• 1 Post
  • 1.47K Comments
Joined 1 year ago
cake
Cake day: June 17th, 2023

help-circle

  • When accessed by BleepingComputer, however, the link returned a 404 (Not Found), and according to several others who tried to access the URL, no content ever existed at the location from the beginning.

    This really doesn’t mean anything, it’s not unheard of for malicious actors to not set up their C&C servers until later on. This has actually been exploited by law enforcement in other cases also, they simply registered the domain themselves and took control away ahead of the attacker.

    There’s a risk with setting up the C&C that it could be traced back to the attackers. By not setting it up until it’s needed you avoid that risk until it becomes necessary.





  • My impression is that it hasn’t been users that have pushed everything into apps, it’s been publishers. This is all a part of a general trend where software has become much less about what it can do for the user, and much more about what data it can extract from a user for the publisher. Websites generally have a lot more protections against such data scraping, meanwhile you can put who knows what code into an app.


  • Yeah I read this article on another post, I’m not sure that’s the whole story.

    From what I remember, he was running a few “shops”. These don’t actually sell games, but they can be accessed by a piece of homebrew software on the switch, and then you connect to the “shop” to download games directly to the device - this was done instead of manually copying install files to the SD card, installing, and then deleting the original files to save space; or instead of installing over USB. The shops were much easier, not least because removing the SD card to copy games from a PC required a reboot, and rebooting an OG hacked Switch could be kind of a pain.

    I think the “sales” he did were actually just donations that got you early access to titles that weren’t widely available yet. However, it’s generally when you start taking money for these things that the shit hits the fan and the hammer comes down.






  • TWeaK@lemm.eetoPrivacy@lemmy.mlHeads up. Facebook keylogs your passwords.
    link
    fedilink
    English
    arrow-up
    5
    arrow-down
    2
    ·
    11 months ago

    Probably referring to group chats and sharing media.

    My point is you need to put your foot down and say “I won’t use WhatsApp. If you want that functionality with me, we can use Signal, but otherwise SMS.”

    WhatsApp really doesn’t have any features that aren’t also in Signal, but Signal isn’t owned by Facebook and was never a vector for zero-click access to your device (NSO’s Pegasus toolkit used WhatsApp calls to get at Android phones, this was involved with Saudi Arabia’s execution of Jamal Khashoggi). WhatsApp is simply not trustworthy, and a massive security risk.