Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Jewel
May 2, 2009

Another day, another bitcoin ransomware.

https://twitter.com/ankit5934/status/879681380686340096

https://twitter.com/mikko/status/879702057829138433

"The way it is spreading suspects usage of eternalblue or eternalrock"

Adbot
ADBOT LOVES YOU

Jewel
May 2, 2009

christ, amazon :laffo:

https://twitter.com/Chris_Vivier/status/890303417293209601

Jewel
May 2, 2009

:gonk:

https://twitter.com/ericlaw/status/900429796240277504

https://twitter.com/ericlaw/status/900429896941359104

Jewel
May 2, 2009

I don't know that much about networking but this seems absolutely wild, what

http://www.nintendolife.com/news/2017/08/nintendo_affected_by_recent_online_issues_in_japan_google_admits_fault

quote:

Initially reported by The Japan Times, various transport companies, banks and the likes of Nintendo saw their services get disrupted due to issues with the networks of NTT Communications Corp. and KDDI Corp. Apparently the problem was caused when an "overseas network service provider that OCN uses suddenly switched internet routes". While it meant Nintendo gamers were affected for a short while, it also caused disruption for those travelling and trying to use smartcards on journeys, for example.

Google was suspected to be culpable for the fault, and BBC has now reported that the company has admitted responsibility for the issue, citing a "network configuration error". Inadvertently Google had 'hijacked' web traffic out of Japan, leading to slow and in some cases failing online services

Tech breakdown here:
https://bgpmon.net/bgp-leak-causing-internet-outages-in-japan-and-beyond/

Jewel
May 2, 2009

fcc is the new myspace

https://twitter.com/NO_BOOT_DEVICE/status/903285015936716800

:newlol:

Jewel
May 2, 2009

geonetix posted:

i have a feeling these are running in containers rather than vms though, and those are probably (still) easier to escape from if you can do syscalls on the hosting kernel... but again I'm not going to try and prove any of that

I was going to say "why not, it's not like they're going to crack down on you for testing against yourself, and they have a bug bounty program", but while the former is true, weirdly skype isn't on their bug bounty software list so leave them to wallow I guess.

Jewel
May 2, 2009

cyber terrorists ruining my wings and cheese :sigh:

https://twitter.com/intheInfantry/status/904040173801021440

Jewel
May 2, 2009

(sh)iot

https://twitter.com/BogdanCostea/status/906390432539705344

Jewel
May 2, 2009

there was a lot of equifax talk but i didnt know a db was admin/admin lol

https://twitter.com/briankrebs/status/907932442132172800

Jewel
May 2, 2009

..oof :sigh:

https://twitter.com/torproject/status/907677742690439171

Jewel
May 2, 2009

lol if you ever use a tool that says it "cleans your registry to make things crash less" and "delete old files and settings to make your computer run faster"

Jewel
May 2, 2009

what the fuuuuck, this owns :vince:

https://twitter.com/Foone/status/910217984098017281

Jewel
May 2, 2009

flakeloaf posted:

i'm cool with the idea of remotely bricking it in theory

in practice, the moment i do that will be the moment two-crowbars-craig shows up to check on his toy

lol if you think most of the people using these skimmers knows anything about how they work or maybe even what bricking is in the first place though. that's why the ID/pass is unchanged

Jewel
May 2, 2009

I absolutely can not believe that equifax thing, holy poo poo. its been up for 24 hours too, noooo. what a nightmare

also, just saw this tweeted and lol

https://gitlab.com/gnachman/iterm2/issues/6050

Jewel
May 2, 2009

ate all the Oreos posted:

most people in the comments agree that should be removed except

we only wanted to make sure your dns failure doesn't land you a nice 404

you didnt show the funniest part of that message, the reaction badges

Jewel
May 2, 2009

nice NICE NICE NICE

https://twitter.com/newsycbot/status/911305527384256512

https://twitter.com/jupenur/status/911286403434246144

Jewel
May 2, 2009

computer bad, hypervisor not enough

https://twitter.com/abu_y0ussef/status/912276772800090112

e: and another fun one Tavis just retweeted, some pretty simple iphone 7/galaxy S7 remote code execution https://bugs.chromium.org/p/project-zero/issues/detail?id=1289

e2: downside of being in the uk means everyone's asleep so I look like an rear end in a top hat when more and more things come in. bitcoin mining script was on showtime.com supposedly put there by hackers https://www.theregister.co.uk/2017/09/25/showtime_hit_with_coinmining_script/?mt=1506379755407

Jewel fucked around with this message at 16:31 on Sep 26, 2017

Jewel
May 2, 2009

https://twitter.com/veorq/status/913494520054075392

Jewel
May 2, 2009

holy poo poo, this isn't so much of a sec gently caress but more of an interesting thing I didn't know you can do to prevent user idiocy, but I did not know you could do this. was opening chrome console to see why an image didn't load and

Jewel
May 2, 2009

wahey :toot:

https://twitter.com/letsencrypt/status/921036474811912192

Jewel
May 2, 2009

for corporations sure, but what if i want to have ssl on my lovely personal website with some subdomains like blog or portfolio or whatever and not have to manage multiple certs

Jewel
May 2, 2009

fwiw i dont know anything about certs or websites i am but a simple game engine programmer but it's neat to learn about stuff like that from this thread! idk why so many replies to that tweet are so happy then unless they're as uninformed as me while also actually owning a website in which case,

