amazon.com/dp/B0BJ8JZPQF<br />
WantJoin Cup Sealing Machine<br />
https://www.amazon.com/dp/B088FFQSST<br />
Cricut EasyPress 3<br />
https://www.amazon.com/dp/B0D82F7XDP<br />
VEVOR Hat Heating Press<br />
https://www.amazon.nl/-/en/dp/B0BWDKJ2XR<br />
https://www.youtube.com/watch?v=n-qk3WT7hCk<br />
https://www.youtube.com/shorts/pwJLoq2KUj4<br />
https://www.youtube.com/shorts/kcUvtjtLrGU<br />
VEVOR Rock Tumbler Kit<br />
(preview)<br />
https://www.amazon.com/dp/B0CDBY99FP<br />
VEVOR Pottery Wheel<br />
https://www.amazon.com/dp/B0BML9321D<br />
Cricut Mug Press<br />
https://a.co/d/3rxy39Y<br />
Nelyrho Propane Melting Furnace Kit<br />
https://a.co/d/49VKU6S<br />
VEVOR Button Maker Machine<br />
https://a.co/d/62nvE6V<br />
Leather Splitter<br />
https://a.co/d/0TJzgfN<br />
Magic Mill Pro Dehydrator<br />
https://a.co/d/cviQ1jC<br />
Soap Making Kit<br />
https://a.co/d/j4RLAr5<br />
Hakka Sausage Stuffers and Makers<br />
https://a.co/d/cK9RPqg <br />
Sausage Tying Machine<br />
https://a.co/d/4qa0P7i<br />
<br />
00:00 - Bambu Lab H2D<br />
01:49 - PicoBrew Zymatic<br />
02:57 - INARI P35<br />
03:50 - BESGEER Tufting Gun<br />
04:54 - B-BOX Urban Hive<br />
05:51 - NeoDen<br />
06:52 - Bulunmaz Fıreball<br />
07:47 - xTool Laser Engraver<br />
08:56 - Balloon Stuffing Machine<br />
09:55 - WantJoin Boba Maker Machine <br />
10:41 - WantJoin Cup Sealing Machine<br />
11:24 - Cricut EasyPress 3  <br />
12:24 - VEVOR Hat Heating Press  <br />
13:09 - VEVOR Pottery Wheel<br />
14:23 - Cricut Mug Press <br />
15:20 - Nelyrho Propane Melting Furnace Kit<br />
16:22 - Magic Mill Pro Dehydrator<br />
17:15 - Soap Making Kit <br />
18:07 - Hakka Sausage Stuffers and Makers <br />
18:53 - Sausage Tying Machine <br />
19:12 - VEVOR Button Maker Machine <br />
20:02 - Leather Splitter<br />
20:58 - Paragon Popcorn Machine<br />
21:52 - Leather Cutting Machine<br />
22:46 - Cotton Candy Machine<br />
23:42 - VEVOR Rock Tumbler Kit <br />
<br />
Für Fragen zum Urheberrecht erreichen Sie uns unter: copymanager.mn@gmail.com   <br />
Haben Sie interessantes Filmmaterial, das in unseren Videos gezeigt werden könnte? Dann schreiben Sie uns an: content.manager@techzonelab.info<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nach langer Zeit: Lena und Lisa Mantler sind wieder vereint]]></title>
<description><![CDATA[Author: Promiflash - Bewertung: 0x - Views:42 Als Zwillinge zeigten sich Lisa (22) und Lena Mantler (22) zu Beginn ihrer Karriere immer gemeinsam. Doch in letzter Zeit entfernten sich die beiden Influencerinnen mit ihren ganz eigenen Projekten voneinander. Jetzt überraschen die Schwestern ihre Fa...]]></description>
<link>https://isharestuff.com/de/3081579/film-unterhaltung/nach-langer-zeit-lena-und-lisa-mantler-sind-wieder-vereint/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3081579/film-unterhaltung/nach-langer-zeit-lena-und-lisa-mantler-sind-wieder-vereint/</guid>
<pubDate>Mon, 26 May 2025 17:46:34 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Promiflash - Bewertung: 0x - Views:42 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/jsNEWsaCSVI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Als Zwillinge zeigten sich Lisa (22) und Lena Mantler (22) zu Beginn ihrer Karriere immer gemeinsam. Doch in letzter Zeit entfernten sich die beiden Influencerinnen mit ihren ganz eigenen Projekten voneinander. Jetzt überraschen die Schwestern ihre Fans mit einem neuen Schnappschuss auf Instagram. Auf dem Foto strahlt Lisa in die Kamera, während ihre Schwester mit einem ernsten Gesichtsausdruck hinter ihr steht. Obendrein halten sie sich auf dem Schwarz-Weiß-Bild an den Händen. Dazu schreibt die stolze Mama: "Alexa, spiele 'Not My Fault'!" So heißt der Song, den die gebürtigen Stuttgarterinnen 2017 veröffentlicht hatten.

Die Follower der Internetphänomene freuen sich immer, wenn Lisa und Lena gemeinsam Zeit verbringen, denn aus ihrer Perspektive haben sich die Schwestern ganz schön auseinandergelebt. Während Lisa ein eher sesshaftes Leben mit ihrem Mann Jonas und ihrem Sohn führt, hat sich Lena auf ihr Berufsleben konzentriert und zieht für ihre Modelaufträge um die Welt. Der gemeinsame Schnappschuss lässt Fans nostalgisch an die Zeit zurückdenken, als die Zwillinge noch gemeinsam für Videos vor der Kamera standen und ihre Plattformen dominierten.

Den Social-Media-Stars scheint der Abstand gutgetan zu haben. Wie Lisa vor wenigen Wochen in Stefanie Giesingers (28) Podcast "G Spot" berichtete, war es für sie in der Vergangenheit schwer, an gemeinsame Projekte gebunden zu sein. "Ich muss wirklich betonen, dass wir vieles so gestaltet haben, wie es zu [Lisa] gepasst hat. [...] Wir haben viele Jobs gemacht, bei denen ich nie so wirklich 100 Prozent von mir geben konnte", offenbarte das Model. Ihre eigenen Interessen seien deshalb manchmal zu kurz gekommen. (pam/pam)<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Intel: Ein weiterer Angriff umgeht alle bisherigen CPU-Schutzmaßnahmen]]></title>
<description><![CDATA[Die Computer Security Group (Comsec) der ETH Zürich nutzt dazu eine Eigenheit in Intels Sprungvorhersage aus. Sie nennt die Sicherheitslücke Branch Predictor Race Conditions (BPRC) und den Angriffstyp Branch Privilege Injection (BPI).]]></description>
<link>https://isharestuff.com/de/3063779/wissen/intel-ein-weiterer-angriff-umgeht-alle-bisherigen-cpu-schutzmassnahmen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3063779/wissen/intel-ein-weiterer-angriff-umgeht-alle-bisherigen-cpu-schutzmassnahmen/</guid>
<pubDate>Wed, 14 May 2025 18:00:13 +0200</pubDate>
<content:encoded><![CDATA[Die Computer Security Group (Comsec) der ETH Zürich nutzt dazu eine Eigenheit in Intels Sprungvorhersage aus. Sie nennt die Sicherheitslücke Branch Predictor Race Conditions (BPRC) und den Angriffstyp Branch Privilege Injection (BPI).]]></content:encoded>
</item>
<item>
<title><![CDATA[Antisemitismus nach Hamas-Terror: Junge Juden in München: „Das Sicherheitsgefühl ist verschwunden“]]></title>
<description><![CDATA[Angst, Wut und die Befürchtung, im Ernstfall alleingelassen zu werden: Eine neue Studie erhellt, wie sich durch den 7. Oktober 2023 und dessen Folgen die Welt für junge Münchner Jüdinnen und Juden verändert hat.]]></description>
<link>https://isharestuff.com/de/3052476/nachrichten/antisemitismus-nach-hamas-terror-junge-juden-in-muenchen-das-sicherheitsgefuehl-ist-verschwunden/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3052476/nachrichten/antisemitismus-nach-hamas-terror-junge-juden-in-muenchen-das-sicherheitsgefuehl-ist-verschwunden/</guid>
<pubDate>Wed, 07 May 2025 08:00:22 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://www.sueddeutsche.de/2025/01/23/95c1ab22-38c3-40e7-8f85-b26e5522957f.jpeg?rect=226%2C0%2C3548%2C2661&amp;width=1000&amp;fm=jpg&amp;q=60" data-portal-copyright="Stephan Rumpf"><p>Angst, Wut und die Befürchtung, im Ernstfall alleingelassen zu werden: Eine neue Studie erhellt, wie sich durch den 7. Oktober 2023 und dessen Folgen die Welt für junge Münchner Jüdinnen und Juden verändert hat.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Wann klappt der Anschluss, wann nicht und wie sagt man Chaos vorher?]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 795x - Views:30434 https://media.ccc.de/v/38c3-wann-klappt-der-anschluss-wann-nicht-und-wie-sagt-man-chaos-vorher

Gut 1 Mrd. Datenpunkte zu Zugfahrten, wie kann man damit das Zugfahren verbessern? Wir versuchen, die Zuverlässigkeit von Zugverbindungen vor der Bu...]]></description>
<link>https://isharestuff.com/de/3046571/it-sicherheit/38c3-wann-klappt-der-anschluss-wann-nicht-und-wie-sagt-man-chaos-vorher/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046571/it-sicherheit/38c3-wann-klappt-der-anschluss-wann-nicht-und-wie-sagt-man-chaos-vorher/</guid>
<pubDate>Fri, 02 May 2025 21:02:19 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 795x - Views:30434 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/gQN9EQAu9HE?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-wann-klappt-der-anschluss-wann-nicht-und-wie-sagt-man-chaos-vorher

Gut 1 Mrd. Datenpunkte zu Zugfahrten, wie kann man damit das Zugfahren verbessern? Wir versuchen, die Zuverlässigkeit von Zugverbindungen vor der Buchung zu prognostizieren.

Um allen Bahnfahrenden zu helfen, wollen wir auf Basis eines Kriesel-Artigen Datensatz vorhersagen, welche Anschlusszug verpasst wird und welcher nicht. Dafür schauen wir uns die Verspätungsdaten ganz genau an, um prädiktive Faktoren für Verspätungsvorhersagen zu finden. Wir schauen uns ein paar Techniken für kategorische Datentypen an, bauen ein Machine-Learning-Modell und werden dann nachweisen, ob dieses etwas taugt.

Theo Döllmann

https://events.ccc.de/congress/2024/hub/event/wann-klappt-der-anschluss-wann-nicht-und-wie-sagt-man-chaos-vorher/

#38c3 #Science

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 deu - Mushroom-DJs, Strong AI & Climate Change: Connecting the Dots with Artistic Research]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:303 The exploratory nature of artistic research can aide in the production of knowledge. Sometimes, this takes a detour through music-making mushrooms and making moonshine, sometimes it deals with societal reverberations of AI usage or how lithium extr...]]></description>
<link>https://isharestuff.com/de/3046570/it-sicherheit/38c3-deu-mushroom-djs-strong-ai-climate-change-connecting-the-dots-with-artistic-research/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046570/it-sicherheit/38c3-deu-mushroom-djs-strong-ai-climate-change-connecting-the-dots-with-artistic-research/</guid>
<pubDate>Fri, 02 May 2025 21:02:18 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:303 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/E19_1Bh2OyY?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>The exploratory nature of artistic research can aide in the production of knowledge. Sometimes, this takes a detour through music-making mushrooms and making moonshine, sometimes it deals with societal reverberations of AI usage or how lithium extraction affects the planet. This talk gives an insight on how we do technology-assisted artistic research at ZKM | Hertzlab, the artistic research & development department of the Center for Art and Media, Karlsruhe.

Artistic research takes the exploratory impulse of art and combines it with the wish for knowing the world that characterizes scientific research. It is neither science communication, nor purely artistic practice - it is located somewhere in between. As a field of its own, artistic research is still relatively young; at ZKM | Center for Art and Media, Karlsruhe, we explore what this means in the context of one of Europe's oldest media art institutions. Our six themes - lifecycles, connect, a common(s) world, ai-lab, post-human world, fellow futures - guide us in what we hope is a contribution to larger discourses from the point of view of art.

With examples and projects, this talk will illuminate artistic research practices, its benefits and challenges and how having a hacker mindset is the first step into becoming an artistic researcher.

twena

https://events.ccc.de/congress/2024/hub/event/mushroom-djs-strong-ai-climate-change-connecting-the-dots-with-artistic-research/

#38c3 #ArtBeauty #38c3_deu

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Einstieg in den Amateurfunk]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 24x - Views:394 https://media.ccc.de/v/38c3-einstieg-in-den-amateurfunk

Erklärung von Amateurfunk und der neuen Prüfung für Neulinge

Im Amateurfunk kann ich weltweit und über Satelliten kostenlos Gespräche führen. Dazu darf ich sogar selbstgebaute Empfänger und...]]></description>
<link>https://isharestuff.com/de/3046569/it-sicherheit/38c3-einstieg-in-den-amateurfunk/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046569/it-sicherheit/38c3-einstieg-in-den-amateurfunk/</guid>
<pubDate>Fri, 02 May 2025 21:02:17 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 24x - Views:394 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/PbCxU1rwZh4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-einstieg-in-den-amateurfunk

Erklärung von Amateurfunk und der neuen Prüfung für Neulinge

Im Amateurfunk kann ich weltweit und über Satelliten kostenlos Gespräche führen. Dazu darf ich sogar selbstgebaute Empfänger und Sender benutzen. Oder auch einen Computer zur Kommunikation einsetzen. Damit das funktioniert, gibt es ein paar Regeln, die gelernt werden müssen und für die es eine Prüfung gibt.

Seit diesem Sommer gibt es für den Amateurfunk in Deutschland eine Prüfung für eine Einstiegs-Klasse. Ich zeige dir, was du für die Prüfung lernen musst. Und was du nach bestandener Prüfung für Neulinge machen darfst, damit du am weltweiten Amateurfunk teilnehmen kannst.

Pylon (he/him)

https://events.ccc.de/congress/2024/hub/event/einstieg-in-den-amateurfunk/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - ComeFlyWithUs Podcast]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:188 https://media.ccc.de/v/38c3-comeflywithus-podcast

Wir, Steffen & Olli, besprechen in unserem Podcast alles was die Große und Kleine Fliegerei angeht.
Wir sind ein aktiver und ein Verkehrspilot im Ruhestand.
Hauptthemen: update zu GPS-Spoofing, Flu...]]></description>
<link>https://isharestuff.com/de/3046568/it-sicherheit/38c3-comeflywithus-podcast/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046568/it-sicherheit/38c3-comeflywithus-podcast/</guid>
<pubDate>Fri, 02 May 2025 21:02:16 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:188 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/-Jl4Dez4u5E?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-comeflywithus-podcast

Wir, Steffen & Olli, besprechen in unserem Podcast alles was die Große und Kleine Fliegerei angeht.
Wir sind ein aktiver und ein Verkehrspilot im Ruhestand.
Hauptthemen: update zu GPS-Spoofing, Flugstrecken in Zeiten von Krisen und Auswirkungen auf die Sicherheit. Ausserdem geht es um aktuelle Vorfälle in der großen und kleinen Luftfahrt.
Trotz des vermeintlich ernsten Themas sind wir immer mit Humor dabei!

Podcast Webseite: www.comeflywithus.de

Wenn ihr Fragen zu dem Thema oder der Sendung habt, gerne platzieren, am besten schon vorab.
Uns wird man kurz vorher antreffen können und wir werden nicht zu übersehen sein!

Steffen Braasch, Olli

https://events.ccc.de/congress/2024/hub/event/comeflywithus-podcast/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Waiter, There's An LLM In My Search!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:201 https://media.ccc.de/v/38c3-waiter-there-s-an-llm-in-my-search

This year Large Language Models (LLMs) in search engines told us to put glue on our pizza and eat a small rock every day. This is not ideal, and the consequences of "AI Overviews" and ...]]></description>
<link>https://isharestuff.com/de/3046567/it-sicherheit/38c3-waiter-theres-an-llm-in-my-search/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046567/it-sicherheit/38c3-waiter-theres-an-llm-in-my-search/</guid>
<pubDate>Fri, 02 May 2025 21:02:15 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:201 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iAFSQPNut20?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-waiter-there-s-an-llm-in-my-search

This year Large Language Models (LLMs) in search engines told us to put glue on our pizza and eat a small rock every day. This is not ideal, and the consequences of "AI Overviews" and similar features could even be deadly for some people, like mushroom foragers. Maybe it's time for a new sort of search? In this talk I'll sketch out some possible futures and look at how we can put search back in the hands of the searcher. Also, there will be memes!

Overall, the state of search right now is: not good. Search engine results are full of AI generated sludge, SEO spam and self-dealing by providers. This talk will look at the options that are open to us to improve search somewhat, including a few tips and tricks that anyone can take advantage of today to make hyperscale search providers like Google more functional again. But in many ways the most interesting question is whether we can find ways to discover stuff online that don't rely on a handful of hyperscale providers to do all the web crawling and indexing, and servicing of people's queries. In particular, what would happen if search was federated - how could we make that scaleable and performant, and what can we learn from the fediverse?

martinh

https://events.ccc.de/congress/2024/hub/event/waiter-there-s-an-llm-in-my-search/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Einstieg in die Teilchenphysik]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:219 https://media.ccc.de/v/38c3-einstieg-in-die-teilchenphysik

Was sind die fundamentalen Bestandteile der Materie, und wie interagieren sie miteinander? Die Teilchenphysik beschäftigt sich mit diesen grundlegenden Fragen und bildet die Basis unseres ...]]></description>
<link>https://isharestuff.com/de/3046565/it-sicherheit/38c3-einstieg-in-die-teilchenphysik/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046565/it-sicherheit/38c3-einstieg-in-die-teilchenphysik/</guid>
<pubDate>Fri, 02 May 2025 21:02:14 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:219 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/UzvigjbTKDI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-einstieg-in-die-teilchenphysik

Was sind die fundamentalen Bestandteile der Materie, und wie interagieren sie miteinander? Die Teilchenphysik beschäftigt sich mit diesen grundlegenden Fragen und bildet die Basis unseres Verständnisses der Naturgesetze. In diesem Talk möchte ich euch einen Einstieg in die spannende Welt der Quarks, Leptonen und Bosonen geben.

Ich werde die Grundlagen des Standardmodells der Teilchenphysik erklären, einen Einblick in Experimente wie den Large Hadron Collider (LHC) geben und zeigen, welche Rolle
Teilchen wie das Higgs-Boson oder Neutrinos spielen. Der Fokus liegt darauf, die Teilchenphysik verständlich und anschaulich zu machen - ganz ohne Vorkenntnisse, aber mit viel Raum für Fragen.
Dieser Talk richtet sich an alle, die mehr über die Grundbausteine der Materie und die Arbeit moderner Physiker:innen erfahren möchten. Egal ob Schüler:in, Student: in oder einfach nur Wissenschaftsinteressierte - hier seid ihr richtig!

Rosa

https://events.ccc.de/congress/2024/hub/event/einstieg-in-die-teilchenphysik/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Der ultimative Rodecaster Pro II Workshop]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:104 https://media.ccc.de/v/38c3-der-ultimative-rodecaster-pro-ii-workshop

Der Rodecaster Pro II ist derzeit das beste Aufnahmegerät für Podcasts.

timpritlove (seine/ihro)

https://events.ccc.de/congress/2024/hub/event/der-ultimative-rodecaster-pro-ii...]]></description>
<link>https://isharestuff.com/de/3046566/it-sicherheit/38c3-der-ultimative-rodecaster-pro-ii-workshop/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046566/it-sicherheit/38c3-der-ultimative-rodecaster-pro-ii-workshop/</guid>
<pubDate>Fri, 02 May 2025 21:02:14 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:104 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/_BapfwtZV1Y?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-der-ultimative-rodecaster-pro-ii-workshop

Der Rodecaster Pro II ist derzeit das beste Aufnahmegerät für Podcasts.

timpritlove (seine/ihro)

https://events.ccc.de/congress/2024/hub/event/der-ultimative-rodecaster-pro-ii-workshop/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Operation Mindfuck Vol. 7]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:301 https://media.ccc.de/v/38c3-operation-mindfuck-vol-7

For the seventh time, we'll present a colorful potpourri of nerdsniping topics: some of our favorite facts about computers, art, and the world! We draw a lot of inspiration from new and absurd i...]]></description>
<link>https://isharestuff.com/de/3046564/it-sicherheit/38c3-operation-mindfuck-vol-7/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046564/it-sicherheit/38c3-operation-mindfuck-vol-7/</guid>
<pubDate>Fri, 02 May 2025 21:02:13 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:301 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bBq-O9t5Tao?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-operation-mindfuck-vol-7

For the seventh time, we'll present a colorful potpourri of nerdsniping topics: some of our favorite facts about computers, art, and the world! We draw a lot of inspiration from new and absurd ideas, and we'd like to share that enthusiasm with you!

- [Vol. 1](https://blinry.org/operation-mindfuck/) (German)
- [Vol. 2](https://blinry.org/operation-mindfuck-2/) (German)
- [Vol. 3](https://blinry.org/operation-mindfuck-3/) (German)
- [Vol. 4](https://blinry.org/operation-mindfuck-4/) (English)
- [Vol. 5](https://blinry.org/operation-mindfuck-5/) (English)
- [Vol. 6](https://blinry.org/operation-mindfuck-6/) (English)

blinry, bleeptrack

https://events.ccc.de/congress/2024/hub/event/operation-mindfuck-vol-7/

#38c3 #Entertainment

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - From fault injection to RCE: Analyzing a Bluetooth tracker]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:132 https://media.ccc.de/v/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker

The Chipolo ONE is a Bluetooth tracker built around the Dialog (now Renesas)
DA14580 chip. This talk will present the research made on this device, from
extracti...]]></description>
<link>https://isharestuff.com/de/3046562/it-sicherheit/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046562/it-sicherheit/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/</guid>
<pubDate>Fri, 02 May 2025 21:02:12 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:132 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/yhS5gUHOYlc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker

The Chipolo ONE is a Bluetooth tracker built around the Dialog (now Renesas)
DA14580 chip. This talk will present the research made on this device, from
extracting the firmware from the locked down chip using fault injection up to
getting remote code execution over Bluetooth.
The talk will also present the disclosure process and how the vendor reacted to
an unpatchable vulnerability on their product.

This talk will present the journey through the analysis of the Chipolo ONE
Bluetooth tracker. As for lots of IoT devices, this analysis mixes both hardware
and software attacks so this talk will be packed with lots of techniques that
can be applied to other devices as well:

 - Using fault injection to bypass the debug locking mechanism on a chip that has
   apparently never been broken before.
 - Reverse engineering an unknown firmware with Ghidra, a PDF and parts of a SDK
 - Analyzing weak cryptographic algorithms to be able to authenticate to any
   device
 - Finding a buffer overflow and achieve code execution over Bluetooth
 - Disclosing an unpatchable vulnerability to the vendor

Nicolas Oberli

https://events.ccc.de/congress/2024/hub/event/from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - KLARHEIT ALS WAFFE]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:216 https://media.ccc.de/v/38c3-klarheit-als-waffe

UBERMORGEN infiltriert Kunst, Medien und digitale Monokulturen mit subversiver Affirmation. Wie Donald Trump auch, zerstören sie täglich ihr Geschäftsmodell, um daraus radikal neue Lösungen zu schaffe...]]></description>
<link>https://isharestuff.com/de/3046563/it-sicherheit/38c3-klarheit-als-waffe/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046563/it-sicherheit/38c3-klarheit-als-waffe/</guid>
<pubDate>Fri, 02 May 2025 21:02:12 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:216 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/IJcwCxKvSTA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-klarheit-als-waffe

UBERMORGEN infiltriert Kunst, Medien und digitale Monokulturen mit subversiver Affirmation. Wie Donald Trump auch, zerstören sie täglich ihr Geschäftsmodell, um daraus radikal neue Lösungen zu schaffen. Anhand von Projekten wie Vote-Auction, Google Will Eat Itself und PMC Wagner Arts dokumentieren sie ihre künstlerische Evolution im Never-Ending Now. Chaos ist ihre Methode, Kunst ihre Neue Ehrlichkeit, Klarheit ihre Waffe.

Der Vortrag, eine Mischung aus emotionalem Appell und intellektueller Analyse, thematisiert die Notwendigkeit von Klarheit und bewusster Simplifizierung als Gegengewicht zum Streben nach Perfektion in einer Welt der wahrgenommenen und effektiven Hyperkomplexität. UBERMORGEN stellt infrage, wie viel künstlerische Freiheit im aktuellen Zeitalter der „Happy Dystopia“ noch bleibt, respektive was ‘Radikaler Universalismus’ (Abstraktion zwecks Mustererkennung) für weitläufige Möglichkeiten in der Praxis eröffnen, und beleuchtet, wie ihre neuesten Werke das Potenzial kritischer Ästhetik und radikaler Experimente inmitten einer fragmentierten Informationslandschaft ermöglichen.

Luzius Bernhard, lizvlx (UBERMORGEN)

https://events.ccc.de/congress/2024/hub/event/klarheit-als-waffe/

#38c3 #ArtBeauty

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - The master key]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:295 https://media.ccc.de/v/38c3-the-master-key

This is the story of the HDCP master key that we derived back in 2010.

This is the story of the HDCP master key.  How in 2010 we derived it from various public sources and from a bunch of cheapish hardwa...]]></description>
<link>https://isharestuff.com/de/3046561/it-sicherheit/38c3-the-master-key/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046561/it-sicherheit/38c3-the-master-key/</guid>
<pubDate>Fri, 02 May 2025 21:02:11 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:295 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/9cLBEc2f4GM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-the-master-key

This is the story of the HDCP master key that we derived back in 2010.

