Skip to content

Study: Remote working benefits fathers while childless men miss sense of community

Technology
166 113 0
  • Is Internet Content Too Engaging?

    Technology technology
    3
    4 Stimmen
    3 Beiträge
    0 Aufrufe
    T
    The number of tabs I have open from sites I’ve clicked on, started reading, said “eh, I’ll get back to this later” and never have, says no.
  • Let the A.I work or not?

    Technology technology
    1
    0 Stimmen
    1 Beiträge
    0 Aufrufe
    Niemand hat geantwortet
  • 157 Stimmen
    12 Beiträge
    1 Aufrufe
    W
    that's not just useless defeatism, but also false. effective end to end encryption exists in multiple forms today. signal, maybe even with a custom server. matrix if the server is being ran on trusted hardware. XMPP too with the right extensions.
  • 19 Stimmen
    1 Beiträge
    1 Aufrufe
    Niemand hat geantwortet
  • 297 Stimmen
    24 Beiträge
    9 Aufrufe
    S
    This is not a typical home or office printer, very specialized.
  • 1 Stimmen
    8 Beiträge
    5 Aufrufe
    L
    I think the principle could be applied to scan outside of the machine. It is making requests to 127.0.0.1:{port} - effectively using your computer as a "server" in a sort of reverse-SSRF attack. There's no reason it can't make requests to 10.10.10.1:{port} as well. Of course you'd need to guess the netmask of the network address range first, but this isn't that hard. In fact, if you consider that at least as far as the desktop site goes, most people will be browsing the web behind a standard consumer router left on defaults where it will be the first device in the DHCP range (e.g. 192.168.0.1 or 10.10.10.1), which tends to have a web UI on the LAN interface (port 8080, 80 or 443), then you'd only realistically need to scan a few addresses to determine the network address range. If you want to keep noise even lower, using just 192.168.0.1:80 and 192.168.1.1:80 I'd wager would cover 99% of consumer routers. From there you could assume that it's a /24 netmask and scan IPs to your heart's content. You could do top 10 most common ports type scans and go in-depth on anything you get a result on. I haven't tested this, but I don't see why it wouldn't work, when I was testing 13ft.io - a self-hosted 12ft.io paywall remover, an SSRF flaw like this absolutely let you perform any network request to any LAN address in range.
  • 109 Stimmen
    3 Beiträge
    4 Aufrufe
    M
    A private company is selling cheap tablets to inmates to let them communicate with their family. They have to use "digital stamps" to send messages, 35 cents a piece and come in packs of 5, 10 or 20. Each stamp covers up to 20,000 characters or one single image. They also sell songs, at $1.99 a piece, and some people have spent thousands over the years. That's also now just going away. Then you get to the part about the new company. Who already has a system in Tennessee where inmates have to pay 3-5 cents per minute of tablet usage. Be that watching a movie they've bought or just typing a message.
  • 0 Stimmen
    8 Beiträge
    0 Aufrufe
    M
    Sure thing! So glad I could be helpful! I don't blame you. It's the only thing I'm keeping a Win10 dual-boot for right now, and to their credit, it does work quite well in Windows. We've had a ton of fun with our set. In the meantime, I'm keeping up with the project but not actively tinkering with it myself, because it's exciting but also not quite there yet. It's at least given me hope that it can be done though! I'm confident we'll see significant gains sooner rather than later. Hats off to them. (Once my income stabilizes I'll gotta pitch them some funds...) Envision has made it VERY convenient to get set up, but the whole process still saps more time than "Fire it up and play." So maybe play with it at some point, but either way definitely keep your ear to the ground. I'm hoping in the future we'll get to use it for things like Godot XR or Blender integration.