Skip to content

Tough, Tiny, and Totally Repairable: Inside the Framework 12

Technology
42 31 0
  • A receipt printer cured my procrastination [ADHD]

    Technology technology
    20
    1
    120 Stimmen
    20 Beiträge
    0 Aufrufe
    L
    Not that I'm aware of.
  • Texting myself the weather every day

    Technology technology
    4
    14 Stimmen
    4 Beiträge
    1 Aufrufe
    G
    Even being too lazy to open the weather app, there are so many better and free ways of receiving a message on your phone. This is profoundly stupid.
  • 894 Stimmen
    179 Beiträge
    17 Aufrufe
    K
    Most jokes need to be recognizable as funny? Like if you say the word cucked, ever, I'm going to assume you're serious and an imbecile and I would be right to do that, no?!
  • 50 Stimmen
    11 Beiträge
    5 Aufrufe
    G
    Anyone here use XING?
  • 143 Stimmen
    30 Beiträge
    17 Aufrufe
    johnedwa@sopuli.xyzJ
    You do not need to ask for consent to use functional cookies, only for ones that are used for tracking, which is why you'll still have some cookies left afterwards and why properly coded sites don't break from the rejection. Most websites could strip out all of the 3rd party spyware and by doing so get rid of the popup entirely. They'll never do it because money, obviously, and sometimes instead cripple their site to blackmail you into accepting them.
  • 221 Stimmen
    99 Beiträge
    13 Aufrufe
    G
    In highrises with lots of stops and users, it uses some more advanced software to schedule the optimal stops, or distribute the load between multiple lifts. A similar concept exists for HDD controllers, where the read write arm must move to different positions to load data stored on different plates and sectors, and Repositioning the head is a slow and expensive process that cuts down the data transfer rate.
  • 1 Stimmen
    8 Beiträge
    5 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.
  • MDM Thoughts?

    Technology technology
    2
    0 Stimmen
    2 Beiträge
    4 Aufrufe
    R
    Hello folks! Interested in learning new skills? Check out the best courses in graphic design- https://www.admecindia.co.in/courses/graphic-design-courses/ https://www.admecindia.co.in/course/advanced-graphic-design-master-course/ https://www.admecindia.co.in/course/most-advanced-graphic-design-course-master-plus/