Skip to content

In a First, America Dropped 30,000-Pound Bunker-Busters—But Iran’s Concrete May Be Unbreakable, Scientists Say

Technology
113 71 473
  • The Complete History of Honda Acty: From Classic to Contemporary

    Technology technology
    1
    2
    1 Stimmen
    1 Beiträge
    13 Aufrufe
    Niemand hat geantwortet
  • This Is Why Tesla’s Robotaxi Launch Needed Human Babysitters

    Technology technology
    26
    1
    114 Stimmen
    26 Beiträge
    127 Aufrufe
    H
    Karel es hone
  • Telegram, the FSB, and the Man in the Middle

    Technology technology
    8
    1
    52 Stimmen
    8 Beiträge
    47 Aufrufe
    R
    You can be seen from a kilometer away, pots ))
  • Was ist ChatGPT?

    Technology technology
    1
    0 Stimmen
    1 Beiträge
    17 Aufrufe
    Niemand hat geantwortet
  • 136 Stimmen
    29 Beiträge
    143 Aufrufe
    J
    Yeah, I was going to say that TV wasn't much of a news source to begin with. The real issue is that social media for news is probably worse - now everyone can be spoonfed the news they want.
  • 2k Stimmen
    317 Beiträge
    340 Aufrufe
    M
    I have a perfectly fine moral framework According to what? Not everyone has the same beliefs and negative attitude toward it Not everyone thinks female circumcision is bad either. for some it can even have a positive impact. Lol I don’t believe in absolutist terms. Do you absolutely believe that? While your continued failure to comprehend my initial comment is astonishing Your initial comment is indicative of somebody who hasn't thought seriously about their worldview but feels confident about critiquing others.
  • 48 Stimmen
    5 Beiträge
    38 Aufrufe
    L
    Arguably we should be imposing 25% DST on digital products to counter the 25% tariff on aluminium and steel and then 10% on everything else. The US started it by imposing blanket tariffs in spite of our free trade agreement.
  • 1 Stimmen
    8 Beiträge
    40 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.