This is the story of the HDCP master key.  How in 2010 we derived it from various public sources and from a bunch of cheapish hardware (and how we made money in the process!), and then published it on pastebin.  After that it was just wait-and-see what Intel and the rest of the world would do.

With the master key anyone can make source and sink keys that interoperate with any HDCP device.

Oh, and how I learnt how to spell "forty".



HDCP MASTER KEY (MIRROR THIS TEXT!)

This is a forty times forty element matrix of fifty-six bit
hexadecimal numbers.

To generate a source key, take a forty-bit number that (in
binary) consists of twenty ones and twenty zeroes; this is
the source KSV.  Add together those twenty rows of the matrix
that correspond to the ones in the KSV (with the lowest bit
in the KSV corresponding to the first row), taking all elements
modulo two to the power of fifty-six; this is the source
private key.

To generate a sink key, do the same, but with the transposed
matrix.


6692d179032205 b4116a96425a7f ecc2ef51af1740 959d3b6d07bce4 fa9f2af29814d9
82592e77a204a8 146a6970e3c4a1 f43a81dc36eff7 568b44f60c79f5 bb606d7fe87dd6
1b91b9b73c68f9 f31c6aeef81de6 9a9cc14469a037 a480bc978970a6 997f729d0a1a39
b3b9accda43860 f9d45a5bf64a1d 180a1013ba5023 42b73df2d33112 851f2c4d21b05e
2901308bbd685c 9fde452d3328f5 4cc518f97414a8 8fca1f7e2a0a14 dc8bdbb12e2378
672f11cedf36c5 f45a2a00da1c1d 5a3e82c124129a 084a707eadd972 cb45c81b64808d
07ebd2779e3e71 9663e2beeee6e5 25078568d83de8 28027d5c0c4e65 ec3f0fc32c7e63
1d6b501ae0f003 f5a8fcecb28092 854349337aa99e 9c669367e08bf1 d9c23474e09f70

segher, Wanda

https://events.ccc.de/congress/2024/hub/event/the-master-key/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Software accessibility without the fuzz]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:170 https://media.ccc.de/v/38c3-software-accessibility-without-the-fuzz

We've all heard how important digital accessibility is, at this point. But how does one get started with this complex topic? Let's cover all the techy basics!

Software accessibil...]]></description>
<link>https://isharestuff.com/de/3046533/it-sicherheit/38c3-software-accessibility-without-the-fuzz/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3046533/it-sicherheit/38c3-software-accessibility-without-the-fuzz/</guid>
<pubDate>Fri, 02 May 2025 20:31:39 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:170 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/b56fJ8-Gl6A?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-software-accessibility-without-the-fuzz<br />
<br />
We've all heard how important digital accessibility is, at this point. But how does one get started with this complex topic? Let's cover all the techy basics!<br />
<br />
Software accessibility is important, we all know that by now. In the past years while working as an accessibility consultant, many people have asked me the very same question: How do I get started with this? I'm overwhelmed by all the different resources! Heck, I can't find anything useful!<br />
<br />
In all fairness, I get you. There's so much fuzz surrounding this. Social workers will feel right at home because of this, but frankly, for us techies, it just doesn't work that way. We would like to know what to do precisely, or at least dive deeper into a topic on our own terms.<br />
<br />
In this talk, I would like to give a brief overview over what's important only for programmers and where you can educate yourself further. We can do this together!<br />
<br />
Casey Kreer<br />
<br />
https://events.ccc.de/congress/2024/hub/event/software-accessibility-without-the-fuzz/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Decentralize Your Internet with Self-Hosting]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:11 https://media.ccc.de/v/38c3-decentralize-your-internet-with-self-hosting

In einer Zeit, in der Privatsphäre immer mehr untergraben wird – warum nicht die Kontrolle über deine Daten übernehmen und eine eigene Cloud für Filehosting aufbauen? 

Dieser...]]></description>
<link>https://isharestuff.com/de/3035817/it-sicherheit/38c3-decentralize-your-internet-with-self-hosting/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035817/it-sicherheit/38c3-decentralize-your-internet-with-self-hosting/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:59 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:11 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/gwvSGBcntT4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-decentralize-your-internet-with-self-hosting

In einer Zeit, in der Privatsphäre immer mehr untergraben wird – warum nicht die Kontrolle über deine Daten übernehmen und eine eigene Cloud für Filehosting aufbauen? 

Dieser Vortrag ist ein praktischer Leitfaden zum Selbsthosting von Nextcloud zu Hause, speziell gedacht für Einsteiger mit grundlegenden Linux- und Bash-Kenntnissen. 

Von der Wahl der passenden Hardware bis zur sicheren Internetanbindung bauen wir  Schritt für Schritt eine selbst gehostete Filehosting-App im eigenen Heimnetzwerk.

In diesem Vortrag zeigen wir euch alle Schritte zu einer vollständig funktionsfähigen, internet-reichbaren Nextcloud-Instanz zum Filehosting im Internet. Wer bisher noch keine eigene Software betreibt, aber neugierig auf die Möglichkeiten ist, ist hier genau richtig. 

Dafür wird der Aufbau Schritt für Schritt dargestellt: vom Hardware-Setup über die Auswahl des passenden Betriebssystems und notwendiger Hilfssoftware bis hin zur Installation der Anwendung und der anschließenden Absicherung. 

Wir schauen uns ausserdem an, wie ein Nextcloud-Server aktuell gehalten werden kann und im Internet erreichbar gemacht werden kann. Dabei geben wir praktische Tipps zur Absicherung der Applikation. 

Der Vortrag soll dabei praxisnah gestaltet werden und Demos enthalten, wo immer immer das möglich ist. Die komplette Anleitung inklusive aller Skripte wird es in einem Open Source Repo geben.

Andreas, seb

https://events.ccc.de/congress/2024/hub/event/decentralize-your-internet-with-self-hosting/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Der Mythos der „gezielten Tötung”. Zur Verantwortung von KI-gestützten Zielsystemen am Beispi]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:4 https://media.ccc.de/v/38c3-der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender

Das Lavender-KI-Zielsystem zeigt gut, wie Kriegsautomatisierung aktuell aussieht und was daran falsch läuft.

Das Thema „...]]></description>
<link>https://isharestuff.com/de/3035818/it-sicherheit/38c3-der-mythos-der-gezielten-toetung-zur-verantwortung-von-ki-gestuetzten-zielsystemen-am-beispi/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035818/it-sicherheit/38c3-der-mythos-der-gezielten-toetung-zur-verantwortung-von-ki-gestuetzten-zielsystemen-am-beispi/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:59 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:4 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/7_N_u_bwdNs?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender<br />
<br />
Das Lavender-KI-Zielsystem zeigt gut, wie Kriegsautomatisierung aktuell aussieht und was daran falsch läuft.<br />
<br />
Das Thema „KI in der Militärtechnik“ und die Beziehung zwischen Mensch und Maschine ist seit Jahrzehnten ein theoretisches Thema in der Philosophie, den Sozialwissenschaften und den kritischen Algorithmus-Studien. Doch in den letzten Jahren wurden Waffensysteme mit KI-Komponenten entwickelt und jüngst in bewaffneten Konflikten praktisch eingesetzt. Am Beispiel des KI-gestützten Zielwahlsystem Lavender, das vom israelischen Militär IDF im derzeit laufenden Gaza-Krieg eingesetzt wird, werden die aktuellen Entwicklungen aufgezeigt und in den historisch-technischen Kontext der „Signature Strikes“ der USA in Waziristan (Pakistan) oder Afghanistan gesetzt, sowie konkrete technische Designentscheidungen vorgestellt und kritisch diskutiert. Dabei entstehen auch Fragen von Verantwortungsverlagerung und Rechtsumgehung.<br />
<br />
Die hier vorgestellten Erkenntnisse beruhen auf einer gemeinsamen Analyse von Expert:innen des Forums InformatikerInnen für Frieden und Gesellschaftliche Verantwortung (FIfF e.V.) zusammen mit der Informationsstelle Militarisierung (IMI e.V.) und der Arbeitskreis gegen bewaffnete Drohnen e.V., die die Praxis der KI-basierten „gezielten Tötung“ wie etwa durch Lavender als Kriegsverbrechen zu ächten sucht.<br />
<br />
Rainer Rehak<br />
<br />
https://events.ccc.de/congress/2024/hub/event/der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Der Thüring-Test für Wahlsoftware]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:5 https://media.ccc.de/v/38c3-der-thring-test-fr-wahlsoftware

Wähle Dein Risiko!

Vor der Bundestagswahl 2017 veröffentlichten wir unsere Analyse über haarsträubende Sicherheitslücken in einer weit verbreiteten Wahlsoftware.

Seitdem ist einiges passi...]]></description>
<link>https://isharestuff.com/de/3035816/it-sicherheit/38c3-der-thuering-test-fuer-wahlsoftware/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035816/it-sicherheit/38c3-der-thuering-test-fuer-wahlsoftware/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:58 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:5 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/_bef9HiIP0w?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-der-thring-test-fr-wahlsoftware<br />
<br />
Wähle Dein Risiko!<br />
<br />
Vor der Bundestagswahl 2017 veröffentlichten wir unsere Analyse über haarsträubende Sicherheitslücken in einer weit verbreiteten Wahlsoftware.<br />
<br />
Seitdem ist einiges passiert: Der Hersteller hat die Probleme nicht behoben, das BSI hat einen Stapel Papier produziert, die deutschen Anbieter von Wahlsoftware haben ihr Kartell vergrößert und unterschiedliche Wahl-Pannen untergraben weiterhin das Vertrauen in die Demokratie.<br />
<br />
Wurden unsere Empfehlungen von 2017 umgesetzt?<br />
Wir nehmen den Decompiler und schauen mal nach.<br />
<br />
Linus Neumann, Thorsten Schröder<br />
<br />
https://events.ccc.de/congress/2024/hub/event/der-thring-test-fr-wahlsoftware/<br />
<br />
#38c3 #EthicsSocietyPolitics<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - State of Surveillance: A year of digital threats to civil society]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:7 https://media.ccc.de/v/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society

The digital arms race between activists and government spies continues to shift and evolve. Through a series of cases studies, researchers from Amnesty Inte...]]></description>
<link>https://isharestuff.com/de/3035815/it-sicherheit/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035815/it-sicherheit/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:7 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/WOLA83yhrvk?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society<br />
<br />
The digital arms race between activists and government spies continues to shift and evolve. Through a series of cases studies, researchers from Amnesty International's Security Lab will share surveillance wins, the ongoing challenges, and the new threats on the digital horizon.<br />
<br />
Drawing on research by Amnesty International and partners over the past year, we will examine how the digital threats facing activists and journalists continue to evolve and adapt.<br />
<br />
Progress has been made in reigning in abuses from highly invasive spyware, with vendors going out of business and others being hit by lawsuits and sanctions. The technical arms race between defenders and the exploit industry also shows signs for cautious optimism.  However notorious spyware companies, occasionally with active government protection, continue taking steps to block much needed accountability efforts.<br />
<br />
Amnesty International will also the findings of a brand new investigation into the misuse of surveillance technology.<br />
<br />
The work for civil society to defend against these threats remains challenging. Surveillance vendors continue to deploy increasing murky webs of brokers and complex corporate structures to hide their activities, although we will show tactics that can be used to map these. <br />
<br />
The emerging surveillance threats at the intersection of mass surveillance, ad tech, and artificial intelligence are becoming all too real, and surveillance tactics continues to unequally and dangerously impact already marginalized people including woman and LGBTQI activists.<br />
<br />
Jurre van Bergen<br />
<br />
https://events.ccc.de/congress/2024/hub/event/state-of-surveillance-a-year-of-digital-threats-to-civil-society/<br />
<br />
#38c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - State of Surveillance: A year of digital threats to civil society]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:8 https://media.ccc.de/v/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society

The digital arms race between activists and government spies continues to shift and evolve. Through a series of cases studies, researchers from Amnesty Inte...]]></description>
<link>https://isharestuff.com/de/3035814/it-sicherheit/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035814/it-sicherheit/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:55 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/h-I6PTCP8T4?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-state-of-surveillance-a-year-of-digital-threats-to-civil-society<br />
<br />
The digital arms race between activists and government spies continues to shift and evolve. Through a series of cases studies, researchers from Amnesty International's Security Lab will share surveillance wins, the ongoing challenges, and the new threats on the digital horizon.<br />
<br />
Drawing on research by Amnesty International and partners over the past year, we will examine how the digital threats facing activists and journalists continue to evolve and adapt.<br />
<br />
Progress has been made in reigning in abuses from highly invasive spyware, with vendors going out of business and others being hit by lawsuits and sanctions. The technical arms race between defenders and the exploit industry also shows signs for cautious optimism.  However notorious spyware companies, occasionally with active government protection, continue taking steps to block much needed accountability efforts.<br />
<br />
Amnesty International will also the findings of a brand new investigation into the misuse of surveillance technology.<br />
<br />
The work for civil society to defend against these threats remains challenging. Surveillance vendors continue to deploy increasing murky webs of brokers and complex corporate structures to hide their activities, although we will show tactics that can be used to map these. <br />
<br />
The emerging surveillance threats at the intersection of mass surveillance, ad tech, and artificial intelligence are becoming all too real, and surveillance tactics continues to unequally and dangerously impact already marginalized people including woman and LGBTQI activists.<br />
<br />
Jurre van Bergen<br />
<br />
https://events.ccc.de/congress/2024/hub/event/state-of-surveillance-a-year-of-digital-threats-to-civil-society/<br />
<br />
#38c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Typing Culture with Keyboard: Okinawa - Reviving the Japanese Ryukyu-Language through the Art]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:4 https://media.ccc.de/v/38c3-typing-culture-with-keyboard-okinawa-reviving-the-japanese-ryukyu-language-through-the-art-and-precision-of-digital-input

In a world dominated by digital communication and the drive toward linguistic unification, the simp...]]></description>
<link>https://isharestuff.com/de/3035813/it-sicherheit/38c3-typing-culture-with-keyboard-okinawa-reviving-the-japanese-ryukyu-language-through-the-art/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035813/it-sicherheit/38c3-typing-culture-with-keyboard-okinawa-reviving-the-japanese-ryukyu-language-through-the-art/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:53 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/POULJ_-YSlk?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-typing-culture-with-keyboard-okinawa-reviving-the-japanese-ryukyu-language-through-the-art-and-precision-of-digital-input<br />
<br />
In a world dominated by digital communication and the drive toward linguistic unification, the simple act of 'typing' varies significantly across languages and writing systems. For European languages like English and German, typing typically involves a set of about 100 letters and symbols. In contrast, Japanese—and by extension, Okinawan—requires three distinct scripts: hiragana, katakana, and kanji. Each of these adds layers of complexity and cultural depth to written expression.<br />
<br />
This presentation delves into the development of an input method engine (IME) for Okinawan, an endangered language spoken in Japan's Ryukyuan archipelago. Moving beyond technical challenges, this project reveals how modern digital ‘calligraphy’ intersects with language preservation. Every keystroke becomes a deliberate cultural choice, as the IME reflects the aesthetic and linguistic essence of Okinawan language.<br />
<br />
Highlighting linguistic expression, cultural significance, and the urgent need for language preservation, this talk presents a model for future digital tools that empower endangered languages and cultures to thrive in the digital realm.<br />
<br />
This presentation begins by illustrating how different languages transliterate speech globally and then shifts focus to the Ryukyu-Japonic language family, showcasing how over 10,000 characters can be input on a QWERTY keyboard. The Input Method Engine (IME) has played a unique role in facilitating character input for Chinese, Japanese, and Korean (CJK) languages. This talk explores expanding the CJK family to include Okinawan, addressing how phonologically distinct sounds are recorded and encoded. This addition lays the groundwork for other Okinawan speakers to express themselves and document their lives in today’s interconnected, digital world.<br />
<br />
Daichi Shimabukuro<br />
<br />
https://events.ccc.de/congress/2024/hub/event/typing-culture-with-keyboard-okinawa-reviving-the-japanese-ryukyu-language-through-the-art-and-precision-of-digital-input/<br />
<br />
#38c3 #ArtBeauty<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - What the PHUZZ?! Finding 0-days in Web Applications with Coverage-guided Fuzzing]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:4 https://media.ccc.de/v/38c3-what-the-phuzz-finding-0-days-in-web-applications-with-coverage-guided-fuzzing

PHUZZ is a framework for Coverage-Guided Fuzzing of PHP Web Applications

Fuzz testing is an automated approach to vulnerability discovery. Co...]]></description>
<link>https://isharestuff.com/de/3035812/it-sicherheit/38c3-what-the-phuzz-finding-0-days-in-web-applications-with-coverage-guided-fuzzing/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035812/it-sicherheit/38c3-what-the-phuzz-finding-0-days-in-web-applications-with-coverage-guided-fuzzing/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/wm7DRLNtxIo?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-what-the-phuzz-finding-0-days-in-web-applications-with-coverage-guided-fuzzing<br />
<br />
PHUZZ is a framework for Coverage-Guided Fuzzing of PHP Web Applications<br />
<br />
Fuzz testing is an automated approach to vulnerability discovery. Coverage-guided fuzz testing has been extensively researched in binary applications and the domain of memory corruption vulnerabilities.<br />
However, many web vulnerability scanners still rely on black-box fuzzing (e.g., predefined sets of payloads or basic heuristics), which severely limits their vulnerability detection capabilities.<br />
In this talk, we present our academic fuzzing framework, "PHUZZ," and the challenges we faced in bringing coverage-guided fuzzing to PHP web applications. Our experiments show that PHUZZ outperforms related works and state-of-the-art vulnerability scanners in discovering seven different vulnerability classes.<br />
Additionally, we demonstrate how PHUZZ uncovered over 20 potential security issues and two 0-day vulnerabilities in a large-scale fuzzing campaign of the most popular WordPress plugins.<br />
<br />
The World Wide Web has become a fundamental part of modern society, providing crucial services such as social networks, online shopping, and other web applications. To this day, web vulnerabilities continue to be discovered, and data breaches are reported, even on high-profile websites. While several viable methods exist to detect web vulnerabilities, such as penetration tests, source code reviews, and bug bounty programs, these approaches are typically costly and time-intensive. Therefore, discovering web vulnerabilities in an automated and cost-effective fashion is desirable.<br />
<br />
One method to approach this problem is coverage-guided "fuzzing", which has been successfully used to identify memory corruption bugs in binary applications, but has seen limited application to web applications. Our academic research has resulted in an open-source prototype called "PHUZZ," which outperforms classic black-box vulnerability scanners in detecting web vulnerabilities with its fuzzing approach.<br />
<br />
This talk will first introduce the concept of coverage-guided fuzzing and the differences from black-box web fuzzing performed by vulnerability scanners. After diving into the challenges of applying coverage-guided fuzzing to web applications, we will introduce PHUZZ and explain how its approach allows the detection of a wide variety of web vulnerabilities, including SQLi, RCE, XSS, XXE, open redirection, insecure deserialization, and path traversal in PHP web applications.<br />
<br />
Our comparison of PHUZZ with state-of-the-art black-box vulnerability scanners, using a diverse set of artificial and real-world web applications containing known and unknown vulnerabilities, showed surprising results. Not only does PHUZZ outperform the other vulnerability scanners in the number of discovered vulnerabilities, but it also discovers over a dozen new potential vulnerabilities and two 0-days, which we will discuss in our talk. Finally, we will motivate the use of PHUZZ [1] and coverage-guided fuzzing methods to discover web vulnerabilities.<br />
<br />
This presentation is based on our academic publication "What All the PHUZZ Is About: A Coverage-guided Fuzzer for Finding Vulnerabilities in PHP Web Applications" [0].<br />
<br />
[0] https://dl.acm.org/doi/10.1145/3634737.3661137<br />
[1] https://github.com/gehaxelt/phuzz<br />
<br />
Sebastian Neef (gehaxelt)<br />
<br />
https://events.ccc.de/congress/2024/hub/event/what-the-phuzz-finding-0-days-in-web-applications-with-coverage-guided-fuzzing/<br />
<br />
#38c3 #Security<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Was lange währt, wird endlich gut? Die Modernisierung des Computerstrafrechts]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:9 https://media.ccc.de/v/38c3-was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts

Die Reform des Computerstrafrechts ist längst überfällig. Die bestehende Gesetzgebung ist zunehmend veraltet und entspricht nicht mehr den Anforde...]]></description>
<link>https://isharestuff.com/de/3035810/it-sicherheit/38c3-was-lange-waehrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035810/it-sicherheit/38c3-was-lange-waehrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:49 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:9 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cMMtFBLu65c?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts<br />
<br />
Die Reform des Computerstrafrechts ist längst überfällig. Die bestehende Gesetzgebung ist zunehmend veraltet und entspricht nicht mehr den Anforderungen unserer digitalen Welt. Spätestens seit der Veröffentlichung des aktuellen Koalitionsvertrags hat sich die Bundesregierung die Modernisierung dieses vielfach kritisierten Rechtsbereichs auf die Fahnen geschrieben. Doch was ist seitdem wirklich passiert? Wie sieht der aktuelle Stand der Reformbemühung aus? Was wird sich konkret ändern und welche Auswirkungen wird dies auf die Hacker-Community und die Sicherheitsforschung haben? Und wird das endlich gut?<br />
<br />
Das Computerstrafrecht steht seit vielen Jahren in der Kritik – nicht nur von Seiten der Hacker-Community, sondern auch aus der Wissenschaft, der Wirtschaft und sogar von Strafrechtsexperten. Ein zentraler Kritikpunkt ist die Kriminalisierung von Hacking mit guter Absicht, sogenannten ethischen Hackern. Aktuell ist auch diese Form des Hacking strafbar. Initiativen wie Bug Bounty Programme und Disclosure Policies zeigen, dass die Industrie durchaus ein Interesse daran hat, von ethischen Hackern zu profitieren, die Schwachstellen verantwortungsbewusst aufdecken und melden. Seit Ende Oktober ist nun ein Gesetzesentwurf im Umlauf, welcher die Modernisierung des Computerstrafrechts vorsieht.<br />
 <br />
Dieser Vortrag gibt einen Einblick in die Entwicklung dieses Gesetzesentwurfs, den aktuellen Stand der Debatte und die nächsten Schritte. Wir erklären dabei die geplanten Änderungen anhand von praktischen Beispielen und erläutern, welche Aktivitäten zukünftig legal wären und welche weiterhin verboten bleiben.<br />
 <br />
Ziel des Vortrags ist es, die Zuhörenden über den Prozess der Gesetzesänderungen zu informieren. Sie erkennen, welche Möglichkeiten sich aus dem reformierten Computerstrafrecht ergeben und lernen, was beim verantwortungsvollen Aufdecken von Sicherheitslücken beachtet werden muss und welche rechtlichen Grenzen weiterhin bestehen. Zudem wird der Vortrag verdeutlichen, inwieweit die geplante Gesetzesreform als Gewinn für die Hacker-Community angesehen werden kann – oder ob es noch immer Nachbesserungsbedarf gibt.<br />
<br />
Florian Hantke, Prof. Dr. Dennis-Kenji Kipker<br />
<br />
https://events.ccc.de/congress/2024/hub/event/was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/<br />
<br />
#38c3 #EthicsSocietyPolitics<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - OpenPV - Calculate the solar potential of your building]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:4 https://media.ccc.de/v/38c3-openpv-calculate-the-solar-potential-of-your-building

Simulating the photovoltaic potential of roofs and facades with WebGL and OpenData in real time

This talk is a deep dive into the open-source website [openpv.de](http...]]></description>
<link>https://isharestuff.com/de/3035809/it-sicherheit/38c3-openpv-calculate-the-solar-potential-of-your-building/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035809/it-sicherheit/38c3-openpv-calculate-the-solar-potential-of-your-building/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:48 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/jzON-uTbDDE?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-openpv-calculate-the-solar-potential-of-your-building<br />
<br />
Simulating the photovoltaic potential of roofs and facades with WebGL and OpenData in real time<br />
<br />
This talk is a deep dive into the open-source website [openpv.de](https://www.openpv.de/) - prepare yourself for lots of open geodata, physics-based solar irradiance simulation, some shady WebGL code, and insights on how to get funding from the German government for your open-source project.<br />
We will look at the available open data of 3D buildings, laser scans, and elevation models from Germany and how we navigated through the jungle of governmental open datasets. Having these valuable datasets allows us to do fancy things - like building a browser-based tool for solar potential simulation. This includes the task of performing physics-based simulation in WebGL, a nice problem we planned to solve in one afternoon but that ended up taking several weekends.<br />
In the talk, we also share about the evolution of our project and our experience along the way. We started as a simple free-time project, but evolved and even received public funding from the German Prototype Fund in the end.<br />
<br />
Come and listen to our talk if you<br />
1. think about installing your own PV system,<br />
2. love open geodata,<br />
3. want to see some fancy 3D simulations in the browser.<br />
<br />
Excusably, Martin Grosshauser<br />
<br />
https://events.ccc.de/congress/2024/hub/event/openpv-calculate-the-solar-potential-of-your-building/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Och Menno - How NOT to build a submarine]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:19 https://media.ccc.de/v/38c3-och-menno-how-not-to-build-a-submarine

