[-] [email protected] 3 points 1 year ago

Wet a paper towel and place it over the whole plate

[-] [email protected] 3 points 1 year ago

Mullvad's response a day after the article. Come on proton, at least a "we saw the article and are looking into it".

https://mullvad.net/en/blog/evaluating-the-impact-of-tunnelvision

Evaluating the impact of TunnelVision

May 7, 2024 Security

We evaluated the impact of the latest TunnelVision attack (CVE-2024-3661) and have found it to be very similar to TunnelCrack LocalNet (CVE-2023-36672 and CVE-2023-35838).

We have determined that from a security and privacy standpoint in relation to the Mullvad VPN app they are virtually identical. Both attacks rely on the attacker being on the same local network as the victim, and in one way or another being able to act as the victim's DHCP server and tell the victim that some public IP range(s) should be routed via the attacker instead of via the VPN tunnel.

The desktop versions (Windows, macOS and Linux) of Mullvad's VPN app have firewall rules in place to block any traffic to public IPs outside the VPN tunnel. These effectively prevent both LocalNet and TunnelVision from allowing the attacker to get hold of plaintext traffic from the victim.

Android is not vulnerable to TunnelVision simply because it does not implement DHCP option 121, as explained in the original article about TunnelVision.

iOS is unfortunately vulnerable to TunnelVision, for the same reason it is vulnerable to LocalNet, as we outlined in our blog post about TunnelCrack. The fix for TunnelVision is probably the same as for LocalNet, but we have not yet been able to integrate and ship that to production.

[-] [email protected] 3 points 1 year ago

Realistic "wreck it ralph"

[-] [email protected] 2 points 1 year ago

Bare minimum idea: have a sticky post on all the forums reminding people that PSN accounts will be required in 6 months. Maybe a little sticky note after you load up the game that goes away after you link.

Leaving it till now was kinda not the best possible choice.

[-] [email protected] 2 points 1 year ago

I just want a you tube channel of some guy with a spectrogram machine testing user voted products available via retail. Lets let videos go viral when they discover lead in mayo.

[-] [email protected] 2 points 1 year ago

Recognize him for a different OG status:

His work was so bad that all the "internet nerds" worked overnight trying to disprove him.

[-] [email protected] 3 points 1 year ago

The apps requirement pisses me off. Both Android/IOS have some sort of pass system.

[-] [email protected] 2 points 1 year ago

Here’s a “funny” story. Back in the day I was working (IT) for insurance companies. I’ve pitched an idea to one of the larges companies about a device connected to an OBD port to track a driver’s habits and adjust premiums based on that. I was turned down, but I heard from an unofficial source that the company was already testing such a device. That was 15 years ago.

Privacy regulations? They don't know how to handle all the data? They realized they'd have to triple rates based on the actual data they were receiving?

[-] [email protected] 2 points 1 year ago

That's just giving up your rights from the get go. They can get a warrant to compel the fingerprint.

In this computer age, warrant requests are a button press to send a docusign e-mail to a judge, who can click the sign button while he sips his cappuccino. Make them work for it.

[-] [email protected] 2 points 1 year ago

Everybody speculating on what it tastes like. When we should probably just pour money into scientific research to bring dinosaurs back from the dead to confirm definitively their taste.

[-] [email protected] 3 points 1 year ago

Code comes from Cappuccino, so sayeth the messiah

63
submitted 1 year ago by [email protected] to c/[email protected]
517
submitted 1 year ago by [email protected] to c/[email protected]
200
submitted 1 year ago by [email protected] to c/[email protected]
[-] [email protected] 3 points 1 year ago

Communities need an auto mod to limit age of accounts.

63
submitted 1 year ago by [email protected] to c/[email protected]
146
submitted 1 year ago by [email protected] to c/[email protected]
201
submitted 1 year ago by [email protected] to c/[email protected]
58
submitted 1 year ago by [email protected] to c/[email protected]
42
submitted 1 year ago by [email protected] to c/[email protected]
28
submitted 1 year ago by [email protected] to c/[email protected]
57
submitted 1 year ago by [email protected] to c/[email protected]
view more: ‹ prev next ›

Glass0448

0 post score
0 comment score
joined 1 year ago