#network

anonymiss@despora.de

Who owns your shiny new #Pixel 9 #phone? You can’t say no to #Google’s #surveillance

Source: https://cybernews.com/security/google-pixel-9-phone-beams-data-and-awaits-commands/

Every 15 minutes, #GooglePixel 9 Pro XL sends a data packet to Google. The device shares #location, email address, phone number, #network status, and other #telemetry. Even more concerning, the phone periodically attempts to download and run new code, potentially opening up #security risks...

Don't be a data cow 🐮 on Google's server farm 👎

#tracking #fail #bigbrother #orwell #economy #online #Problem #news #Smartphone #android #bigdata #datacow

anonymiss@despora.de

Elon #Musk declares “it is #war” on ad #industry as #X sues over “illegal #boycott

source: https://arstechnica.com/tech-policy/2024/08/elon-musk-declares-it-is-war-on-ad-industry-as-x-sues-over-illegal-boycott/

#ElonMusk's X Corp. today sued the World Federation of #Advertisers and several large #corporations, claiming they "conspired, along with dozens of non-defendant co-conspirators, to collectively withhold billions of dollars in #advertising revenue" from the #social #network formerly known as #Twitter.

Elon is a brilliant #mastermind because he can stop advertising without an #AdBlocker. :D

#justice #usa #economy #conspiracy #problem #advertisement #law #news #finance

anonymiss@despora.de

Beyond the Limit: Expanding single-packet race condition with a first sequence sync for breaking the 65,535 byte limit

source: https://flatt.tech/research/posts/beyond-the-limit-expanding-single-packet-race-condition-with-first-sequence-sync/

To overcome the limitation of a single packet attack, I used IP fragmentation and TCP sequence number reordering.

Using IP layer fragmentation, a single TCP packet can be split into multiple IP packets, which allows the full utilization of the TCP window size.
Additionally, by re-ordering the TCP sequence numbers, I prevented the target server from processing any of the TCP packets until I sent the final packet.

Thanks to these techniques, we can significantly exploit a minor limit-overrun vulnerability, potentially leading to severe vulnerabilities like the authentication bypass of one-time token authentication. During testing, I was able to send 10,000 requests in about 166ms.

#network #tcp #ip #internet #hack #hacker #exploit #news #software #limit #knowledge

anonymiss@despora.de

How to protect your #privacy with an SBC-powered #VPN #server

source: https://www.xda-developers.com/set-up-vpn-server-on-sbc/

Virtual Private Networks (VPNs) are an effective means to enhance your privacy. By disguising your IP address, a VPN prevents third-parties from tracking your #online activities on top of protecting your data from network-based hacking attacks.

#news #cybersecurity #opensource #network #internet #security

vertruc@diaspora-fr.org

MIRLO 🐦 une alternative à Bandcamp libre et collective 🎶

Mirlo: a free and collective alternative to Bandcamp

https://mirlo.space/

Mirlo logo

🇫🇷 Un magasin de musique en ligne libre et collectif fait son apparition ! ✊🎶 Leur objectif: proposer un outil simple, efficace et adapté aux artistes qui veulent vendre leur musique en ligne. Le site fonctionne déjà et les futures mises à jour risquent de vous plaire: 🤝 fédération, 👕 vente de merch et CD, 💸 rémunération récurrente ou ponctuelle, 👔 gestion d'artistes et labels... le tout porté par des valeurs anticapitaliste et anarchistes ! Ses 3 fondateurs, vétérans dans ce domaine (Ampled, FunMusicPlace) sont actuellement à la recherche de financements *pour l'année 2024... *Donnez-leur un coup de main !
⏩ Partagez ce post, faites un tour sur leur site et sur leur kickstarter, et voyez par vous-même ;)
https://www.kickstarter.com/projects/mirlo/mirlo

🇺🇸 An opensource and collective music storefront appears ! ✊🎶 Their objective: build a simple efficient and adapted tool for the artists selling their music online. The website is already up and running but future updates might interest you even more: 🤝 federation, 👕 disc & merch store, 💸 recurring patronage or one-off payments, 👔 artists and label management... all brought together by anticapitalistic and anarchistic values ! Its 3 veteran founders (Ampled, FunMusicPlace) are currently seeking infrastructure funding for the rest of 2024... Help them out !
⏩ Share this post, have a look around on their website and kickstarter page, and see for yourself ;)
https://www.kickstarter.com/projects/mirlo/mirlo

#mirlo #bandcamp #layoff #layoffs #musician #musicien #collective #collectif #music #musique #musica #distribution #distributionplatform #corporate #startup #jeunepousse #bigtech #share #support #kickstarter #crowdfunding #crowdfunder #financementparticipatif #opensource #libre #anarchist #anarchiste #anarchy #anarchie #anticapitaliste #anticapitalisme #anticapitalist #queer #lgbt #lgbtqia+ #lgbtqiap+ #lgbtqiap #lgbtq #lgbtqia #community #communauté #network #label #e2c #exit2community #exittocommunity #solidarity #solidarité #economy #economie #économie #ampled #new-york #newyork #funding #label #musiclabel #productivity #partage #entraide #social #internet #online #travail #work #cooperation #collaboration #ethique #ethics #culture #storefront #magasin #federated #fédéré #federation #2024 #patronage #mécénat #remuneration #funmusicplace

anonymiss@despora.de

#CVE-2024-20356: #Jailbreaking a #Cisco appliance to run #DOOM

In this adventure, the Cisco #C195 device family was jailbroken in order to run unintended code. This includes the discovery of a vulnerability in the #CIMC body management controller which affects a range of different devices, whereby an authenticated high privilege user can obtain underlying root access to the server’s #BMC (CVE-2024-20356) which in itself has high-level access to various other components in the system. The end goal was to run DOOM – if a smart fridge can do it, why not Cisco?

source: https://labs.nettitude.com/blog/cve-2024-20356-jailbreaking-a-cisco-appliance-to-run-doom/

#software #security #bug #network #game #news #vulnerability #exploit #hack #hacker

mkwadee@diasp.eu

My #ISP has been cranking up the #network speed recently. Over the past few weeks, my decrepit old #router couldn't handle it any longer and kept dropping the connection and then resetting. It was very frustrating. Happily, they've sent a new one and things are back up and the connection is looking solid again, with the added bonus that the speed is nearly three times as much I had been getting previously.