825
submitted 1 week ago by misk@sopuli.xyz to c/technology@lemmy.world
top 50 comments
sorted by: hot top controversial new old
[-] recklessengagement@lemmy.world 194 points 6 days ago

I have no sympathy for those who attack and deface our libraries, whether they be physical or digital

[-] Alpha71@lemmy.world 28 points 5 days ago

Of all the places to do this to, why The Archive?

[-] nutsack@lemmy.world 16 points 5 days ago* (last edited 5 days ago)

with as long as this has been going on it really surprises me that nothing has come out as a motive. it seems kind of pointless to do this sort of thing and not make your intentions known

maybe it's a government or organization upset that they are keeping archives of things they don't like

[-] TachyonTele@lemm.ee 11 points 5 days ago

Apparently, from a different article, the hackers did it because 'america bad'.
Which is fine as a message I guess, but picking this website is dumb.

[-] Syntha@sh.itjust.works 6 points 5 days ago

The hacktivist group SN_BLACKMETA has claimed responsibility and cites US support of Israel as the motivation.

[-] nutsack@lemmy.world 3 points 5 days ago* (last edited 5 days ago)

That's extremely stupid. that doesn't even make sense

load more comments (2 replies)
[-] Schmoo@slrpnk.net 90 points 6 days ago

The corporations that took control of the Internet don't want us to remember.

[-] nutsack@lemmy.world 24 points 5 days ago* (last edited 5 days ago)

https://bsky.app/profile/archive.org/post/3l67dtwvulp23

“Update: @internetarchive’s data has not been corrupted. Services are currently stopped to upgrade internal systems.

We are working to restore services as quickly and safely as possible.

Sorry for this disruption.”

[-] pineapplelover@lemm.ee 35 points 6 days ago

Alright who has the donate link so I can help them out.

[-] M1nds3nd@lemmy.ca 14 points 5 days ago

https://archive.org/donate This would be it if it were up and running. I wonder if there's any other avenues?

[-] sugar_in_your_tea@sh.itjust.works 34 points 6 days ago

I recently went through most of my accounts and randomized the username, with the thought here being to limit the likelihood of one site being compromised leading to accounts at other sites being compromised. I don't have to remember them due to using a password manager, so it's really no skin off my nose.

I'll use this as a reminder to everyone to improve your security. Some ideas:

  • use a password manager and use random usernames and passwords
  • have multiple email accounts, and don't use your "main" email w/ random signups - I use a simple mnemonic, like "-@domain.com"; so "me-shopping@domain.com" or "me-games@domain.com" so it's easy for me to remember, but unlikely for a lazy hacker to pwn other accounts (a lot of these are automated); my real email is "me@different-domain.com"
  • use 2FA if offered, even if it's stupid SMS or email based; having any extra step can deter an attacker

Sucks that people are targeting IA, I hope there isn't any lasting damage and that this is a simple defacement/DOS.

[-] Pringles@lemm.ee 11 points 6 days ago

For e-mails, you can just get firefox relay with your own subdomain and generate infinite e-mail masks for 1$ a month. I usually take "nameofshop@mysubdomain.mozmail.com" for example. It's pretty great because you just make the masks on the fly.

[-] xthexder@l.sw0.com 7 points 6 days ago

I've been doing this for several years now (not specifically that service, since I have my own domains). It's really nice knowing exactly who sold your email to the spam bots, because it's right in the address. Super easy to block once that happens.

[-] VonReposti@feddit.dk 1 points 4 days ago* (last edited 4 days ago)

addy.io is another service which I'm using with my own domain. I know there exists a third, but I can't remember the name.

load more comments (1 replies)
[-] sugar_in_your_tea@sh.itjust.works 4 points 6 days ago* (last edited 6 days ago)

Yup.

If you use the same email everywhere, they can try brute-forcing the password by using the email instead of your username. Give them less to go on. $1/month is absolutely worth it to prevent an important account from getting hacked.

load more comments (6 replies)
[-] AsudoxDev@programming.dev 2 points 5 days ago* (last edited 5 days ago)

Point 2... if you pay for a email aliasing service, you will be locked in. What I suggest is using plus addressing. e.g.

example+83hdo72@example.com

As long as you keep using randomized ones, this'll be as good as an alias against automated and manual login attempts. It just does not hide your base email, which would be

example@example.com

Many email services offer some free aliases. For example, I use one alias, along with my main email that is only used for important services. Other than that, I have an alias that is used for online accounts. This way, your main inbox is free of spammers. And even if your main address were to be the target of a spammer, the automatic spamming software most likely will not chop off the plus part, so you can easily block that email with the specific plus identifier. Not as good as external email aliasing services, but at least you won't be locked into the email aliasing service. Bitwarden has a generator for such things, really nice tbh.

load more comments (3 replies)
[-] deranger@sh.itjust.works 53 points 6 days ago* (last edited 6 days ago)

Just got an email from HaveIBeenPwned.com stating 31 million logins were leaked. Email address, username, and bcrypt hashed passwords were obtained.

Edit: probably should have read the article before posting

[-] Corno@lemm.ee 6 points 5 days ago* (last edited 5 days ago)

I was wondering why I hadn't been able to access Internet Archive yesterday... Who would take down what is the digital equivalent to the Library of Alexandria? I can only imagine some really childish people who have nothing better to do with their lives. I hope that the website can recover from the attack soon! 🙏

[-] kent_eh@lemmy.ca 6 points 5 days ago

Who would take down what is the digital equivalent to the Library of Alexandria?

I can think of a few possibilities

1: peddlers of misinformation

2: people who love the poorly educated and want the misdeeds of their political allies to be forgotten.

3: copyright trolls.

[-] person420@lemmynsfw.com 2 points 5 days ago

Can't figure out if this is a joke or serious, so just in case, you might want to look up what happened to the Library of Alexandria.

[-] Corno@lemm.ee 2 points 5 days ago

Oh I already know about that. The Internet Archive has been dubbed the digital equivalent of the Library of Alexandria before, due to its size, similar purpose, and significance. My comparison was for that reason.

[-] g1ya777@lemmy.world 15 points 6 days ago

I used a 64 charcters unique password, so i don't think the bcrypt hash of it would be of any use for them.

[-] Case@lemmynsfw.com 4 points 6 days ago

I take it you've never had to log into a printer with an AD account before?

Yeah, I went out to 32 characters once. Until I needed to work on a printer.

load more comments (1 replies)
[-] Doorbook@lemmy.world 22 points 6 days ago

How can we help?

[-] Xanis@lemmy.world 5 points 5 days ago

State actors? Maybe.

It's a bit tinhatty, though I'm betting on something akin to corporate espionage pointed at the Internet Archive.

Could just be a 14 year old kid with a bit of talent too. Wouldn't be the first time.

[-] btaf45@lemmy.world 8 points 6 days ago

Good thing I use archive.org without creating an account.

[-] huiccewudu@lemmy.ca 40 points 6 days ago

Spare a thought for the users with accounts who upload content to IA for you to enjoy.

load more comments (1 replies)
load more comments
view more: next ›
this post was submitted on 09 Oct 2024
825 points (99.9% liked)

Technology

58698 readers
4050 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS