leds

joined 1 year ago
[–] [email protected] 1 points 2 hours ago

So surprise, the endless legitimate single sign ons on seemingly random websites where users need to enter their password are to blame for this.

[–] [email protected] 3 points 21 hours ago* (last edited 21 hours ago)

Please see this excellent comment from @[email protected] on another thread : https://lemmy.world/comment/13188256

[–] [email protected] 3 points 2 days ago (1 children)

Consider Flair , I've been happy with mine for daily espresso brews. It would work especially well with darker roast and lower temperatures (it is a struggle to get enough heat with them)

 

I dont know who needs to hear this bit qBittorrent has a nasty vulnerability ( and there are some older ones too)

qBittorrent, on all platforms, did not verify any SSL certificates in its DownloadManager class from 2010 until October 2024. If it failed to verify a cert, it simply logged an error and proceeded.

To be exploitable, this bug requires either MITM access or DNS spoofing attacks, but under those conditions (seen regularly in some countries), impacts are severe.

The primary impact is single-click RCE for Windows builds from 2015 onward, when prompted to update python the exe is downloaded from a hardcoded URL, executed, and then deleted afterwards.

The secondary impact for all platforms is the update RSS feed can be poisoned with malicious update URLs which the user will open in their browser if they accept the prompt to update. This is browser hijacking and arbitrary exe delivery to a user who would likely trust whatever URL this software sent them to.

The tertiary impact is this means that an older CVE (CVE-2019-13640 https://www.cvedetails.com/cve/CVE-2019-13640/) which allowed remote command execution via shell metacharacters could have been exploited by (government) attackers conducting either MITM or DNS spoofing attacks at the time, instead of only by the author of the feed.

Full write up is here: https://sharpsec.run/rce-vulnerability-in-qbittorrent/

[–] [email protected] 4 points 4 days ago

Yep I guess old tricks will still work , attack with the sun behind you and they'll never see you coming

[–] [email protected] 49 points 5 days ago

"Who is the current president?"

Yeah that one might be an issue for him..

[–] [email protected] 14 points 6 days ago (8 children)

Yeah my nobrand cheap coffee scale also has a tiny spicy pillow, I really should replace it.

[–] [email protected] 1 points 6 days ago

How else would they get in your ear?

[–] [email protected] 4 points 1 week ago

Ouch you're going to need a new chain too

[–] [email protected] 8 points 1 week ago

Smells like SAP

[–] [email protected] 3 points 1 week ago* (last edited 1 week ago)

I don't find it too hard , what I do is to put the rice paper in big frying pan with warm water , just enough that is starts to soften . drape it onto a big plate so it will stick to the plate.

Then place the filling in the middle and lift one corner from the plate and fold over. Repeat with the other corners , the rice paper will stick to itself to seal the thing.

Bonus: briefly fry the whole thing on all sides

[–] [email protected] 1 points 1 week ago

I read that as genitals...

[–] [email protected] 3 points 1 week ago (2 children)

Best I could find

 

so.. i'm running lineageOS on my phone (a Oneplus 6T) , have been for a very long time. Usually i'm really happy with this but not tonight:

  • Phone suggest a update of OS , just a weekly build. Sure why not, so it does it thing and i reboot, all good.
  • Open a app to listen to some podcast: screen goes black flickers a couple of times showing empty launcher. thankfully power button long press shows shutdown menu (but looks different from normal?) and lets me restart
  • do same thing again , ok looks like latest update broke something
  • update app, same
  • go to settings , updates to try to revert to previous version: no option to install older version , only option is export. weird ok lets try to export old version . Now it lets me install that
  • installation loops , seems it failed
  • try app again, same black screen , hold power button to get boot menu again : now phone says ERASING .. wait what stop no .. (does lineage have a panic wipe my phone key combo i didn't know about?)
  • rebooting , rebooting again
  • welcome setup your phone screen :(
  • remember that my cloud server disk burned last week , no way to restore backups :( :(
 

Merged

 
 

SyntaxError som overskrift...

 

Jeg tænker hvis seniorerne få ret til 4 dages arbejdsuge vil det også være nemmere for resten af os, nu er det ikke noget man kan nemt spørge om ellers få man nemt svaret at "det er ikke muligt her"

view more: next ›