1
14
submitted 18 minutes ago by oblivion96@discuss.tchncs.de to c/linux@lemmy.ml

https://old.reddit.com/r/cemu/comments/1tbbusq/security_psa_linux_malware_from_cemu_official/

Windows, MacOSX and the Flatpak are unaffected.

The compromised releases are:

Cemu-2.6-x86_64.AppImage

cemu-2.6-ubuntu-22.04-x64.zip

SAFE SHA256 checksum:

Cemu-2.6x86_64.AppImage 0c20c4aeb800bb13d9bab9474ef45a6f8fcde6402cad9b32ac2a1bbd03186313

cemu-2.6-ubuntu-22.04-x64.zip5e4592d0dae394fa0614cb8c875eff3f81b23170b349511de318d9caf7215e1b

Infected SHA256 / Checksums:

sha256: f140e76236b96adf7cdc796227af9808665143bc674debb77729fa3e4b8327cc

sha256: d07a29c4458d00e42d5d9e6345932592e91644d6b821bacdb7a543c628e0b41a

KDE: (Right-click your CemuApp Image -> Properties -> Checksum -> SHA256 button).

If you've run either (f140e or d07a29) to play some games or configure you may want to consider reinstalling your system if you've got any sensitive information, passwords or any of that in use. You're most likely safe if you didn't run the infected releases, but if you've updated and run Cemu recently, you're going to want to make sure you're in the clear, because if you're not then a reinstall may not be the worst idea.

From preliminary analysis it seems that mostly it is trying to spread itself rather than cause direct >damage, it does that by stealing SSH keys, github tokens and a lot of other passwords or keys that >they can then use to infect more packages or software releases.

This is likely also how we got affected. The other Cemu author (MangleSpec/Petergov) ran software >in WSL which was compromised through which they got hold of his github token. At least that is our >leading theory.

HOWEVER if your region is Israel (it detects this via keyboard layout and timezone settings), then it >will have a random chance to wipe your filesystem (subprocess.run(["rm", "-rf", "/*"])) every time you >start the compromised software.

So my immediate advice is this:

Delete the compromised Cemu files (Cemu-2.6-x86_64.AppImage and cemu-2.6-ubuntu-22.04-x64.zip). Note: You are not affected if you downloaded before 6th May. Reset all your passwords, ssh keys and service tokens Block IP 83.142.209.194 just in case. This is hardcoded and used as a remote endpoint

Source: ExZap - https://github.com/cemu-project/Cemu/issues/1911

2
76
Not even a big melon (thelemmy.club)
3
14
submitted 18 minutes ago by MashedHobbits@lemy.lol to c/world@quokk.au
4
37
Good morning! (thelemmy.club)
submitted 46 minutes ago by ivanafterall@lemmy.world to c/memes@lemmy.world
5
12
me_irl (thelemmy.club)
submitted 25 minutes ago by sanitation@lemmy.radio to c/me_irl@lemmy.world
6
19
submitted 32 minutes ago by Alpha71@lemmy.world to c/fuck_ai@lemmy.world
7
48
WTF is a meter? (thelemmy.club)
8
5
submitted 18 minutes ago* (last edited 11 minutes ago) by AloneDownUnder@quokk.au to c/patientgamers@sh.itjust.works

The main theme somehow popped into my head recently and I retried the game.

This time, I tried an geologist with egyptian magic, fighting unarmed. (other favorites are the werediggle curse, Mathemagic and necronomiconomics. )
It's been a while since I last played and I don't think I ever got far.

I also discovered a bunch of new things which I've never seen on my playthroughs before (new updates, or maybe just bad luck in the past) Pocket dimensions and Secret wizard dimensions that can only be accessed by finding their names (and remembering them!)

Everything feels silly like drinking beer to restore mana, using an ingot press to make omelettes from diggle eggs, drinking from fountains with mystery liquids, vandalising statues of the dungeon lord to level up.

But at the same time it's very easy to adjust the game to suit your taste.
The difficulty level is adjustable, Permadeath is an option, plus there is an option for slower floors with the same amount of experience (to reduce grinding if you have less time to play) + Modding support.

Overall a great small title that I enjoyed playing again after so many years.

