The Supreme Court is returning to a new term to take up some familiar topics — guns and abortion — and concerns about ethics swirling around the justices....
Unhealthy, people with no access to mental health services, or adequate education, shouldn’t have access to guns even in a healthy society. If you had all those maybe you can be trusted with guns.
What is the mass of the Milky Way galaxy? It is difficult to measure the mass of a galaxy, and previous estimates appear to have been inaccurate. There is a new study that has used data from the Gaia spacecraft to calculate a more accurate mass for the Milky Way. The study found that the Milky Way is much less massive than...
When a microbe was found munching on a plastic bottle in a rubbish dump, it promised a recycling revolution. Now scientists are attempting to turbocharge those powers in a bid to solve our waste crisis. But will it work?
That’s like saying Digg isn’t dead because the website is still there. But what was once the front page of the Internet is a forgotten footnote that now stands as a bot content farm. Reddit will go the same way.
It’s been hard to tell because reddit isn’t releasing user retention statistics that are easy to find for other social media sites (minutes per user per day), also due to vote obfuscation it can be difficult to know from vote counts because they could just manipulate the bias.
There’s also a lot of established communities around media/internet personalities that are largely unaffected by the changes and unlikely to move without significant fan pressure.
But people go where the content is, last time I checked the top 5 posts on Reddit were under 30k votes and were all tiktoks. That tells me that the content creators and the progressive adaptors have all moved on already, the rest is attrition over time as the service and content continues to stagnate.
The one thing reddit has propping it up artificially is it’s remaining position as a valuable information resource particularly for niche topics and especially while the fediverse doesn’t get boosted in seo yet.
They can’t send it if they haven’t stored it, that’s the proof. Whether temporary or not it’s a weakness and attack vector for obtaining unhashed passwords. And if they stored it, it should be immediately hashed at which point they can’t send it.
Stored in memory is still stored. It’s still unencrypted during data processing. Still bad practice and a security vulnerability at best. Email isn’t E2E encrypted.
You have the text input feed directly into the encryption layer without an intermediary variable. The plaintext data should never be passable to an accessible variable which it must be to send the plaintext password in the email because it’s not an asynchronous process.
I’m surprised so many people are getting hung up on basic infosec.
The front end to backend traffic should be encrypted, hashing occurs on the backend. The backend should never have access to a variable with a plaintext password.
I’m going to have to stop replying because I don’t have the time to run every individual through infosec 101.
Yes. I agree 100% with the things I can and I defer to your experience where I can’t. I used to write proprietary networking protocols 20 years ago and that’s the knowledge and experience I’m leaning on.
As a matter of practice we would ensure to process passwords by encrypting the datasteam directly from the input, and they were never unencrypted in handling, so as to protect against various system and browser vulnerabilities. It would be a big deal to have them accessible in plaintext beyond the user client, not to mention accessible and processable by email generation methods and insecure email protocols.
I haven’t looked into it but I was wondering about the logistics of setting up a federated honeypot for server side stream sniffing to build a plaintext email/password database.
You encrypt the datastream from the text input on the client side before storing it in a variable. It’s not rocket science. I did this shit 20 years ago. Letting a plaintext password leave the user client is fucking stupid.
You mean “Gun Manufacturing” (Mechanical Engineering), “Bunker Building” (Civil Engineering), “Things Hitting Things” (Physics), “Explosives, Toxins, and Poisons” (Industrial Chemistry), “DIY Alternative Medicine” (Pharmaceutical Chemistry), “Owning the Libs” (Law), “Ripping off the IRS” (Taxation and Accounting), “How to be Offensive” (Language theory, reading/writing comprehension), “How to win at Gambling” (Mathematics, Statistics) “Why Libs Think Like Pussies” (Philosophy), “War” (Geography, Geo-politics, International Studies).
Nurse Joy said you were overweight im not giving you any more rule you little shit (lemmy.ml)
it basically is already but you know, downgrades people! (feddit.de)
California governor rejects bill to give unemployment checks to striking workers (thehill.com)
How to burn thousands of calories (lemmy.frozeninferno.xyz)
Definition of :) (lemmy.ml)
Cute but I’ll still take the first one (thumbsnap.com)
The Supreme Court will take up abortion and gun cases in its new term while ethics concerns swirl (apnews.com)
The Supreme Court is returning to a new term to take up some familiar topics — guns and abortion — and concerns about ethics swirling around the justices....
The Milky Way's Mass is Much Lower Than We Thought (www.universetoday.com)
What is the mass of the Milky Way galaxy? It is difficult to measure the mass of a galaxy, and previous estimates appear to have been inaccurate. There is a new study that has used data from the Gaia spacecraft to calculate a more accurate mass for the Milky Way. The study found that the Milky Way is much less massive than...
We are just getting started’: the plastic-eating bacteria that could change the world (www.theguardian.com)
When a microbe was found munching on a plastic bottle in a rubbish dump, it promised a recycling revolution. Now scientists are attempting to turbocharge those powers in a bid to solve our waste crisis. But will it work?
My disappointment is immeasurable and my day is ruined (startrek.website)
Reddit abandons user privacy - Ars Technica (arstechnica.com)
I left a couple of months ago. Couldn’t be happier....
chaotic evil is for me (lemmy.ca)
Jury acquits delivery driver of main charge in shooting of YouTube prankster (abcnews.go.com)
A jury has found a delivery driver not guilty in the shooting of a YouTube prankster who was following him around a mall food court earlier this year
Larion Studios forum stores your passwords in unhashed plaintext. (lemmy.world)
Larion Studios forum stores your passwords in unhashed plaintext. Don’t use a password there that you’ve used anywhere else.
We should rename Solar to Patriot Power to make it palatable to the right
The Left is doing it wrong....