Nachdem im letzten Jahr erklärt wurde, wie man erfolgreich ein UBoot baut, gucken wir darauf was bei TITAN und anderen Ubooten schief ging, und was man daraus für Projektleitung und...]]></description>
<link>https://isharestuff.com/de/3035808/it-sicherheit/38c3-och-menno-how-not-to-build-a-submarine/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035808/it-sicherheit/38c3-och-menno-how-not-to-build-a-submarine/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:47 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:19 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/YgtOnnznzbQ?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-och-menno-how-not-to-build-a-submarine<br />
<br />
Nachdem im letzten Jahr erklärt wurde, wie man erfolgreich ein UBoot baut, gucken wir darauf was bei TITAN und anderen Ubooten schief ging, und was man daraus für Projektleitung und sicheres Design lernen kann.<br />
<br />
Uboote verfolgen mich im Och Menno Podcast seit über 5 Jahren, die Technik dahinter ist gleichzeitig faszinierend und ihre Geschichte ist voll erschreckenden Fehlern und Unglücken.<br />
Von Ubooten die sich beim Spülen der Toilette selber versenken, zu der britischen K Klasse hin zu TITAN ist die Geschichte der Unterwasserfahrzeuge voll von Fehlschlägen.<br />
Nachdem die Analyse des Unglücks der TITAN die meist gehörte Folge 2024 ist kommt der Podcast auf die Bühne mit zusätzlichen Erkenntnissen aus dem Untersuchungsausschuss der US Coast Guard.<br />
Warum baut man Uboote so wie man sie baut? Warum ist ein disruptiver Startup Ansatz nicht immer hilfreich? Gibt es evtl. Gründe warum Ingenieure mit Berufserfahrung zur Vorsicht geraten haben? Und was könne wir hier für unser eigenes Berufsleben lernen? Und wenn das alles nicht hilft gibt es ja immer noch Sarkasmus und den Galgenhumor der aus dem Podcast bekannt ist …<br />
<br />
Ucki (He/Him)<br />
<br />
https://events.ccc.de/congress/2024/hub/event/och-menno-how-not-to-build-a-submarine/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - BinDa, die flexible Anwesenheitserfassung für Schulen]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:11 https://media.ccc.de/v/38c3-binda-die-flexible-anwesenheitserfassung-fr-schulen

Im Rahmen eines vom Prototype Fund geförderten Projektes entstand zusammen mit 4 Schulen die Open Source Software BinBa. Diese Software wurde in enger Zusammenarbeit mi...]]></description>
<link>https://isharestuff.com/de/3035807/it-sicherheit/38c3-binda-die-flexible-anwesenheitserfassung-fuer-schulen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035807/it-sicherheit/38c3-binda-die-flexible-anwesenheitserfassung-fuer-schulen/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:45 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:11 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/EHjS7E8aikc?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-binda-die-flexible-anwesenheitserfassung-fr-schulen<br />
<br />
Im Rahmen eines vom Prototype Fund geförderten Projektes entstand zusammen mit 4 Schulen die Open Source Software BinBa. Diese Software wurde in enger Zusammenarbeit mit den Schulen konzipiert, umgesetzt und in Betrieb genommen. <br />
In dem Talk soll der Weg über die Finanzierung mit Hilfe des Prototyp Funds, die Softwareentwicklung zusammen mit den LehrerInnen und SchülerInnen also auch die Inbetriebnahme beleuchtet werden.<br />
<br />
Mit dem Talk soll Mut gemacht werden, mehr freie Software zu schaffen, die sich in die IT Landschaft von Schulen gut einfügt und die Bedürfnisse von Schulen in den Vordergrund stellt. <br />
Im Rahmen des Projektes wurde viel Wert darauf gelegt, eine klare Abgrenzung zu existierenden Lösungen an den Schulen im Blick zu behalten und Daten mittels Integration aus diesen Lösungen zu übernehmen. Das ganze unter einer freien Lizenz und freier Software. <br />
SchulIT ist oft geprägt von abgeschlossenen Systemen, die sich nur unzureichend in existerende Lösungen einbinden lassen. Dies endet dann all zu oft in Mehrarbeit, Dateninkonsistenzen und viel Frustration bei allen Beteiligten. <br />
Wir möchten mit dem Projekt einen kleinen Impuls liefern, die Art und Weise wie heute Software für Schulen entsteht zu überdenken und auch konkrete Vorschläge dafür liefern.<br />
<br />
derMicha<br />
<br />
https://events.ccc.de/congress/2024/hub/event/binda-die-flexible-anwesenheitserfassung-fr-schulen/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Demystifying Common Microcontroller Debug Protocols]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:7 https://media.ccc.de/v/38c3-demystifying-common-microcontroller-debug-protocols

Many developers know that the answer to "How do I debug this microcontroller" is either "JTAG" or "SWD". But what does that mean, exactly? How do you get from "Wiggling ...]]></description>
<link>https://isharestuff.com/de/3035806/it-sicherheit/38c3-demystifying-common-microcontroller-debug-protocols/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035806/it-sicherheit/38c3-demystifying-common-microcontroller-debug-protocols/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:7 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Fx8Oru16gkY?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-demystifying-common-microcontroller-debug-protocols<br />
<br />
Many developers know that the answer to "How do I debug this microcontroller" is either "JTAG" or "SWD". But what does that mean, exactly? How do you get from "Wiggling wires" to "Programming a chip" and "Halting on breakpoints"? This talk will cover how common debug protocols work starting from signals on physical wires, cover common mechanisms for managing embedded processors, and ending up at talking to various common microcontrollers.<br />
<br />
Embedded programming is the art of shrinking complex programs in tiny packages by throwing away unnecessary features. With modern microcontrollers, debugging need not be one of the features thrown away. Most modern chips include some form of low-level access, but the technical details aren't widely understood. Many users of embedded firmware will use their preferred debugger without thinking too hard about what's going on underneath.<br />
<br />
We'll start by covering what it means to debug embedded software. The primitives required to have an interactive debug session are surprisingly minimal. From this, we'll build up a list of requirements and "nice to haves" to make a debugging environment comfortable, and reference existing "bespoke" debug approaches. We'll cover several examples of debug engines ranging from cores designed to go into FPGAs to tiny 8-bit microcontrollers.<br />
<br />
Next, we'll take a step back and describe the common lower-level protocols such as JTAG and SWD. These describe physical signals that go between the host and the target. We'll compare various protocols and see how they map onto the higher-level primitives discussed earlier. Armed with examples, we'll see how the protocol stack is formed.<br />
<br />
Next, we'll use the knowledge of low-level protocol implementations and the requirements for debugging to look at common abstractions on top of physical transports to implement core control. This will bridge the gap between "JTAG or SWD are the protocol" to "Poking a value in memory on a microcontroller". In this section, we'll cover the more common and generic uses such as Arm's ADI and the RISC-V DMI and see how complex and cross-target configurations are built to be rigid enough to have rich debug features while flexible enough to handle a wide range of processor configurations.<br />
<br />
Finally, we'll cover common tasks such as programming flash memory, watchpoints, and single-step debugging -- things that we take for granted in the desktop world and would like to have when programming for a potato that costs less than an actual potato.<br />
<br />
Sean "xobs" Cross<br />
<br />
https://events.ccc.de/congress/2024/hub/event/demystifying-common-microcontroller-debug-protocols/<br />
<br />
#38c3 #HardwareMaking<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Liberating Wi-Fi on the ESP32]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 5x - Views:35 https://media.ccc.de/v/38c3-liberating-wi-fi-on-the-esp32

Reverse engineering the Wi-Fi peripheral of the ESP32 to build an open source Wi-Fi stack.

During the 38c3, there are probably multiple thousands of ESP32s in the CCH, all of which run a cl...]]></description>
<link>https://isharestuff.com/de/3035805/it-sicherheit/38c3-liberating-wi-fi-on-the-esp32/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035805/it-sicherheit/38c3-liberating-wi-fi-on-the-esp32/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:42 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 5x - Views:35 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/e5xA32CZJJc?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-liberating-wi-fi-on-the-esp32<br />
<br />
Reverse engineering the Wi-Fi peripheral of the ESP32 to build an open source Wi-Fi stack.<br />
<br />
During the 38c3, there are probably multiple thousands of ESP32s in the CCH, all of which run a closed source Wi-Fi stack.  And while that stack works, it would be nicer to have an open source stack, which would grant us the ability to modify and audit the software, which carries potentially sensitive data.<br />
<br />
So we set to work, reverse engineering the proprietary stack and building a new open source one. We soon discovered just how versatile the ESP32 can be, both as a tool for research and IoT SoC, when its capabilities are fully unlocked. This includes using it as a pentesting tool, a B.A.T.M.A.N. mesh router or an AirDrop client.<br />
<br />
You'll learn something about Wi-Fi, the ESP32, reverse engineering in general and how to approach such a project.<br />
<br />
Frostie314159, Jasper Devreker<br />
<br />
https://events.ccc.de/congress/2024/hub/event/liberating-wi-fi-on-the-esp32/<br />
<br />
#38c3 #HardwareMaking<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Transparency? Not from the European Commission]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:12 https://media.ccc.de/v/38c3-transparency-not-from-the-european-commission

The European Commission is the executive branch of the European Union with the duty to uphold the law. The transparency of the Commission´s actions and decisions range from q...]]></description>
<link>https://isharestuff.com/de/3035804/it-sicherheit/38c3-transparency-not-from-the-european-commission/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035804/it-sicherheit/38c3-transparency-not-from-the-european-commission/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:41 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:12 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/dtR0NOV80ck?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-transparency-not-from-the-european-commission<br />
<br />
The European Commission is the executive branch of the European Union with the duty to uphold the law. The transparency of the Commission´s actions and decisions range from questionable to abysmal. Attempts by the public to access information are often thwarted. This talk will cover the Commission´s lack of transparency, challenges faced by the public in accessing information, Commission´s tactics and examples of the European Ombudsman´s interventions to improve the situation. Whether you are interested in ChatControl, AI or public procurement, this talk will have you covered.<br />
<br />
~~Redacted~~<br />
<br />
Kris Shrishak<br />
<br />
https://events.ccc.de/congress/2024/hub/event/transparency-not-from-the-european-commission/<br />
<br />
#38c3 #EthicsSocietyPolitics<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - read & delete]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2x - Views:27 https://media.ccc.de/v/38c3-read-delete

Das Duo 'read & delete' präsentiert radikale philosophische Texte mit musikalischer Begleitung

...

Elektra

https://events.ccc.de/congress/2024/hub/event/read-delete/

#38c3 #Entertainment

Licensed to the ...]]></description>
<link>https://isharestuff.com/de/3035803/it-sicherheit/38c3-read-delete/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3035803/it-sicherheit/38c3-read-delete/</guid>
<pubDate>Fri, 25 Apr 2025 13:46:39 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2x - Views:27 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/F2CfKyqCHww?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-read-delete<br />
<br />
Das Duo 'read & delete' präsentiert radikale philosophische Texte mit musikalischer Begleitung<br />
<br />
...<br />
<br />
Elektra<br />
<br />
https://events.ccc.de/congress/2024/hub/event/read-delete/<br />
<br />
#38c3 #Entertainment<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SZ am Abend: Nachrichten vom 22. April 2025]]></title>
<description><![CDATA[Was heute wichtig war.]]></description>
<link>https://isharestuff.com/de/3031282/politik-wirtschaft/sz-am-abend-nachrichten-vom-22-april-2025/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3031282/politik-wirtschaft/sz-am-abend-nachrichten-vom-22-april-2025/</guid>
<pubDate>Tue, 22 Apr 2025 18:00:05 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://www.sueddeutsche.de/2025/04/22/6b0c6ee0-38c3-4403-a313-e7b183a701a9.jpeg?rect=223%2C0%2C3555%2C2666&amp;width=1000&amp;fm=jpg&amp;q=60" data-portal-copyright="Brendan Smialowski/AFP"><p>Was heute wichtig war.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Handelsstreit: Trump würgt den Konjunkturaufschwung ab]]></title>
<description><![CDATA[Die aggressive Zollpolitik des US-Präsidenten lässt nach einer IWF-Analyse die Wachstumsraten weltweit einbrechen. Ein Land trifft der Abschwung besonders: die Vereinigten Staaten selbst.]]></description>
<link>https://isharestuff.com/de/3030960/nachrichten/handelsstreit-trump-wuergt-den-konjunkturaufschwung-ab/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3030960/nachrichten/handelsstreit-trump-wuergt-den-konjunkturaufschwung-ab/</guid>
<pubDate>Tue, 22 Apr 2025 15:15:28 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://www.sueddeutsche.de/2025/04/22/6b0c6ee0-38c3-4403-a313-e7b183a701a9.jpeg?rect=0%2C0%2C3555%2C2666&amp;width=1000&amp;fm=jpg&amp;q=60" data-portal-copyright="Brendan Smialowski/AFP"><p>Die aggressive Zollpolitik des US-Präsidenten lässt nach einer IWF-Analyse die Wachstumsraten weltweit einbrechen. Ein Land trifft der Abschwung besonders: die Vereinigten Staaten selbst.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST UPCOMING MOVIES 2025 (New Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 15x - Views:108 New Upcoming Movies that can be found in this trailer compilation:

00:00 Mission Impossible 8: The Final Reckoning
02:17 The Naked Gun
03:19 Fight or Flight
05:42 Fountain of Youth
07:42 TRON 3: Ares
09:14 Home Sweet Home: Rebirth
10:58 Primitive W...]]></description>
<link>https://isharestuff.com/de/3016616/film-unterhaltung/best-upcoming-movies-2025-new-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3016616/film-unterhaltung/best-upcoming-movies-2025-new-trailers/</guid>
<pubDate>Fri, 11 Apr 2025 18:31:29 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 15x - Views:108 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/l4k4PazofY8?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>New Upcoming Movies that can be found in this trailer compilation:<br />
<br />
00:00 Mission Impossible 8: The Final Reckoning<br />
02:17 The Naked Gun<br />
03:19 Fight or Flight<br />
05:42 Fountain of Youth<br />
07:42 TRON 3: Ares<br />
09:14 Home Sweet Home: Rebirth<br />
10:58 Primitive War<br />
12:30 From the World of John Wick: Ballerina<br />
14:47 Sketch<br />
16:37 Predator: Killer of Killers<br />
18:30 Our Fault<br />
18:58 Shadow Force<br />
21:30 Elio<br />
23:55 The Last Rodeo<br />
26:18 Broke<br />
28:01 A Breed Apart<br />
30:43 Salvable<br />
32:44 Bring Her Back<br />
34:22 Karate Kid: Legends<br />
36:45 Together<br />
38:07 Hurry Up Tomorrow<br />
39:59 Watch the Skies<br />
42:14 Rust<br />
43:33 I Don't Understand You<br />
45:56 Rosario<br />
48:09 The Ugly Stepsister<br />
49:57 Kryptic<br />
52:09 Fog of War<br />
53:42 Zero A.D.<br />
54:56 Materialists<br />
57:17 Don't Let's Go to the Dogs Tonight<br />
59:26 The Ritual<br />
01:00:28 Truth & Treason<br />
01:02:25 Steppenwolf<br />
01:04:10 Sneaks<br />
<br />
© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW ROMANCE MOVIES 2025 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 12x - Views:109 New Lovestory Movies that can be found in this trailer compilation:

00:00 Jane Austen Wrecked My Life
01:52 On Swift Horses
04:02 Marked Men
06:06 You’re Cordially Invited
07:31 Materialists
09:53 Snow White
12:17 My Fault: London
13:45 Parthenope
...]]></description>
<link>https://isharestuff.com/de/3013109/film-unterhaltung/best-new-romance-movies-2025-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3013109/film-unterhaltung/best-new-romance-movies-2025-trailers/</guid>
<pubDate>Wed, 09 Apr 2025 18:31:30 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 12x - Views:109 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/NsrMsGwhB1Y?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>New Lovestory Movies that can be found in this trailer compilation:<br />
<br />
00:00 Jane Austen Wrecked My Life<br />
01:52 On Swift Horses<br />
04:02 Marked Men<br />
06:06 You’re Cordially Invited<br />
07:31 Materialists<br />
09:53 Snow White<br />
12:17 My Fault: London<br />
13:45 Parthenope<br />
15:41 Benefits with Friends<br />
17:43 Sidelined: The QB and Me<br />
19:57 Picture This<br />
22:22 Wish You Were Here<br />
24:37 The Gorge<br />
27:26 A Man and a Woman<br />
28:48 Vermiglio<br />
<br />
© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bluetooth Security Vulnerabilities  Analysis and Protection #itsecurity #podcast #tsec]]></title>
<description><![CDATA[Author: VAZULES - Bewertung: 1x - Views:1 Bluetooth security vulnerabilities pose a continuing threat to numerous devices, from smartphones to IoT applications, and even newer Bluetooth versions are not immune. The report analyzes historical and current vulnerabilities, including BlueBorne, KNOB,...]]></description>
<link>https://isharestuff.com/de/3011688/it-sicherheit/bluetooth-security-vulnerabilities-analysis-and-protection-itsecurity-podcast-tsec/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3011688/it-sicherheit/bluetooth-security-vulnerabilities-analysis-and-protection-itsecurity-podcast-tsec/</guid>
<pubDate>Tue, 08 Apr 2025 23:17:16 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES - Bewertung: 1x - Views:1 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bOIVufg6k5Y?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Bluetooth security vulnerabilities pose a continuing threat to numerous devices, from smartphones to IoT applications, and even newer Bluetooth versions are not immune. The report analyzes historical and current vulnerabilities, including BlueBorne, KNOB, SweynTooth, BIAS, BLURtooth, BleedingTooth, BLUFFS, and CVE-2023-45866, as well as the recent CVE-2025-27840 in ESP32 chips. It discusses common attack vectors such as keystroke injection, man-in-the-middle attacks, and spoofing, as well as the potential damage from data theft to device takeover. Comprehensive protection measures, including general security practices, specific strategies against known vulnerabilities, software updates, and correct device configurations, are emphasized as essential, and the role of the Bluetooth SIG in standardizing and responding to security threats is also highlighted.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Lethal Injection, Electric Chair, or Firing Squad? An Inhumane Decision for Death Row Prisoners]]></title>
<description><![CDATA[South Carolina resumed executions with the firing squad killing of Brad Sigmon last month. Mikal Madhi’s execution date is days away.
The post Lethal Injection, Electric Chair, or Firing Squad? An Inhumane Decision for Death Row Prisoners appeared first on The Intercept.]]></description>
<link>https://isharestuff.com/de/3007674/ausland/lethal-injection-electric-chair-or-firing-squad-an-inhumane-decision-for-death-row-prisoners/</link>
<guid isPermaLink="true">https://isharestuff.com/de/3007674/ausland/lethal-injection-electric-chair-or-firing-squad-an-inhumane-decision-for-death-row-prisoners/</guid>
<pubDate>Sun, 06 Apr 2025 12:45:16 +0200</pubDate>
<content:encoded><![CDATA[<p>South Carolina resumed executions with the firing squad killing of Brad Sigmon last month. Mikal Madhi’s execution date is days away.</p>
<p>The post <a href="https://theintercept.com/2025/04/06/firing-squad-execution-south-carolina-death-penalty/">Lethal Injection, Electric Chair, or Firing Squad? An Inhumane Decision for Death Row Prisoners</a> appeared first on <a href="https://theintercept.com/">The Intercept</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Measuring earthquakes: magnitude and seismic intensity | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:0 The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC

Interested in licensing this video ? Get in touch...]]></description>
<link>https://isharestuff.com/de/2993962/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2993962/nachrichten-politik/measuring-earthquakes-magnitude-and-seismic-intensity-afp/</guid>
<pubDate>Fri, 28 Mar 2025 12:01:26 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/gUzjOx3DGDk?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>The magnitude measures the energy released by the rupture of the fault causing an earthquake. Seismic intensity, in contrast, measures surface damage. Here is a videographic explainer VIDEOGRAPHIC<br />
<br />
Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD <br />
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Rekordbox, gib mir meine Daten! - Überblick von Datenzugriff in DJ Software & Hardware]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:47 https://media.ccc.de/v/38c3-rekordbox-gib-mir-meine-daten-berblick-von-datenzugriff-in-dj-software-hardware

Wir Hackende müssen eine große Gefahr für unsere eigenen Daten sein, wenn die Hersteller die Maßnahmen ergreifen, die ich euch in diesem Tal...]]></description>
<link>https://isharestuff.com/de/2976806/it-sicherheit/38c3-rekordbox-gib-mir-meine-daten-ueberblick-von-datenzugriff-in-dj-software-hardware/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2976806/it-sicherheit/38c3-rekordbox-gib-mir-meine-daten-ueberblick-von-datenzugriff-in-dj-software-hardware/</guid>
<pubDate>Mon, 17 Mar 2025 21:31:54 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:47 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/BGDI4Qug07s?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-rekordbox-gib-mir-meine-daten-berblick-von-datenzugriff-in-dj-software-hardware<br />
<br />
Wir Hackende müssen eine große Gefahr für unsere eigenen Daten sein, wenn die Hersteller die Maßnahmen ergreifen, die ich euch in diesem Talk unter Anderem vorstelle. Wie bekomme ich Daten aus DJ-Systemen und vielleicht auch wieder hinein?<br />
<br />
Wenn wir als DJs Daten in DJ Systeme eingeben, wollen wir diese vielleicht auslesen oder von außen mit unserer eigenen Software verändern. Dieser Talk ist ein Überblick über die Entwicklung und den Stand von Datenbanken, Reverse Engineering, Netzwerk Protokoll Mitschnitten und Verschlüssellung.  Leider machen uns das AlphaTheta, Serato und co. schwieriger als es sein muss. Manchmal ist es kaum zu fassen, wie weit sie dafür gehen.  Hinweis: Dieser Talk kann Spuren von SQL beinhalten.<br />
<br />
function<br />
<br />
https://events.ccc.de/congress/2024/hub/en/event/rekordbox-gib-mir-meine-daten-berblick-von-datenzugriff-in-dj-software-hardware/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Everyone VS. MP3 - Audio Datei-Formate für DJs und co.]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:82 https://media.ccc.de/v/38c3-everyone-vs-mp3-audio-datei-formate-fr-djs-und-co

Dieser Talk deckt die Fundamentals zu Samplingrate, Bitdepth und Bitrate ab und erklärt die Stärken und Schwächen aller Audio Datei-Formate, die für DJs und Produzent/inn...]]></description>
<link>https://isharestuff.com/de/2976807/it-sicherheit/38c3-everyone-vs-mp3-audio-datei-formate-fuer-djs-und-co/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2976807/it-sicherheit/38c3-everyone-vs-mp3-audio-datei-formate-fuer-djs-und-co/</guid>
<pubDate>Mon, 17 Mar 2025 21:31:54 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:82 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bkz7zJqrJXo?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-everyone-vs-mp3-audio-datei-formate-fr-djs-und-co<br />
<br />
Dieser Talk deckt die Fundamentals zu Samplingrate, Bitdepth und Bitrate ab und erklärt die Stärken und Schwächen aller Audio Datei-Formate, die für DJs und Produzent/innen relevant sind: MP3, AAC, FLAC, WAV, AIFF und vielleicht noch mehr.<br />
<br />
Wenn du mal Probleme mit manchen Dateien auf CDJs hattest, ist das hier der richtige Talk für dich.  Neben den im Abstract genannten Fundamentals erkläre ich, was lossy und lossless bedeuten, weshalb lossless nicht unbedingt der beste Begriff ist, was Interpolation ist und was es mit PCM auf sich hat. Ich beleuchte außerdem verschiedene Seiten der Datei-Formate: Qualität, Datei-Größe / Kompression, Metadaten-Support, Kompatibilität mit populärer DJ-Hardware und Mehr.<br />
<br />
function<br />
<br />
https://events.ccc.de/congress/2024/hub/en/event/everyone-vs-mp3-audio-datei-formate-fr-djs-und-co/<br />
<br />
#38c3<br />
<br />
Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LaKanDoR - Hacker Song 2025 #hacker]]></title>
<description><![CDATA[Author: VAZULES - Bewertung: 0x - Views:1 (Rap-Intro)
Yo, im Jahr 2025 ist das Cyber-Spiel heiß,
Angriffsvektoren lauern, kein Witz!
Workstations, Server, Intranets im Visier,
Das Internet ist das Schlachtfeld, hier und jetzt!

(Strophe 1)
Kompromittierte Zugangsdaten, das ist der Start,
Phishing...]]></description>
<link>https://isharestuff.com/de/2976804/technologie/lakandor-hacker-song-2025-hacker/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2976804/technologie/lakandor-hacker-song-2025-hacker/</guid>
<pubDate>Mon, 17 Mar 2025 21:31:51 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/20v6mkqryJ8?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>(Rap-Intro)<br />
Yo, im Jahr 2025 ist das Cyber-Spiel heiß,<br />
Angriffsvektoren lauern, kein Witz!<br />
Workstations, Server, Intranets im Visier,<br />
Das Internet ist das Schlachtfeld, hier und jetzt!<br />
<br />
(Strophe 1)<br />
Kompromittierte Zugangsdaten, das ist der Start,<br />
Phishing-Mails kommen an, direkt ins Herz.<br />
Malware wird geladen, Viren und Trojaner,<br />
Ransomware verschlüsselt, es wird immer schlimmer!<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Strophe 2)<br />
Social Engineering, die Kunst der Täuschung,<br />
Unsichere Wi-Fi-Netzwerke, die offene Versuchung.<br />
Veraltete Systeme, ein gefundenes Fressen,<br />
Fehlkonfigurationen, die wir ausnutzen, ganz ungeniert.<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Bridge)<br />
DDoS-Angriffe legen Server lahm,<br />
SQL-Injection, wir übernehmen den Datenstamm.<br />
XSS-Angriffe, Skripte werden platziert,<br />
Man-in-the-Middle, die Kommunikation infiltriert.<br />
 <br />
<br />
(Strophe 3)<br />
Insider-Bedrohungen, die Gefahr von innen,<br />
Lieferkettenangriffe, wo soll das enden?<br />
Das Intranet ist unser Spielplatz, die laterale Bewegung ist unser Tanz,<br />
Passwörter sind schwach, das ist unsere Chance.<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Outro)<br />
Hacker von 2025, wir sind noch nicht fertig,<br />
Die Cyberwelt ist unser, das ist unbestritten!<br />
<br />
#hacker #hack #cybersecurity #itsecurity #itadmin<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LaKanDoR - Hacker Song 2025 #musik #hacker]]></title>
<description><![CDATA[Author: VAZULES - Bewertung: 0x - Views:0 Rap-Intro)
Yo, im Jahr 2025 ist das Cyber-Spiel heiß,
Angriffsvektoren lauern, kein Witz!
Workstations, Server, Intranets im Visier,
Das Internet ist das Schlachtfeld, hier und jetzt!

