The Mozilla Graveyard
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    TwitchingCheese
    Now 97%

    Seeing "the source is available here on GitHub", "the project was forked and is now maintained as (other name)", etc. after most of these really helps show the difference with Google. Well that and the length of the article, Google has far more deaths under their belt.

    36
  • Big Penny!
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    TwitchingCheese
    Now 100%

    The bridge is on S Pennsylvania Ave in Lansing, MI, hence "Penny". Construction has routed more people through there than normal lately increasing the bridge's hunger.

    If there's one thing people that rent trucks or RVs never learn, it's the height of their vehicle (and that yes the flashing overheight lights are in fact for you).

    Source: Used to live near there.

    167
  • 2.9 billion hit in one of the largest data breaches ever — full names, addresses and SSNs exposed
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    TwitchingCheese
    Now 100%

    Yea that's a tough system to design for. Ideally you want sensitive stuff like that, where you don't care what the data is just that something matches it, stored as the results of a one-way hash function.

    The problem is that most of the data you're going to want to secure is pathetically tiny. 10 digit SSN? My phone can brute force that in a few minutes if you're doing raw hashes. Gotta salt them. But now you have a tradeoff decision, salting every one uniquely is best but now your comparison needs to do [leaked data] × [customers] checks to find matches. Same salt on all of them and as soon as one is cracked they all are.

    1
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearPO
    Jump
    How is it the right can muster an infinite amount of compassion for donald trump but the people who've suffered the most deserve what they get?
    Let's blame the dev who pressed "Deploy"
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    TwitchingCheese
    Now 100%

    I get that it's not the point of the article or really an argument being made but this annoys me:

    We could blame United or Delta that decided to run EDR software on a machine that was supposed to display flight details at a check-in counter. Sure, it makes sense to run EDR on a mission-critical machine, but on a dumb display of information?

    I mean yea that's like running EDR on your HVAC controllers. Oh no, what's a hacker going to do, turn off the AC? Try asking Target about that one.

    You've got displays showing live data and I haven't seen an army of staff running USB drives to every TV when a flight gets delayed. Those displays have at least some connection into your network, and an unlocked door doesn't care who it lets in. Sure you can firewall off those machines to only what they need, unless your firewall has a 0-day that lets them bypass it, or the system they pull data from does. Or maybe they just hijack all the displays to show porn for a laugh, or falsified gate and time info to cause chaos for the staff.

    Security works in layers because, as clearly shown in this incident, individual systems and people are fallible. "It's not like I need to secure this" is the attitude that leads to things like our joke of an IoT ecosystem. And to why things like CrowdStrike are even made in the first place.

    9
  • www.cbsnews.com

    The Supreme Court on Friday overturned a landmark 40-year-old decision that gave federal agencies broad regulatory power, upending their authority to issue regulations unless Congress has spoken clearly.

    309
    40
    Shopping app Temu is “dangerous malware,” spying on your texts, lawsuit claims
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    TwitchingCheese
    Now 94%

    How about pass and enforce strong digital privacy protection laws you fucking cowards. When other countries spy on us it's scary and bad, but for US companies? Best we can do is ban porn and demand backdoors to stop E2EE messaging.

    66
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearTW
    Now
    1 31

    TwitchingCheese

    lemmy.world