global timeline

local β€’ global
πŸ“’ Server Message:

Welcome to Stegodon.zip!

πŸ” @webhat@infosec.exchange boosted

18 hours ago

Counterpoint: They want $80 dollars for this? I could make one myself for about the same amount of money and probably more work but then I'd have something I can understand and repair that isn't one update away from having a cryptominer or botfarm or AI-feeding spyware parasite bursting out of its' chest like an alien xenomorph and scuttling off to some malignant vhost in a different jurisdiction with all my passwords, access tokens and credit card numbers.https://m.ai6yr.org/@ai6yr/116410864443177317

πŸ” @andypiper@macaw.social boosted

18 hours ago

I've had a reply from #Tindie regarding the downtime."Thank you for reaching out.We are currently updating the site and expect to be operational soon.We will email you as soon as the site it Live."It doesn't give me much confidence in whatever is really going on. Why was there no notification of this so called "scheduled maintenance" either direct to store owners or via their social media accounts.

πŸ” @webhat@infosec.exchange boosted

18 hours ago

I reported an insecure DKIM key to Deutsche Telekom / T-Systems. They first asked me to further explain things (not sure why 'Here's your DKIM private key' needs more explanation, but whatever...). Then they told me it's out of scope for their bugbounty.I guess then there's really no reason not to tell you: They have a 384 bit RSA DKIM key configured at: dkim._domainkey.t-systems.nl384 bit RSA is... how shall I put it? I think 512 bit is the lowest RSA key size that was ever really used. 384 bit RSA is crackable in a few hours on a modern PC (using cado-nfs). The private key is:-----BEGIN RSA PRIVATE KEY-----MIHxAgEAAjEAtTliQYV2Xvx1OGkDyOL799BTFEuobY2dn2AgtiKCQgrh78NVK1JKj0yRXgNnPpGBAgMBAAECMF0t+TBZUCi8xATSMij7VLTxv5Xi5OIXesNiXOKtYIRPLkpYfR5PggaMScfbmqSssQIZAMwOhm9d7Y7Qi7I2j1AlYbiqdtqO54T7FQIZAONa9dJFkC6lM3EPXR+0SZ4dqwwpiM0nvQIYYgz8thi5JK264ohq9sTvnu9yKvUN9I09AhgfgMYZKcxtujRjkSZtMzUUNLYzzDmJe90CGDKwqcBI0v9ChaR8WHht+/chMdxj7ez94w==-----END RSA PRIVATE KEY-----

πŸ” @webhat@infosec.exchange boosted

18 hours ago

A massive sperm whale died and beached in The Netherlands, and as is common, it's going to be dissected and studied to determine its origins and cause of death. Apparently, all such studies are led by a single woman. Her name sounded familiar, and then it hit me.Turns out that woman is a former colleague I used to work with when I worked at the hardware store like 20 years ago. Even back then, when she was like 16 or so, she wanted to be a marine biologist. She was very passionate about it.Good on her for following her dream. What a small world. πŸ˜„

πŸ” @webhat@infosec.exchange boosted

18 hours ago

gonna tell my grandkids this was microsoft copilot

πŸ” @andypiper@macaw.social boosted

18 hours ago

For history buffs, try https://opendomesday.org/Courtesy of the Adafruit blog πŸ™‚

19 hours ago

Internet shutdowns are a weaponβ€”used by governments to crush protests, conceal abuses, and control what people know. Join EFF and Amnesty International TOMORROW Thursday, April 16 at 9 am PT to learn how to fight back. https://www.eff.org/event/effecting-change-cant-stop-signal

πŸ” @webhat@infosec.exchange boosted

19 hours ago

Reposting this XKCD#3233 because the bots over here have horribly wrong alt text. #xkcd

πŸ” @webhat@infosec.exchange boosted

19 hours ago

"The death of a program happens when the programmer team possessing its theory is dissolved. A dead program may continue to be used for execution in a computer and to produce useful results. The actual state of death becomes visible when demands for modifications of the program cannot be intelligently answered."-Naur, 1985I feel like this essay should be taught alongside Twitter as a case study.

πŸ” @webhat@infosec.exchange boosted

19 hours ago

RE: https://hci.social/@etosch/116403524999012156all LLMs are dead; interacting with them is necromancy.

πŸ” @webhat@infosec.exchange boosted

19 hours ago

Happy to report that I didn’t feel any need whatsoever to use generative AI for anything at all yet. And Iβ€˜m very likely not going to use it for the rest of my life and I’m going to be absolutely fine.