(Strophe 1)
Kompromittierte Zugangsdaten, das ist der Start,
Phishing-...]]></description>
<link>https://isharestuff.com/de/2976805/technologie/lakandor-hacker-song-2025-musik-hacker/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2976805/technologie/lakandor-hacker-song-2025-musik-hacker/</guid>
<pubDate>Mon, 17 Mar 2025 21:31:51 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: VAZULES - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/D75Ss4I-GFs?autoplay=1&origin=http://isharestuff.com" frameborder="0"></iframe></p><p>Rap-Intro)<br />
Yo, im Jahr 2025 ist das Cyber-Spiel heiß,<br />
Angriffsvektoren lauern, kein Witz!<br />
Workstations, Server, Intranets im Visier,<br />
Das Internet ist das Schlachtfeld, hier und jetzt!<br />
<br />
(Strophe 1)<br />
Kompromittierte Zugangsdaten, das ist der Start,<br />
Phishing-Mails kommen an, direkt ins Herz.<br />
Malware wird geladen, Viren und Trojaner,<br />
Ransomware verschlüsselt, es wird immer schlimmer!<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Strophe 2)<br />
Social Engineering, die Kunst der Täuschung,<br />
Unsichere Wi-Fi-Netzwerke, die offene Versuchung.<br />
Veraltete Systeme, ein gefundenes Fressen,<br />
Fehlkonfigurationen, die wir ausnutzen, ganz ungeniert.<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Bridge)<br />
DDoS-Angriffe legen Server lahm,<br />
SQL-Injection, wir übernehmen den Datenstamm.<br />
XSS-Angriffe, Skripte werden platziert,<br />
Man-in-the-Middle, die Kommunikation infiltriert.<br />
 <br />
<br />
(Strophe 3)<br />
Insider-Bedrohungen, die Gefahr von innen,<br />
Lieferkettenangriffe, wo soll das enden?<br />
Das Intranet ist unser Spielplatz, die laterale Bewegung ist unser Tanz,<br />
Passwörter sind schwach, das ist unsere Chance.<br />
 <br />
<br />
(Refrain)<br />
Wir sind die Hacker von 2025,<br />
Wir durchbrechen Firewalls, das ist unser Fleiß.<br />
Zero-Day-Exploits, Schwachstellen überall,<br />
Wir übernehmen die Kontrolle, wir sind der Cyber-Knall!<br />
<br />
(Outro)<br />
Hacker von 2025, wir sind noch nicht fertig,<br />
Die Cyberwelt ist unser, das ist unbestritten!<br />
<br />
#musik #hacker #itsecurity #itadmin #administration #cybersecurity<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Prompt-Injection-Angriffe: Grok 3 lässt sich leicht manipulieren]]></title>
<description><![CDATA[Die KI Grok 3 integriert Tweetsuchen in die Generierung von Antworten und ist damit eine potenziell anfällige Umgebung für Manipulation. (KI, Sicherheitslücke)]]></description>
<link>https://isharestuff.com/de/2944560/computer-internet/prompt-injection-angriffe-grok-3-laesst-sich-leicht-manipulieren/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2944560/computer-internet/prompt-injection-angriffe-grok-3-laesst-sich-leicht-manipulieren/</guid>
<pubDate>Mon, 24 Feb 2025 19:06:29 +0100</pubDate>
<content:encoded><![CDATA[Die KI Grok 3 integriert Tweetsuchen in die Generierung von Antworten und ist damit eine potenziell anfällige Umgebung für Manipulation. (<a href="https://www.golem.de/specials/ki/">KI</a>, <a href="https://www.golem.de/specials/sicherheitsluecke/">Sicherheitslücke</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=193676&amp;page=1&amp;ts=1740419942" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Man convicted of murder to be executed in Texas]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 11x - Views:163 Steven Nelson has spent more than a dozen years on Death Row in Texas and is to be executed by lethal injection on Wednesday 5 February for a murder which he insists he did not commit. Nelson was convicted of the 2011 murder of Clint Dobson, a ...]]></description>
<link>https://isharestuff.com/de/2915074/nachrichten-politik/man-convicted-of-murder-to-be-executed-in-texas/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2915074/nachrichten-politik/man-convicted-of-murder-to-be-executed-in-texas/</guid>
<pubDate>Wed, 05 Feb 2025 15:49:55 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 11x - Views:163 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/aWaAS4a-Guw?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Steven Nelson has spent more than a dozen years on Death Row in Texas and is to be executed by lethal injection on Wednesday 5 February for a murder which he insists he did not commit. Nelson was convicted of the 2011 murder of Clint Dobson, a 28-year-old pastor, during a robbery of the NorthPointe Baptist Church in Arlington, near Dallas. He acknowledges that he served as a lookout during the robbery and that he entered the church after the murder to steal some items, but says his two accomplices, who were never brought to trial, are responsible for the murder.

Interested in licensing this video? Get in touch 👉 http://u.afp.com/wvnD 
AFP’s services and content are for professional use only.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA['It kind of breaks you every day': Life on death row in Texas | AFP]]></title>
<description><![CDATA[Author: AFP News Agency - Bewertung: 0x - Views:8 Steven Nelson has spent more than a dozen years on Death Row in Texas and is to be executed by lethal injection on Wednesday 5 February for a murder which he insists he did not commit. Nelson was convicted of the 2011 murder of Clint Dobson, a 28-...]]></description>
<link>https://isharestuff.com/de/2912182/nachrichten-politik/it-kind-of-breaks-you-every-day-life-on-death-row-in-texas-afp/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2912182/nachrichten-politik/it-kind-of-breaks-you-every-day-life-on-death-row-in-texas-afp/</guid>
<pubDate>Mon, 03 Feb 2025 20:45:06 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: AFP News Agency - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/V4imPwWoSH8?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Steven Nelson has spent more than a dozen years on Death Row in Texas and is to be executed by lethal injection on Wednesday 5 February for a murder which he insists he did not commit. Nelson was convicted of the 2011 murder of Clint Dobson, a 28-year-old pastor, during a robbery of the NorthPointe Baptist Church in Arlington, near Dallas. He acknowledges that he served as a lookout during the robbery and that he entered the church after the murder to steal some items, but says it his two accomplices, who were never brought to trial, are responsible for the murder.

Interested in licensing this video ? Get in touch 👉 http://u.afp.com/wvnD 
N.B.: AFP’s services and content are for professional use only<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - From Critical Making via unmaking towards (un)making]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:19 https://media.ccc.de/v/38c3-from-critical-making-via-unmaking-towards-un-making

In this talk, an advocate of (un)making, Yoshinari Nishiki, dives into the historical foundation of the concept. Starting from the Maker movement, transitioning to Crit...]]></description>
<link>https://isharestuff.com/de/2909874/it-sicherheit/38c3-from-critical-making-via-unmaking-towards-unmaking/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909874/it-sicherheit/38c3-from-critical-making-via-unmaking-towards-unmaking/</guid>
<pubDate>Sun, 02 Feb 2025 11:07:00 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:19 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/v17lwwkazpA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-from-critical-making-via-unmaking-towards-un-making

In this talk, an advocate of (un)making, Yoshinari Nishiki, dives into the historical foundation of the concept. Starting from the Maker movement, transitioning to Critical Making, evolving into unmaking, and culminating in (un)making, Yoshinari emphasizes a process defined by the deliberate absence of production, where (un)making itself embodies the act of not producing. Unmaking is a newly emerged term in the fields of HCI and design that references the idea of unlearning. In unmaking, researchers have explored the realms of making beyond the pursuit of plastic perfection: one prominent study investigated the aesthetics found in the processes of decay in 3D-printed objects. In (un)making, however—a variant of unmaking—Yoshinari attempts to step away from production itself while still generating monetary value.

As profit-making entities increasingly face pressure to claim—whether superficially or substantially—that they are reducing their environmental impact, the overall trend of relentless production remains largely unchanged and unchallenged. This raises a critical question: can we ever truly stop making? One reason we find it nearly impossible to stop is that the urge to make is deeply ingrained in our nervous systems.

While pioneering researchers have begun to explore this issue by moving beyond unlearning to the concept of unmaking, little insight has emerged regarding the dilemma of value creation. Put simply, people cannot stop making things because they need to keep earning. Universal Basic Income (UBI) is not a straightforward solution, as it could further reinforce the monetary logic of resource acquisition. Instead, we need to (re)develop skills to derive benefits from our surroundings with minimal effort.

This is precisely what Yoshinari Nishiki is exploring in his engineering PhD on (un)making. However, to address the historical complexities of production, it is essential to revisit the evolution of our modes of making. In this talk, Yoshinari carefully traces the origins of (un)making, from the Maker movement and Critical Making to the emerging concepts of unmaking and (un)making.

Yoshinari Nishiki

https://events.ccc.de/congress/2024/hub/event/from-critical-making-via-unmaking-towards-un-making/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - 7 Years Later: Why And How To Make Portable Open Hardware Computers]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:28 https://media.ccc.de/v/38c3-7-years-later-why-and-how-to-make-portable-open-hardware-computers

After more than 7 years, a small team of hackers and designers in Berlin are about to release the third generation of their Open Hardware laptop family: ...]]></description>
<link>https://isharestuff.com/de/2909873/it-sicherheit/38c3-7-years-later-why-and-how-to-make-portable-open-hardware-computers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909873/it-sicherheit/38c3-7-years-later-why-and-how-to-make-portable-open-hardware-computers/</guid>
<pubDate>Sun, 02 Feb 2025 11:05:59 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:28 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/6BrvscZN-Zk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-7-years-later-why-and-how-to-make-portable-open-hardware-computers

After more than 7 years, a small team of hackers and designers in Berlin are about to release the third generation of their Open Hardware laptop family: MNT Reform Next. Here, Lukas "minute" Hartmann will discuss why we need Open Hardware computers, what we learned through trial, error and hardship of designing and hand-assembling over 1000 of them by hand, and how you can claw back some autonomy over your hardware from Big Computer.

The talk will illustrate, with many pictures and without holding back, interesting problems and solutions we encountered while creating 3 laptops on shoestring budgets.
Aiming to inspire more people to take custom hardware into their own hands, I will quickly walk through the essential tools and methods that you can use to create your own Open Source Hardware computing devices or modifying existing ones, like:
  - How and why I choose chips and components
  - How to get them into KiCAD for electronics, and get boards made
  - Use FreeCAD and OpenSCAD for 3D modeling, and get enclosures made, also from unorthodox materials
  - Cables, connectors and screws considerations
  - Firmware and Kernel troubles (designing Hardware for Linux)
  - Our basics of community participation (GitLab, IRC, Discourse)

minute

https://events.ccc.de/congress/2024/hub/event/7-years-later-why-and-how-to-make-portable-open-hardware-computers/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Lightning Talks Day 2]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:6 https://media.ccc.de/v/38c3-lightning-talks-day-2

Lightning Talks are short lectures (almost) any congress participant may give! Bring your infectious enthusiasm to an audience with a short attention span! Discuss a program, system or technique! Pit...]]></description>
<link>https://isharestuff.com/de/2909580/it-sicherheit/38c3-lightning-talks-day-2/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909580/it-sicherheit/38c3-lightning-talks-day-2/</guid>
<pubDate>Sun, 02 Feb 2025 01:22:01 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:6 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/lwZpJ7oZn6k?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-lightning-talks-day-2

Lightning Talks are short lectures (almost) any congress participant may give! Bring your infectious enthusiasm to an audience with a short attention span! Discuss a program, system or technique! Pitch your projects and ideas or try to rally a crew of people to your party or assembly! Whatever you bring, make it quick!

11:00 Opening Lightningtalks
11:05 400kWp Eigenbau-PV als Genossenschaft,mherweg
11:10 The Shadow Life of Endless Pots.Jakob Kilian
11:15 Chaos Sticker Collection,mwarning
11:20 Eurobox,Ledge
11:25 Midimaxe,polygon
11:30 Hamburg Werbefrei - auf zum Volksbegehren!,N. E. Flick
11:35 Reliable Radio Communications,Bernerd DO3RB
11:40 "The Sound Of Data - Turning planets, DNA and stock prices into music",Jonas Scholten
11:45 "Moderne Landwirtschaft ist kaputt, oder?",twe
11:50 Old-School Demo-Effekte mit pyxel,Marco Bakera
11:55 RegretBlocker,Andreas Haupt
12:00 "Satzungsänderung unter Zuhilfenahme von ReStructuredText, Git und Python",adnidor
12:05 Pfandgeben die Plattform zum Pfandspenden,Chris
12:10 GLED,René
12:15 From Pixels to Procedures: An Open Source Design Suite for 2025,Dennis Kobert
12:20 Das bisschen Haushalt - lässt sich nicht gut verteilen,Rici
12:25 Freie Software in Organisationen - Das geht!,Leonard Marschke
12:30 Inside a modern groovebox,dena
12:35 GNU Boot,Denis 'GNUtoo' Carikli
12:40 Functional Safety over Industrial Ethernet - Broken by Design,Nick

Lightning Talk Speakers

https://events.ccc.de/congress/2024/hub/event/lightning-talks-day-2/

#38c3 #CCC

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - KLARHEIT ALS WAFFE]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:24 https://media.ccc.de/v/38c3-klarheit-als-waffe

UBERMORGEN infiltriert Kunst, Medien und digitale Monokulturen mit subversiver Affirmation. Wie Donald Trump auch, zerstören sie täglich ihr Geschäftsmodell, um daraus radikal neue Lösungen zu schaffen...]]></description>
<link>https://isharestuff.com/de/2909579/it-sicherheit/38c3-klarheit-als-waffe/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909579/it-sicherheit/38c3-klarheit-als-waffe/</guid>
<pubDate>Sun, 02 Feb 2025 01:21:01 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:24 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cvapxo648Zo?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-klarheit-als-waffe

UBERMORGEN infiltriert Kunst, Medien und digitale Monokulturen mit subversiver Affirmation. Wie Donald Trump auch, zerstören sie täglich ihr Geschäftsmodell, um daraus radikal neue Lösungen zu schaffen. Anhand von Projekten wie Vote-Auction, Google Will Eat Itself und PMC Wagner Arts dokumentieren sie ihre künstlerische Evolution im Never-Ending Now. Chaos ist ihre Methode, Kunst ihre Neue Ehrlichkeit, Klarheit ihre Waffe.

Der Vortrag, eine Mischung aus emotionalem Appell und intellektueller Analyse, thematisiert die Notwendigkeit von Klarheit und bewusster Simplifizierung als Gegengewicht zum Streben nach Perfektion in einer Welt der wahrgenommenen und effektiven Hyperkomplexität. UBERMORGEN stellt infrage, wie viel künstlerische Freiheit im aktuellen Zeitalter der „Happy Dystopia“ noch bleibt, respektive was ‘Radikaler Universalismus’ (Abstraktion zwecks Mustererkennung) für weitläufige Möglichkeiten in der Praxis eröffnen, und beleuchtet, wie ihre neuesten Werke das Potenzial kritischer Ästhetik und radikaler Experimente inmitten einer fragmentierten Informationslandschaft ermöglichen.

Luzius Bernhard, lizvlx (UBERMORGEN)

https://events.ccc.de/congress/2024/hub/event/klarheit-als-waffe/

#38c3 #ArtBeauty

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - OpenPV - Calculate the solar potential of your building]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:4 https://media.ccc.de/v/38c3-openpv-calculate-the-solar-potential-of-your-building

Simulating the photovoltaic potential of roofs and facades with WebGL and OpenData in real time

This talk is a deep dive into the open-source website [openpv.de](http...]]></description>
<link>https://isharestuff.com/de/2909578/it-sicherheit/38c3-openpv-calculate-the-solar-potential-of-your-building/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909578/it-sicherheit/38c3-openpv-calculate-the-solar-potential-of-your-building/</guid>
<pubDate>Sun, 02 Feb 2025 01:20:00 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:4 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/AZDjb-MrYik?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-openpv-calculate-the-solar-potential-of-your-building

Simulating the photovoltaic potential of roofs and facades with WebGL and OpenData in real time

This talk is a deep dive into the open-source website [openpv.de](https://www.openpv.de/) - prepare yourself for lots of open geodata, physics-based solar irradiance simulation, some shady WebGL code, and insights on how to get funding from the German government for your open-source project.
We will look at the available open data of 3D buildings, laser scans, and elevation models from Germany and how we navigated through the jungle of governmental open datasets. Having these valuable datasets allows us to do fancy things - like building a browser-based tool for solar potential simulation. This includes the task of performing physics-based simulation in WebGL, a nice problem we planned to solve in one afternoon but that ended up taking several weekends.
In the talk, we also share about the evolution of our project and our experience along the way. We started as a simple free-time project, but evolved and even received public funding from the German Prototype Fund in the end.

Come and listen to our talk if you
1. think about installing your own PV system,
2. love open geodata,
3. want to see some fancy 3D simulations in the browser.

Excusably, Martin Grosshauser

https://events.ccc.de/congress/2024/hub/event/openpv-calculate-the-solar-potential-of-your-building/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Die große Datenschutz-, Datenpannen- und DS-GVO-Show]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:13 https://media.ccc.de/v/38c3-die-groe-datenschutz-datenpannen-und-ds-gvo-show

Datenschutz darf auch Spaß machen, und alle können dabei etwas lernen, egal ob Einsteiger oder Profi-Hacker: Bei dem Datenschutz- und Datenpannen-Quiz kämpfen vier Kandida...]]></description>
<link>https://isharestuff.com/de/2909463/it-sicherheit/38c3-die-grosse-datenschutz-datenpannen-und-ds-gvo-show/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909463/it-sicherheit/38c3-die-grosse-datenschutz-datenpannen-und-ds-gvo-show/</guid>
<pubDate>Sat, 01 Feb 2025 21:41:54 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:13 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Fm1oI4smsDI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-die-groe-datenschutz-datenpannen-und-ds-gvo-show

Datenschutz darf auch Spaß machen, und alle können dabei etwas lernen, egal ob Einsteiger oder Profi-Hacker: Bei dem Datenschutz- und Datenpannen-Quiz kämpfen vier Kandidat:innen aus dem Publikum zusammen mit dem Publikum um den Sieg. Nicht nur Wissen rund um IT-Sicherheit und Datenschutz, sondern auch eine schnelle Reaktion und das nötige Quäntchen Glück entscheiden über Sieg und Niederlage. Die Unterhaltsame Datenschutz-Quiz-Show mit Bildungsauftrag!

Datenschutz wird oftmals als lästige Pflicht wahrgenommen – aber was will und macht Datenschutz, für was ist er sinnvoll und was ist zu beachten? Die Datenschutz- und DSGVO-Show vermittelt spielerisch Datenschutzgrundlagen, bietet einen Einblick in die Praxis der Datenschutz-Aufsichtsbehörden und zeigt typische technische wie rechtliche Fehler im Umgang mit personenbezogenen Daten. Aber auch für Datenschutz-Profis und Superhirne sind einige harte Nüsse dabei.

Der Moderator arbeitet beim Landesbeauftragten für den Datenschutz und die Informationsfreiheit Baden-Württemberg und berichtet aus der praktischen Arbeit einer Aufsichtsbehörde, nennt rechtliche Grundlagen, gibt Hinweise zu notwendigen technischen Maßnahmen nach Artikel 32 DS-GVO und die oftmals schwierige Risikoabschätzung nach „wir wurden gecybert“-Sicherheitsvorfällen.

Im Quiz selbst müssen die Kandidat:innen in ihren Antworten praktische Lösungsvorschläge für häufige technische und rechtliche Probleme vorschlagen, zum Beispiel welche technischen Maßnahmen bei bestimmten Datenpannen nach dem „Stand der Technik“ angebracht sind, ob man als Website-Betreiber denn nun Google Analytics nutzen darf oder wie man sich gegen (rechtswidrige) Datensammler wehrt. Dadurch können Teilnehmer wie Zuschauer die praktische Anwendung der DS-GVO spielerisch lernen.

Alvar C.H. Freude

https://events.ccc.de/congress/2024/hub/event/die-groe-datenschutz-datenpannen-und-ds-gvo-show/

#38c3 #Entertainment

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Rollstuhlgerechte Toiletten]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:16 https://media.ccc.de/v/38c3-rollstuhlgerechte-toiletten

Toiletten "für alle" sind in weiter Ferne. Wie muss eine Toilette gebaut werden, um tatsächlich für jede Person mit zum Beispiel einem Rollstuhl benutzbar zu sein? Diese Frage beantworten wir ...]]></description>
<link>https://isharestuff.com/de/2909462/it-sicherheit/38c3-rollstuhlgerechte-toiletten/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909462/it-sicherheit/38c3-rollstuhlgerechte-toiletten/</guid>
<pubDate>Sat, 01 Feb 2025 21:40:54 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:16 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/KOxQgbLxnNM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-rollstuhlgerechte-toiletten

Toiletten "für alle" sind in weiter Ferne. Wie muss eine Toilette gebaut werden, um tatsächlich für jede Person mit zum Beispiel einem Rollstuhl benutzbar zu sein? Diese Frage beantworten wir in diesem Talk.

Toiletten sind ein schwieriges Thema. Sie sind selten zu finden und meistens auch relativ dreckig. Aber was ist, wenn eine rollstuhlgerechte oder oder eine "Toilette für Alle" benötigt wird?

Als Chaos-Gemeinschaft und Haecksen tragen wir durch das Mieten von Objekten eine Mitverantwortung, Toiletten entsprechend verfügbar zu machen. Leider hat eine informelle Umfrage in 2024 von den Haecksen gezeigt, dass in Sachen rollstuhlgerechter Toiletten viele Hackspaces kein Angebot machen können. Wir erklären in diesem Talk die passenden DIN-Normen für eine rollstuhlgerechte Toilette und weihen euch in die Details hinter einer höhenverstellbaren Toilette ein.
Wir möchten euch mit diesem Vortrag befähigen, euch in eurer Mietsituation konstruktiv aufzustellen um eine Verbesserung in eurer Umgebung erzielen zu können.

melzai (she/her)

https://events.ccc.de/congress/2024/hub/event/rollstuhlgerechte-toiletten/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - read & delete]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:0 https://media.ccc.de/v/38c3-read-delete

Das Duo 'read & delete' präsentiert radikale philosophische Texte mit musikalischer Begleitung

...

Elektra

https://events.ccc.de/congress/2024/hub/event/read-delete/

#38c3 #Entertainment

Licensed to the p...]]></description>
<link>https://isharestuff.com/de/2909461/it-sicherheit/38c3-read-delete/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909461/it-sicherheit/38c3-read-delete/</guid>
<pubDate>Sat, 01 Feb 2025 21:39:53 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/S3mQngxvyOk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-read-delete

Das Duo 'read & delete' präsentiert radikale philosophische Texte mit musikalischer Begleitung

...

Elektra

https://events.ccc.de/congress/2024/hub/event/read-delete/

#38c3 #Entertainment

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Waiter, There's An LLM In My Search!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:3 https://media.ccc.de/v/38c3-waiter-there-s-an-llm-in-my-search

This year Large Language Models (LLMs) in search engines told us to put glue on our pizza and eat a small rock every day. This is not ideal, and the consequences of "AI Overviews" and si...]]></description>
<link>https://isharestuff.com/de/2909460/it-sicherheit/38c3-waiter-theres-an-llm-in-my-search/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909460/it-sicherheit/38c3-waiter-theres-an-llm-in-my-search/</guid>
<pubDate>Sat, 01 Feb 2025 21:38:53 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:3 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iGfvbhMURxM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-waiter-there-s-an-llm-in-my-search

This year Large Language Models (LLMs) in search engines told us to put glue on our pizza and eat a small rock every day. This is not ideal, and the consequences of "AI Overviews" and similar features could even be deadly for some people, like mushroom foragers. Maybe it's time for a new sort of search? In this talk I'll sketch out some possible futures and look at how we can put search back in the hands of the searcher. Also, there will be memes!

Overall, the state of search right now is: not good. Search engine results are full of AI generated sludge, SEO spam and self-dealing by providers. This talk will look at the options that are open to us to improve search somewhat, including a few tips and tricks that anyone can take advantage of today to make hyperscale search providers like Google more functional again. But in many ways the most interesting question is whether we can find ways to discover stuff online that don't rely on a handful of hyperscale providers to do all the web crawling and indexing, and servicing of people's queries. In particular, what would happen if search was federated - how could we make that scaleable and performant, and what can we learn from the fediverse?

martinh

https://events.ccc.de/congress/2024/hub/event/waiter-there-s-an-llm-in-my-search/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Prototypes to Props: How to Build and Hack in the Film/TV Industry]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:26 https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring m...]]></description>
<link>https://isharestuff.com/de/2909409/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909409/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</guid>
<pubDate>Sat, 01 Feb 2025 20:23:06 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:26 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/W9-6tASfPF4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring movie magic to life! Through real-world examples, this talk will explore the unique challenges of creating builds for the entertainment industry, from designing prototypes to filming the final sequence and everything in between.

Have you ever been asked to build a smoke grenade or blow up a car? With over 8 years of experience in the film industry, Davis is one of the hackers with the skills to accommodate these unusual requests. In this talk, we'll explore several of his favorite builds to highlight how anyone can get started combining art and hardware hacking on their own.

From CAD, to 3D printing, microcontroller programming, painting, weathering, cinematography, and more, discover how multiple disciplines blend together to create hacker movie magic!

