Portfolio Page
Welcome to the Shit Show. {Recent Post's} Sideshowhost: – Sideshowhost offers Services which can include Computer Repair, Computer Rebuilds, & Computer Networking. Contact the Admin/s about the Service you need assisted with, and as well the Services changes with the seasons. Be sure to ask about the daily specials! To have full access, of everything on the Blog/Site. You got to sign up & become a member. Certain Content on the Blog/Site is Copyright Material Credited & owned by the […]https://sideshowhost.wordpress.com/2026/04/10/portfolio-page/

NPM Package Supply Chain Compromise Leads to RAT Deployment
A supply chain attack targeting the Axios npm package has been identified after threat actors compromised the npm account of the company's lead developer. Malicious versions (axios@1.14.1 and axios@0.30.4) were published containing a hidden dependency that executed postinstall scripts during npm installation. This automated execution downloaded and deployed a remote access trojan on affected systems without requiring user interaction, making it particularly dangerous for developer environments and CI/CD pipelines. The compromise resulted in full remote access capabilities, potential credential exposure including API keys and SSH keys, and possible insertion of malicious code into software builds. Detection platforms identified suspicious process execution chains involving npm spawning command interpreters and network utilities, followed by outbound connections to attacker-controlled infrastructure.
Pulse ID: 69d8b0c258b4fef5541358bb
Pulse Link: https://otx.alienvault.com/pulse/69d8b0c258b4fef5541358bb
Pulse Author: AlienVault
Created: 2026-04-10 08:11:46
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #NPM #OTX #OpenThreatExchange #RAT #RemoteAccessTrojan #SSH #SupplyChain #Trojan #Troll #bot #iOS #AlienVault
An introduction to SSH
https://negativepid.blog/an-introduction-to-ssh/
#linux #CLI #ssh #secureShell #ITadmin #remoteAccess #Internet #tech #IT #science #STEM #computing #negativepid
Why is #ssh so bad at #happyeyeball|ing? Whenever #ipv6 is temporarily unavailable, the system basically freezes wrt ssh.
TIL with pamd, sssd and Authentik, I could not only use LDAP for logins and ssh, I can use OpenID too! Very cool

yes, this happened:
Apr 8 23:46:59 skapet sshd-session[69515]: Failed none for invalid user Can't locate List/Util.pm in @INC (you may need to install the List from 175.199.67.164 port 51226 ssh2
(and several times more, of course)
#ssh #bot #botnet #passwordgroping #passwordguessing #sshgropers #cybercrime #security
Background: "Badness, Enumerated by Robots" https://nxdomain.no/~peter/badness_enumerated_by_robots.html and links therein
New #ssh key #randomart creature - this time cute curious #rat. It's round - are there any words for it, like "borb" for spherical birds? 🐀
#drawing #art #MastoArt #CreativeToots #krita #ArtWithOpenSource

New, dull, blogpost:
"Thoughts on increasing ssh security using a hardware security key"
No luck with a FOSS solution for Android yet :(
https://neilzone.co.uk/2026/04/thoughts-on-increasing-ssh-security-using-a-hardware-security-key/
#Linux #Android #ssh #cybersecurity #blob
🇬🇧 New article on my blog: Pre-establishing SSH master connections for Ansible, or using OnlyKey with Ansible without losing your mind.
https://blog.fidelramos.net/software/ansible-ssh-master-connections
🇪🇦 Nuevo artículo en mi blog: Pre-estableciendo conexiones maestras de SSH para Ansible, o cómo usar OnlyKey con Ansible sin morir en el intento
https://blog.fidelramos.net/es/software/ansible-ssh-master-connections
[lien] OpenSSH begins warning for non-PQC key exchanges - Lobsters (openssh.com via addison) #security #gik #ssh #net
OpenSSH 10.3/10.3p1 released! https://undeadly.org/cgi?action=article;sid=20260407084719 #openbsd #openssh #ssh #security #cryptography #networking