• 2 Posts
  • 804 Comments
Joined 1 year ago
cake
Cake day: June 17th, 2023

help-circle






  • Any ROM works great without Google Play Services. If anything, having MicroG installed makes things work less - I have a banking app that works fine on my old phone, without Google, but won’t work on my new phone because of a CPS Profile mismatch.

    MicroG is a house of cards that is very difficult to get stacked correctly. Most apps work fine without it. For those that don’t, use something else, or just a web browser. Hell, you probably shouldn’t be using so many apps anyway, given that you really can’t be certain what they do when they’re closed source.



  • When accessed by BleepingComputer, however, the link returned a 404 (Not Found), and according to several others who tried to access the URL, no content ever existed at the location from the beginning.

    This really doesn’t mean anything, it’s not unheard of for malicious actors to not set up their C&C servers until later on. This has actually been exploited by law enforcement in other cases also, they simply registered the domain themselves and took control away ahead of the attacker.

    There’s a risk with setting up the C&C that it could be traced back to the attackers. By not setting it up until it’s needed you avoid that risk until it becomes necessary.



  • Yeah I read this article on another post, I’m not sure that’s the whole story.

    From what I remember, he was running a few “shops”. These don’t actually sell games, but they can be accessed by a piece of homebrew software on the switch, and then you connect to the “shop” to download games directly to the device - this was done instead of manually copying install files to the SD card, installing, and then deleting the original files to save space; or instead of installing over USB. The shops were much easier, not least because removing the SD card to copy games from a PC required a reboot, and rebooting an OG hacked Switch could be kind of a pain.

    I think the “sales” he did were actually just donations that got you early access to titles that weren’t widely available yet. However, it’s generally when you start taking money for these things that the shit hits the fan and the hammer comes down.



  • I think that’s standard with food. When you first encounter it, the body’s normal reaction is “WTF is this?! It’s going to kill me!!”, then the second time it’s more like “Hmmm I don’t know about this, but it didn’t kil me last time”. Then eventually you learn to like the food.

    Meanwhile, many allergies are not actually caused by the thing you reacted to, but to something else. Your body just associates the bad effect with something that else alongisde it. For example, a seafood allergy can develop after eating bad seafood - but it doesn’t happen until after. The time you eat bad seafood will be largely uneventful, maybe you have a bit of a dodgy poo, but then the next time you eat seafood you will have a bad allergic reaction. Your body detected the harmful substance that came with the bad seafood, then associates the harm with all seafood, such that all seafood is then rejected.





  • Erm, WhatsApp would suggest otherwise.

    WhatsApp was the vector for zero click access to a target’s phone from Israel’s weapons grade hacking Pegasus toolkit. They would send a video call, typically in the middle of the night, and with no input from the used they’d get full access. My personal belief is that they used functionality WhatsApp itself uses to access user data.

    There was also an encrypted phone called ANOM, which had this trick calculator app with a hidden encrypted messager. “Made for criminals, by criminals”. Except, when the guy started his business he got investment from the FBI and Australian Federal Police to pay for the servers and some of the phones themselves. Basically every time it sent an encrypted message it sent a separate encrypted message to the ANOM servers. It’s entirely possible (perhaps even likely) that WhatsApp would do this also.

    As for Google, they’re truly insidious. Lots of banks now require you to connect to Google captcha servers - they don’t give you the pictures, it’s just the back end, basically the tracking parts. Then there’s the controversy about them collecting location data when users have said no. They absolutely do collect data they shouldn’t.