Skip to content

Brave browser blocks Windows feature that takes screenshots of everything you do on your PC

Technology
352 170 436
  • Why Every University Needs a Robust Library Software

    Technology technology
    2
    5 Stimmen
    2 Beiträge
    26 Aufrufe
    D
    What are you hoping to accomplish by pasting AI generated word soup here?
  • Amazon Warns 220 Million Customers Of Prime Account Attacks

    Technology technology
    3
    1
    108 Stimmen
    3 Beiträge
    35 Aufrufe
    G
    220 million reasons why you shouldn't have a prime account. edit: Jesus Christ, y'all know I'm right that's why you can't say anything back.
  • 589 Stimmen
    120 Beiträge
    810 Aufrufe
    chickenandrice@sh.itjust.worksC
    Building a linux phone: do you mean from scratch, or just installing one of the Linux phone OS's that already exist? I've been following Ubuntu Touch for several years now and, while they have made a lot of progress, its main hurdles have the same thing in common: mobile hardware is incredibly locked down. For example, Ubuntu Touch uses proprietary Android drivers for many low level functions. Even then, there's some features that aren't stable across all devices, like VOLTE. It sucks, I really want to use Ubuntu Touch (or any of the Linux alternatives) but I can't make phone calls or text in the US without VOLTE support. There are a few phones that support VOLTE, but the feature is either in beta, the phone is expensive, or the phone is not sold in the US. Anyways bringing that back to Graphene: In my case, I'm using this as a stopgap until Linux phones take off (assuming they ever do). For now I guess the best thing is to just be skeptic, keep things minimal, and bloat-free.
  • 295 Stimmen
    31 Beiträge
    231 Aufrufe
    A
    I have a rough idea of their efficiency as I've used them, not in professional settings but I wager it would not be too different. My point is more that it feels like the rugs are finally starting to get pulled. This tech is functionnal as you said, it works to a point and that point is enough for a sizeable amount of people. But I doubt that the price most people are paying now is enough to cover the cost of answering their queries. Now that some people, especially younger devs or people who never worked without those tools are dependant on it, they can go ahead and charge more. But it's not too late, so I'm hoping it will make some people more aware of that kind of scheme and that they will stop feeding the AI hype in general.
  • Misogyny and Violent Extremism: Can Big Tech Fix the Glitch?

    Technology technology
    18
    1
    20 Stimmen
    18 Beiträge
    90 Aufrufe
    G
    It is interesting that you are not answering my point... Good work
  • How data brokers shape your life

    Technology technology
    1
    1
    31 Stimmen
    1 Beiträge
    11 Aufrufe
    Niemand hat geantwortet
  • 27 Stimmen
    2 Beiträge
    24 Aufrufe
    F
    Small progress is still progress. Kick management in the dick, friends.
  • 1 Stimmen
    8 Beiträge
    40 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.