[-] cantevencode@lemmy.world 25 points 1 month ago

You grab the .torrent file from the source website (Mint, in this case) and it's safe

[-] cantevencode@lemmy.world 6 points 10 months ago

Being... What?

[-] cantevencode@lemmy.world 5 points 1 year ago

Cloudflare masks the origin IP address and has DDoS protection. Unless it's a DoS against the software, yes, it is a long term solution.

[-] cantevencode@lemmy.world 6 points 1 year ago

You should change the public IP of the server if you haven't already

[-] cantevencode@lemmy.world 29 points 1 year ago

It's great playing a cleaning fee when the host expects you to strip the bed and take it to the laundry, empty the bins and leave the place spotless

[-] cantevencode@lemmy.world 9 points 1 year ago

I've been a Firefox user for a very long time and had no idea these existed, thanks for sharing

[-] cantevencode@lemmy.world 18 points 1 year ago* (last edited 1 year ago)

This. So much this.

[-] cantevencode@lemmy.world 2 points 1 year ago

Can I Google their name?

[-] cantevencode@lemmy.world 8 points 1 year ago

Good point. I suppose the only way to fix that particular issue to disallow cookie authentications from a new location

[-] cantevencode@lemmy.world 15 points 1 year ago

Prior to the JWT secret being rotated, yes, they could have authenticated as you. The tokens are now all invalid and useless

[-] cantevencode@lemmy.world 9 points 1 year ago

Does an admin account have any permissions to view email addresses or data of registered users?

Did MichelleG not have 2FA enabled?

Now that this has happened, it's be worth pushing this issue through as high priority. If HttpOnly was enabled, then an admin takeover would not have been possible.

https://github.com/LemmyNet/lemmy-ui/issues/1252

[-] cantevencode@lemmy.world 11 points 1 year ago

Petition to change the lemmy.world logo to Lenny

view more: next ›

cantevencode

joined 1 year ago