hawkwind

joined 1 year ago
MODERATOR OF
[–] [email protected] 2 points 1 year ago (1 children)

If the only criteria to be in a private channel for admins is being an admin, there’s no use making it private. ;) Unless your just looking to filter out bad actors who don’t want to take 5 min and 5$ to make an instance.

[–] [email protected] 3 points 1 year ago (1 children)

FYI for anyone looking to deface more instances, That list is only updated every 24 hours. Depending on when it last run on your home instance, the info could be out of date.

[–] [email protected] 19 points 1 year ago (3 children)

Out of curiosity, where would the regulators go for a case like this? There's no "company" running it per. se.

[–] [email protected] 4 points 1 year ago

Concerns were posted a few days ago, but no POC that used the exact same attack as we saw here. Basically, there were some warnings, and work was underway that would have prevented this, but it was not done fast enough. There is a patch now, that will take a while to roll out, plus a renewed focus on general and related issues.

[–] [email protected] 17 points 1 year ago (3 children)

Don't fall for it. They're also an admin on mastodon.world! :)

[–] [email protected] 24 points 1 year ago (2 children)

They defaced it with dicks and changed the federation list to be only threads.net. I don't think it was a state sponsored chinese hacking group. :)

[–] [email protected] 1 points 1 year ago

You're not misunderstanding. They just solve more than one issue, and create a few too.

[–] [email protected] 3 points 1 year ago

That's a personal preference though. You don't have a need for a relay. There are more than a few people who want to run their own instance and at least browse all the things without having to subscribe to them. This is a news aggregator at the core after all.

[–] [email protected] 6 points 1 year ago (2 children)

I've been pondering trying to make one, but it's not going to be a cake-walk. The tool (that was a script) I wrote ruffled some feathers for it's potential to destroy the lemmyverse. While I don't believe that could happen. I'm still interested in something easier and more integrated.

The theory is simple and I am willing to take a stab at it, but there might be road blocks trying to make or incorporate changes to the actual lemmy code.

[–] [email protected] 2 points 1 year ago (1 children)

That, is actually kind of fascinating and may be important info for someone doing a follow-up investigation. If that was the bad actor phishing for moderation access, why would they need that, when they already had an admin account? If it was legit, then it's super sus. whoever this app developer was needs to have a little light shone on them.

[–] [email protected] 6 points 1 year ago

TBF, at least you're doing something.

[–] [email protected] 1 points 1 year ago

I was trying to by funny. :(

view more: ‹ prev next ›