toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

277
active users

#winscp

0 posts0 participants0 posts today

@1password hoping you can help here. I'm using #1Password and #OpenSSH in #WindowsTerminal here on #Windows11 to connect to my #RaspberryPi. I need an easier way to work with files, though, so I'm trying to set up #WinSCP. I've exported my key from 1Password in both formats available. I noticed it didn't have a file extension so added .pem to the name. No matter what I do, WinSCP won't take the key. Neither would #PuTTY when I tried it. Do you have any suggestions on how to resolve this? Anyone else who thinks they might be able to help is welcome to reply too.
#Linux #Windows #SSH #RaspberryPiOS #Tech #Technology

CVE-2024-31497: Secret Key Recovery of NIST P-521 Private Keys Through Biased ECDSA Nonces in #PuTTY Client

PuTTY client and affected components generate biased ECDSA nonces for NIST P-521 (due to first 9 bits of nonce being zero). Assuming ~60 signatures signed by the same secret key can be collected the attacker may be able to recovered the associated private key.

Affected:
- PuTTY 0.68 - 0.80

In addition the following software packages are also affected:
- #FileZilla 3.24.1 - 3.66.5
- #WinSCP 5.9.5 - 6.3.2
- #TortoiseGit 2.4.0.2 - 2.15.0
- #TortoiseSVN 1.10.0 - 1.14.6
(this list may be incomplete)

openwall.com/lists/oss-securit #CVE202431497 #vulnerability #infosec #cybersecurity

www.openwall.comoss-security - CVE-2024-31497: Secret Key Recovery of NIST P-521 Private Keys Through Biased ECDSA Nonces in PuTTY Client

Anyone know of a GUI #linux scp/sftp client that does "delete after transfer" like #WinSCP ? Google-fu is failing me because it's tangled with command line examples.

I know how to do this it from shell with scp/sftp/rsync, but sometimes I need to select many arbitrary files for xfer from a listing. PITA from CLI and easy-peasy from GUI.

I've been using WinSCP under #WINE for years but I'd prefer to do it natively in linux. Weird memory exceptions with it now on wine-5.0.3.

see update