Davis DeWitt

https://events.ccc.de/congress/2024/hub/event/prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Die Geschlechter denen die sie hacken: Selbstbestimmungsgesetz, Pinke Listen, Überwachungssta]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 10x - Views:145 https://media.ccc.de/v/38c3-die-geschlechter-denen-die-sie-hacken-selbstbestimmungsgesetz-pinke-listen-berwachungsstaat

Selbstbestimmung ein grundlegendes Prinzip des Hacken, ob technologisch oder geschlechtlich. Doch was wenn Selbstbestimmung nu...]]></description>
<link>https://isharestuff.com/de/2909379/it-sicherheit/38c3-die-geschlechter-denen-die-sie-hacken-selbstbestimmungsgesetz-pinke-listen-ueberwachungssta/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909379/it-sicherheit/38c3-die-geschlechter-denen-die-sie-hacken-selbstbestimmungsgesetz-pinke-listen-ueberwachungssta/</guid>
<pubDate>Sat, 01 Feb 2025 19:55:18 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 10x - Views:145 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/pzjaUdrAL2s?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-die-geschlechter-denen-die-sie-hacken-selbstbestimmungsgesetz-pinke-listen-berwachungsstaat

Selbstbestimmung ein grundlegendes Prinzip des Hacken, ob technologisch oder geschlechtlich. Doch was wenn Selbstbestimmung nur bedingt umsetzbar ist- im besten Fall und mit staatlicher Repression als Standard?
Selbstbestimmung selbst gemacht ist eine trans, inter, nonbinäre Aktionsgruppe deren Name Programm ist. Wir wollen das System hacken um wir selbst zu sein, Überwachungsfrei und mit (Kranken)Versicherung. Ob mögliche Informationsweitergabe/Offenbarungsgebot, für alle Menschen, ob Cis oder TIN*, das in letzter Minute für die Bezahlkarte aus dem mangelhaften „Selbstbestimmungs“Gesetz (SBSG) genommen wurde oder die Sabotage und Unmöglichmachung von geschlechtaffirmierender Gesundheitsversorgung- wir stehen wie migrantische Menschen im Mittelpunkt von staatlicher Überwachungsliebe und faschistischer Auslöschungsfantasien, jedoch unbeachtet im Chaos.
Wir wollen dies ändern- hier, dieses Jahr und für alle Zeit. Wir werden den Prozess des SBSG ergründen, den Zusammenhang von (Un)Sicherheitspaket, Überwachungsmaßnahmen und Transsein herstellen wie auch ganz nebenbei illegalisierte Praktiken versichern, durch die Geschlechts-zusatzversicherung. Nur eure Bühne wird gebraucht und die Tastaturen unser aller Geschwister.

Trans*, inter*, nicht-binäre (TIN*) Rechte und Datensicherheit gehen Hand in Hand. Das wollen wir in diesem Beitrag konkretisieren und für mehr Vernetzung zwischen Digitaler (Grund)rechte-/Datensicherheits-szene und TIN* Aktivismus eintreten. Dabei werden Zusammenhänge zwischen (Un)Sicherheitspaket, Überwachungsmaßnahmen und trans Geschlechtlichkeit erkundet und mit konkreten Gesetzesvorschlägen und aktivistischen Aktionen beantwortet, wie auch ein Einblick in die Teils starken parallelen In den Gesetzgebungsprozessen ermöglicht.

Seit 01.11.2024 ist in Deutschland das neue Selbstbestimmungsgesetz (SBGG) in Kraft, das die Änderung von Namens- und Geschlechtseinträgen für TIN* Personen erleichtern soll. Drei Tage vor der Verabschiedung des SBGG am 12.4.2024 wurde dabei das sogenannte “Offenbarungsgebot” im Tausch für die Bezahlkarte für Asylbewerbende aus dem Gesetz herausverhandelt: Insbesondere das Bundesinnenministerium wollte gern eine automatische Weiterleitung persönlicher Daten, darunter Adresse, alter und neuer Geschlechtseintrag, an elf staatliche Institutionen, darunter BKA, Verfassungsschutz, [wie heißen die nochmal richtig: Schwarzgelddezernat und illegale Waffen]. Zu den daraus resultierenden “pinken Listen” ist es nicht gekommen. Allerdings nur unter der Zusicherung, dass die entsprechende Überwachungsmaßnahme für alle Personenstandsänderungen verbindlich wird - das umfasst Eheschließungen, Adoption etc. Eine entsprechende Absichtserklärung sollte im Dezember in den Bundestag gegeben und beschlossen werden, letztlich und vermutlich aber durch das Ende der Ampel vereitelt wurde. Ob, wie und in welcher Form dieses Vorhaben weiterbesteht ist zum jetzigen Zeitpunkt unklar.

Datensicherheit und TIN* Rechte überschneiden sich hier unmittelbar. TIN* Personen werden gegen die Privatsphäre aller Menschen instrumentalisiert. In diesem Beitrag wollen wir darlegen, wie es dazu gekommen ist. Wir wollen auch erörtern, was daran schlecht ist und was wir tun können. Dazu werden wir unter andere die Abschnitte und Anschlussmöglichkeiten zur Datensicherheit aus unserem selbst geschriebenen, community produzierten Selbstbestimmungsgesetz 2.0 vorstellen. Wir wollen aber auch Vorschläge zu konkreten aktivistischen Aktionen machen. Dafür brauchen wir eure Bühne - und die Tastaturen unser aller Geschwister.

Jyn, Luce und Zoe für die Queerokratie, Nephthys, Luce deLire

https://events.ccc.de/congress/2024/hub/event/die-geschlechter-denen-die-sie-hacken-selbstbestimmungsgesetz-pinke-listen-berwachungsstaat/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Mit dem Kärcher durch die Datentröge der Polizeien]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:123 https://media.ccc.de/v/38c3-mit-dem-krcher-durch-die-datentrge-der-polizeien

Daten, Daten, Daten. Sicherheitsbehörden wollen immer mehr davon. Doch zu welchem Zweck und wo kommt machine learning ins Spiel? Wir liefern einen Überblick und bespreche...]]></description>
<link>https://isharestuff.com/de/2909378/it-sicherheit/38c3-mit-dem-kaercher-durch-die-datentroege-der-polizeien/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909378/it-sicherheit/38c3-mit-dem-kaercher-durch-die-datentroege-der-polizeien/</guid>
<pubDate>Sat, 01 Feb 2025 19:54:48 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:123 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/4JNWt_-VZao?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-mit-dem-krcher-durch-die-datentrge-der-polizeien

Daten, Daten, Daten. Sicherheitsbehörden wollen immer mehr davon. Doch zu welchem Zweck und wo kommt machine learning ins Spiel? Wir liefern einen Überblick und besprechen Auskunftsansprüche, Beschwerdemöglichkeiten und Gegenmaßnahmen.

Nicht erst seit dem diesjährigen Sicherheitspaket befinden sich deutsche Geheimdienste und Polizeibehörden in einer Datensammelwut. Spätestens seit dem 11. September 2001 und dem Terrorismusbekämpfungsgesetz dienen terroristische Anschläge als Legitimation für die Politik, den Sicherheitsbehörden die Befugnisse zu geben, die diese ohnehin schon lange fordern. Dabei wachsen die Datenbanken der Behörden stetig. Ihre Namen sind INPOL-neu, PMS links/rechts/sport oder rosa Liste (IGVP), ATD, PIAV (Polizeilicher Informations- und Analyseverbund). Oft kommt es vor, dass auch eigentlich Unbeteiligte in diesen Listen landen, so bleiben z. B. Personen gegen die ermittelt wurde, weiterhin in INPOL gespeichert, nachdem das Verfahren längst eingestellt wurde. Ebenso sollen, wie im Sicherheitspaket geplant, biometrischer Daten mit öffentlich im Internet verfügbaren Daten abgeglichen werden. Den Betroffenen ist dabei meist nicht klar, ob und in welchen Datenbanken sie landen; der Dschungel an Datenbanken und Zuständigkeiten ist auch kaum zu überblicken. Betroffene werden weder automatisch informiert noch gilt die DSGVO für Ermittlungsbehörden. Teilweise werden sogar gesetzliche Informationspflichten, wie beispielsweise über Unbeteiligte in Funkzellenabfrage schlicht nicht eingehalten.

Die immer größer werdenden Datenmengen sind kaum durch Menschen zu verarbeiten. Deshalb soll auf sogenannte künstliche Intelligenz wie autmatisierte Gesichtserkennung, Ganganalysen oder Analysen von "auffälligem Verhalten" gesetzt werden. Dabei werden Entscheidungen, die bisher durch Menschen getroffenen wurden, an Computer ausgelagert. Der Computer entscheidet also, wer am Bahnhof kontrolliert wird und damit über den Eingriff in dessen Grundrechte.

Was können wir tun?
Janik steht selbst in diversen Datenbanken der Polizei. Er erzählt im Vortrag über seinen langen Weg, um Auskunft bei den verschiedenen Landes- und Bundesbehörden zu erhalten. Entlang dieses Weges musste er Klage einreichen, weil die Behörden keine Auskunft erteilte, er musste Beschwerden beim BfDI einreichen, da das BKA Fotos von seinem Gesicht aus einer erkennungsdienstlichen Behandlung zweckentfremdete, um damit eine Marktanalyse von Gesichtserkennungssoftwaren durchzuführen.

Seine Rechtsanwältin Bea erklärt die rechtlichen Hintergründe und setzt sich mit der Frage auseinander, mit welcher Vorstellung von Verantwortung im polizeilichen Dienst wir es zukünftig zu tun haben werden.

bea, besen

https://events.ccc.de/congress/2024/hub/event/mit-dem-krcher-durch-die-datentrge-der-polizeien/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Als die Kommentarspalten brannten – 11 Monate Einsatz in Gaza]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:46 https://media.ccc.de/v/38c3-als-die-kommentarspalten-brannten-11-monate-einsatz-in-gaza

Der Krieg in Gaza als Reaktion auf die Terrorattacke vom 7. Oktober läuft mittlerweile über ein Jahr. Cadus ist seit Februar diesen Jahres in Gaza im Einsatz. A...]]></description>
<link>https://isharestuff.com/de/2909377/it-sicherheit/38c3-als-die-kommentarspalten-brannten-11-monate-einsatz-in-gaza/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909377/it-sicherheit/38c3-als-die-kommentarspalten-brannten-11-monate-einsatz-in-gaza/</guid>
<pubDate>Sat, 01 Feb 2025 19:54:18 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:46 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/jgQWH8pOL9g?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-als-die-kommentarspalten-brannten-11-monate-einsatz-in-gaza

Der Krieg in Gaza als Reaktion auf die Terrorattacke vom 7. Oktober läuft mittlerweile über ein Jahr. Cadus ist seit Februar diesen Jahres in Gaza im Einsatz. Auch seit Februar diesen Jahres teilen wir wie so viele andere die Erfahrung, das vor dem Hintergrund unseres Einsatzes fernab von Gaza sich leidenschaftlich „politisch“ auseinandergesetzt wird. Nicht ÜBER unseren Einsatz wohlgemerkt, sondern darüber, ob wir jetzt die eine oder andere Seite genug verurteilen würden für die Art und Weise wie der Krieg geführt wird. In unserem Talk „Als die Kommentarspalten brannten – 11 Monate Einsatz in Gaza“ sprechen wir über die Herausforderungen, die unseren Einsatz tatsächlich begleiten.

Cadus ist seit Februar 2024 in Gaza im Einsatz. Unsere Arbeit dort umfasst die Stabilisierung schwerstverletzter Zivilist*innen, medical evacuations und Unterstützung/medizinische Absicherung der Einsätze des United Nations Mine Action Service. Dieser Einsatz ist in Bezug auf die Herausfoderungen auf vielen Ebenen noch einmal deutlich anspruchsvoller als das, was wir als CADUS aus anderen Kriegsgebieten gewohnt sind. Seit Februar haben wir mehr als 3500 schwerstverletzte Patient*innen behandelt und mehrere hundert Menschen innerhalb Gazas und aus Gaza heraus evakuiert.

Wir beleuchten unseren Katastrophenhilfe-Einsatz aus drei unterschiedlichen Blickwinkeln. Sebastian wird über die logistischen und administrativen Herausforderungen unseres Einsatzes reden. Wie geht das, in einem der aktuell gefährlichsten Kriegsgebiete einen Hilfseinsatz zu starten und am laufen zu halten? Vor allem unter Berücksichtigung der bestehenden umfassenden Embargos und der Behinderungen humanitärer Hilfe

Anna-Lea berichtet darüber, wie wir unsere Teams auf den Einsatz vorbereiten, wie wir versuchen sie während des Einsatzes zu unterstützen, und wie ein Nachsorgeangebot aussehen kann (und muss) für Leute die freiwillig in so einen Einsatz gehen.

Mit Nic Zemke hatten wir passend zum 38c3 einen echten Nerd im Einsatz, der darüber sprechen wird wie derzeit Hilfsorganisationen und Vereinte Nationen KML-Files mit überlebenswichtigen Informationen über WhatsApp hin und her schicken und wie wir ein für die Seenotrettung entwickeltes Geoinformationssystem in kürzester Zeit so umgebaut haben, dass die Koordination von Hilfseinsätzen bald hoffentlich weniger Fehleranfällig läuft.

Sebastian Jünemann, Anna-Lea Göhl, Nic Zemke

https://events.ccc.de/congress/2024/hub/event/als-die-kommentarspalten-brannten-11-monate-einsatz-in-gaza/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Feelings are Facts: Love, Privacy, and the Politics of Intellectual Shame]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:29 https://media.ccc.de/v/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame

A debut of new research and analysis, focused on emotions and the affective register—love! shame! intimacy!

What happens when we put love and intima...]]></description>
<link>https://isharestuff.com/de/2909376/it-sicherheit/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909376/it-sicherheit/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/</guid>
<pubDate>Sat, 01 Feb 2025 19:53:48 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:29 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cbr9yiJk3Xw?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame

A debut of new research and analysis, focused on emotions and the affective register—love! shame! intimacy!

What happens when we put love and intimacy at the center of our understanding of privacy, and what are the consequences of their disavowal, in favor of a more familiar technocratic definition of privacy-as-absense? What role does our deep desire for love and belonging, and our concomitant fear of shame and rejection, have to do with the (mis)direction of tech capital and the current, warped shape of the tech industry and its products? We take these questions seriously, and work through their implications together in Hamburg during that brief, liminal window between the winter holidays and the new year.

Meredith Whittaker

https://events.ccc.de/congress/2024/hub/event/feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/

#38c3 #CCC

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Proprietary silicon ICs and dubious marketing claims? Let's fight those with a microscope!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:26 https://media.ccc.de/v/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope

Custom silicon chips are black boxes that hold many secrets, like internal ROMs, security features and audio DSP algorithms. How do...]]></description>
<link>https://isharestuff.com/de/2909375/it-sicherheit/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-lets-fight-those-with-a-microscope/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909375/it-sicherheit/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-lets-fight-those-with-a-microscope/</guid>
<pubDate>Sat, 01 Feb 2025 19:53:18 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:26 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/YHkSI-CxK_I?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope

Custom silicon chips are black boxes that hold many secrets, like internal ROMs, security features and audio DSP algorithms. How does one start reverse engineer them? Let's look at the basics of silicon reverse engineering, what gate array chips are, and how some tooling can generate Verilog code automatically from a die shot.

A digital synthesizer from 1986 was completely shrouded in mystery and dubious marketing claims. Being that old, eventually every working unit will break, leaving us with the no info about its inner workings. I could not accept this, so I decided to get into silicon reverse engineering. By dissolving its undocumented custom chips into acid and looking at them through a microscope, I was able to get an understanding of what was going on internally, to be able to preserve it and emulate it in the future.

This is possible because lot of custom silicon chips from that era (80s and 90s) are of the "gate array" type: a grid-like structure that contains thousands of digital logic gates. By looking at them closely we can understand what those gates do, and by following the wiring between them we can reconstruct the entire system. This method allowed people to understand and recreate perfect emulations of arcade games, sound chips, security ICs and more.

In this talk I want to tell my journey into silicon reverse engineering from my perspective of a complete beginner and software guy, and what I learned in the process. I will go through the different kinds of custom chips, how they look under a microscope, their different parts, what can be easily reverse engineered and what can not. Those chips do not only contain logic, but also RAM and ROM parts, and knowing how to identify them can give clues when looking at the logic is too complicated. Sometimes a chip can be completely understood even without knowing that a MOSFET is.

I will also cover the process I used for reverse engineer them, some techniques that worked and some that didn't, and some tools I built to automatically extract mask ROMs and generate Verilog code from die shots.

giulioz

https://events.ccc.de/congress/2024/hub/event/proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - IRIS: Non-Destructive Inspection of Silicon]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2x - Views:46 https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and...]]></description>
<link>https://isharestuff.com/de/2909374/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909374/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</guid>
<pubDate>Sat, 01 Feb 2025 19:52:47 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2x - Views:46 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/hMXJ5PEwwXM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and provide supporting evidence of its correct construction, without desoldering chips or expensive analytical gear. This talk covers the theory behind IRIS, as well as some embodiments of the technique. I will also frame the relevance of IRIS in the face of various threat scenarios. Time permitting, I’ll also show how you can do it at home by peeking around a few chips as a demo.

Do we really know what chips are inside our devices? To a first order, the answer is “no”. We can read the label printed on the chip's package, but most of us have no way to determine if the silicon actually matches what’s on the label.

This lack of transparency has lead to much hand-wringing about the safety of our global supply chains, as chips zig-zag the globe on their way to our doorstep: each stop is an opportunity for bad actors to inject malicious hardware, and those of us without access to million-dollar analytical gear have no way of detecting this.

IRIS (Infra-Red, *in situ*) is a technique I have been developing that aims to democratize the inspection of silicon. It turns out that for a select but fairly common type of chip - those in chip-scale packages - a simple modification to an off the shelf microscope camera can enable the visualization of micron-scale features within – without requiring any nasty chemicals or desoldering chips. I will also show how the basic everyday technique can be combined with a Jubilee 3D motion platform to create detailed, full-chip images.

This talk will cover the basic theory behind the technique, and frame it in the context of several hypothetical threat scenarios that highlight its strengths and limitations. It is important to understand that IRIS is not a panacea for chip verification, but it is a significant step forward in improving transparency. I will also discuss its potential as a new tool for system designers who are serious about enabling user-level hardware verification.

Finally, time permitting and equipment cooperating, I would like to share the simple pleasure of being able to take a peek inside the chips of some common mobile phone motherboards with a live demo.

Andrew 'bunnie' Huang

https://events.ccc.de/congress/2024/hub/event/iris-non-destructive-inspection-of-silicon/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Operation Mindfuck Vol. 7]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 7x - Views:92 https://media.ccc.de/v/38c3-operation-mindfuck-vol-7

For the seventh time, we'll present a colorful potpourri of nerdsniping topics: some of our favorite facts about computers, art, and the world! We draw a lot of inspiration from new and absurd id...]]></description>
<link>https://isharestuff.com/de/2909373/it-sicherheit/38c3-operation-mindfuck-vol-7/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909373/it-sicherheit/38c3-operation-mindfuck-vol-7/</guid>
<pubDate>Sat, 01 Feb 2025 19:52:17 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 7x - Views:92 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/D7ExpBLgyvk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-operation-mindfuck-vol-7

For the seventh time, we'll present a colorful potpourri of nerdsniping topics: some of our favorite facts about computers, art, and the world! We draw a lot of inspiration from new and absurd ideas, and we'd like to share that enthusiasm with you!

- [Vol. 1](https://blinry.org/operation-mindfuck/) (German)
- [Vol. 2](https://blinry.org/operation-mindfuck-2/) (German)
- [Vol. 3](https://blinry.org/operation-mindfuck-3/) (German)
- [Vol. 4](https://blinry.org/operation-mindfuck-4/) (English)
- [Vol. 5](https://blinry.org/operation-mindfuck-5/) (English)
- [Vol. 6](https://blinry.org/operation-mindfuck-6/) (English)

blinry, bleeptrack

https://events.ccc.de/congress/2024/hub/event/operation-mindfuck-vol-7/

#38c3 #Entertainment

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Opt Green: Coordinating a Windows 10-to-Linux upcycling campaign across Free Software communi]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:15 https://media.ccc.de/v/38c3-opt-green-coordinating-a-windows-10-to-linux-upcycling-campaign-across-free-software-communities-worldwide

Windows 10 security updates end on 14 October 2025, KDE's 29th birthday and also, ironically, International E-Was...]]></description>
<link>https://isharestuff.com/de/2909372/it-sicherheit/38c3-opt-green-coordinating-a-windows-10-to-linux-upcycling-campaign-across-free-software-communi/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909372/it-sicherheit/38c3-opt-green-coordinating-a-windows-10-to-linux-upcycling-campaign-across-free-software-communi/</guid>
<pubDate>Sat, 01 Feb 2025 19:51:47 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:15 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/QYA96y8w5-4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-opt-green-coordinating-a-windows-10-to-linux-upcycling-campaign-across-free-software-communities-worldwide

Windows 10 security updates end on 14 October 2025, KDE's 29th birthday and also, ironically, International E-Waste Day [1] (you cannot make these things up!). Hundreds of millions of functioning devices [2] will become e-waste. This means manufacturing and transporting new ones, which is perhaps the biggest waste of all: hardware production alone can account for over 75% of a device's CO2 emissions over its lifespan.

Free Software is a solution, today, and if we work together Windows 10 could truly be the last version of Windows users ever use! In this talk I will present the issue of e-waste and the importance of right-to-repair software, and invite the audience to participate in coordinating a global, unified Free Software campaign over the next year to raise awareness about the environmental harm of software-driven hardware obsolescence, while promoting upgrading users from Windows 10 to GNU/Linux directly. Extending hardware's operating life with Free Software is good for users, and better for the environment. Let's think big and act boldly as a unified community! 

[0] https://arstechnica.com/gadgets/2024/10/lots-of-pcs-are-poised-to-fall-off-the-windows-10-update-cliff-one-year-from-today/
[1] https://weee-forum.org/iewd-about/
[2] https://www.canalys.com/insights/end-of-windows-10-support-could-turn-240-million-pcs-into-e-waste

This is a talk about digital sustainability and the role software plays in hardware longevity.

joseph

https://events.ccc.de/congress/2024/hub/event/opt-green-coordinating-a-windows-10-to-linux-upcycling-campaign-across-free-software-communities-worldwide/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Transitous - offener Routingdienst für öffentliche Verkehrsmittel]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:27 https://media.ccc.de/v/38c3-transitous-offener-routingdienst-fr-ffentliche-verkehrsmittel

Unabhängige Apps für den öffentlichen Nahverkehr stehen häufig vor dem Problem, dass sie durch die vielen separaten APIs der Verkehrsbetriebe eingeschränkt si...]]></description>
<link>https://isharestuff.com/de/2909371/it-sicherheit/38c3-transitous-offener-routingdienst-fuer-oeffentliche-verkehrsmittel/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909371/it-sicherheit/38c3-transitous-offener-routingdienst-fuer-oeffentliche-verkehrsmittel/</guid>
<pubDate>Sat, 01 Feb 2025 19:51:17 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:27 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/8XVVx-212Qc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-transitous-offener-routingdienst-fr-ffentliche-verkehrsmittel

Unabhängige Apps für den öffentlichen Nahverkehr stehen häufig vor dem Problem, dass sie durch die vielen separaten APIs der Verkehrsbetriebe eingeschränkt sind, die oft nicht über die vollständigen Daten der anderen Betreiber verfügen.

Dies macht es unmöglich, vollständige Routen zu erhalten. In Städten wie Paris ist z.B. die Kenntnis der örtlichen Metro erforderlich, da die verschiedenen Bahnhöfe nicht direkt miteinander verbunden sind.

Transitous will dieses Problem auf der Grundlage öffentlich zugänglicher Fahrplandaten lösen.

Bestehende Routing-Lösungen aus der Community waren nur für Fahrräder, Autos oder Fußgänger verfügbar.

Dadurch blieb den Apps für den öffentlichen Verkehr nur die Möglichkeit, viele verschiedene Betreiber-APIs mit begrenzten Daten zu verwenden.

Einige überließen die Wahl der besten API der Nutzer*in oder versuchten, die beste API auf der Grundlage der regionalen Abdeckung automatisch auszuwählen.

Dies verhinderte, Verbindungen über größere Entfernungen einschließlich des Nahverkehrs mit einer einzelnen Anfrage finden zu können.

Mit neueren freien und quelloffenen intermodalen Routing-Engines wie MOTIS und der zunehmenden Verfügbarkeit von Fahrplänen der öffentlichen Verkehrsmittel im GTFS- und GTFS-RT-Format im Internet wurde es möglich, dieses Problem zu lösen.

In diesem Talk wird vorgestellt, was wir bisher erreicht haben und wie das Projekt weiterentwickelt und genutzt werden kann.

Jonah Brüchert

https://events.ccc.de/congress/2024/hub/event/transitous-offener-routingdienst-fr-ffentliche-verkehrsmittel/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Reticulum: Unstoppable Networks for The People]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:120 https://media.ccc.de/v/38c3-reticulum-unstoppable-networks-for-the-people

Reticulum is a cryptography-based networking stack for building local and wide-area networks with readily available hardware. Reticulum can continue to operate even in adver...]]></description>
<link>https://isharestuff.com/de/2909284/it-sicherheit/38c3-reticulum-unstoppable-networks-for-the-people/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909284/it-sicherheit/38c3-reticulum-unstoppable-networks-for-the-people/</guid>
<pubDate>Sat, 01 Feb 2025 18:07:52 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:120 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/iHLLDnRRYKI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-reticulum-unstoppable-networks-for-the-people

Reticulum is a cryptography-based networking stack for building local and wide-area networks with readily available hardware. Reticulum can continue to operate even in adverse conditions with very high latency and extremely low bandwidth. The vision of Reticulum is to allow anyone to operate their own sovereign communication networks, and to make it cheap and easy to cover vast areas with a myriad of independent, interconnectable and autonomous networks.

