nosut

joined 1 year ago
MODERATOR OF
[–] [email protected] 4 points 1 year ago

Yea. It has already been fixed now though.

[–] [email protected] 3 points 1 year ago

It's all public information.

Admins are shown on the front page

Modlog shows even when an admin is added or removed.

Blocked instances are shown in the instances list.

[–] [email protected] 26 points 1 year ago (3 children)

The JWT exploit bypasses 2FA requirements. It basically steals your active session and allows a third party to use it.

[–] [email protected] 40 points 1 year ago* (last edited 1 year ago) (1 children)

Thanks for the work. As a heads up it appears most of the block instances are back however I believe explodingheads is still missing which you may want to confirm.

EDIT: it has been added back to the block list.

[–] [email protected] 3 points 1 year ago (1 children)

They were modded 20 days ago.

[–] [email protected] 4 points 1 year ago

I find it unlikely to be necessary because the MichelleG account shouldnt have needed database access and it appears the attack was troll related with basic XSS redirects. You can wait for an official response however it is always good policy for yourself to do so anyways.

[–] [email protected] 4 points 1 year ago (2 children)

Yep. MichelleG admin was added back and posted an update but it doesnt appear that her account was fully secured so they are probably still accessing it via her account.

[–] [email protected] 3 points 1 year ago

Looks like its starting to be resolved.

[–] [email protected] 0 points 1 year ago (1 children)

Not that I am aware of at least.

[–] [email protected] 2 points 1 year ago* (last edited 1 year ago) (2 children)

MichelleG account it appears. Was removed from admin not long ago.

[–] [email protected] 2 points 1 year ago (4 children)

Admin account was compromised.

[–] [email protected] 24 points 1 year ago* (last edited 1 year ago) (16 children)

Admin account was compromised. Looks like they are working on it but it will take a bit to fix all the stupid that was done.

EDIT: Looks like things are starting to resolve.

EDIT 2: MichelleG account admin was restored and she posted and update but shortly after the changes happened again. Her account is likely still compromised with someone else accessing things via it.

EDIT 3: lemmy.world back online. MichelleG has again been removed as admin. Most things appear to have been cleaned up. Blocked instances still need to be fixed however.

 

This is for all things discord. Currently welcome all discussion including things like BetterDiscord and Replugged.

 

I didn't see one when doing a search so I made it. I am absolutely not the right person for this job but here I am!

Feel free to share or ask anything related to Proxmox here. We are in the stages of any content is at least content. As more people join then the range of experience will grow and more information will be available to all.

 

Hey anyone, If you are like me you didnt see any communities for kindles so I made one and you ended up here. That being the case.

Welcome!

Until any type of growth happens going to keep things pretty loose. So weather it be news about devices, what books you are reading or just excitement that you got a new device feel free to share it all.

view more: ‹ prev next ›