Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)BU
Posts
2
Comments
1,317
Joined
2 yr. ago

  • Reddit managed pretty well, let’s be real. The 3rd party app protests were essentially a speed bump that lost a tiny subsection of users that advertisers didn’t want anyways. Everyone else just migrated to the official app or website.

  • That doesn’t make the point irrelevant, it makes it even more likely to happen. Most of us don’t want to play on shitty, self-hosted servers and I’ll gladly remove that option to have a more secure game server.

    Hot take, but games don’t need to be active for decades. Everything dies eventually. After 10 years there’s no need to keep running the game servers.

  • Only major problem is when software is reused for future games and releasing server binaries makes attack vectors much easier to find. Apex legends has a major issue with this where a significant amount of code was reused from previous games that have server code available, and hackers have absolutely used it as a testing ground for all kinds of cheats.

  • The reason I consider this sloppy is because he altered default behavior. Done properly, an injection like this probably could have been done with no change to default behavior, and we’d be even less likely to have gotten lucky.

    Looking back we can see all the signs pointing to it, but it still took a lot of getting lucky to find it.

    I’ve always considered the “source is open so people can check for vulnerabilities” saying a bit ironic, because I’d bet 99% of us never look, nor could find it if we were looking. The bystander effect is definitely here as we all just assume someone else has audited it.

  • This is a huge wake up call to OSS maintainers that they need to review code a lot more thoroughly. This is far from the last time we’re going to see this, and it probably wouldn’t have been caught if the attacker hadn’t been sloppy

  • I think it’s completely fair to move the Middle East races to a time that won’t conflict with Ramadan. There was no reason they had to overlap, and should probably be applied to any kind of major religious holiday.

  • These 2 pros have performed at lan multiple times and the type of cheats used would have been immediately noticed on any stream.

    The hacker (destroyer2009) also gifted in excess of $8k worth of lootboxes to multiple streamers, suggesting that they have access to some remote APIs they shouldn’t.

    On top of that a few months ago there was a widespread issue with top players being targeted in lobbies where they’d drop and then 57 bots would drop and zombie rush, all named the same thing and controlled by some kind of rudimentary script.

    Pretty much everything together has ruled out the possibility of either of the players involved being the ones who are purposefully cheating.

  • 128gb is plenty unless you’re storing a lot of photos on device. If you’re storing > 100GB of photos on your phone and they’re not backed up somewhere else, you’re really setting yourself up for disaster

  • XXX

    Jump
  • For the most part Americans are so desensitized to the gain Violence that it’s not something most of us think about much.

    I’ve grown up in a post Columbine world, and mass shootings have been a part of my life since it started. They’re just a really unfortunate part of life here that won’t change unless there’s a massive culture shift.