On this talk we shall present Reticulum, a highly resilient cryptography-based networking stack, that you can use to get out of the shackles of surveillance corporate networks. Reticulum is a tool for building networks. Networks without kill-switches, surveillance, censorship and control. Networks that can freely interoperate, associate and disassociate with each other. Reticulum is Networks for Human Beings.
It solves the same problem that any network stack does, namely to get data reliably from one point to another over a number of intermediaries. But it does so in a way that is very different from other networking technologies:

- Reticulum does not use source addresses. No packets transmitted include information about the address, place, machine or person they originated from.
- There is no central control over the address space in Reticulum. Anyone can allocate as many addresses as they need, when they need them.
- Reticulum ensures end-to-end connectivity. Newly generated addresses become globally reachable in a matter of seconds to a few minutes.
- Addresses are self-sovereign and portable. Once an address has been created, it can be moved physically to another place in the network, and continue to be reachable.
- All communication is secured with strong, modern encryption by default.
- All encryption keys are ephemeral, and communication offers forward secrecy by default.
- It is not possible to establish unencrypted links in Reticulum networks.
- It is not possible to send unencrypted packets to any destinations in the network.
- Destinations receiving unencrypted packets will drop them as invalid.

markqvist

https://events.ccc.de/congress/2024/hub/event/reticulum-unstoppable-networks-for-the-people/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Der Mythos der „gezielten Tötung”. Zur Verantwortung von KI-gestützten Zielsystemen am Beispi]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 43x - Views:725 https://media.ccc.de/v/38c3-der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender

Das Lavender-KI-Zielsystem zeigt gut, wie Kriegsautomatisierung aktuell aussieht und was daran falsch läuft.

Das Them...]]></description>
<link>https://isharestuff.com/de/2909206/it-sicherheit/38c3-der-mythos-der-gezielten-toetung-zur-verantwortung-von-ki-gestuetzten-zielsystemen-am-beispi/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909206/it-sicherheit/38c3-der-mythos-der-gezielten-toetung-zur-verantwortung-von-ki-gestuetzten-zielsystemen-am-beispi/</guid>
<pubDate>Sat, 01 Feb 2025 16:55:52 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 43x - Views:725 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/oTJnz1N23r8?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender

Das Lavender-KI-Zielsystem zeigt gut, wie Kriegsautomatisierung aktuell aussieht und was daran falsch läuft.

Das Thema „KI in der Militärtechnik“ und die Beziehung zwischen Mensch und Maschine ist seit Jahrzehnten ein theoretisches Thema in der Philosophie, den Sozialwissenschaften und den kritischen Algorithmus-Studien. Doch in den letzten Jahren wurden Waffensysteme mit KI-Komponenten entwickelt und jüngst in bewaffneten Konflikten praktisch eingesetzt. Am Beispiel des KI-gestützten Zielwahlsystem Lavender, das vom israelischen Militär IDF im derzeit laufenden Gaza-Krieg eingesetzt wird, werden die aktuellen Entwicklungen aufgezeigt und in den historisch-technischen Kontext der „Signature Strikes“ der USA in Waziristan (Pakistan) oder Afghanistan gesetzt, sowie konkrete technische Designentscheidungen vorgestellt und kritisch diskutiert. Dabei entstehen auch Fragen von Verantwortungsverlagerung und Rechtsumgehung.

Die hier vorgestellten Erkenntnisse beruhen auf einer gemeinsamen Analyse von Expert:innen des Forums InformatikerInnen für Frieden und Gesellschaftliche Verantwortung (FIfF e.V.) zusammen mit der Informationsstelle Militarisierung (IMI e.V.) und der Arbeitskreis gegen bewaffnete Drohnen e.V., die die Praxis der KI-basierten „gezielten Tötung“ wie etwa durch Lavender als Kriegsverbrechen zu ächten sucht.

Rainer Rehak

https://events.ccc.de/congress/2024/hub/event/der-mythos-der-gezielten-ttung-zur-verantwortung-von-ki-gesttzten-zielsystemen-am-beispiel-lavender/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Software accessibility without the fuzz]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 8x - Views:129 https://media.ccc.de/v/38c3-software-accessibility-without-the-fuzz

We've all heard how important digital accessibility is, at this point. But how does one get started with this complex topic? Let's cover all the techy basics!

Software accessibil...]]></description>
<link>https://isharestuff.com/de/2909205/it-sicherheit/38c3-software-accessibility-without-the-fuzz/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909205/it-sicherheit/38c3-software-accessibility-without-the-fuzz/</guid>
<pubDate>Sat, 01 Feb 2025 16:55:20 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 8x - Views:129 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/fvD9p2c4GPU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-software-accessibility-without-the-fuzz

We've all heard how important digital accessibility is, at this point. But how does one get started with this complex topic? Let's cover all the techy basics!

Software accessibility is important, we all know that by now. In the past years while working as an accessibility consultant, many people have asked me the very same question: How do I get started with this? I'm overwhelmed by all the different resources! Heck, I can't find anything useful!

In all fairness, I get you. There's so much fuzz surrounding this. Social workers will feel right at home because of this, but frankly, for us techies, it just doesn't work that way. We would like to know what to do precisely, or at least dive deeper into a topic on our own terms.

In this talk, I would like to give a brief overview over what's important only for programmers and where you can educate yourself further. We can do this together!

Casey Kreer

https://events.ccc.de/congress/2024/hub/event/software-accessibility-without-the-fuzz/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Automated Malfare - discriminatory effects of welfare automation]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 10x - Views:112 https://media.ccc.de/v/38c3-automated-malfare-discriminatory-effects-of-welfare-automation

An increasing number of countries is implementing algorithmic decision-making and fraud detection systems within their social benefits system. Instead of i...]]></description>
<link>https://isharestuff.com/de/2909204/it-sicherheit/38c3-automated-malfare-discriminatory-effects-of-welfare-automation/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909204/it-sicherheit/38c3-automated-malfare-discriminatory-effects-of-welfare-automation/</guid>
<pubDate>Sat, 01 Feb 2025 16:55:13 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 10x - Views:112 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/dskx0H-5tbM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-automated-malfare-discriminatory-effects-of-welfare-automation

An increasing number of countries is implementing algorithmic decision-making and fraud detection systems within their social benefits system. Instead of improving decision fairness and ensuring effective procedures, these systems often reinforce preexisting discriminations and injustices. The talk presents case studies of automation in the welfare systems of the Netherlands, India, Serbia and Denmark, based on research by Amnesty International.

Social security benefits provide a safety net for those who are dependent on support in order to make a living. Poverty and other forms of discrimination often come together for those affected. But what happens, when states decide to use Social Benefit Systems as a playground for automated decision making? Promising more fair and effective public services, a closer investigation reveals reinforcements of discriminations due to the kind of algorithms and quality of the input data on the one hand and a large-scale use of mass surveillance techniques in order to generate data to feed the systems with on the other hand.

Amnesty International has conducted case studies in the Netherlands, India, Serbia and, most recently, Denmark. In the Netherlands, the fraud detection algorithm under investigation in 2021 was found to be clearly discriminatory. The algorithm uses nationality as a risk factor, and the automated decisions went largely unchallenged by the authorities, leading to severe and unjustified subsidy cuts for many families. The more recent Danish system takes a more holistic approach, taking into account a huge amount of private data and some dozens of algorithms, resulting in a system that could well fall under the EU's own AI law definition of a social scoring system, which is prohibited. In the cases of India and Serbia, intransparency, problems with data integrity, automation bias and increased surveillance have also led to severe human rights violations.

AmnestyDigital

https://events.ccc.de/congress/2024/hub/event/automated-malfare-discriminatory-effects-of-welfare-automation/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Hackspace-Vorstellungen]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:198 https://media.ccc.de/v/38c3-hackspace-vorstellungen

Eine Vorstellung der Hackspaces

Eine Vorstellung der Hackspaces

organisiert via wiki at https://events.ccc.de/congress/2024/hub/de/wiki/hackspace-vorstellungen/

deanna

https://events.ccc.de/c...]]></description>
<link>https://isharestuff.com/de/2909203/it-sicherheit/38c3-hackspace-vorstellungen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909203/it-sicherheit/38c3-hackspace-vorstellungen/</guid>
<pubDate>Sat, 01 Feb 2025 16:55:11 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:198 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/7hb3rWHCOvA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-hackspace-vorstellungen

Eine Vorstellung der Hackspaces

Eine Vorstellung der Hackspaces

organisiert via wiki at https://events.ccc.de/congress/2024/hub/de/wiki/hackspace-vorstellungen/

deanna

https://events.ccc.de/congress/2024/hub/event/hackspace-vorstellungen/

#38c3 #CCC

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Der Schlüssel zur COMpromittierung: Local Privilege Escalation Schwachstellen in AV/EDRs]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:247 https://media.ccc.de/v/38c3-der-schlssel-zur-compromittierung-local-privilege-escalation-schwachstellen-in-av-edrs

Im vergangenen Jahr wurden von uns in fünf kritische Schwachstellen in Endpoint Protection Software entdeckt, die es uns ermöglichen...]]></description>
<link>https://isharestuff.com/de/2909202/it-sicherheit/38c3-der-schluessel-zur-compromittierung-local-privilege-escalation-schwachstellen-in-avedrs/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909202/it-sicherheit/38c3-der-schluessel-zur-compromittierung-local-privilege-escalation-schwachstellen-in-avedrs/</guid>
<pubDate>Sat, 01 Feb 2025 16:54:51 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:247 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/c-B02ikYwco?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-der-schlssel-zur-compromittierung-local-privilege-escalation-schwachstellen-in-av-edrs

Im vergangenen Jahr wurden von uns in fünf kritische Schwachstellen in Endpoint Protection Software entdeckt, die es uns ermöglichen, auf Basis von COM-Hijacking unsere Privilegien auf Windows-Endpunkten zu erweitern. In diesem Vortrag demonstrieren wir, wie COM-Hijacking genutzt werden kann, um Code im Kontext geschützter Frontend-Prozesse auszuführen. Zudem zeigen wir auf, wie COM Hijacking das Vertrauensverhältnis zwischen geschützten Frontend-Prozessen und Backend-Diensten aushebelt um höhere Privilegien (Local Privilege Escalation) auf Systemen zu erhalten. Des Weiteren erklären wir unsere Methodik und Vorgehensweise um solche Schwachstellen zu finden und auszunutzen. Abschließend enthüllen wir Details zu den von uns gefundenen Schwachstellen und diskutieren mögliche Gegenmaßnahmen.

COM-Hijacking ist vor allem als Technik bekannt, um auf Windows-Endpunkten Persistenz zu erreichen. In diesem Vortrag stellen wir jedoch eine weniger bekannte, aber äußerst wirkungsvolle Anwendung vor: Wir haben COM-Hijacking eingesetzt, um Code in die geschützten Frontend-Prozesse von Sicherheitsprodukten einzuschleusen. Dadurch konnten wir die Vertrauensbeziehung zwischen diesen Prozessen und den privilegierten Backends ausnutzen und hohe Privilegien auf dem Endpunkt erlangen.

In unserem Vortrag erläutern wir detailliert unsere Vorgehensweise zur Identifikation dieser Schwachstellen und stellen die technischen Aspekte der von uns entdeckten Lücken im Detail vor. Im ersten Teil des Vortrags zeigen wir, wie wir mittels COM-Hijacking in der Lage waren, Code im Kontext der geschützten Frontend-Prozesse auszuführen. Im zweiten Teil analysieren wir die Kommunikationsmechanismen zwischen Frontend und Backend und legen offen, wie wir diese Vertrauensverbindung kompromittieren konnten. Abschließend erklären wir verschiedene Techniken, die es uns ermöglichte, unsere Privilegien auf Systemebene erfolgreich zu erweitern und diskutieren Gegenmaßnahmen die ähnliche Schwachstellen verhindern könnten.

Kolja Grassmann, Alain Rödel

https://events.ccc.de/congress/2024/hub/event/der-schlssel-zur-compromittierung-local-privilege-escalation-schwachstellen-in-av-edrs/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Fehlercode 406: Request not acceptable. Digitalzwang als Human Security-Problem]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 7x - Views:124 https://media.ccc.de/v/38c3-fehlercode-406-request-not-acceptable-digitalzwang-als-human-security-problem

Schon die neue Bahncard in der App integriert und dabei erfolglos versucht, dem Tracking auszuweichen? 
Digitalzwang kostet: Und zwar uns, de...]]></description>
<link>https://isharestuff.com/de/2909201/it-sicherheit/38c3-fehlercode-406-request-not-acceptable-digitalzwang-als-human-security-problem/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909201/it-sicherheit/38c3-fehlercode-406-request-not-acceptable-digitalzwang-als-human-security-problem/</guid>
<pubDate>Sat, 01 Feb 2025 16:54:19 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 7x - Views:124 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/QFjWlWaOIQw?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-fehlercode-406-request-not-acceptable-digitalzwang-als-human-security-problem

Schon die neue Bahncard in der App integriert und dabei erfolglos versucht, dem Tracking auszuweichen? 
Digitalzwang kostet: Und zwar uns, den Nutzer:innen von Diensten von Unternehmen, Behörden, oder anderen Anbietern (auch du, Deutsche Bahn!). Dabei ist es weniger ein Problem, ob digitalisiert wird, sondern wie. Ich argumentiere, dass mit der fortschreitenden Digitalisierung eine Bringschuld von Anbietern auf die einzelnen Verbraucher:innen übertragen wird. 
Betroffene von Digitalzwang erfahren dabei höhere Kosten in ihrem Alltag: Sie müssen mehr Geld ausgeben, um einer Datenabgabe zu entkommen, oder brauchen mehr Zeit für Dienstleistungen, weil diese sie ausschließen. Dabei reicht der Rahmen über die vermeintlich Technik-feindlichen Senioren weit hinaus, und betrifft arme, körperlich behinderte, oder Datenschutz-affine Menschen genau so. 
Digitalcourage hat bereits beim Fireshonks 2022 ein Best-Off ihres Digitalzwangmelders vorgestellt. Ich habe jetzt eine Übersicht aufgebaut, um das Problem zu visualisieren. Durch die Analyse von Forschungsinterviews mit Betroffenen zeige ich, wer von Digitalzwang betroffen ist, in welchen Formen Digitalzwang auftritt, und welche Auswirkungen er auf ihr Leben hat. Dabei zeige ich, dass der Digitalzwang in seinen verschiedenen Facetten mehr ist als nur „unangenehm“: Er wirkt als Brennglas für bestehende Probleme und führt zu Ausgrenzungen und Einschränkungen.

Computer können das Leben verbessern. Digitalisierung macht viele Prozesse schneller und leichter umsetzbar, zumindest in der Theorie. Was aber, wenn man gar keinen Zugang zu digitalen Angeboten hat, oder ihn aus Sorge von Datenmissbrauch ausschließen muss? Armut, Behinderung, fehlende Umgangserfahrung oder eine hohe Datenhygiene führen dazu, dass Menschen sich im Alltag einschränken müssen, weil ihnen der Zugang zu einem Gut nicht offen steht. Das geht los bei Rabattaktionen im Supermarkt und geht bis zu Einschränkungen in der Mobilität – die Deutsch Bahn lässt grüßen.
Ich zeige, in welchen Bereichen des Lebens Digitalzwang auftritt und wie vielseitig er sich gestaltet. Hierfür habe ich Forschungsinterviews mit Menschen geführt, die sich von Digitalzwang betroffen sehen. Im Gespräch habe ich erfahren, mit welchen Formen des Zwangs sie konfrontiert waren und wie schwer diese Eingriffe waren. Dabei zeigt sich, dass Digitalzwang zwar ein Problem für sich ist, jedoch oft intersektionell wirkt: Armut, Behinderung oder fehlende Bildung werden durch eine exklusive Digitalisierung noch verstärkt. 
Digitalzwang ist damit nicht nur unangenehm, sondern wird in vielen Fällen zu einem Human Security-Problem. Dieses Konzept geht davon aus, dass Sicherheit nicht nur die Abwesenheit von Gewalt ist, sondern ein Zustand, indem sich Menschen frei entwickeln können. Ein Ausschluss aus einer Gesellschaft oder eine Beschränkung im eigenen Leben wirken diesem Zustand entgegen. Anhand der Beispiele, die ich durch die Interviews gesammelt habe, zeige ich, wie die Auswirkungen von Digitalzwang diese Probleme erzeugen können.
Dabei müssen wir uns die Frage stellen, wie wir mit der Digitalisierung umgehen wollen. Um dabei nicht ganz im Pessimismus zu versinken, gehe ich auch auf positive Beispiele ein: Wo wird gut und nutzerfreundlich digitalisiert?

Scherrie

https://events.ccc.de/congress/2024/hub/event/fehlercode-406-request-not-acceptable-digitalzwang-als-human-security-problem/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Navigating the grey]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:50 https://media.ccc.de/v/38c3-navigating-the-grey

Navigating The Gray; Hacker's Compass.

In an expanding digital world, the lines quickly blur between what's good and what is bad (ethical and not) Without using big complicated words, Ethics are a re...]]></description>
<link>https://isharestuff.com/de/2909200/it-sicherheit/38c3-navigating-the-grey/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2909200/it-sicherheit/38c3-navigating-the-grey/</guid>
<pubDate>Sat, 01 Feb 2025 16:54:13 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:50 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/mCn6q3LwaTs?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-navigating-the-grey

Navigating The Gray; Hacker's Compass.

In an expanding digital world, the lines quickly blur between what's good and what is bad (ethical and not) Without using big complicated words, Ethics are a reference for our action to know good from bad. In this talk we go over a framework of ethics to help predetermine which direction our actions would lead us. 
This is not a code of ethics saying what is good and what is bad, after all life is somewhere in between, and you do you. This is a more of a measurement tool, like a compass. A hacker's compass, a pocket sized framework of three ethics to triangulate where we are on the gray, and where our actions would take us.

Prepared time for Q&A and little discussion after the talk. I would be happy to learn more from other people's experiences and Ideas on this topic.

moe

https://events.ccc.de/congress/2024/hub/event/navigating-the-grey/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Prototypes to Props: How to Build and Hack in the Film/TV Industry]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 5x - Views:68 https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring m...]]></description>
<link>https://isharestuff.com/de/2908342/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2908342/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</guid>
<pubDate>Fri, 31 Jan 2025 20:34:06 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 5x - Views:68 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/behyCz7NWOQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring movie magic to life! Through real-world examples, this talk will explore the unique challenges of creating builds for the entertainment industry, from designing prototypes to filming the final sequence and everything in between.

Have you ever been asked to build a smoke grenade or blow up a car? With over 8 years of experience in the film industry, Davis is one of the hackers with the skills to accommodate these unusual requests. In this talk, we'll explore several of his favorite builds to highlight how anyone can get started combining art and hardware hacking on their own.

From CAD, to 3D printing, microcontroller programming, painting, weathering, cinematography, and more, discover how multiple disciplines blend together to create hacker movie magic!

Davis DeWitt

https://events.ccc.de/congress/2024/hub/event/prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Prototypes to Props: How to Build and Hack in the Film/TV Industry]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 5x - Views:68 https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring m...]]></description>
<link>https://isharestuff.com/de/2908343/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2908343/it-sicherheit/38c3-prototypes-to-props-how-to-build-and-hack-in-the-filmtv-industry/</guid>
<pubDate>Fri, 31 Jan 2025 20:34:06 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 5x - Views:68 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/behyCz7NWOQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry

Look behind the scenes with filmmaker, inventor, and former Mythbuster Davis DeWitt and learn how Hollywood hackers combine prototyping and art to bring movie magic to life! Through real-world examples, this talk will explore the unique challenges of creating builds for the entertainment industry, from designing prototypes to filming the final sequence and everything in between.

Have you ever been asked to build a smoke grenade or blow up a car? With over 8 years of experience in the film industry, Davis is one of the hackers with the skills to accommodate these unusual requests. In this talk, we'll explore several of his favorite builds to highlight how anyone can get started combining art and hardware hacking on their own.

From CAD, to 3D printing, microcontroller programming, painting, weathering, cinematography, and more, discover how multiple disciplines blend together to create hacker movie magic!

Davis DeWitt

https://events.ccc.de/congress/2024/hub/event/prototypes-to-props-how-to-build-and-hack-in-the-film-tv-industry/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST UPCOMING MOVIES 2025 (Trailers) February]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 4x - Views:0 New Movies that can be found in this trailer compilation:

00:00 Captain America: Brave New World
02:37 Heart Eyes
04:49 The Gorge
07:38 Riff Raff
09:58 Uppercut
12:14 Paddington 3: Paddington in Peru
13:53 The Unbreakable Boy
16:17 Old Guy
18:29 The M...]]></description>
<link>https://isharestuff.com/de/2908121/film-unterhaltung/best-upcoming-movies-2025-trailers-february/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2908121/film-unterhaltung/best-upcoming-movies-2025-trailers-february/</guid>
<pubDate>Fri, 31 Jan 2025 18:20:41 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 4x - Views:0 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/LpKcWZcYKeg?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>New Movies that can be found in this trailer compilation:

00:00 Captain America: Brave New World
02:37 Heart Eyes
04:49 The Gorge
07:38 Riff Raff
09:58 Uppercut
12:14 Paddington 3: Paddington in Peru
13:53 The Unbreakable Boy
16:17 Old Guy
18:29 The Monkey
20:34 Parthenope
22:30 My Fault: London
23:58 Escape from the 21st Century
25:48 Bring Them Down
27:26 Cleaner
28:49 I'm Still Here
30:57 Armand
32:52 Autumn and the Black Jaguar
34:29 Jazzy

© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Instructions unclear - Über die (In-)Accessibility von Symbolen]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2x - Views:32 https://media.ccc.de/v/38c3-instructions-unclear-ber-die-in-accessibility-von-symbolen

Ein Talk über die Kommunikation ohne gesprochene oder geschriebene Sprache

Kommunikation ist ja schon mit Worten manchmal schwierig - Wie ist das eigentlich, we...]]></description>
<link>https://isharestuff.com/de/2906699/it-sicherheit/38c3-instructions-unclear-ueber-die-in-accessibility-von-symbolen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2906699/it-sicherheit/38c3-instructions-unclear-ueber-die-in-accessibility-von-symbolen/</guid>
<pubDate>Thu, 30 Jan 2025 22:33:40 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2x - Views:32 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/-oE0SBW_i3k?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-instructions-unclear-ber-die-in-accessibility-von-symbolen

Ein Talk über die Kommunikation ohne gesprochene oder geschriebene Sprache

Kommunikation ist ja schon mit Worten manchmal schwierig - Wie ist das eigentlich, wenn man NICHT mit Worten kommunizieren kann? (Sei dies durch Sprachbarrieren, Psychische oder körperliche Beeinträchtigungen oder einfach nur aus Platzmangel)
In diesem Talk werde ich mich auf eine ehrliche und hoffentlich auch etwas humoristische Art mit der Kommunikation mithilfe von Symbolen auseinandersetzen.

sebz

https://events.ccc.de/congress/2024/hub/event/instructions-unclear-ber-die-in-accessibility-von-symbolen/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - How to Spec - Fun with dinosaurs]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:24 https://media.ccc.de/v/38c3-how-to-spec-fun-with-dinosaurs

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life take...]]></description>
<link>https://isharestuff.com/de/2906697/it-sicherheit/38c3-how-to-spec-fun-with-dinosaurs/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2906697/it-sicherheit/38c3-how-to-spec-fun-with-dinosaurs/</guid>
<pubDate>Thu, 30 Jan 2025 22:32:39 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:24 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/KW4AdLPxZo4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-how-to-spec-fun-with-dinosaurs

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life takes form. By combining informed speculation with a deep understanding of anatomy, ecology, and geology, paleoartists continuously reimagine extinct organisms in innovative ways.

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life takes form. This tradition of science informed art form, rooted in a 200-year history, finds its inspiration in the fossil record and the interpretations it offers.
The gaps in our knowledge are as influential as the fossils themselves. Through informed speculation and a fundamental understanding of anatomy, ecology and geology a paleoartist is able to bring back extinct organisms in ever new ways.

Joschua Knüppe

https://events.ccc.de/congress/2024/hub/event/how-to-spec-fun-with-dinosaurs/

#38c3 #ArtBeauty

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 deu - How to Spec - Fun with dinosaurs]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:16 https://media.ccc.de/v/38c3-how-to-spec-fun-with-dinosaurs

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life take...]]></description>
<link>https://isharestuff.com/de/2906695/it-sicherheit/38c3-deu-how-to-spec-fun-with-dinosaurs/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2906695/it-sicherheit/38c3-deu-how-to-spec-fun-with-dinosaurs/</guid>
<pubDate>Thu, 30 Jan 2025 22:31:39 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:16 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/fLaBtH5IrNE?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-how-to-spec-fun-with-dinosaurs

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life takes form. By combining informed speculation with a deep understanding of anatomy, ecology, and geology, paleoartists continuously reimagine extinct organisms in innovative ways.

The public image of dinosaurs is largely shaped by art. While paleontology is a dynamic and productive science, it is primarily through paleoart that our perception of prehistoric life takes form. This tradition of science informed art form, rooted in a 200-year history, finds its inspiration in the fossil record and the interpretations it offers.
The gaps in our knowledge are as influential as the fossils themselves. Through informed speculation and a fundamental understanding of anatomy, ecology and geology a paleoartist is able to bring back extinct organisms in ever new ways.

