
sudo rm -rf --no-preserve-root /
@pcaversaccio
164 Following
2819 Followers
0 reply
0 recast
1 reaction
3 replies
0 recast
22 reactions
2 replies
0 recast
18 reactions
0 reply
3 recasts
16 reactions
0 reply
0 recast
1 reaction
1 reply
2 recasts
16 reactions
19 replies
208 recasts
1319 reactions
1/ Let's be real, a ton of people (yes, even probably you reading this) store pws, 2FA backup codes, and other sensitive info in `.txt` files. Even the 2FA providers themselves often give you those backup codes as `.txt` downloads. It's shit, but it's common. Obviously don't use `.txt` files to store any sensitive data, but let's address the major issue now: on Windows, Notepad is getting Copilot integration (sounds cool for many, but it's fucked!). That means if you open one of those `.txt` credential files, you're potentially leaking sensitive data to Microsoft's servers (I know you already leaked your dick/feet pics via the cloud sync feature of images but you don't care about those that much). They claim it only happens if you actively use Copilot features; but dude, who actually trusts that lol? 2 replies
0 recast
21 reactions
0 reply
0 recast
5 reactions
1 reply
0 recast
23 reactions
9 replies
7 recasts
69 reactions
4 replies
1 recast
23 reactions
3 replies
2 recasts
23 reactions
0 reply
0 recast
0 reaction
0 reply
0 recast
5 reactions
1/ time for a quick vibes check on where our industry's at security-wise; well, folks, guess what, 95% of last months' SEAL 911 tickets were the same shitshows on repeat: folks running sketchy code some rando DMed them (stop cloning & running GH repos you got from some random dude who asks for your "help"), hopping on Zoom calls where scammers walk them through (effectively) self-pwning (dude, believe me you don't need to patch your zoom or google meet) their own machines, teams getting nuked because they thought hiring bargain-bin devs from North Korea was a great idea, or some skiddies calling up victims pretending to be Coinbase support (always Coinbase, like 90% of the time and the rest is Ledger) and walking off with their funds. On top of that, there's the usual: someone falling in love with a random Tinder match and getting rinsed by a textbook Sha Zhu Pan play, and of course, the ever-reliable dev who commits their .env file with private keys straight to GitHub, NPM, etc. 2 replies
0 recast
22 reactions
0 reply
3 recasts
21 reactions
1 reply
0 recast
1 reaction
5 replies
1 recast
23 reactions
2 replies
1 recast
24 reactions