this post was submitted on 10 Jul 2023
483 points (99.2% liked)

Fediverse

17717 readers
1 users here now

A community dedicated to fediverse news and discussion.

Fediverse is a portmanteau of "federation" and "universe".

Getting started on Fediverse;

founded 5 years ago
MODERATORS
 

FYI!!! In case you start getting re-directed to porn sites.

Maybe the admin got hacked?


edit: lemmy.blahaj.zone has also been hacked. beehaw.org is also down, possibly intentionally by their admins until the issue is fixed.

Post discussing the point of vulnerability: https://lemmy.ml/post/1896249

Github Issue created here: https://github.com/LemmyNet/lemmy-ui/issues/1895

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 11 points 1 year ago* (last edited 1 year ago) (4 children)

i just got logged out of my account from Jerboa and can't login anymore. my is completely wiped from my app now.

edit: okay seems the admins have taken down lemmy.world and thats probably why it happend in the app. but its weird that it just wipes the login and data of the instance in the app.. weird.

[–] [email protected] 8 points 1 year ago (2 children)

Jerboa tries to log in with session info passed to the server, if the server doesn't respond properly then it just calls you Anonymous, because it can't acquire your username and info. That's probably what's happening.

[–] [email protected] 5 points 1 year ago (1 children)

oh, okay. didn't knew that. i expected that it saves the login information locally (encrypted) and then uses this to login.. and if there is an error, that it just says "login error" or something.. with the option to retry.

it's weird that it looks like the whole login data just gets wiped. confused me a lot since it also said Anonymous as my user etc.. really thought first my account got hacked after all that issues.

[–] [email protected] 2 points 1 year ago

I'm not using your app, I'm still learning Connect but ran into similar sounding confusion. Maybe yours is acting the same way: Connect puts an option in the settings to switch which instance(.world/.ee/.ca) it's running on, and each option will show its own list of users in the apps main sidebar. I switched and thought I lost all my login info, but it was there when I switched back. I maybe wouldn't try switching to .world right now, but if that's how your app works maybe it's all still there waiting.

load more comments (1 replies)