Skip to content

Slrpnk instance is down till mid July; they might relaunch their server on piefed.

Technology
92 56 794
  • 966 Stimmen
    360 Beiträge
    9k Aufrufe
    S
    I just don't believe that method will be as successful as you may think.
  • 61 Stimmen
    9 Beiträge
    46 Aufrufe
    gsus4@mander.xyzG
    At least they're good at imagining all the ways in which you can hurt yourself way beforehand...and making sure you don't do them...or anything else
  • What are the most in-demand Tech Skills? (besides AI)

    Technology technology
    5
    10 Stimmen
    5 Beiträge
    63 Aufrufe
    jordanlund@lemmy.worldJ
    AI is devaluing other skills. I got an email today, from my own company, telling me I wouldn't have to renew my professional certification for 2 years if I passed an unrelated test on AI. The "test" was 10 questions. Glad to know my professional certification is equivalent to a 10 question pop quiz on AI.
  • The Prototype: One Step Closer To Fusion Power

    Technology technology
    7
    1
    117 Stimmen
    7 Beiträge
    81 Aufrufe
    A
    As someone else mentioned: Helion Energy: Located in Everett, Helion is developing a magneto-inertial fusion technology and has announced plans for the world's first fusion power plant in Washington State. They have also secured a significant investment and a power purchase agreement with Microsoft for electricity from their fusion plant. Zap Energy: Also based in Everett, Zap Energy is focusing on developing affordable, compact, and scalable fusion energy technology. They are working towards a commercially viable fusion energy solution and have received visits from state leaders to witness their progress. Avalanche Energy: Avalanche is planning a facility in Eastern Washington for commercial-scale testing of radioactive fusion technologies, according to GeekWire.
  • Apple sued by shareholders for allegedly overstating AI progress

    Technology technology
    75
    500 Stimmen
    75 Beiträge
    955 Aufrufe
    finishingdutch@lemmy.worldF
    For this comment, I want to be absolutely clear that I do not give a shit about AI, and that it in no way factored into my decision to buy this iPhone 16 Pro Max. With that disclaimer out of the way: I very much look forward to a class action lawsuit. Apple advertised specific features as coming ‘very soon’ and gave short timeframes when asked directly. And they basically did not deliver on those advertising promises. Basically, I think there’s a good case to be made here that Apple knowingly engaged in false advertising in order to sell a phone that otherwise would not have sold as well. Those promised AI features WERE a deciding factor for a lot of people to upgrade to an iPhone 16. So, I’ll be looking forward to some form of compensation. It’s the principle of it.
  • IRS tax filing software released to the people as free software

    Technology technology
    14
    287 Stimmen
    14 Beiträge
    112 Aufrufe
    P
    Only if you're a scumbag/useful idiot.
  • 2 Stimmen
    2 Beiträge
    32 Aufrufe
    quarterswede@lemmy.worldQ
    I give it 5 years before this is on our phones.
  • 1 Stimmen
    8 Beiträge
    77 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.