#Persistent

2025-05-24

"THE PERSISTENT SURFACE". Abstract digital painting by A.G. (c) 2025. All Rights Reserved.

Kevin Karhan :verified:kkarhan@infosec.space
2025-03-14

@f @ai6yr @briankrebs I think it's less of a "#political" question but an act of #SelfDefense and #MutualDefense at this point.

Re: #TechIlliterates that are unwilling to learn, act like a "#BenevolentDictator" and enshure they can't harm themselves in the sense that they don't get #sudo or other administrative privilegues and can't do any #persistent #changes.

  • And if that means they get forced to use #Tails then that's a "necessary evil"...

After all, societies almost everywhere ban people from driving motor vehicles faster than 6 km/h by people who actively refuse to even take basic exams and classes for a #DrivingLicense.

  • And I'm convinced one can do more damage as #TechIlliterate with a #PC than a single-cylinger two-stroke engine driven motorcycle...
Kevin Karhan :verified:kkarhan@infosec.space
2025-03-14

@ai6yr @briankrebs OFC this targets #TechIlliterates and the only effective means here are:

  1. Teach #TechLiteracy instead of consumerism.
  2. Mandate #confirmation & #notification - #PopUp|s for every use of #Clipboard (similar to #webcam use by websites)...
  3. Ban #JavaScript - seriously!
  4. Ban #Windows, because it's a #Govware, espechally since #Windows10 and even more so on #Windows11 that is *insecure in every configuration!
  5. Put #TechIlliterates before a system they can't feck up. I.e. @tails_live @tails / #Tails for that reason alone (can't run such commands if they neither got #root nor any #persistent #storage to target).
  6. Normalize the use of @torproject #TorBrowser!
  7. #Teach #tech #literacy instead of #consumerism!
  8. Ban #GAFAMs and their shitty products!
  9. Migrate every #TechIlliterate to #Linux and don't give them administrative privilegues.
  10. Teach tech literacy instead of consumerism!
2024-12-16

Screenshot of ProtonMail notification after I clicked the forward button. It says, "The original message you are trying to forward/reply to is in the process of being sent..." This could be HTML tampering by hackers. I'm using a public library computer and am a target of persistent hacking. I believe many users are hacked without realizing it, as the signs are often subtle and easy to overlook.

#persistent #hacking #symptom #unlawful #ProtonMail #htmlTampering #payAttention #persistentlyHacked

A screenshot of the proton.com email service's user interface. It shows a notification pop up after the user clicked the forward button on an email.

The notification heading text is "Sending original message." The body of the notification contain the message "The original message you are trying to forward / reply to is in the process of being sent. If you continue, you will not be able to undo sending of the original message any longer."

This likely HTML tampering by hackers. I am using a computer from a public library, and I am a subject of unlawful persistent targeted hacking. 

#persistent #hacking #symptom #unlawful #proton #htmlTampering 

Screenshot taken on 20241212 by cybertrappedJust searched for 'ProtonMail: "The original message you are trying to forward_reply to is in the process of being sent at"' on DuckDuckGo, but found no results. This makes me suspicious—it could be a fake notification or a hacker attempt to trick me into interacting with it, potentially allowing them to exploit my system further. Stay cautious with suspicious messages, folks!

@JustOneMoreThing

They're #smart, they're #stubborn and #persistent, and their teeth and claws can get through almost anything else - the hardware cloth I have is a 1/4" steel wire mesh made of (I think) 19- or 20-gauge steel wire. They can get through anything flimsier than that. So it blocks off parts of the rooms we don't want them in (wires, speakers, etc) and you learn to live with The Rabbit Owner House Look.

Don't get too attached to soft furnishings and carpets either 😜

2/2

2024-04-07

A critical vulnerability in Magento, identified as CVE-2024-20720, has been exploited by attackers to inject a persistent backdoor into Magento servers. This vulnerability allows attackers to insert malicious XML code into the layout_update database table, which is then executed every time a customer accesses the checkout cart. The execution of this malicious code relies on the combination of Magento's layout parser and the beberlei/assert package (lightweight PHP library designed for input validation in business models, libraries, and application low-level code), a component installed by default on Magento systems. The specific command executed, sed, is used to add a backdoor to the CMS controller, ensuring that the malware is re-injected even after manual fixes or system recompilations.

This attack method is particularly stealthy because it leverages the Magento layout system and a commonly installed package to secretly execute attacker-controlled commands. The attack is linked to the checkout page, meaning every time a customer visits their shopping cart, the malware triggers, reinfecting a vital system controller and ensuring its unwelcome return.

The attackers have also been found to siphon off sensitive customer payment details using a fake Stripe payment form, sending this stolen data off to a different compromised Magento store. This dual threat of persistent backdoor access and stolen payment data underscores the severity of the vulnerability.

sansec.io/research/magento-xml

#cybersecurity #magento #vulnerability #cve #persistent #backdoor #malware#sed #cms #xml #database #store #fake #form #stripe

James Bartlett :terminal:JamesDBartlett3@techhub.social
2024-02-23

@aral
I've never understood why the act of taking a screenshot generates a persistent notification by default in most screenshot apps.

Like, I already know a screenshot was taken; I'm the one who took it! And if I need to do something with the screenshot I just took, I want to either click on an ephemeral toast notification that pops up immediately after, or set the screenshot app to save all screenshots to a folder, and then retrieve them from there if/when I need them.

Persistent notifications for ephemeral actions should not exist.

#UIUX #UIUXDesign #Screenshot #Toast #Persistent #Ephemeral #Notification #Linux #Windows

Rohit Salujarohit04saluja
2024-01-07

It’s said that Thomas Edison made 1,000 attempts before he was able to successfully invent the light bulb.
So what you are working on probably will not have the lifestyle changing impact overnight.
Be and

2023-12-20

@moebeus @adafede @ainali @wikidata @querywikidata
Same approach.
This project merges the data fetching (#SPARQL + github action) and the data processing/display. My approach was to split these two concerns into two github repositories.

At Wikimania Singapore, i heard Wikimedia was considering creating a similar online service, so #persistent, rapid, and regularly #updated results stay available and fetchable in millisecs. Question are: true ? Then when ?
#wikidata

Matt WillemsenNonog@fedibird.com
2023-11-03

Scientists Uncover New Clues to Early Development of Schizophrenia
New stem cell research opens up new opportunities for discovery.
scitechdaily.com/scientists-un
#Brain #Cognition #Psychiatry #Schizophrenia #neuropsychiatric #disorder #persistent #axonal #dysregulation

2023-10-25

#signalapp: ich finde das etwas #ubergriffig, dass #signal einen Chat anlegt, den ich nicht benötige und der auch sonst nicht irgendwie betrieblich sinnvoll erklärbar (notwendig) ist.
Darüber hinaus: wenn die Notiz-#Historie genau sobwenig #persistent ist, wie sonst die #chathistorie (#handywechsel #schonwissen), dann gibt es kaum einen flüchtigeren und unzuverlässigeren Ort für Notizen, als diesen. Muss jeder selbst wissen. Ich nutze für so was #nextcloud und #matrix / #element.

Screenshot eines plötzlich vorhandenen Chats in der Signal APP ("Note to self")
2023-10-18

@iska #Persistent #ObjectStorage instead of a #filesystem?

Yeah, while there *were* OSes that tried that, most of them died for a number of reasons (including blatantly anticompetitive political shit sometimes).

#Database #storage would qualify too, since most of them can do vacuuming of delete/unused backing storage.

Otherwise, #persistence / #prevalence libraries exist for a few languages but that'll be very program-specific.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst