»HTTP/1.1 Must Die – It's time to acknowledge HTTP/1.1 is insecure«
Admittedly, I know pers. not how seriously you have to take this but I am only developing web servers set to HTTP/2.0, because HTTP/3 is not yet extensively supported.

»HTTP/1.1 Must Die – It's time to acknowledge HTTP/1.1 is insecure«
Admittedly, I know pers. not how seriously you have to take this but I am only developing web servers set to HTTP/2.0, because HTTP/3 is not yet extensively supported.
Semrush ist eines der bekanntesten SEO-Analyse-Tools auf dem Markt. Es durchsucht Websites regelmäßig mit seinem Bot (SemrushBot), um Daten wie Keywords, Backlinks, Rankings und vieles mehr von deiner Website zu erfassen und zu analysieren. Hier sind 5 effektive, schnell umzusetzende Methoden, wie du Semrush von deiner Website aussperren kannst.
OpenAI’s ChatGPT Agent casually clicks through “I am not a robot” verification test - Maybe they should change the button to say, "I am a robot"?
... - https://arstechnica.com/information-technology/2025/07/openais-chatgpt-agent-casually-clicks-through-i-am-not-a-robot-verification-test/ #computer-usingagent #aidevelopmenttools #computerusemodel #machinelearning #authentication #websecurity #aibehavior #aisecurity #cloudflare #agenticai #aiagents #captcha #chatgpt #biz #openai #ai
I no longer rely on Jetpack Protect. Instead, I’ve built a lean, hardened WordPress security stack using mod_security, Fail2Ban, WPScan, and a few carefully configured rules. No black boxes. No bloat. Just tools I trust.
#WordPress #Infosec #SelfHosting #WebSecurity #JetpackProtect #Fail2Ban #modSecurity #WPScan
https://islandinthenet.com/building-my-own-wordpress-security-stack/
Important work happening around HTTP Signatures in the Fediverse. Stronger key validation, better digest handling, clearer test vectors—all steps toward more secure and trustworthy ActivityPub communication.
HTTP Signature Upgrades Coming Soon
https://activitypub.blog/2025/07/03/http-signature-upgrades-coming-soon/
Durch eine absurde Erfahrung mit der #Sparkasse suche ich nach #BullshitBingo Karten zum Thema #Security (#WebSecurity)
Bisher:
- Einmalcodes per #SMS
- Proprietäre #TOTP App statt offener Standards
- Support nur per Telefon
- Username und Passwort laut durchsagen
- Apps nach 5 Minuten von selber sperren
- Apps nach 3 Monaten ohne Login sperren, ohne Errorcode oder auffindbare Onlinehilfe ("90 Tage")
- App neu installieren, um Problem zu lösen (#TOFU)
Fällt euch noch was ein?
WebPerformance Report Week #17 is out and today we celebrate a new milestone!
For the first time, we delivered two reports in one day: Web Performance Report
HTTP Header Security Report
https://webperformancereport.com/
#webperf #corewebvitals #ux #seo #cybersecurity #websecurity
New on WebPerformance Report: HTTP Observatory
Check your site's HTTP security headers and get clear, actionable results in your inbox.
Thanks to the @MDN team for their technical guidance.
Because great UX should also be secure. https://webperformancereport.com/httpo
#WebPerf #WebSecurity #CyberSecurity
I had a scary experience with my website that I want to share as a warning. I asked for help making my WordPress site look better in a LinkedIn group, and someone offered to assist, saying it wasn’t responsive. I gave them admin access, but after just one day, I found changes I didn’t make. New pages I didn’t recognize had been created, my menus were altered, and my logo was removed. Thankfully, they didn’t delete anything! They’d only hidden my pages and menus, so I was able to restore everything. I’ve now removed their access. I think this person may have been trying to take over my site.
This was after only 1 day—who knows what they might have done with more time? Please, be extremely cautious about who you trust with admin access to your site, even if they seem helpful. Lesson learned the hard way!
Can anyone explain how the security around @Vivaldi accounts works. I'm loathe to sync across devices without understanding it better. Maybe I am not looking in the right places? #webSecurity
In "Web Security: shaping the secure Web" W3C CEO @seth explains why and how Web Security as a requirement for humanity is central to W3C’s mission, mentions digital identities and credentials as a high-stake current focus, and invites all to participate. #WebSecurity
https://www.w3.org/blog/2024/web-security-shaping-the-secure-web/
…I use the plugins mentioned above to protect my privacy and not for convenience. Most of the others are superfluous in this respect, if not reduce security.
«About Google Chrome's "This extension may soon no longer be supported"»
– by @ublockorigin
In these dangerous days, you have a special duty to protect your children from online mishaps. This can't start early enough!
Therefore, only give your kids web-safe names! This basically guarantees a good start into privacy & security, especially during a time when they can't take care of themselves.
Good names include: Sienna, Coral, Olive, Goldenrod, Misty Rose, Gainsboro, Peachpuff, Burlywood and Lavender Blush.
The World Wide Web Consortium is seeking a full-time staff member to lead #WebSecurity standardization efforts.
https://www.w3.org/careers/2023-web-security-lead-job-posting/
We are excited to announce an immediate job opening: Web Security Lead.
W3C is seeking a full-time staff member to lead our Web Security standardization efforts.
The position is for remote work from anywhere in the world.
Hey @Vivaldi noticed that vivaldi.net is one of the all-greens on Hardenize.
I'd move my mails to vivaldi.net, but I have size worries, still use other providers, & own domain.
Do you have any plans to implement paid size plan, & features like automatic IMAP fetch, external sending SMTP, own domain management?
Referenced link: https://thehackernews.com/2023/06/the-power-of-browser-fingerprinting.html
Discuss on https://discu.eu/q/https://thehackernews.com/2023/06/the-power-of-browser-fingerprinting.html
Originally posted by The Hacker News / @TheHackersNews: http://nitter.platypush.tech/TheHackersNews/status/1672287080062365697#m
Discover the power of browser fingerprinting: personalize user experience, enhance fraud detection, and optimize login security.
Learn how it identifies visitors and enhances authentication: https://thehackernews.com/2023/06/the-power-of-browser-fingerprinting.html
#April2023 monthly #Introduction refresh
My name is #Josh. I like having complete control of my data on the #InterWebs, so I host my own single user #Mastodon instance.
I am a level 3 #TechSupport #Engineer at #Forcepoint. I provide #enterprise #support for our #WebSecurity products.
I am a new-ish #dad with a just-turned-2-year-old boy who was a #CovidBaby
My interests include: #DoctorWho #StarWars #StarTrek #Bluey #Tech #HomeLab #Hardware #FOSS #Marvel #DC #Texas
Ok, my turn to write an #introduction full of as many hashtags as I can think of.
I am in #infosec for as long as I can remember. My main interests in the subject are #networksecurity, #websecurity, #codereview, and secure #systemdesign. Unfortunately for you (and probably for me too, I don't know at this point) I also have a Ph.D. and I am a huge fan of "The Logic of Scientific Discovery" by Karl Popper.
I also like #movies, I watch a lot of them and I make way too many references, like the one below.
While waiting for my letter from #Hogwarts, I practice my dark arts with #computerscience the only other thing close to magical spells that I know how to cast.