Damus

Recent Notes

:VD15_0::VD15_1::VD15_2::VD15_3::VD15_4::VD15_5::VD15_6::VD15_7: · 1d
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Still, 27% is nuts though
Quad profile picture

The weebs don't want you to know, but you can put furigana on anything ( ザー ウィーブズ ドーント ウォント ユー ター ノー バット ユーキャン プット フリガナ オン エニシング)
Quad profile picture
The Bleach TYBW Part 3 Blu-ray is a bit of a funny accessibility catastrophe.

Every Bleach TYBW part has a specific accent color. Part 1 was magenta, Part 2 was cyan. The european publisher (All The Anime) decided at the start to make their blu-ray releases be "<accent color> on black".

Unfortunately for them, when we got to Part 3, it turns out its accent color was... black.

Yet the absolute fucking MADLADS actually just went ahead and printed the part 3 blu-ray with its color scheme being black on black.

You can BARELY tell there's something printed on there, only because the printed parts reflect slightly more light at the correct angle. I managed to get a somewhat visible photo of the front, wasn't as lucky with the spine.


1
Karen @ back from fanfest :heart_bi: · 3d
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl i kinda respect the commitment
Haelwenn /элвэн/ :triskell: · 5d
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqemn79m7cwed95v770tavrp98xpkavds5f3d7zjf8wzvuq7q22yjqe3wla9 Oh yeah, this kind of nonsense exists too
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Well input of VNC is just text though, so can send bunch of crap to whatever is open similarly to the bunch of internet background-noise scans done via ssh/http/…
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Yeah, although Home Assistant in a QEMU being IPv4-reachable via at least VNC seems a bit less "Idiot slapped it into a RasPi and YOLO'ed it entirely open".
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Well, not saying it has to be. But like, anything IoT is exactly the sort of crap I'd put as an honeypot.
Quad profile picture
every time i feel paranoid about whether or not i've secured my self-hosted stuff well enough, i just take a gander over to VNC resolver.

Always makes me feel better when someone can leave their homeassistant accessible via passwordless VNC since 2025, still running 2025.4.4 because they never updated it ever, apparently with no password enabled for cli access.

and somehow it's still there over a year later without going down.

i'd be surprised if it's not part of some kind of botnet though.

1
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Or maybe it's there to be an honeypot.
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl The classic of castle-and-moat security…
Quad profile picture
@Haelwenn /элвэн/ :triskell: What I find most curious is that they mention the attacks resetting or reconfiguring various things like the Moxa switches, Wago controllers, Teltonika router and the Fortigate firewall itself.

But they don't mention how any of these things are compromised. I wonder if all the things needed for the attack chain just had the same crappy password or something
1
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl Wouldn't be much of a surprise that it a lot of that stuff uses hardcoded default credentials and/or offers some kind of remote rescue/boot (like how home-routers often can boot via tftp...
Quad profile picture
This is a pretty funny breach, ngl: https://www.bleepingcomputer.com/news/security/hackers-breached-a-small-polish-energy-plant-via-private-apn-last-year/

Power plant tried to put their operational stuff on a private APN (esseitally a private virtual mobile network), which has been a bit of a trend lately. There's benefits/drawbacks to it like ease of device deployment, resiliency and different security considerations, but I won't get into the details about that here.

The funny part is that despite all the equipment being on a private APN, the attacker just had to compromise a Fortinet shitbox like usual, from there it seems like there was were basically zero barriers preventing them from just bridging onto the mobile network and talking to whatever they wanted.

1
Haelwenn /элвэн/ :triskell: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqrdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffq88fccl The classic of castle-and-moat security…