Joschua Knüppe

https://events.ccc.de/congress/2024/hub/event/how-to-spec-fun-with-dinosaurs/

#38c3 #ArtBeauty #38c3_deu

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Correctiv-Recherche "Geheimplan gegen Deutschland" – 1 Jahr danach]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:75 (Reupload mit gefixtem Audio von https://www.youtube.com/watch?v=wBISZnvqCak)

https://media.ccc.de/v/38c3-correctiv-recherche-geheimplan-gegen-deutschland-1-jahr-danach

Vor einem Jahr veröffentlichte Correctiv die Recherche “Geheimplan gegen Deuts...]]></description>
<link>https://isharestuff.com/de/2906693/it-sicherheit/38c3-correctiv-recherche-geheimplan-gegen-deutschland-1-jahr-danach/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2906693/it-sicherheit/38c3-correctiv-recherche-geheimplan-gegen-deutschland-1-jahr-danach/</guid>
<pubDate>Thu, 30 Jan 2025 22:30:37 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:75 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/HqGkES_qmDw?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>(Reupload mit gefixtem Audio von https://www.youtube.com/watch?v=wBISZnvqCak)

https://media.ccc.de/v/38c3-correctiv-recherche-geheimplan-gegen-deutschland-1-jahr-danach

Vor einem Jahr veröffentlichte Correctiv die Recherche “Geheimplan gegen Deutschland”, die ein geheimes Treffen von Rechtsextremen, AfD-Funktionären und CDU-Mitgliedern enthüllte. Diese Enthüllung führte zu massiven Demonstrationen, während rechtsextreme Gruppen versuchten, das Geschehen zu relativieren. Die politische Reaktion blieb jedoch verhalten, und die AfD setzte die demokratischen Parteien weiter unter Druck. In diesem Vortrag gibt Jean Peters, leitender Reporter der Recherche, einen Überblick über die Recherchemethoden, analysiert den medialen Diskurs und zeigt zukünftige Perspektiven zur Berichterstattung über Rechtsextremismus auf.

Vor einem Jahr enthüllte Correctiv in der investigativen Recherche "Geheimplan gegen Deutschland" ein brisantes Treffen in Potsdam, an dem Rechtsextreme, AfD-Funktionäre, CDU-Mitglieder aus unteren Rängen sowie bedeutende Geldgeber teilnahmen. Diese Veröffentlichung schlug in der deutschen Öffentlichkeit hohe Wellen und führte zu den größten Demonstrationen, die die Bundesrepublik seit ihrer Gründung erlebt hat. Menschen in ganz Deutschland gingen auf die Straße, um gegen die rechtsextreme Bedrohung und die wachsende politische Einflussnahme dieser Kreise zu protestieren.

Die Rechtsextremen hingegen versuchten, die Bedeutung dieses Treffens herunterzuspielen und die Enthüllungen als überzogen darzustellen. Sie bemühten sich, ihre Pläne zu relativieren. Gleichzeitig trieb die AfD die demokratischen Parteien bei den Landtagswahlen der neuen Bundesländer weiter vor sich her und konnte in mehreren Bundesländern beachtliche Wahlerfolge feiern. Die Reaktionen auf Bundesebene waren in vielen Augen enttäuschend: Statt die Warnungen aus der Zivilgesellschaft und den Demonstrationen ernst zu nehmen, schien die Bundespolitik in Teilen auf AfD-freundliche Maßnahmen zu setzen.

Jean Peters, der leitende Reporter der Recherche, wird in seinem Vortrag detaillierte Einblicke in die Vorgehensweise und die Methodik der Enthüllung geben. Er wird erläutern, wie Correctiv die Verbindungen zwischen den rechtsextremen Akteuren und den finanziellen Unterstützern aufdeckte, welche Herausforderungen es nach der Recherche gab und wie das Team mit der enormen öffentlichen Resonanz umging. Zudem wird er den medialen Diskurs kritisch einordnen: Welche Rolle spielten die Medien bei der Verbreitung und der Einordnung der Informationen? Wie reagierte die Öffentlichkeit auf die Berichterstattung? Und welche Konsequenzen ergaben sich daraus für die politische Debatte in Deutschland?

Abschließend wird Peters mögliche nächste Schritte und Ansätze für die weitere Berichterstattung über Rechtsextremismus und den Stand der Debatte rund um ein potenzielles AfD Verbot aufzeigen. Er wird darlegen, wie der investigative Journalismus weiterhin dazu beitragen kann, diese Netzwerke aufzudecken, und welche Hacks die Demokratie bietet, um Autoritarismus zu bekämpfen.

Jean Peters

https://events.ccc.de/congress/2024/hub/event/correctiv-recherche-geheimplan-gegen-deutschland-1-jahr-danach/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Liberating Wi-Fi on the ESP32]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:18 https://media.ccc.de/v/38c3-liberating-wi-fi-on-the-esp32

Reverse engineering the Wi-Fi peripheral of the ESP32 to build an open source Wi-Fi stack.

During the 38c3, there are probably multiple thousands of ESP32s in the CCH, all of which run a cl...]]></description>
<link>https://isharestuff.com/de/2904837/it-sicherheit/38c3-liberating-wi-fi-on-the-esp32/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904837/it-sicherheit/38c3-liberating-wi-fi-on-the-esp32/</guid>
<pubDate>Thu, 30 Jan 2025 02:50:07 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:18 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/r8IqkUTGjlA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-liberating-wi-fi-on-the-esp32

Reverse engineering the Wi-Fi peripheral of the ESP32 to build an open source Wi-Fi stack.

During the 38c3, there are probably multiple thousands of ESP32s in the CCH, all of which run a closed source Wi-Fi stack.  And while that stack works, it would be nicer to have an open source stack, which would grant us the ability to modify and audit the software, which carries potentially sensitive data.

So we set to work, reverse engineering the proprietary stack and building a new open source one. We soon discovered just how versatile the ESP32 can be, both as a tool for research and IoT SoC, when its capabilities are fully unlocked. This includes using it as a pentesting tool, a B.A.T.M.A.N. mesh router or an AirDrop client.

You'll learn something about Wi-Fi, the ESP32, reverse engineering in general and how to approach such a project.

Frostie314159, Jasper Devreker

https://events.ccc.de/congress/2024/hub/event/liberating-wi-fi-on-the-esp32/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Hardware hacking mit Bluetooth Low Energy]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 9x - Views:84 https://media.ccc.de/v/38c3-hardware-hacking-mit-bluetooth-low-energy

How to remote-control (and build) the weirdest devices with Bluetooth Low Energy and no programming.

Want to build a connected [soap bubble maker | water boiler | door lock | .....]]></description>
<link>https://isharestuff.com/de/2904789/it-sicherheit/38c3-hardware-hacking-mit-bluetooth-low-energy/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904789/it-sicherheit/38c3-hardware-hacking-mit-bluetooth-low-energy/</guid>
<pubDate>Thu, 30 Jan 2025 01:09:18 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 9x - Views:84 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/kFWdXnIhTOk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-hardware-hacking-mit-bluetooth-low-energy

How to remote-control (and build) the weirdest devices with Bluetooth Low Energy and no programming.

Want to build a connected [soap bubble maker | water boiler | door lock | ...]?
This talk briefly covers the basics of Bluetooth Low Energy, outlining the effort needed to implement such a technology with raw code.
It then focuses on how to leverage said technology without getting your hands dirty by replacing programming with a bit of configuration, demonstrating the usage of the [BLEnky](https://structure.nullco.de/?node_id=66216cdb1a95fb4425f23212&token=3c55f7bb1de0e79c9020dbb09deac741df56fc5474825407abb94f96714ce134&focused_node=6622041d1a95fb4425f2323a) project for quick results.

[Click here for many more examples](https://structure.nullco.de/?node_id=66216cdb1a95fb4425f23212&token=3c55f7bb1de0e79c9020dbb09deac741df56fc5474825407abb94f96714ce134&focused_node=6622041d1a95fb4425f2323a)

Some notable projects will be described, as well as a live hack of some stupid gadget to make it "smart".

Daniel Dakhno

https://events.ccc.de/congress/2024/hub/event/hardware-hacking-mit-bluetooth-low-energy/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Feelings are Facts: Love, Privacy, and the Politics of Intellectual Shame]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2x - Views:12 https://media.ccc.de/v/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame

A debut of new research and analysis, focused on emotions and the affective register—love! shame! intimacy!

What happens when we put love and intima...]]></description>
<link>https://isharestuff.com/de/2904776/it-sicherheit/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904776/it-sicherheit/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/</guid>
<pubDate>Thu, 30 Jan 2025 00:40:59 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2x - Views:12 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/bK4OU52RK_I?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame

A debut of new research and analysis, focused on emotions and the affective register—love! shame! intimacy!

What happens when we put love and intimacy at the center of our understanding of privacy, and what are the consequences of their disavowal, in favor of a more familiar technocratic definition of privacy-as-absense? What role does our deep desire for love and belonging, and our concomitant fear of shame and rejection, have to do with the (mis)direction of tech capital and the current, warped shape of the tech industry and its products? We take these questions seriously, and work through their implications together in Hamburg during that brief, liminal window between the winter holidays and the new year.

Meredith Whittaker

https://events.ccc.de/congress/2024/hub/event/feelings-are-facts-love-privacy-and-the-politics-of-intellectual-shame/

#38c3 #CCC

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Wie wird gleich?]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:17 https://media.ccc.de/v/38c3-wie-wird-gleich

Welchen Einfluss hat die Form der Dinge? Wie wirken wir durch die Gestaltung unseren kulturellen Praxen, Architekturen, Sprachen und Strukturen auf uns und die uns umgebende Zukunft ein? Und warum findet ...]]></description>
<link>https://isharestuff.com/de/2904775/it-sicherheit/38c3-wie-wird-gleich/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904775/it-sicherheit/38c3-wie-wird-gleich/</guid>
<pubDate>Thu, 30 Jan 2025 00:39:58 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:17 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/EDt_lY3HHdk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-wie-wird-gleich

Welchen Einfluss hat die Form der Dinge? Wie wirken wir durch die Gestaltung unseren kulturellen Praxen, Architekturen, Sprachen und Strukturen auf uns und die uns umgebende Zukunft ein? Und warum findet sich in zeitgenössischer Design Theorie ein Verb wie *Futuring*?

Basierend auf der Annahme, dass alles mit allem zusammen hängt und ein gemeinsames Interesse besteht, die gesamte Scheiße zum Guten zu wenden, lade ich dazu ein, anhand von Praxisbeispielen aus meiner künstlerischer Forschung und einfachen Live-Experimenten, zu erfahren, wie wir alle Welt gestalten. Und wie wir aus diesem Beteiligt sein Mut ziehen können, einer lebenswerten Zukunft für alle näher zu kommen.

kathia

https://events.ccc.de/congress/2024/hub/event/wie-wird-gleich/

#38c3 #ArtBeauty

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - A Competitive Time-Trial AI for Need for Speed: Most Wanted Using Deep Reinforcement Learning]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 6x - Views:43 https://media.ccc.de/v/38c3-a-competitive-time-trial-ai-for-need-for-speed-most-wanted-using-deep-reinforcement-learning

All challenges and achievements in creating a competitive time-trial AI in NFS:MW.

15 years ago, at the height of my eSports c...]]></description>
<link>https://isharestuff.com/de/2904766/it-sicherheit/38c3-a-competitive-time-trial-ai-for-need-for-speed-most-wanted-using-deep-reinforcement-learning/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904766/it-sicherheit/38c3-a-competitive-time-trial-ai-for-need-for-speed-most-wanted-using-deep-reinforcement-learning/</guid>
<pubDate>Thu, 30 Jan 2025 00:19:02 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 6x - Views:43 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/hJ2F3-K1CPs?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-a-competitive-time-trial-ai-for-need-for-speed-most-wanted-using-deep-reinforcement-learning

All challenges and achievements in creating a competitive time-trial AI in NFS:MW.

15 years ago, at the height of my eSports career, I uploaded an (unofficial) ESL record at Need for Speed: Most Wanted (2005) (NFS:MW) to Youtube. In the meantime Deep Reinforcement Learning became popular and ever since I have dreamt of creating a competitive AI for my favorite racing game of all time: NFS:MW. Now finally the time was right: The hardware is fast enough, good software is available, and Sony's AI research has proven the task is actually doable. Hence I thought: "How hard can it possibly be?".

This talk will present in detail all challenges and achievements in creating a competitive time-trial AI in NFS:MW from scratch - including but not limited to - hacking of the game to create a custom API, building a custom (real-time) OpenAI gym environment, steering the game using a virtual controller, and finally successfully training an AI using the Soft-Actor-Critic algorithm. All code including the API is written in Python and is open source.

Sebastian Schwarz

https://events.ccc.de/congress/2024/hub/event/a-competitive-time-trial-ai-for-need-for-speed-most-wanted-using-deep-reinforcement-learning/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - "Natürlich bin ich 18!" - Altersprüfungen im Netz aus Datenschutzperspektive]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:7 https://media.ccc.de/v/38c3-natrlich-bin-ich-18-altersprfungen-im-netz-aus-datenschutzperspektive

„Um nach diesem Begriff zu suchen, dich auf dieser Website anzumelden oder dieses Video anzuschauen, halte bitte deinen Personalausweis bereit, damit w...]]></description>
<link>https://isharestuff.com/de/2904743/it-sicherheit/38c3-natuerlich-bin-ich-18-alterspruefungen-im-netz-aus-datenschutzperspektive/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904743/it-sicherheit/38c3-natuerlich-bin-ich-18-alterspruefungen-im-netz-aus-datenschutzperspektive/</guid>
<pubDate>Wed, 29 Jan 2025 23:43:21 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:7 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/Pa8mqAHUdW4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-natrlich-bin-ich-18-altersprfungen-im-netz-aus-datenschutzperspektive

„Um nach diesem Begriff zu suchen, dich auf dieser Website anzumelden oder dieses Video anzuschauen, halte bitte deinen Personalausweis bereit, damit wir dein Alter überprüfen können.“

Solche Aufforderungen könnten uns in Zukunft häufiger begegnen, denn immer mehr Websites wollen unser Alter wissen. Doch woher kommt dieses Interesse und ist das eigentlich zulässig? Gemeinsam setzen wir die Datenschutzbrille auf und gehen folgenden Fragen auf den Grund: Welche Methoden der Altersprüfung gibt es und wie funktionieren sie? Können oder sollten Methoden der Altersprüfungen eingesetzt werden und gibt es Fälle, in denen sie sogar eingesetzt werden müssen? Sind Datenschutz und Kinderschutz tatsächlich Gegensätze oder haben sie doch mehr gemeinsam, als oft vermutet wird? Und was sagt eigentlich die Bundesbeauftragte für den Datenschutz und die Informationsfreiheit (BfDI) dazu?

Hand aufs Herz – hast du, bevor du 18 warst, Webseiten besucht, die nur für Erwachsene bestimmt waren? Welche Mechanismen haben versucht dich davon abzuhalten? Wie häufig begegnest du diesen Mechanismen heute? 

Altersprüfungen sind nicht zuletzt durch die Bestimmungen des Digital Services Act (DSA) und die Diskussionen um die Alterstauglichkeit von Social Media heiß diskutiert. Dabei geht es längst nicht mehr allein um Ab-18-Inhalte. Die Idee ist einfach: Wer zu jung ist, darf bestimmte Bereiche des Internets nicht betreten – wie früher in der Videothek - oder wer zu alt ist, bekommt keinen Zutritt – wie auf manchen Spielplätzen. Aber könntest du dir vorstellen, in der Videothek eine Kopie deines Personalausweises abzugeben, zusammen mit der Liste der Filme, die du ausgeliehen hast?
Der wichtige Unterschied ist: Um in digitalen Diensten das Alter einer Person prüfen zu können, müssen mehr Daten verarbeitet werden als bei einem kurzen Blick auf den Ausweis, und das ist nicht ohne weiteres zulässig!  

Der Umgang mit Methoden der Altersprüfung wird einen erheblichen Teil dazu beitragen, wie das Internet in Zukunft aussehen wird und wie frei es sein wird. Es geht nicht nur darum, wie Kinderschutz im Netz umgesetzt wird, sondern auch, wie viel Teilhabe im Digitalen möglich ist – nicht nur für Kinder. 

In diesem Vortrag erwarten euch ein Überblick über aktuelle (politische) Forderungen nach Altersprüfungen im Internet und den verschiedenen Methoden, die dabei zum Einsatz kommen. Wir machen einen kurzen Exkurs ins Datenschutzrecht und gehen der Frage nach, wie Altersprüfungen, Kinderschutz und Datenschutz zusammenspielen. Nicht zuletzt bekommt ihr die Einschätzung der Bundesbeauftragten für den Datenschutz und die Informationsfreiheit zu hören.

Aline Sylla, Carsten Adrian

https://events.ccc.de/congress/2024/hub/event/natrlich-bin-ich-18-altersprfungen-im-netz-aus-datenschutzperspektive/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Escaping Big Brother (or Your Ex) - counter surveillance for women's shelters]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:8 https://media.ccc.de/v/38c3-escaping-big-brother-or-your-ex-counter-surveillance-for-women-s-shelters

Maintaining privacy and security when those closest to you is exploiting the worst of surveillance capitalism and patriarchy to pwn you is a user c...]]></description>
<link>https://isharestuff.com/de/2904742/it-sicherheit/38c3-escaping-big-brother-or-your-ex-counter-surveillance-for-womens-shelters/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904742/it-sicherheit/38c3-escaping-big-brother-or-your-ex-counter-surveillance-for-womens-shelters/</guid>
<pubDate>Wed, 29 Jan 2025 23:42:20 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/K0Luj__IeYM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-escaping-big-brother-or-your-ex-counter-surveillance-for-women-s-shelters

Maintaining privacy and security when those closest to you is exploiting the worst of surveillance capitalism and patriarchy to pwn you is a user case no one planned for. Or should Big Tech have known better? 
Gender-based violence has existed in all societies and centuries, but in the 21st one the digital arena is proving to be especially tricky for victims. 
When (primarily) women leave their abusive (primarily) male partners or family members they often have to leave behind everything and make a clean break - including from their digital identities. This is way easier said than done. (Ever tried unsubscribing from.. anything?) Surveillance capitalism has further exacerbated this challenge, as stalker-ware is becoming increasingly prevalent and easy to use, if not a default feature. Stalking As A Service is of course already a thing, and why should you watch someones house in the rain all night when you can let your Tesla do it for you? 
Lost your wife? Hide an AirTag in the lining of her bag and have two billion iPhones keep track of her across the planet. Apple won't tell.
 
It's almost like society is fundamentally misogynistic and internet accelerated the opportunity for patriarchal control..?
 
This talk shares experiences working with women's shelters and training victims as well as activists and professionals in cyber security and opsec.
The situation's bad and it's getting worse, fast.

Digital violence, or gender-based violence using digital means, is expressed in control and abuse. Control of finance, social life, the children, the photos, the conversation, relationships, life. Emotional, sexual, financial, psychological abuse - online. Mark Zuckerberg is not the first stalker to creep the Earth but probably the first to become a billionaire scaling his methods and monetizing his crimes.

Sharing war stories of practical feminist threat intel with literally lifesaving tech, Elin has advised women's shelters how to protect their clients and Escape Big Brother in Sweden for the past couple of years. This includes perverse exploits, institutional failures, psyops, and how any and everything can be used against you - if the threat actor is persistent enough.

erlern

https://events.ccc.de/congress/2024/hub/event/escaping-big-brother-or-your-ex-counter-surveillance-for-women-s-shelters/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Demystifying Common Microcontroller Debug Protocols]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:8 https://media.ccc.de/v/38c3-demystifying-common-microcontroller-debug-protocols

Many developers know that the answer to "How do I debug this microcontroller" is either "JTAG" or "SWD". But what does that mean, exactly? How do you get from "Wiggling ...]]></description>
<link>https://isharestuff.com/de/2904741/it-sicherheit/38c3-demystifying-common-microcontroller-debug-protocols/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904741/it-sicherheit/38c3-demystifying-common-microcontroller-debug-protocols/</guid>
<pubDate>Wed, 29 Jan 2025 23:41:19 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:8 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/IC108KdVYz4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-demystifying-common-microcontroller-debug-protocols

Many developers know that the answer to "How do I debug this microcontroller" is either "JTAG" or "SWD". But what does that mean, exactly? How do you get from "Wiggling wires" to "Programming a chip" and "Halting on breakpoints"? This talk will cover how common debug protocols work starting from signals on physical wires, cover common mechanisms for managing embedded processors, and ending up at talking to various common microcontrollers.

Embedded programming is the art of shrinking complex programs in tiny packages by throwing away unnecessary features. With modern microcontrollers, debugging need not be one of the features thrown away. Most modern chips include some form of low-level access, but the technical details aren't widely understood. Many users of embedded firmware will use their preferred debugger without thinking too hard about what's going on underneath.

We'll start by covering what it means to debug embedded software. The primitives required to have an interactive debug session are surprisingly minimal. From this, we'll build up a list of requirements and "nice to haves" to make a debugging environment comfortable, and reference existing "bespoke" debug approaches. We'll cover several examples of debug engines ranging from cores designed to go into FPGAs to tiny 8-bit microcontrollers.

Next, we'll take a step back and describe the common lower-level protocols such as JTAG and SWD. These describe physical signals that go between the host and the target. We'll compare various protocols and see how they map onto the higher-level primitives discussed earlier. Armed with examples, we'll see how the protocol stack is formed.

Next, we'll use the knowledge of low-level protocol implementations and the requirements for debugging to look at common abstractions on top of physical transports to implement core control. This will bridge the gap between "JTAG or SWD are the protocol" to "Poking a value in memory on a microcontroller". In this section, we'll cover the more common and generic uses such as Arm's ADI and the RISC-V DMI and see how complex and cross-target configurations are built to be rigid enough to have rich debug features while flexible enough to handle a wide range of processor configurations.

Finally, we'll cover common tasks such as programming flash memory, watchpoints, and single-step debugging -- things that we take for granted in the desktop world and would like to have when programming for a potato that costs less than an actual potato.

Sean "xobs" Cross

https://events.ccc.de/congress/2024/hub/event/demystifying-common-microcontroller-debug-protocols/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Hacking the RP2350]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 4x - Views:109 https://media.ccc.de/v/38c3-hacking-the-rp2350

Raspberry Pi's RP2350 microcontroller introduced a multitude of new hardware security features over the RP2040, and included a Hacking Challenge which began at DEF CON to encourage researchers to find...]]></description>
<link>https://isharestuff.com/de/2904586/it-sicherheit/38c3-hacking-the-rp2350/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904586/it-sicherheit/38c3-hacking-the-rp2350/</guid>
<pubDate>Wed, 29 Jan 2025 21:07:15 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 4x - Views:109 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/hbFRnPNQnoY?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-hacking-the-rp2350

Raspberry Pi's RP2350 microcontroller introduced a multitude of new hardware security features over the RP2040, and included a Hacking Challenge which began at DEF CON to encourage researchers to find bugs. The challenge has been defeated and the chip is indeed vulnerable (in at least one way). This talk will cover the process of discovering this vulnerability, the method of exploiting it, and avenues for deducing more about the relevant low-level hardware behavior.

The RP2350 security architecture involves several interconnected mechanisms which together provide authentication of code running on the chip, protected one-time-programmable storage, fine-grained control of debug features, and so on. An antifuse-based OTP memory serves as the root of trust of the system, and informs the configuration of ARM TrustZone as well as additional attack mitigations such as glitch detectors. Raspberry Pi even constructs an impressive, bespoke Redundancy Coprocessor (RCP), which hardens execution of boot ROM code on the Cortex-M33 cores with stack protection, data validation, and instruction latency randomization.

Since there are many potential incorrect guesses to be made about where problems might lie, here I begin with the most fundamental features of the chip logic, including the reset process. Even small oversights at this level can entirely defeat sophisticated security efforts if higher-level mechanisms place complete trust in seemingly simple hardware operations. I show how cursory research into the design details of IP blocks used in the SoC can help inform an attack, and demonstrate the importance of fully testing new features which are built atop older IP. Ultimately, the significant amount of luck (or lack thereof) involved is a reminder of the need to meticulously understand and validate complex systems.

Aedan Cullen

https://events.ccc.de/congress/2024/hub/event/hacking-the-rp2350/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Proprietary silicon ICs and dubious marketing claims? Let's fight those with a microscope!]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 17x - Views:302 https://media.ccc.de/v/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope

Custom silicon chips are black boxes that hold many secrets, like internal ROMs, security features and audio DSP algorithms. How ...]]></description>
<link>https://isharestuff.com/de/2904536/it-sicherheit/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-lets-fight-those-with-a-microscope/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904536/it-sicherheit/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-lets-fight-those-with-a-microscope/</guid>
<pubDate>Wed, 29 Jan 2025 20:34:15 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 17x - Views:302 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/B7xxWHuZ52Q?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope

Custom silicon chips are black boxes that hold many secrets, like internal ROMs, security features and audio DSP algorithms. How does one start reverse engineer them? Let's look at the basics of silicon reverse engineering, what gate array chips are, and how some tooling can generate Verilog code automatically from a die shot.

A digital synthesizer from 1986 was completely shrouded in mystery and dubious marketing claims. Being that old, eventually every working unit will break, leaving us with the no info about its inner workings. I could not accept this, so I decided to get into silicon reverse engineering. By dissolving its undocumented custom chips into acid and looking at them through a microscope, I was able to get an understanding of what was going on internally, to be able to preserve it and emulate it in the future.

This is possible because lot of custom silicon chips from that era (80s and 90s) are of the "gate array" type: a grid-like structure that contains thousands of digital logic gates. By looking at them closely we can understand what those gates do, and by following the wiring between them we can reconstruct the entire system. This method allowed people to understand and recreate perfect emulations of arcade games, sound chips, security ICs and more.

In this talk I want to tell my journey into silicon reverse engineering from my perspective of a complete beginner and software guy, and what I learned in the process. I will go through the different kinds of custom chips, how they look under a microscope, their different parts, what can be easily reverse engineered and what can not. Those chips do not only contain logic, but also RAM and ROM parts, and knowing how to identify them can give clues when looking at the logic is too complicated. Sometimes a chip can be completely understood even without knowing that a MOSFET is.

