[-] socphoenix@midwest.social 3 points 3 days ago

It’s not impossible lol. All a company would need to do is keep track of where they were getting content. If I use a script to download as much of the internet as possible and end up with a bunch of copyrighted content I could still get in trouble, hell there was even a guy arrested for downloading jstor without authorization.. Stop letting these guys get away with crimes just because you like the idea of the end product

[-] socphoenix@midwest.social 2 points 4 days ago

That one did oddly enough draw less of a stink, though it did still get whispered about when it suited one’s purpose.

[-] socphoenix@midwest.social 116 points 4 days ago

Out of the 151 breast reductions that were performed in 2019 on American minors, 146 (97 percent) were performed on cisgender males.

The thing is, growing up in an evangelical church they don’t want these people getting breast reduction surgery either. they firmly believe that any change to the body is going against God’s will regardless of the physical or mental harm it may cause.

[-] socphoenix@midwest.social 2 points 5 days ago

For sure take the case if it’s affordable! It’ll look much nicer afterwards too

[-] socphoenix@midwest.social 28 points 6 days ago

JB weld epoxy might be a good choice if you either don’t plan on replacing the screen again, or to recreate the holes and patch the cracks if you pull it all the way apart again. I did it to the back of a tv when the vesa screw mounts ripped and it held for another 5 years.

[-] socphoenix@midwest.social 45 points 2 weeks ago

Schools with little to no accountability with greater access to enforce arbitrary rules and teaching of propaganda*

[-] socphoenix@midwest.social 53 points 1 month ago

This might be a change due to that new Microsoft recall program

[-] socphoenix@midwest.social 43 points 1 month ago

at the same time Fox has devoted less attention to the trial itself, it has extended near-blanket coverage to the alternative proceedings taking place in the same location — Trump’s open soliloquies to the press from the courthouse lobby where he lashes enemies inside and out of the courtroom.

Can’t say I’m surprised by this, anything different would just siphon their case viewers elsewhere.

95
submitted 2 months ago by socphoenix@midwest.social to c/news@lemmy.world
39
[-] socphoenix@midwest.social 50 points 2 months ago

This has to do with encryption protocols. Offhand my assumption is either they are trying to be extra cautious as the rules are incredibly complex, or they have a different algorithm included by default that would be subject to those rules.

[-] socphoenix@midwest.social 43 points 6 months ago* (last edited 6 months ago)

Google calendar events can be synced through the Apple calendar and at least for me by default have reminders set 30 minutes before. I have my account set up through the mail app, but to check this do the following:

Go to Settings -> Calendar -> Accounts -> Gmail. Make sure it’s set to sync your calendar. There’s also the ability to add an account here. Then go back to the calendar app and find an event to check if reminders are set.

8

and HEVC as the only video decoding. Kind of dissapointing as using a graphical display remains the worst part of the rpi systems

[-] socphoenix@midwest.social 48 points 9 months ago

I know you the author doesn’t seem to want to hear about Home Assistant, but it does have the HomeKit integration they want and you have the fine tuned control the want too!

2
7
[-] socphoenix@midwest.social 49 points 11 months ago

For a lot of people, a shocking amount really the law is the closest to morals or empathy they possess. They also seem to spend a lot of time looking for ways to work around said law too

16

Posting this for visibility: cross-posted from: https://lemmy.world/post/1299831

Hi all,

If you're just now signing in for the first time in 12+ hours, you may just now be finding out that Lemmy World and other instances where hijacked. The hijackers had the full abilities of hijacked user, mod, and admin accounts. At this time, I am only aware of instance defacing and URL redirections to have been done by the hijackers.

If you were not forced to sign back in this morning, contact your instance admin to verify mitigations were completed on your instance.

How?

This occurred due to an XSS attack in the recently added custom emojis. Instance admins should follow the issue tracker on the LemmyNet GitHub, as well as the Matrix Chat. Post-Incident Activity is still on-going.

Currently, it is likely that just your session cookie was stolen, with instance admins being targeted specifically by checking for navAdmin, an HTML element only instance admins had. I do not believe this to affect users across instances, but I have yet to confirm this.

What happens next?

As I am not the developers or affected instance admins, I cannot make any guarantees. However, here is what you'll likely see:

  1. Post Incident investigation continues. This will include inspecting code, posts, websites, and more used by the hijackers. An official incident writeup may occur. You should expect the following from that report:
  • Exactly what happened, when.
  • The incident response that occurred from instance admins
  • Information that might have helped resolve the issue sooner
  • Any issues that prevented successful resolution
  • What should have been done differently by admins
  • What should be improved by developers
  • What can be used to identify the next attack
  • What tools are needed to identify that information
  1. A CVE is created. This is an official alert of the issue, and notifies security experts (and enthusiasts), even those not using lemmy, about the issue.

  2. A code security audit is done. This will likely just be casual reviews by technical lemmy users. However, I will be reaching out to the Mozilla Foundation and Cure53 as they recently did an audit of Mastodon. If there is interest in an external audit of lemmy and the costs are affordable, I'll look into crowdfunding this cost.

4

I'm trying to set up rules so I can access a few different containers from zerotier. I've already set up an ssh-x11 container and the passthrough is working fine with:

rdr on $ext_zero proto tcp from any to $ext_zero port 8000 -> 10.1.1.3 port 22

where $ext_zero is the variable for the zerotier bridge.

However, trying to stream music with jellyfin with:

rdr on $ext_zero proto tcp from any to $ext_zero port 8096 -> 10.1.1.6 port 8096

I get consistent connection refused messages.

The full pf.conf for redirections: Code:

table <jails> persist
nat on $ext_if from <jails> to any -> ($ext_if:0)
rdr-anchor "rdr/*"
rdr on $ext_zero proto tcp from any to $ext_zero port 8000 -> 10.1.1.3 port 22
rdr on $ext_zero proto tcp from any to $ext_zero port 8096 -> 10.1.1.6 port 8096
rdr on $ext_zero proto tcp from any to $ext_zero port 8920 -> 10.1.1.6 port 8920
rdr on $ext_zero proto udp from any to $ext_zero port 1900 -> 10.1.1.6 port 1900
rdr on $ext_zero proto udp from any to $ext_zero port 7359 -> 10.1.1.6 port 7359

The system is FreeBSD, the jails are roughly equivalent to a docker compose install.

Jellyfin is set to accept remote connections, with the whitelist left blank as per their instructions to allow all addresses. Why will ssh connect but not jellyfin?>>

10
3
4
53
3
submitted 1 year ago* (last edited 1 year ago) by socphoenix@midwest.social to c/hockey@lemmy.world

cross-posted from: https://midwest.social/post/961901

Good morning hockey fans! It's still a good bit before pre-season, but I've been working on a bot for the flyers community and would like some feedback on what everyone would find useful. Based on tests it should be ready to go once pre-season rolls around. It pull stats/standings /live scores at the moment. If there's other features (or more information you would like to see on the existing ones), please let me know so I can make sure to have it finished before the start of the season!

I'd also love feedback from any community mods that want to use the bot for any way to make it easier for you to do so! Right now it can be installed through python's pip command or through docker

view more: next ›

socphoenix

joined 1 year ago
MODERATOR OF