Brambor

1.9K posts

Brambor banner
Brambor

Brambor

@Bramburek__

Katılım Mart 2014
424 Takip Edilen8 Takipçiler
Brambor
Brambor@Bramburek__·
@csmproject @Paul_Reviews because you need to have age range in your ad profile, thats why most of these new laws are made. Meta had hard time selling personal data because it was full of bots and now everyone will have ID confirmed profile that they can sell
English
1
0
7
702
The Collective Sensemaking Project
@Paul_Reviews Apart from the things you highlighted, why do users only have a certain number of age verifications available? Why does proof of age have an expiration date? Once I'm over 18, I will always be over 18. I'm not turning any younger!
The Collective Sensemaking Project tweet mediaThe Collective Sensemaking Project tweet media
English
39
105
1.5K
81K
Paul Moore - Security Consultant 
Hacking the #EU #AgeVerification app in under 2 minutes. During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory. 1. It shouldn't be encrypted at all - that's a really poor design. 2. It's not cryptographically tied to the vault which contains the identity data. So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app. After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid. Other issues: 1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying. 2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step. Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.
Paul Moore - Security Consultant @Paul_Reviews

.@vonderleyen "The European #AgeVerification app is technically ready. It respects the highest privacy standards in the world. It's open-source, so anyone can check the code..." I did. It didn't take long to find what looks like a serious #privacy issue. The app goes to great lengths to protect the AV data AFTER collection (is_over_18: true is AES-GCM'd); it does so pretty well. But, the source image used to collect that data is written to disk without encryption and not deleted correctly. For NFC biometric data: It pulls DG2 and writes a lossless PNG to the filesystem. It's only deleted on success. If it fails for any reason (user clicks back, scan fails & retries, app crashes etc), the full biometric image remains on the device in cache. This is protected with CE keys at the Android level, but the app makes no attempt to encrypt/protect them. For selfie pictures: Different scenario. These images are written to external storage in lossless PNG format, but they're never deleted. Not a cache... long-term storage. These are protected with DE keys at the Android level, but again, the app makes no attempt to encrypt/protect them. This is akin to taking a picture of your passport/government ID using the camera app and keeping it just in case. You can encrypt data taken from it until you're blue in the face... leaving the original image on disk is crazy & unnecessary. From a #GDPR standpoint: Biometric data collected is special category data. If there's no lawful basis to retain it after processing, that's potentially a material breach. youtube.com/watch?v=4VRRri…

English
643
6K
24K
3.1M
Brambor
Brambor@Bramburek__·
@debuuuta Wow, your life must be full of misery
English
1
0
0
127
デブータ
デブータ@debuuuta·
@Bramburek__ あんたと違って泣き言なんざ言わねぇよ。 海賊版を是とする様な見下げた魂の奴が、 日本のアニメを好きだなどと嘯くのは笑止千万、片腹痛いわ!
日本語
1
0
0
153
太田うしいち
太田うしいち@ootaushiichi·
海賊版騒動のおかげで なんで日本の漫画アニメ、韓国のドラマが覇権とったのか分かった気がする この2カ国ぐらいしか 「クリエイターに正当な利益を帰さなければコンテンツは衰退する」という当たり前の事象を 国民全体で分かってる国がないのかもな⋯
日本語
337
5.2K
34K
2M
Brambor
Brambor@Bramburek__·
@jmcnDHay9wShuep @mangaandwebtoon @ootaushiichi not every piracy is the same and that is the issue. If its easy and possible to pay for it, then yeah, its bad. If its not possible then whatever. There're multiple other issues like anime having altered subtitles for politics (e.g. calling Yamato from one piece transgender) etc
English
0
0
1
1.8K
Brambor
Brambor@Bramburek__·
@debuuuta there must be a language barrier, it's not issue with money. it is issue of region blocking and complete ban on selling something in most of the world. If i am not allowed to buy something because you don't want to sell it to me, you can't cry about missed profit when i pirate it
English
1
0
0
272
デブータ
デブータ@debuuuta·
@Bramburek__ 買えるまで我慢すればいいじゃん。 あるいは諦めるか。 日本人如きに出来る選択が君らに出来ない理由って一体何?
日本語
1
0
0
287
Brambor
Brambor@Bramburek__·
@mangaandwebtoon @ootaushiichi If possible, i would support the artist. If there is no such option then there is no missed revenue and piracy is a gray option that doesn't hurt anyone. If you don't let me buy it because of some random reason, then dont get mad for me pirating it, since it costs you nothing
English
2
0
5
4.1K
🌸かりんとう🌸/漫画だいすき/MANGA love
思ったんだけどさ、散々言われている、勝手に翻訳してアップロードする海賊版、日本語のままアップロードしている海賊版、どちらも嫌悪、嫌がられる根源は作者に対価の支払いが無いことが原因。 いっそ、海賊版も無料で公開するのをやめて、海賊版にも課金必須にして、集めたお金を著作者に全額支払ったらいいんじゃね?と思った。なんで作者に金支払う仕組みがないの?作ればいいのに。
日本語
9
2
35
68.6K
Brambor
Brambor@Bramburek__·
@AonekoSS So, skg and the California law are 2 different things, lets not get confused.
English
0
0
1
60
青猫
青猫@AonekoSS·
「Stop Killing Games」のまとめ。 なんかいっぱい絡まれたから海外ニキと対話(レスバじゃないよw)した結果、要求のレベルが3段階くらいあるのが分かった。 サ終してもオフラインで動くようにしろ派: いまカリフォルニア州法に提出されてるライン。 メーカーにとっては対応コスト高すぎなんや。どないすんねん…… サーバー立てる為にソースを公開しろ派: つまり俺らでサーバー立ててホスティングするわって話。 ソースコードなんていう知財と企業秘密の塊をほいほい公開できるわけないやろアホタレって返した。(もう少し優しい言い方) 勝手に解析してサーバー立てるから黙認しろ派: いまニーアのプライベートサーバーで盛り上がってる界隈かな。 サーバー自体が法に触れるかは難しいけど、そのサーバーに繋ぐよう改造したアプリを撒くなら、それは紛れもなく「海賊版」なんだよね。 あと共通点として。 ゲームをオフライン版に改修するコストがほぼゼロだと思ってるっぽい。 ゲームは「購入」して「所有」するものという認識で、ライブサービスを受けている自覚がない。 大手メーカーをすげー嫌ってる。(でもゲームは買ってプレイしている) だいたいこんな感じかな。 英語とスペイン語が多くて、英語話者もヨーロッパのアカウントが多い感じだった。
青猫@AonekoSS

