Pulse of Truth

This magazine is not receiving updates (last activity 0 day(s) ago). Subscribe to start receiving updates.

chicken , in FBI warns of fake law firms targeting crypto scam victims

Scammers targeting people who have been scammed is so common and they are incredibly brazen about it. Basically every post I see on smaller crypto subs on Reddit where some hapless individual has lost money somehow and is asking for help, half the response comments are obvious scammers offering to privately 'assist' them through their problem in DMs.

Asidonhopo , in Organized crime and domestic violence perps are big buyers of tracking devices
@Asidonhopo@lemmy.world avatar

Reason enough a ban should be seriously considered except for scientific research purposes

NoneYa , in Bogus: LockBit's Claimed Federal Reserve Ransomware Hit

I wouldn’t be surprised. What’s going to happen to them if they did get hit by ransomware and millions of peoples’ sensitive info is leaked? Take a look at what happen to Equifax and you’ll see. Not a damn thing.

wizardbeard , in Apple AirPods Bug Allows Eavesdropping

Misleading. When trying to connect to a device, an attacker can spoof being said device to get the airpods to connect to them instead. Similar to SSID spoofing with Wi-Fi.

Nothing in the linked article indicates this allows eavesdropping on existing connections.

CorrodedCranium , in Apple AirPods Bug Allows Eavesdropping
@CorrodedCranium@leminal.space avatar

Really misleading title. It was patched. It should say allowed. You can still edit the post to fix this OP

draughtcyclist , in Researchers in Rabbit R1's jailbreaking community say Rabbit left critical API keys hardcoded in its code, which would let hackers use Rabbit's internal systems (Jason Koebler/404 Media)

Is anyone surprised? They also said it was built from the ground up, then got outed as an android device. This is lipstick on a pig.

Cort , in Researchers in Rabbit R1's jailbreaking community say Rabbit left critical API keys hardcoded in its code, which would let hackers use Rabbit's internal systems (Jason Koebler/404 Media)

Wow, they're going for $125 on eBay right now. I'd consider getting one to play around with, but I saw the bringus video on running stock android. It's just not there yet, and there's no way to bring back the stock OS

mozz Admin , in Majority of Critical Open Source Projects Contain Memory Unsafe Code
mozz avatar

The fuck are you on about

The headline is not what the article says at all

written in a memory-unsafe language

The report concluded that most critical open source projects potentially contain memory safety vulnerabilities. This is a result of direct use of memory unsafe languages or external dependency on projects that use memory-unsafe languages.

Emphasis on “potentially” is mine

Quite a lot more than 55% of projects have an external dependency on projects that use memory unsafe languages. Aside from a certain amount of Go or Rust projects that manage to avoid any dependency that drops down into C to expose some library at some point, I think it’s all of them.

krogoth Mod ,

Not sure if that is even the point. The article is all about memory unsafe programming!!1!. But there is no context at all.

Sure, there are vulnerabilities because of unsafe memory handling. But I looked for some statistic which would bring unsafe memory handling into context with say the high profile vulnerabilities from the last few weeks / months. I haven't spent too much time on research but looking at some lists containing vulns from the last few months it seems as if all those pre-auth, priv escalation, directory traversal and whatnot very based on much simpler failures like wrong error handling or logical errors or missing code than unsafe memory handling.

I might be wrong, then please show me the numbers, but shooting at C/C++ because unsafe!!1! sounds like a very biased story there.

And while we are at it. I'd also be interested in C vs. (somewhat modern) C++.

MajorHavoc , in Musk’s X Risks Fine as EU Steps Up Crackdown on Big Tech

I'm sure his poop emoji auto responder is on top of things and won't let this result in huge fines, in contrast with previous times that he felt that various laws did not apply to him.(/Sarcasm)

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • pulse_of_truth@infosec.pub
  • test
  • worldmews
  • mews
  • All magazines