What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
1
1
0
0
0
0

1. User complains to that I named his *previous* name when he renamed himself to a silly name after I banned them in a report filed back in October.

2. Hackerone asks me to respond on their support forum, on which I have no account. Grrr. I refuse to.

3. Replying to the hackerone email about this instead, I get a bounce saying they don't accept emails on support@hackerone ...

Kill me now.

(The user who submitted this report was going by the name "b4sh0ne" up until their last comment when they renamed to this new name. Unfortunately, the HackerOne interface does not properly show this. We banned the user nonetheless.)
0
0
0
0
2
1
1
0
1
0
0
0
0
0
0
0
2
1

This Gmail hack is unsettling not because it’s flashy, but because it’s bureaucratic. Attackers aren’t breaking encryption or outsmarting algorithms. They’re filling out forms. By changing an account’s age and abusing Google’s Family Link feature, they can quietly reclassify an adult user as a “child” and assume parental control. At that point, the rightful owner isn’t hacked so much as administratively erased.

The clever part is that everything happens inside legitimate features. Passwords are changed. Two-factor settings are altered. Recovery options are overwritten. And when the user tries to get back in, Google’s automated systems see a supervised child account and do exactly what they were designed to do: say no.

Google says it’s looking into the issue, which suggests this wasn’t how the system was supposed to work. But it’s a reminder of an old lesson. Security failures often happen when protective mechanisms are combined in ways no one quite imagined. The tools aren’t broken. The assumptions are.

There’s no dramatic fix here, only mildly annoying advice that suddenly feels urgent. Review recovery settings. Lock down account changes. Use passkeys. Because once an attacker controls the recovery layer, proving you’re you can become surprisingly difficult.

TL;DR
🧠 Family safety tools are being weaponized
⚡ Account recovery can be shut down entirely
🎓 Legitimate features enable the lockout
🔍 Prevention matters more than appeals

forbes.com/sites/daveywinder/2

0
0
0
0
0
1
0

映画『みんな、おしゃべり!』観てきました。めちゃくちゃ面白かった……笑っていたのは私だけだった……嘘だろ……。

コミュニケーションにおける言語ってすごく重要で、でもコミュニケーションって同じ言語を持っているかどうかでは決まらないよね、ということを、深く思いました。マイノリティが品行方正に描かれていなかったし、マジョリティのウザさがねちねち描かれていてよかったです。陰謀論が生まれる瞬間が描かれるんだけど、ほんと馬鹿らしいんですよね。現実ではこういうことが真面目な顔で信じられているんだなとふっと思い至ると、そこは笑えなかった。

CODAのキャラクターに対する解像度が繊細だな、と思ったら、監督がCODAなんですね。
minna-oshaberi.com

0
0
0
0
1
1
1
1
0
0
0
0
0
0
1
1
2
1
1

신을 믿든 안믿든 사람은 그냥 선하게 사는 게 옳다....... 사후에 지옥에 가요 나중에 감옥 가요 이게 아니라 그 행동으로 인해 사람이 아프기 때문입니다 그거 못고침 결국 혼자 남겨진다..

RE: https://bsky.app/profile/did:plc:nxzliywqbfb7cvewejdihgf5/post/3mamwj573yk2z

0
0
1
1
1