Damn, hackers are being really uncool towards lemmy.world. Hopefully some good can come from this and they can implement robust security systems that help protect Lemmy instances from these types of attacks.
Damn, hackers are being really uncool towards lemmy.world. Hopefully some good can come from this and they can implement robust security systems that help protect Lemmy instances from these types of attacks.
Oh crap, I forgot which asklemmy I’m on, I’m a dumbass.
As much as any other app I’ve seen, but I would still recommend using unique credentials for Lemmy.
I’ll make sure to let you know if I see it anywhere.
All of the apps have you enter your credentials into their page because Lemmy doesn’t support OAuth2. I don’t think it’s fair to criticize Voyager for a problem that is currently inherent to all Lemmy apps.
You’re correct, but by maintaining distinct passwords with a password manager you make sure only the one account is compromised. 2FA also helps, you may have the username and password, but the 2FA code that you were given needs to be used immediately or else it will expire, and an expired 2FA code won’t allow you to successfully breach the account you’re trying to break into to.
That’s fair, but sometimes a malicious actor will attempt to covertly contribute code that introduces a security vulnerability.
Indeed, this is a real weak spot with Lemmy’s security. I honestly think we need to place more emphasis on implementing OAuth2, when I have the time I’ll have to take a look at that again to see if I’m able to.
Indeed. I’m certain they exist, but it’s a case of needing to research which organizations are reputable and respected for their certifications.
Fully agreed.
Indeed, right now we’re one of if not the largest questions community, even larger than !asklemmy@lemmy.ml, so there are more resources here than other places.
Currently, we’re being a little more lax with the support questions because of how new Lemmy is. Once the platform has matured a bit more, we’ll move to being more strict about enforcing our rules on support questions.
Edit: Ignore me, I’m a dumbass and forgot which instance I’m looking at.
If you are wanting to move into a more programming oriented career, then I would say that while a college degree is useful it is by no means required. One of the things that you could do is complete a certification course and then apply for an entry level position, you’ll take a pay cut but unfortunately that’s common when changing careers. What type of work are you currently hope to move into?
The past few hours, it was recent.
For the best. Knowing that this hacking technique is a vulnerability with the Lemmy project as a whole, I think it’s reasonable for instances to temporarily close while a fix is implemented.
Hearing that, I wonder if they were using an IP address based system. That would cause real problems for people using a VPN, but it wouldn’t surprise me.
It’s no problem! I really like helping build new communities, and I was having a really good time participating on VLemmy. I’ll continue participating using lemm.ee and continue enjoying the platform and community, but I really hope that VLemmy comes back because I was happy with what we were building there.
I was not on the Admin team, I did moderate the Chat community and I was active in Support but I wasn’t technically an admin. I had applied to be an admin, as pyarra the day before yesterday put out a post asking for admin applications, but then the server died and I’m not sure what happened.
This is going to be painful for us as a species. I don’t think it will render us extinct, but the weather will get significantly worse and we will probably see widespread coastal flooding in this century, which will lead to hundreds of millions of refugees. We still have plenty of time to prepare and to change course, but I fear that we will wait until a global crisis is on our doorstep before we make serious changes.
In all honesty, I can see your comments from lemm.ee. I wonder if lemmy.world is back up now.