Aray 🦋
2.8K posts

Aray 🦋
@araylW
19 ʚɞ - 🏳️⚧️ - ⋆。˚ life hate account ˚。⋆ - #kcwin #cfowin


A new bill called the Parents Decide Act was introduced this week. The bill would require operating system companies such as Apple and Google to verify users' real age when they first set up a phone, tablet, or computer in the US. This “would” stop children from lying about their age to bypass restrictions on apps, social media, and AI platforms. A verified age and parental controls would then apply across the entire device. The full bill text has not been released yet.

Hacking the #EU #AgeVerification app in under 2 minutes. During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory. 1. It shouldn't be encrypted at all - that's a really poor design. 2. It's not cryptographically tied to the vault which contains the identity data. So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app. After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid. Other issues: 1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying. 2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step. Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.

What your Linux distro says about you: -Ubuntu: (your dad downloaded it on pc) -Mint: (you like windows) -Kali: (you think you are a hacker) -SteamOS: (you tell everyone you use arch btw) -Arch: (you use arch btw) -Gentoo: (you like to feel special) -Fedora: (you are server manager)

NEW - Macron to host a video call with other EU leaders and Ursula von der Leyen to push for a "coordinated approach" on banning social media for minors — Reuters






$60 for a browser is crazy






