God help us all if we have to break out the Emus
Info Sec - Software Engineer - Game Designer - Mod Dev - Digital Artist
God help us all if we have to break out the Emus
I’m imagining that shaped as an Alolan Exeggutor.
Hahaha, I wish.
You would be amazed at how ancient and poorly maintained many web servers are on the modern internet. SQL injection still consistently make the top 3 web app vulnerabilities as of 2021. If that isn’t being sanitized properly I don’t expect emojis would be handled much better.
Only if you call the deep-throating spez is giving him ‘mentoring’. It’s starting to make WSB loss porn look mild in comparison to the ongoing conga line of platform self-destruction.
I opted to switch to NewPipe and YMusic and haven’t looked back since.
Oh it was so much worse than that. Google indirectly banned every 3rd party app on the Play Store from streaming videos in the background to push that feature. Seemingly overnight every app that could do it vanished or cut the feature. Sure you can sideload a fix but your average non-savvy users got screwed into paying up.
As a software engineer who has dealt with so many incidents resulting from the garbage coming out of salesforce. SO. MUCH. THIS.
I swear it’s always in a perpetual state of duct tape no matter where I see it used.
I’m not surprised in the slightest. The politicians and managers in charge of said gov systems are usually of an age that have no idea the basics of how technology works, let alone infosec importance. It’s then contracted out to the lowest bidder on deadlines that wouldn’t permit proper hardening anyways. It’s not even a US specific issue, Australians deal with this dumb fuckery regularly.
Then you get some piss poor public apology, someone gets thrown under a bus, and the cycle repeats ad infinatum.
As someone else who uses Tailscale behind a CGNAT, this indeed works. I use it for accessing my home server from the office for a year now. You can’t quite self host anything public facing but anything on your tailnet can talk to it just fine.
Theoretically a VPS proxy into the server over the VPN could work for devices not capable of running tailscale but your mileage may vary.
Expecting all network operators to do that is not feasible or reliable. Tesla controls the car, protocol, charger, and payment processing. Everyone else outside the walled garden is openly handling a much bigger market with many more variables in more countries. Forcing customers to use an app for each brand of charger is also an accessibility nightmare. Fear mongering about skimmers is a dumb reason to remove traditional payment methods.
This is all before we get to the lack of screen or keypad means fuck all to security (it’s also an accessibility issue to remove them). If I can break into a Tesla charger wirelessly and fuck with your car, I’m going to do it, walled garden or not. Just look at the state of IoT.
EDIT: This comment aged well https://thedriven.io/2023/07/18/tesla-supercharger-spotted-with-credit-card-reader/
Same with Express/Nord VPN sponsorships. Many people debunked the adverising BS they were spinning about blocking tracking when really it only masked a tiny subset.
As someone who studied infosec, those ads were infuriating. Now I just sponsor block it all because I’m beyond tired of it.