ゲームの保全運動、それ自体には反対してないのよね。 例えばサ終時のDRMの解除とか、それなりに実現可能な範囲の要求なら良い話だとも思うんだけど…… プレイ環境の継続やアーカイブの為のコストを全部メーカー側に負担させようってのは、そもそもの趣旨からして違うんでないのってのが率直な感想。

日本語
169
1.5K
3.9K
1.1M
Brambor
Brambor@Bramburek__·
@Warcraft cool, does it also fix the issues that changing transmog uses completely random pieces instead of the one selected?
English
0
0
0
497
World of Warcraft
World of Warcraft@Warcraft·
Coming in 12.0.5: TRANSMOG SHEATHING ⚔️ Because sometimes, the look needs two 1H swords on the back.
World of Warcraft tweet media
English
128
106
2.1K
135.4K
Arhamis 🐎 Lyonnais
Arhamis 🐎 Lyonnais@NavyChevalier·
One of the reasons why modern Warcraft feels worse is the terrible villain design. The scourge had an army of undead brutes with exposed guts and giant scarabs. The void has an army of purple blobs that look like cartoon characters.
English
18
16
359
12.1K
YUNG JEFF 🗡️
YUNG JEFF 🗡️@YUNGJEFF·
I've never been more confused watching an episode bro what is happening 🤣😭
YUNG JEFF 🗡️ tweet media
English
204
110
6.2K
546.8K
Brambor
Brambor@Bramburek__·
@MizutamariVT some JP people have the energy of a boomer telling you that you should have bought your house when you were still in your dads balls
English
1
0
59
1.4K
Mizutamari💧• Puddle Yokai
It's been really weird to see all the japanese people that openly state preservation as a bad thing. Not like the "don't pirate it if its gone" cause there can be confusion there on the exact meaning. But genuinely people saying the act of trying to preserve something is a moral failing that makes you a bad person. It's such a bizarre belief but I can believe it, especially when several JP gaming companies have had to rely on western preservation efforts in order to recover lost data.
English
50
129
2.1K
52K
Brambor
Brambor@Bramburek__·
@fulyanime dont listen to the tourists, the complainers are the people who watch at 2x speed, skip every single filler and most dialogs to watch only the fights, or even worse - recommend one pace
English
0
0
1
94
straw hat fuly
straw hat fuly@fulyanime·
I don’t get the hate for this part of elbaph like we have the straw hats in a low stakes situation in a fun setting with lots of humor and crew interactions... wasn't this exactly what people said was missing from the last couple of arcs?
English
28
78
1K
16.8K
Brambor
Brambor@Bramburek__·
@youhealedme i wanted to say to not look at the world with such dark glasses, but you play league, so i guess you do see the worst of the worst
English
0
0
1
192
toki
toki@youhealedme·
i have given up on real males i love 2d men ik it’s over for me but it’s okay i have gojo satoru
English
38
7
826
15.5K
Brambor
Brambor@Bramburek__·
@denpafish Can you move the ram to last 2 slots or it gets covered too? I wouldnt be comfortable suggesting weaker cooler. I got 9700x and it can peak pretty hot if you enable oc
English
0
0
0
18
denppy 🪱🫀【moetaku】
HELP major problem tech bros.. I ended up getting a smaller pc case than planned cuz the one. I got was TOO TOO BIG for my room AND my cpu cooler is too big for the case and it touches the ram so I have to remove ram or??? Does anyone have smaller cooler recommend
English
21
0
130
4.9K
Brambor
Brambor@Bramburek__·
@luciacrabs run "perfmon /rel" throught win+r and look at the errors, it should give you specific codes of whats crashing
English
0
0
0
7
Lucia 🩲🦀
Lucia 🩲🦀@luciacrabs·
my computer just restarted completely again. 👍🏻 for no apparent reason. no lag leading up to it. just, “ran into a problem.”
English
78
11
958
15.4K
Kumi 🪶🪑
Kumi 🪶🪑@KumiVT·
PLEEAAAASE tell me it's normal for your monitors to be completely covered in spit.. 😭
English
337
82
3.4K
84.3K
mini_feebas
mini_feebas@mini_feebas·
@HromDrom @HeyTerezi If you look at the history of this conflict, only one side minimises civilian casualties
English
2
0
0
877
Brambor
Brambor@Bramburek__·
@Xynchr0 @rokxxu damn, now im glad i got working older PC to serve as a NAS
English
0
0
2
374
Xynchro
Xynchro@Xynchr0·
@rokxxu can't, all my sata ports are full with hardrives
Xynchro tweet media
English
13
0
63
4.8K