Grad student, certified "Moon Nerd".
Most active over here: https://corteximplant.com/@hadeantaiga
| Pronouns: | He/They |
| Most active: | https://corteximplant.com/@hadeantaiga |
Grad student, certified "Moon Nerd".
Most active over here: https://corteximplant.com/@hadeantaiga
| Pronouns: | He/They |
| Most active: | https://corteximplant.com/@hadeantaiga |
I'm most active over on Cortex Implant, so if you follow me here, please go add me over there!
122 Posts, 110 Following, 82 Followers · Grad student, certified "Moon Nerd". Nonbinary butch transmasc. Masculine like a misty mountain forest, queer as in fuck you. Interests: Games: #Pathfinder #DnD #DragonAge #DiscoElysium #TheSims #CivilizationIV TV: #Trigun #StarTrek #OurFlagMeansDeath #YouTubeVideoEssays Books: #SherlockHolmes #TheExpanse #LordOfTheRings #TheHungerGames #SciFi #Fantasy
The FBI's acquisition of a Mastodon instance's unencrypted database gives all of us reason to consider our own security practices on here, and the security practices of our instances.
Using an unencrypted backup for debug purposes doesn't sound like an uncommon practice. And while most instance admins have no reason to expect an FBI raid, it's always worth considering how such data is handled and stored.
And of course, always remember that "DMs" here aren't encrypted.
🚨 Kolektiva.social SECURITY ALERT 🚨 This is an alert for Kolektiva.social users. Please read this post in its entirety! In mid-May 2023, the home of one of Kolektiva.social's admins was raided, and all their electronics were seized by the FBI. The raid was part of an investigation into a local protest. Kolektiva was neither a subject nor target of this investigation. Today, that admin was charged in relation to their alleged participation in this protest. Unfortunately, at the time of the raid, our admin was troubleshooting an issue and working with a backup copy of the Kolektiva.social database. This backup, dated from the first week of May 2023, was in an *unencrypted* state when the raid occurred and it was seized, along with everything else. The database is the heart of a Mastodon server. A database copy such as the one seized may include any of the following user data, in this case up to date as of early May 2023: - User account information like the e-mail address associated with your account, your followers and follows, etc. - All your posts: public, unlisted, followers-only, *and direct ("DMs")*. - Possibly IP addresses associated with your account - IP addresses on Kolektiva.social are logged for 3 days and then deleted, so IP addresses from any logins in the 3 days prior to the database backup date would be included. - A hashed ("encrypted") version of your password. 🚨 👉 As a precaution we highly recommend that all users on Kolektiva.social *change their password immediately* to a new, unique, and strong password. We sincerely apologize to all our users and regret this breach. In hindsight, it was obviously a mistake to leave a copy of the database in an unencrypted state. Unfortunately, what would otherwise have been a small mistake happened to coincide with a raid, due to bad luck and spectacularly bad timing. We understand that our users and other people on the Fediverse will have a lot of questions. We will try to answer them as best we can, but please be patient and bear in mind that we may be overwhelmed with messages, and may be delayed in responding or unable to provide answers to certain questions for legal or technical reasons. As a security culture reminder, it can be extremely harmful to the individuals charged and to our community to openly speculate on the Internet about alleged criminal activity or about what law enforcement may be able to do with seized data. Our present awareness is that the seized Kolektiva data is unrelated to the federal investigation and prosecution and we are exploring legal avenues to have the seized data returned and copies destroyed. Thank you for your understanding and solidarity :black_sparkling_heart: 👇 Please see our replies to this post for additional information (1/?) 👇
"The fediverse isn't profitable"
Actually, the fediverse is a great place for artists and creators to find support for work they are passionate about and pour their soul into. It's just not profitable for multi-million dollar corporations that want to fill the pockets of already far too wealthy execs.
This is hilarious. It appears that Twitter is DDOSing itself.
The Twitter home feed's been down for most of this morning. Even though nothing loads, the Twitter website never stops trying and trying.
In the first video, notice the error message that I'm being rate limited. Then notice the jiggling scrollbar on the right.
The second video shows why it's jiggling. Twitter is firing off about 10 requests a second to itself to try and fetch content that never arrives because Elon's latest genius innovation is to block people from being able to read Twitter without logging in.
This likely created some hellish conditions that the engineers never envisioned and so we get this comedy of errors resulting in the most epic of self-owns, the self-DDOS.
Unbelievable. It's amateur hour.
#TwitterDown #MastodonMigration #DDOS #TwitterFail #SelfDDOS
Your tweets can no longer be viewed by people who are not logged in. If you tweet something today, you’re not sharing it publicly.
This basically prevents me from tweeting original content anymore. I cannot have my tweets be behind a login wall. That’s unacceptable.
I cannot even share links to tweets anymore because some of my readers may not be able to easily access that content.
Twitter has made bad moves recently, but this is the worst by far.
While many states are passing laws restricting abortion and targeting LGBTQ rights, a few are taking the opposite approach.
Vox explains the shield laws for female and trans health care: https://www.vox.com/policy/23758444/abortion-trans-health-care-legal-shield-laws
#Abortion #AbortionRights #LGBTQ #LGBT #HumanRights #USPolitics