9
58
me_irl (thelemmy.club)
10
70
Oh. (thelemmy.club)
11
31

I set up a Linux pc to replace my smart TV and add some gaming capabilites. It took some time but I learned quite a lot (Thanks to Debian and Arch wikis). And I haven't missed any TV functionality.

The launcher is flex-launcher on a labwc environment/compositor on a Debian stable distro. (For testing and easy setup, I also did it on Ubuntu Gnome but I don't need a full DE in the background that I don't use. But it's adaptable to other distros and DEs.)

It's now fully usable with a gamepad including turning the TV on and off, so I have also fully replaced the TV remote.

I hope some people may find it interesting. It was also quite a lot of fun, actually.

12
5
submitted 23 minutes ago by JRepin@lemmy.ml to c/europe@feddit.org

cross-posted from: https://piefed.world/c/europe/p/1102854/european-union-surveillance-technology-sold-to-rights-violators

cross-posted from: https://piefed.world/c/tech/p/1102847/european-union-surveillance-technology-sold-to-rights-violators

Languages

54-Page Report “Looking the Other Way: EU Failure to Prevent Surveillance Exports to Rights Violators": HTML/OnlinePDF.

  • EU member states host many companies that produce dangerous surveillance technology that can be used to violate rights, the export of which necessitates robust controls.
  • The implementation and oversight of the EU regulatory framework governing export of surveillance technologies have serious flaws, resulting in the technology being sold to those who use it in violation of international human rights and humanitarian law.
  • The EU should tighten the controls requiring states to do greater human rights due diligence, block risky exports, and enforce the transparency and reporting requirements so they provide meaningful oversight and accountability.
13
28
He's at it again. (thelemmy.club)
14
8
submitted 41 minutes ago by nutellawaescher@feddit.org to c/dach@feddit.org
15
15
submitted 1 hour ago by GamingBot@lemmy.zip to c/gaming@lemmy.zip
16
8
submitted 39 minutes ago by BilSabab@lemmy.world to c/comics@lemmy.ml
17
8
Nantes (more inside) (thelemmy.club)

18
74
19
5
Phantom Rule Power (thelemmy.club)
20
3

as seen here and here, some instances are feeding posts wholesale to prompts, for what seem like extremely unsound reasons to me

any of you run into this shit yet?

21
4
The European Tomorrow (piefed.social)

!the_european_tomorrow@piefed.social

A platform for advocating for EU-based changes that could lead to a better future.

Name is inspired by "The American Dream", except hopefully we won't have to be asleep for this one.

22
5
23
70
submitted 1 hour ago* (last edited 1 hour ago) by StillAlive@piefed.world to c/linkedinlunatics@sh.itjust.works
24
5
25
4
submitted 21 minutes ago by misk@piefed.social to c/european@piefed.social
view more: next ›

The Lemmy Club

3,760 readers
74 users here now

Welcome to The Lemmy Club!

Instance Rules:

  1. Don't be a dick.
  2. Do NOT make me add new rules.
  3. Racism/slurs/etc use will not be tolerated.
  4. No spamming.
  5. Don't harass other users (See rule 1)
  6. NSFW content must be marked correctly.
  7. Loli/etc. will not be tolerated. Suggestive or sexual art must be reasonably recognizable as adult subjects.
  8. Users or communities that, in the view of the admin team, jeopardize the good standing of The Lemmy Club with other instances may be removed.
  9. These rules apply to all content and users that appear on The Lemmy Club. Moderation is on an as noticed/as reported basis. If you see rule breaking content, I likely have just not seen it yet. Please report it.
  10. Instances/users/communities that tolerate, repeatedly fail to enforce, or allow content that breaks any of these rules may be banned from The Lemmy Club.
  11. The site admin team (well, just @bdonvr really as of now) has final say in interpretations of all rules.

Help contribute towards our operating costs to keep us going and growing: https://opencollective.com/thelemmyclub/

We host MLMYM (a clone of old.reddit) at https://old.thelemmy.club/

We host Voyager (a mobile optimized webapp) at https://app.thelemmy.club/

See our status page at https://status.thelemmy.club/

founded 2 years ago
ADMINS