• 0 Posts
  • 128 Comments
Joined 3 years ago
cake
Cake day: August 15th, 2023

help-circle







  • What are the indications that the BitLocker vulnerability is already being utilized?

    Microsoft shipping a vulnerable version of the recovery environment. It is the ‘exploit’.

    Alleged by a guy who was fired from Microsoft. I’d take that with a pinch of salt.

    Such is the nature of closed source software. You select people who will remain complicit till they have a grievance against you. Even if they don’t and talked for moral reasons do you think they would not been fired for it?

    That being said, open source repos are being attacked constantly with attempts at intentional malicious code injection - I’m sure you’ve heard of XZ Utils? How many others went through and are being exploited without anyone noticing?

    Who knows. How many more went through at closed source software a limited amount of people can test in the same way?












  • One of the key pieces of evidence the New Mexico attorney general used against Meta was the company’s 2023 decision to add end-to-end encryption to Facebook Messenger. The argument went like this: predators used Messenger to groom minors and exchange child sexual abuse material. By encrypting those messages, Meta made it harder for law enforcement to access evidence of those crimes. Therefore, the encryption was a design choice that enabled harm.

    The state is now seeking court-mandated changes including “protecting minors from encrypted communications that shield bad actors.”

    I don’t see any of the people celebrating this decision discussing this? Perhaps it’s a misrepresentation by the author since I can’t find the actual decision text.

    This is going to harm small non-corporate websites, not just social media, far more than Facebook or Tiktok. Harmful content is also going to include stuff like LGBTQ, especially anything trans related, and ‘antisemitism’ (but probably not antisemitism.)