• 0 Posts
  • 10 Comments
Joined 1 year ago
cake
Cake day: June 1st, 2023

help-circle
  • https://www.bleepingcomputer.com/news/security/genetics-firm-23andme-says-user-data-stolen-in-credential-stuffing-attack/

    The information that has been exposed from this incident includes full names, usernames, profile photos, sex, date of birth, genetic ancestry results, and geographical location.

    The threat actor accessed a small number of 23andMe accounts and then scraped the data of their DNA Relative matches, which shows how opting into a feature can have unexpected privacy consequences.

    • Usernames Profile Photos DoB

    They can be linked to other online accounts. This allows for phishing, potentially scamming or getting additonal information on them which can lead to more sophisticated/personalised scams. Older, less tech savvy users are better targets for scammers.

    • Username Sex DoB Genetic Ancestry Location data

    Data aggregators can sell this info to Health Insurance Companies or any other system who can then discriminate based on genes sex age or location

    • All of this information

    Can contribute to people committing fraud with their information if they collect enough information from different sources.

    • DNA relatives

    Having enough information about a user to use it to target their now known relatives in personalised scams.

    The people that did this probably didn’t know what information they were going to get, maybe they were hoping for payment info, and settled for trying to just sell what they got.

    Any information, no matter how useless it might seem, is better than no information and enough useless information in the wrong hands can be very valuable.

    Theres countless data breaches every year and people will collect it all and link different accounts from different breaches until they have enough information. Most people use the same email address for every website and a lot of people reuse the same passwords, which is how this data leak occurred. Knowing that these users reuse the same email/password combination here means theres a very good chance they’ve reused it elsewhere.

    You can check out what data breeches have occured and if your email or password has been posted in any of these dumps here https://haveibeenpwned.com/

    Once the information is out there, its out there for good and what might seem trivial now to you could be valuable tomorrow to someone else






    • Browsers

    Mull is my go to browser, based on Firefox with proprietary blobs removed and since its Firefox uBlock Origin can be installed

    Mulch is chromium based for when websites ~ break ~ with Mull. Both are by the same Dev that makes DivestOS

    • Utilities

    I’m not really sure what is meant by utilities but these are some apps that I utilise pretty much every day

    URLCheck for easily removing tracking from URLs either manually or automatically

    Bitwarden is my go to password manager, you can add their repo to your fdroid client to get auto updates

    Aegis for 2FA with easy backup and restore to and from files and supports importing files from so many other 2FA clients

    Insular utilises the work profile to separate out apps. Some people in my life still use WhatsApp so I have a whole profile just for it, I can’t wait for the DMA to fully kick in so I can get rid of WhatsApp

    Librera opens all of my documents for me and I can choose between scroller mode for PDF type stuff or reader mode for ebooks. It also has amoled black which I love.

    QbitController to easily manage all of my qbittorrent instances. It also automatically opens magnet links I tap on so I can add them to one of my instances easily

    RHVoice TTS that integrates with OSMand, I find I have better voice results with this compared to espeak

    Syncthing Fork to auto sync folders on my phone, PC and NAS

    Termux terminal emulator I use for SSH, it also runs Zotify and YT-DLP

    KDE Connect for controlling my cursor on my PC, quickly sharing files to and from my PC and for seamlessly sharing clipboards between them

    • Forgotten Apps

    Showly OSS Integrates with trakt(.)tv to keep track of shows and also has a discover tab for TV and movies

    Unexpected Keyboard I missed the keyboard discussion so I’m going to mention it here. It supports function keys! So I can use htop in SSH to kill processes on my PC when I break something and my screen freezes





  • Pretty sure Reddit can’t ban people for promoting/linking to competitors sites as there is EU regulations in place to prevent this.

    This issue was raised when Twitter tried to stop people from linking to their Mastodon accounts. Twitter put the policy in place and then quietly removed it soon after.

    If you really believe that you were banned for promoting Lemmy then you should mention this in your appeal but as others have mentioned it seems like the issue was spam.

    And sure maybe they were waiting for any reason they could get to ban you because you were promoting Lemmy and they got you on spam, always gotta read the contract/TOS to make sure the other party doesn’t get you on a technicality