
wibble .wibble
11.6K posts



Hacking the #EU #AgeVerification app in under 2 minutes. During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory. 1. It shouldn't be encrypted at all - that's a really poor design. 2. It's not cryptographically tied to the vault which contains the identity data. So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app. After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid. Other issues: 1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying. 2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step. Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.

So we managed to get inside to rape alarm illegal migrant hotel in Dumfries, and it is luxury and a half


BREAKING: The UK just sold 10Y Government Bonds at the highest yield since the 2008 Financial Crisis, at 4.9158%. The 2036 gilt syndication raised a record £15 billion and attracted £148 billion of investor orders. Keep watching the bond market.





Spain approves plan to give around 500,000 undocumented migrants legal status bbc.in/4tGrlZi


Zelensky wants Ukrainian men expelled from Europe and sent to the trenches. Merz: "It is crucial that these men are there to help their country". This is what "pro-Ukrainian" means in Europe: No diplomacy & fight to the last Ukrainian to weaken Russia as a strategic rival

We will name police and social workers unless action taken, Southport families' lawyer says bbc.in/4tLWtXw



