Jewel
May 2, 2009

new assassins creed is crippling peoples' cpus and people investigated and worked out why

https://twitter.com/worstanime/status/925469902697148416
https://twitter.com/JakeZambas/status/925474493216067584
https://twitter.com/worstanime/status/925470134768099328

because games need this level of protection

Jewel
May 2, 2009

its running noted near-virus DRM Denuvo alongside VMProtect which isn't even built for games; making the estimated impact 30-40% lol. i feel sorry for devs who had to do so much crunch to make the game run faster for that poo poo to get slapped on top

Jewel
May 2, 2009

Thanks Ants posted:

i thought we were way past the point of maxing out cpus being able to cause damage. isn't there the world of thermal throttling to happen long before anything cooks?

on new computers, yeah. on the typical computer i see most people have, oof. my old computer was regarded as high end compared to a surprisingly large chunk of my friends' and i accidentally started hitting like 80-90c on some games at the end of its life. it definitely needed a clean but still, poo poo gets bad

Jewel
May 2, 2009

whats even more loving infuriating to me is not all of trumps tweets are even him https://twitter.com/KT_So_It_Goes/status/915610389680926720

how the hell is some shmuck allowed to shadow puppet the prime minister's face in whats seemingly public knowledge to a lot of the repliers to the tweet

Jewel
May 2, 2009

holy poo poo

https://twitter.com/0xabad1dea/status/926933366196396033



https://support.apple.com/en-ca/ht208240

Apple Support posted:

If you type the letter “i” and it autocorrects to an “A” with a symbol
If you updated your iPhone, iPad, or iPod touch to iOS 11.1 and find that when you type the letter “i” it autocorrects to the letter “A” with a symbol, learn what to do.

Try setting up Text Replacement for the letter "i"

Here’s what you can do to work around the issue until it’s fixed by a future software update:
Go to Settings > General > Keyboard > Text Replacement.
Tap .
For Phrase, type an upper-case "I". For Shortcut, type a lower-case "i."

:shittypop:

Jewel
May 2, 2009

probably missed this posted somewhere else in yos but lol. logitech is bricking a product for everybody because certs cost money

https://community.logitech.com/s/question/0D55A0000745EkC/harmony-link-eos-or-eol

quote:

Hi Stan – and everyone else.

In the past week, we notified Harmony Link customers that the product will no longer function March of 2018. Depending on the warranty status – we offered replacements or a discount towards a new Harmony Hub or any Harmony remote.

I understand some of you have Harmony Links that are working perfectly fine right now. However, there is a technology certificate license that will expire next March. The certificate will not be renewed as we are focusing resources on our current app-based remote, the Harmony Hub.

I recognize the frustration of this and apologize for any inconveniences this causes.

Thank you for voicing your opinion.

-Will

https://twitter.com/MalwareJake/status/928309887087665157

Jewel
May 2, 2009

hey remember that facebook thing about photo hashes and we were confused about how they could stop people just sending in common meme images and getting those blacklisted

well



quote:

According to a Facebook spokesperson, Facebook workers will have to review full, uncensored versions of nude images first, volunteered by the user, to determine if malicious posts by other users qualify as revenge porn.

quote:

Facebook will keep hold of these images for a period of time to make sure that the company is correctly enforcing those policies. Here, images will be blurred and only available to a small number of people, according to the Facebook spokesperson. An individual employee at Facebook, however, will have at that point already examined the un-blurred versions.

:)))))))))))))))))))))))))

Jewel
May 2, 2009


(thought I did but forgot to paste it :ssh: thank)

Jewel
May 2, 2009

https://twitter.com/adrjeffries/status/930784132682174464

Safe™©®Graph

Jewel
May 2, 2009

vendors.txt 🤡

https://twitter.com/ian_infosec/status/930559338091110400

Jewel
May 2, 2009

i dont want to thumbnail the first tweet of the thread but holy poo poo read it; pee tape is almost here https://twitter.com/RespectableLaw/status/933772881737240583

Jewel
May 2, 2009

why does everyone ruin my hopes and dreams

vv Well, he only "did the analysis", not "leaked" the original video

Jewel fucked around with this message at 12:20 on Nov 24, 2017

Jewel
May 2, 2009

egh.. everything makes me depressed :(

https://twitter.com/nxthompson/status/934256826237046785

Jewel
May 2, 2009

I still don't quite get it, it's hinting at RCE in battlenet but.. what is localbattle.net? Like, that's not a registered domain and I cant find anything in the battle.net client that hosts some kind of web interface access like some programs do. And googling that url only returns that taviso tweet.

Jewel
May 2, 2009

people piping random tweets into sudo bash. very good opsec

https://twitter.com/Kuwaddo/status/940288213314359296

Jewel
May 2, 2009

firefox installed an opt-out force-installed addon containing an arg for a tv show :allears:

https://twitter.com/steveklabnik/status/941709050718416897
https://twitter.com/ra6bit/status/941715498609373184

Jewel
May 2, 2009

the starbucks bitcoin thing turned out to be someone had hacked the local ISP :v:

https://motherboard.vice.com/en_us/...ource=mbtwitter

Adbot
ADBOT LOVES YOU

Jewel
May 2, 2009

scam email going around "from" paypal@paypal.com

https://twitter.com/HungrySuccubus/status/943956940727525376

  • Locked thread