Skip to content

For All That Is Good About Humankind, Ban Smartphones

Technology
89 51 1.5k
  • 2k Stimmen
    139 Beiträge
    159 Aufrufe
    cupcakezealot@piefed.blahaj.zoneC
    there are no good people in this. mc, visa, itch.io, and steam all caved to regressive bigots.
  • 122 Stimmen
    4 Beiträge
    12 Aufrufe
    F
    "Emails" It's a messaging system where you pay like $.25/message, you have to be manually approved by the prison to contact the inmate and all messages are saved and screened for things like PII and criminal activity. You can be permanently suspended if either person breaks the rules (I think the inmate can be put in the box and lose gain-time also), the screening process often just rejects things without explanation, and it may take 24-48 hours to be delivered It's better than the $.15/minute phone calls, but it isn't exactly a Gmail account. It's basically another service provider that DOC has given their blessing so that they can fleece the families of inmates. It's cheap, breaks all the time and costs a ridiculous amount. It is completely unsurprising that this happened.
  • Front Brake Lights Could Drastically Diminish Road Accident Rates

    Technology technology
    337
    1
    595 Stimmen
    337 Beiträge
    9k Aufrufe
    M
    I always say there are drivers out there who only survive by the grace of other drivers.
  • 54 Stimmen
    3 Beiträge
    40 Aufrufe
    fauxpseudo@lemmy.worldF
    Nobody ever wants to talk about white collar on white collar crime.
  • 1 Stimmen
    8 Beiträge
    79 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.
  • 0 Stimmen
    8 Beiträge
    77 Aufrufe
    M
    Sure thing! So glad I could be helpful! I don't blame you. It's the only thing I'm keeping a Win10 dual-boot for right now, and to their credit, it does work quite well in Windows. We've had a ton of fun with our set. In the meantime, I'm keeping up with the project but not actively tinkering with it myself, because it's exciting but also not quite there yet. It's at least given me hope that it can be done though! I'm confident we'll see significant gains sooner rather than later. Hats off to them. (Once my income stabilizes I'll gotta pitch them some funds...) Envision has made it VERY convenient to get set up, but the whole process still saps more time than "Fire it up and play." So maybe play with it at some point, but either way definitely keep your ear to the ground. I'm hoping in the future we'll get to use it for things like Godot XR or Blender integration.
  • *deleted by creator*

    Technology technology
    1
    1
    0 Stimmen
    1 Beiträge
    20 Aufrufe
    Niemand hat geantwortet
  • If you value privacy, ditch Chrome and switch to Firefox now

    Technology technology
    3
    2 Stimmen
    3 Beiträge
    48 Aufrufe
    B
    Why did firefox kill pwa support on desktop?