I will also cover the process I used for reverse engineer them, some techniques that worked and some that didn't, and some tools I built to automatically extract mask ROMs and generate Verilog code from die shots.

giulioz

https://events.ccc.de/congress/2024/hub/event/proprietary-silicon-ics-and-dubious-marketing-claims-let-s-fight-those-with-a-microscope/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - IRIS: Non-Destructive Inspection of Silicon]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:6 https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and ...]]></description>
<link>https://isharestuff.com/de/2904534/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904534/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</guid>
<pubDate>Wed, 29 Jan 2025 20:33:26 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:6 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/aqGNpHaWGEQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and provide supporting evidence of its correct construction, without desoldering chips or expensive analytical gear. This talk covers the theory behind IRIS, as well as some embodiments of the technique. I will also frame the relevance of IRIS in the face of various threat scenarios. Time permitting, I’ll also show how you can do it at home by peeking around a few chips as a demo.

Do we really know what chips are inside our devices? To a first order, the answer is “no”. We can read the label printed on the chip's package, but most of us have no way to determine if the silicon actually matches what’s on the label.

This lack of transparency has lead to much hand-wringing about the safety of our global supply chains, as chips zig-zag the globe on their way to our doorstep: each stop is an opportunity for bad actors to inject malicious hardware, and those of us without access to million-dollar analytical gear have no way of detecting this.

IRIS (Infra-Red, *in situ*) is a technique I have been developing that aims to democratize the inspection of silicon. It turns out that for a select but fairly common type of chip - those in chip-scale packages - a simple modification to an off the shelf microscope camera can enable the visualization of micron-scale features within – without requiring any nasty chemicals or desoldering chips. I will also show how the basic everyday technique can be combined with a Jubilee 3D motion platform to create detailed, full-chip images.

This talk will cover the basic theory behind the technique, and frame it in the context of several hypothetical threat scenarios that highlight its strengths and limitations. It is important to understand that IRIS is not a panacea for chip verification, but it is a significant step forward in improving transparency. I will also discuss its potential as a new tool for system designers who are serious about enabling user-level hardware verification.

Finally, time permitting and equipment cooperating, I would like to share the simple pleasure of being able to take a peek inside the chips of some common mobile phone motherboards with a live demo.

Andrew 'bunnie' Huang

https://events.ccc.de/congress/2024/hub/event/iris-non-destructive-inspection-of-silicon/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - IRIS: Non-Destructive Inspection of Silicon]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:6 https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and ...]]></description>
<link>https://isharestuff.com/de/2904533/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904533/it-sicherheit/38c3-iris-non-destructive-inspection-of-silicon/</guid>
<pubDate>Wed, 29 Jan 2025 20:33:25 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:6 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/aqGNpHaWGEQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-iris-non-destructive-inspection-of-silicon

IRIS (Infra-Red, *in situ*) is a technique for non-destructively inspecting the construction of a select but common type of chip. It can improve visibility into our hardware and provide supporting evidence of its correct construction, without desoldering chips or expensive analytical gear. This talk covers the theory behind IRIS, as well as some embodiments of the technique. I will also frame the relevance of IRIS in the face of various threat scenarios. Time permitting, I’ll also show how you can do it at home by peeking around a few chips as a demo.

Do we really know what chips are inside our devices? To a first order, the answer is “no”. We can read the label printed on the chip's package, but most of us have no way to determine if the silicon actually matches what’s on the label.

This lack of transparency has lead to much hand-wringing about the safety of our global supply chains, as chips zig-zag the globe on their way to our doorstep: each stop is an opportunity for bad actors to inject malicious hardware, and those of us without access to million-dollar analytical gear have no way of detecting this.

IRIS (Infra-Red, *in situ*) is a technique I have been developing that aims to democratize the inspection of silicon. It turns out that for a select but fairly common type of chip - those in chip-scale packages - a simple modification to an off the shelf microscope camera can enable the visualization of micron-scale features within – without requiring any nasty chemicals or desoldering chips. I will also show how the basic everyday technique can be combined with a Jubilee 3D motion platform to create detailed, full-chip images.

This talk will cover the basic theory behind the technique, and frame it in the context of several hypothetical threat scenarios that highlight its strengths and limitations. It is important to understand that IRIS is not a panacea for chip verification, but it is a significant step forward in improving transparency. I will also discuss its potential as a new tool for system designers who are serious about enabling user-level hardware verification.

Finally, time permitting and equipment cooperating, I would like to share the simple pleasure of being able to take a peek inside the chips of some common mobile phone motherboards with a live demo.

Andrew 'bunnie' Huang

https://events.ccc.de/congress/2024/hub/event/iris-non-destructive-inspection-of-silicon/

#38c3 #HardwareMaking

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - A dive into DNS]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 1x - Views:20 https://media.ccc.de/v/38c3-a-dive-into-dns

Everyone kind of forgot about DNS. How does it work, how to claim it back and why?

This talk will show some data about DNS to see differences between TLD's, will show how the entire thing works and the c...]]></description>
<link>https://isharestuff.com/de/2904334/it-sicherheit/38c3-a-dive-into-dns/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904334/it-sicherheit/38c3-a-dive-into-dns/</guid>
<pubDate>Wed, 29 Jan 2025 18:39:22 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 1x - Views:20 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/lK6X_8U-cnk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-a-dive-into-dns

Everyone kind of forgot about DNS. How does it work, how to claim it back and why?

This talk will show some data about DNS to see differences between TLD's, will show how the entire thing works and the current problems in some setups. Then show how to make our own authoritative DNS servers in a secure and redundant way to claim ownership of it and decentralise it from the big providers.

altf4

https://events.ccc.de/congress/2024/hub/event/a-dive-into-dns/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 deu - A dive into DNS]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:13 https://media.ccc.de/v/38c3-a-dive-into-dns

Everyone kind of forgot about DNS. How does it work, how to claim it back and why?

This talk will show some data about DNS to see differences between TLD's, will show how the entire thing works and the c...]]></description>
<link>https://isharestuff.com/de/2904332/it-sicherheit/38c3-deu-a-dive-into-dns/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904332/it-sicherheit/38c3-deu-a-dive-into-dns/</guid>
<pubDate>Wed, 29 Jan 2025 18:38:21 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:13 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/DN4juOkU-rI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-a-dive-into-dns

Everyone kind of forgot about DNS. How does it work, how to claim it back and why?

This talk will show some data about DNS to see differences between TLD's, will show how the entire thing works and the current problems in some setups. Then show how to make our own authoritative DNS servers in a secure and redundant way to claim ownership of it and decentralise it from the big providers.

altf4

https://events.ccc.de/congress/2024/hub/event/a-dive-into-dns/

#38c3 #38c3_deu

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BEST NEW DRAMA & ROMANCE MOVIES 2025 (Trailers)]]></title>
<description><![CDATA[Author: FilmSelect - Bewertung: 26x - Views:240 New Romance & Drama Movies that can be found in this trailer compilation:

00:00 The Last Showgirl
01:46 My Fault: London
03:14 Wish You Were Here
05:29 Snow White
08:01 The Gorge
10:49 Babygirl
12:45 Marked Men
14:49 Millers in Marriage
17:00 The U...]]></description>
<link>https://isharestuff.com/de/2904321/film-unterhaltung/best-new-drama-romance-movies-2025-trailers/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2904321/film-unterhaltung/best-new-drama-romance-movies-2025-trailers/</guid>
<pubDate>Wed, 29 Jan 2025 18:32:30 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: FilmSelect - Bewertung: 26x - Views:240 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/lq12Q0v_PkU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>New Romance & Drama Movies that can be found in this trailer compilation:

00:00 The Last Showgirl
01:46 My Fault: London
03:14 Wish You Were Here
05:29 Snow White
08:01 The Gorge
10:49 Babygirl
12:45 Marked Men
14:49 Millers in Marriage
17:00 The Unbreakable Boy
19:24 A Complete Unknown
20:40 Unstoppable
21:39 Heart Eyes
23:51 Emmanuelle
25:48 Last Swim
27:41 Bring Them Down
29:20 Armand
31:15 The Penguin Lessons
33:31 Karate Kid: Legends
35:25 Your Fault
37:23 Rule Breakers
39:46 The Salt Path

© All Involved Publishers.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Was lange währt, wird endlich gut? Die Modernisierung des Computerstrafrechts]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:84 https://media.ccc.de/v/38c3-was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts

Die Reform des Computerstrafrechts ist längst überfällig. Die bestehende Gesetzgebung ist zunehmend veraltet und entspricht nicht mehr den Anford...]]></description>
<link>https://isharestuff.com/de/2903759/it-sicherheit/38c3-was-lange-waehrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2903759/it-sicherheit/38c3-was-lange-waehrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/</guid>
<pubDate>Wed, 29 Jan 2025 14:20:09 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:84 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/EY1QPBYdPCI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts

Die Reform des Computerstrafrechts ist längst überfällig. Die bestehende Gesetzgebung ist zunehmend veraltet und entspricht nicht mehr den Anforderungen unserer digitalen Welt. Spätestens seit der Veröffentlichung des aktuellen Koalitionsvertrags hat sich die Bundesregierung die Modernisierung dieses vielfach kritisierten Rechtsbereichs auf die Fahnen geschrieben. Doch was ist seitdem wirklich passiert? Wie sieht der aktuelle Stand der Reformbemühung aus? Was wird sich konkret ändern und welche Auswirkungen wird dies auf die Hacker-Community und die Sicherheitsforschung haben? Und wird das endlich gut?

Das Computerstrafrecht steht seit vielen Jahren in der Kritik – nicht nur von Seiten der Hacker-Community, sondern auch aus der Wissenschaft, der Wirtschaft und sogar von Strafrechtsexperten. Ein zentraler Kritikpunkt ist die Kriminalisierung von Hacking mit guter Absicht, sogenannten ethischen Hackern. Aktuell ist auch diese Form des Hacking strafbar. Initiativen wie Bug Bounty Programme und Disclosure Policies zeigen, dass die Industrie durchaus ein Interesse daran hat, von ethischen Hackern zu profitieren, die Schwachstellen verantwortungsbewusst aufdecken und melden. Seit Ende Oktober ist nun ein Gesetzesentwurf im Umlauf, welcher die Modernisierung des Computerstrafrechts vorsieht.
 
Dieser Vortrag gibt einen Einblick in die Entwicklung dieses Gesetzesentwurfs, den aktuellen Stand der Debatte und die nächsten Schritte. Wir erklären dabei die geplanten Änderungen anhand von praktischen Beispielen und erläutern, welche Aktivitäten zukünftig legal wären und welche weiterhin verboten bleiben.
 
Ziel des Vortrags ist es, die Zuhörenden über den Prozess der Gesetzesänderungen zu informieren. Sie erkennen, welche Möglichkeiten sich aus dem reformierten Computerstrafrecht ergeben und lernen, was beim verantwortungsvollen Aufdecken von Sicherheitslücken beachtet werden muss und welche rechtlichen Grenzen weiterhin bestehen. Zudem wird der Vortrag verdeutlichen, inwieweit die geplante Gesetzesreform als Gewinn für die Hacker-Community angesehen werden kann – oder ob es noch immer Nachbesserungsbedarf gibt.

Florian Hantke, Prof. Dr. Dennis-Kenji Kipker

https://events.ccc.de/congress/2024/hub/event/was-lange-whrt-wird-endlich-gut-die-modernisierung-des-computerstrafrechts/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Beyond Cryptopartys - wie Aktivistis und Nerds voneinander lernen können]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 2x - Views:21 https://media.ccc.de/v/38c3-beyond-cryptopartys-wie-aktivistis-und-nerds-voneinander-lernen-knnen

Seit Jahren bemüht sich die Cryptoparty-Bewegung, digitale Selbstbestimmung in der Gesellschaft zu verbreiten. Besonders Aktivist\*innen sind sehr auf...]]></description>
<link>https://isharestuff.com/de/2903757/it-sicherheit/38c3-beyond-cryptopartys-wie-aktivistis-und-nerds-voneinander-lernen-koennen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2903757/it-sicherheit/38c3-beyond-cryptopartys-wie-aktivistis-und-nerds-voneinander-lernen-koennen/</guid>
<pubDate>Wed, 29 Jan 2025 14:19:30 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 2x - Views:21 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/xGJNOjv7PNI?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-beyond-cryptopartys-wie-aktivistis-und-nerds-voneinander-lernen-knnen

Seit Jahren bemüht sich die Cryptoparty-Bewegung, digitale Selbstbestimmung in der Gesellschaft zu verbreiten. Besonders Aktivist\*innen sind sehr auf dieses Wissen angewiesen - doch ein Abend-Workshop von 2-3 Stunden schafft bei ihnen oft mehr Unsicherheiten als vorher. Wie kann man zwischen Nerds und Aktivist*innen übersetzen?

Wir haben viel ausprobiert, teilen unser Konzept mit euch und erzählen, welche Lernatmosphäre & pädagogischen Mittel es braucht, um die Hürden für nicht-Nerds abzubauen.

Link zum Hextivisti-Konzept: https://cryptpad.fr/pad/#/2/pad/view/RwZ3IxG-YtcMzIdSB0g2Ti66dL23s9VhPbvjVM2vKQc/
Link zu diversity-sensibler Lehre: https://www.genderdiversitylehre.fu-berlin.de/einstieg/leitlinien/index.html

Für gesellschaftlichen Wandel ist es unbedingt notwendig, dass sich mehr Menschen mit digitaler Selbstbestimmung auskennen. Vor allem Aktivist\*innen brauchen Grundwissen und Vernetzung, um Antworten für ihre konkreten Herausforderungen zu finden, insbesondere bei zunehmender Faschisierung von Staat & Gesellschaft, Abhängigkeit von Big-Tech-Monopolen, und drohenden Klimakatastrophen.

Das Problem hierbei: anders als Nerds, die sich IT-Sicherheit oft mit Interesse und Angriffslust nähern, haben viele Aktivist\*innen mit Überforderung und Ängsten zu kämpfen.

Als Hindernis beim Lernen kommt oft strukturelle Diskriminierung dazu, und das (Wieder-)Erleben von Situationen, die damit einhergehen. Solche Stress-Situationen begünstigen Frust, Fehler, und Grenzüberschreitungen und verstärken Wissens- und Machtasymmetrien - insbesondere unter Zeit- und Repressionsdruck. Jedes frustrierende Erlebnis, jedes nicht verstandene Fachwort verschlimmert diese Hürden, und verschlechtert letztendlich die gelebte IT-Sicherheit.

Wir haben selbst jahrelang schlechte Erfahrungen mit Abend-Workshops gemacht, die in 2-3 Stunden alles Wichtige für Aktivist\*innen vermitteln sollen (sowohl als Trainer\*innen als auch als Teilnehmer\*innen). Wir sind zu dem Schluss gekommen, dass es eine andere Herangehensweise braucht, und man sich ein Wochenende dafür Zeit nehmen sollte.

Deshalb haben wir ein skalierbares Konzept entwickelt und getestet, welches ermöglicht, dass Nerds und Aktivist\*innen voneinander lernen können. Dieses Konzept wollen wir hiermit open-sourcen. Wir haben jetzt einige Erfahrung mit unserem Wochenend-Format, und weitere Workshop-Wochenden sind in Planung. 

Im Talk wollen wir unsere Idee, Learnings, Hürden und Erfolgserlebnisse teilen. Wir sprechen darüber, wie wir es schaffen können, Frust abzubauen und eine gute Lernatmosphäre zu schaffen, warum wir dafür ein all-gender-Format gewählt haben, und wieso am besten auch Leute mit wenig Erfahrung im Orga-Team sind. Entstanden ist ein Netzwerk, dass einen fortwährenden Wissens-Austausch ermöglicht und weitere Trainings organisiert.

Wenn es nach uns geht, gehören technische und soziale Skills zusammen. Dabei verschwimmen immer wieder die Grenzen, wer eigentlich von wem lernt.

missytake, ronja, smartie

https://events.ccc.de/congress/2024/hub/event/beyond-cryptopartys-wie-aktivistis-und-nerds-voneinander-lernen-knnen/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - Life in the Lager: How it is & how to support]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:17 https://media.ccc.de/v/38c3-life-in-the-lager-how-it-is-how-to-support

Was ist ein Lager und warum ist es so schrecklich und unmenschlich? Wir werden einen Überblick über betroffene Perspektiven mit Selbst­erfahrungen geben, wie man in Lagern (Wohn...]]></description>
<link>https://isharestuff.com/de/2903756/it-sicherheit/38c3-life-in-the-lager-how-it-is-how-to-support/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2903756/it-sicherheit/38c3-life-in-the-lager-how-it-is-how-to-support/</guid>
<pubDate>Wed, 29 Jan 2025 14:19:09 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:17 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/DUgWJFyXkYw?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-life-in-the-lager-how-it-is-how-to-support

Was ist ein Lager und warum ist es so schrecklich und unmenschlich? Wir werden einen Überblick über betroffene Perspektiven mit Selbst­erfahrungen geben, wie man in Lagern (Wohnheimen, EAE) lebt.

Wir geben einen Überblick über die rassistische Bezahlkarte, sowie die Einschränkung der Freiheit wie schwer ist  und über das Leben von Jugendliche in Lagern.
Was machen wir? Wie können wir unterstützen und worauf sollte man achten?

Wir sind eine selbstorganisierte Initiative von Migrantinnen mit Fluchterfahrung, die in Ostdeutschland Rassismus im Alltag erlebt haben. Wir wollen ihre Lebenssituation sichtbarer machen und langfristig mehr gesellschaftliche Solidarität erreichen. In dieser Präsentation sprechen wir über das harte Leben in den Lagern und ländlichen Regionen, über den alltäglichen Rassismus in Behörden, am Arbeitsplatz …, Wir werden auch über die Bezahlkarte und Essensscheine sprechen, basierend auf unseren eigenen Erfahrungen. Diese Maßnahmen sind nicht nur rassistisch, sie entmenschlichen die Betroffenen – besonders Jugendliche. Sie verletzen ihre Würde,  Wir geben auch Beispiele, wie jeder von euch konkret unterstützen und Solidarität zeigen kann.

Hafid

https://events.ccc.de/congress/2024/hub/event/life-in-the-lager-how-it-is-how-to-support/

#38c3 #EthicsSocietyPolitics

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - EU's Digital Identity Systems - Reality Check and Techniques for Better Privacy]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:22 https://media.ccc.de/v/38c3-eu-s-digital-identity-systems-reality-check-and-techniques-for-better-privacy

Digital identity solutions, such as proposed through the EU's eIDAS regulation, are reshaping the way users authenticate online. In this talk,...]]></description>
<link>https://isharestuff.com/de/2903754/it-sicherheit/38c3-eus-digital-identity-systems-reality-check-and-techniques-for-better-privacy/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2903754/it-sicherheit/38c3-eus-digital-identity-systems-reality-check-and-techniques-for-better-privacy/</guid>
<pubDate>Wed, 29 Jan 2025 14:18:29 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:22 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/PKtklN8mOo0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-eu-s-digital-identity-systems-reality-check-and-techniques-for-better-privacy

Digital identity solutions, such as proposed through the EU's eIDAS regulation, are reshaping the way users authenticate online. In this talk, we will review the currently proposed technical designs, the impact such systems will have, and provide an outlook on how techniques from modern cryptography can help to improve security and privacy.

Digital Identity solutions are on the rise all around the world. In particular the European Union is establishing a range of ambitious proposals like eIDAS to establish a general purpose platform for identification, authentication and transfer of personal data that will be used by eGovernment, logging into Facebook, public transport, eCommerce and doctor visits. With the Digital Euro, the EU Digital Travel App, Age Verification Apps and many other proposals we can see the scary trajectory the EU is headed towards. This talk provides a critical reality check about the underlying technology, the impact these systems will have on our privacy on a daily basis and what security (hell) we can expect.  

The talk will also give an overview of the proposed technical eIDAS architecture, and the [Cryptographers' Feedback on the EU Digital Identity’s ARF](https://github.com/eu-digital-identity-wallet/eudi-doc-architecture-and-reference-framework/issues/200). We will also provide a brief introduction into zero-knowledge proofs, the security and privacy properties they can provide for Digital Identities, and what is missing to bring these technologies into reality.

Thomas Lohninger has worked for the digital rights NGO epicenter.works to advocate for [strong privacy in the eIDAS law](https://epicenter.works/en/thema/eid-digital-public-infrastructures) on EU level. He is a member of the [Ad-Hoc Technical Advisory Group of the EU-Commission on eIDAS Wallet](https://epicenter.works/en/content/nda-of-the-ad-hoc-technical-advisory-group-of-the-eu-commission-on-eidas-wallet) and the only civil society Jury member of the SPRIND Funke on [EUDI WALLET Prototypes](https://epicenter.works/en/content/germany-eidas-wallet-jury-agreement-nda) of the German government.

Anja Lehmann is a professor for cryptography at the Hasso-Plattner-Institute, University of Potsdam, with a focus on developing privacy-enhancing technologies, in particular enabling privacy-preserving authentication. She is a Jury member of the SPRIND Funke on [EUDI WALLET Prototypes](https://www.sprind.org/impulse/challenges/eudi-wallet-prototypes#anchor-jury) and also supports the SPRIND EUDI project on the integration of zero-knowledge proofs since October 2024.

Anja Lehmann, socialhack

https://events.ccc.de/congress/2024/hub/event/eu-s-digital-identity-systems-reality-check-and-techniques-for-better-privacy/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - BinDa, die flexible Anwesenheitserfassung für Schulen]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 3x - Views:66 https://media.ccc.de/v/38c3-binda-die-flexible-anwesenheitserfassung-fr-schulen

Im Rahmen eines vom Prototype Fund geförderten Projektes entstand zusammen mit 4 Schulen die Open Source Software BinBa. Diese Software wurde in enger Zusammenarbeit mi...]]></description>
<link>https://isharestuff.com/de/2902913/it-sicherheit/38c3-binda-die-flexible-anwesenheitserfassung-fuer-schulen/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2902913/it-sicherheit/38c3-binda-die-flexible-anwesenheitserfassung-fuer-schulen/</guid>
<pubDate>Wed, 29 Jan 2025 01:34:56 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 3x - Views:66 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/N9ksFANhDJk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-binda-die-flexible-anwesenheitserfassung-fr-schulen

Im Rahmen eines vom Prototype Fund geförderten Projektes entstand zusammen mit 4 Schulen die Open Source Software BinBa. Diese Software wurde in enger Zusammenarbeit mit den Schulen konzipiert, umgesetzt und in Betrieb genommen. 
In dem Talk soll der Weg über die Finanzierung mit Hilfe des Prototyp Funds, die Softwareentwicklung zusammen mit den LehrerInnen und SchülerInnen also auch die Inbetriebnahme beleuchtet werden.

Mit dem Talk soll Mut gemacht werden, mehr freie Software zu schaffen, die sich in die IT Landschaft von Schulen gut einfügt und die Bedürfnisse von Schulen in den Vordergrund stellt. 
Im Rahmen des Projektes wurde viel Wert darauf gelegt, eine klare Abgrenzung zu existierenden Lösungen an den Schulen im Blick zu behalten und Daten mittels Integration aus diesen Lösungen zu übernehmen. Das ganze unter einer freien Lizenz und freier Software. 
SchulIT ist oft geprägt von abgeschlossenen Systemen, die sich nur unzureichend in existerende Lösungen einbinden lassen. Dies endet dann all zu oft in Mehrarbeit, Dateninkonsistenzen und viel Frustration bei allen Beteiligten. 
Wir möchten mit dem Projekt einen kleinen Impuls liefern, die Art und Weise wie heute Software für Schulen entsteht zu überdenken und auch konkrete Vorschläge dafür liefern.

derMicha

https://events.ccc.de/congress/2024/hub/event/binda-die-flexible-anwesenheitserfassung-fr-schulen/

#38c3

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[38C3 - From fault injection to RCE: Analyzing a Bluetooth tracker]]></title>
<description><![CDATA[Author: media.ccc.de - Bewertung: 0x - Views:17 https://media.ccc.de/v/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker

The Chipolo ONE is a Bluetooth tracker built around the Dialog (now Renesas)
DA14580 chip. This talk will present the research made on this device, from
extractin...]]></description>
<link>https://isharestuff.com/de/2901682/it-sicherheit/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/</link>
<guid isPermaLink="true">https://isharestuff.com/de/2901682/it-sicherheit/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/</guid>
<pubDate>Tue, 28 Jan 2025 11:23:12 +0100</pubDate>
<content:encoded><![CDATA[<p>Author: media.ccc.de - Bewertung: 0x - Views:17 <br/></p><p><iframe id="ytplayer" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/49lofyS3_vc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://media.ccc.de/v/38c3-from-fault-injection-to-rce-analyzing-a-bluetooth-tracker

The Chipolo ONE is a Bluetooth tracker built around the Dialog (now Renesas)
DA14580 chip. This talk will present the research made on this device, from
extracting the firmware from the locked down chip using fault injection up to
getting remote code execution over Bluetooth.
The talk will also present the disclosure process and how the vendor reacted to
an unpatchable vulnerability on their product.

This talk will present the journey through the analysis of the Chipolo ONE
Bluetooth tracker. As for lots of IoT devices, this analysis mixes both hardware
and software attacks so this talk will be packed with lots of techniques that
can be applied to other devices as well:

 - Using fault injection to bypass the debug locking mechanism on a chip that has
   apparently never been broken before.
 - Reverse engineering an unknown firmware with Ghidra, a PDF and parts of a SDK
 - Analyzing weak cryptographic algorithms to be able to authenticate to any
   device
 - Finding a buffer overflow and achieve code execution over Bluetooth
 - Disclosing an unpatchable vulnerability to the vendor

Nicolas Oberli

https://events.ccc.de/congress/2024/hub/event/from-fault-injection-to-rce-analyzing-a-bluetooth-tracker/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0<br/></p>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 0,39ms -->