Skip Navigation

User banner

u/lukmly013 💾 (lemmy.sdf.org)

@ user224 @lemmy.sdf.org

Posts
136
Comments
2136
Joined
3 yr. ago

I like computers, trains, space, radio-related everything and a bunch of other tech related stuff. User of GNU+Linux.I am also dumb and worthless.My laptop is ThinkPad L390y running Arch.I own RTL-SDRv3 and RSP1 clone.

SDF Unix shell username: user224

  • I achieve the same by disabling VoLTE and VoWiFi and setting the phone to LTE only in *#*#4636#*#*.

    I love these service menus. *#*#3646633#*#* has so much stuff to permanently screw up on some MediaTeks. But also some useful ones like selection of frequency bands, or even specific frequency and cell id.But yeah, some settings can persist factory reset, and some may even be illegal like Tx tests (verified that it does transmit garbage on selected frequency with SDR) or IMEI change. Not all settings are on all devices, and they may even be partially broken.

    But yeah, these settings are don't touch it for the most part (some are just huge lists of undocumented variables). Some don't even seem to be resettable from the menu, I mean menus where you select one option, but by default they are unset. And the band mode selection on Moto G54 5G was... interesting. Rather than a nice selection menu, you can type in a number and select to add or remove it from a vector variable for 4G and 5G. Of course, nowhere does it list valid options or give a reset button.

    And lastly a thing that serves me as a warning for future, when I was playing around with a leaked service program for some Realtek Ethernet adapter, I found out what eFuse memory is. There is no going back.

  • but I would never use public transport even if we had it.

    Why is that?

  • 2 and 3 check out with me, but 1st point is public transport only. Preferably trains + trams.Although buses have the advantage that I can sit in the front where I can see the road, and they also tend to be less illuminated so I can see outside at night.I wish there were dark carriages. Coach buses will have a few blue LEDs near the floor, but a train has to come with full sun worth of light.

  • From a deal on racknerdtracker.com (so RackNerd as the name suggests).But their panel is a bit limited. If you want a custom OS that isn't provided, you have to open a ticket with them to get an ISO mounted. You can also boot into recovery environment, but that is outdated minimal installation of Debian 9 without working APT. I was still able to use it to install Arch Linux from bootstrap image though. I just had to decompress it on my PC, create a temporary partition for it and scp it over.

    And I am again mentioning Arch. It comes naturally.

  • I didn't notice, and I don't tend to talk to people, so no idea.The person next to me didn't use 2FA, that's all I know.

  • ?

  • That's a pretty good price for components from the future, if that includes shipping. You have to keep in mind Wormhole Post has really high fees.You could try Blackhole Express, but they tend to always stretch things.

  • I like the ideas here, so much so that I feel bad for giving you a disappointing answer: exam.

    No own electronic devices in the exam room. That included everything, phones, watches, calculators and they also specifically mentioned "hearing aid" while giving out all instructions verbally.Perhaps if there was someone it applied to they wouldn't but...And I had to log into our system to take it, which uses TOTP 2FA. An odd situation. Since the only other thing from clothes being allowed was a pen and paper with password (if needed), here we are.

    But one real world example I heard from someone is no unapproved devices being brought into the server room.

    Sorry, nothing interesting going on in here.

  • Not at all. And that's without whois privacy..com .net .org .us .me are $24.95/year.meme is $24.99/year.io is whopping $69.00/year

  • I wasn't allowed to bring in my phone, which has the authenticator app. And I had to log in on a provided device. And I use 2FA.

    The guy didn't even seem surprised when I asked him for current time to look up the current code, so probably this indeed was within the expectations."You can have the password printed out" - part of the instructions

  • Oh, how could I forget that. My bank uses them. But it also needs my (physical) debit card and its PIN.Bit cumbersome to use.

  • Brute-forcing would take some bit of time. If the 6 digit code, 3 combinations of which are likely valid at a time becomes your only factor, you've already lost. Long randomly generated combinations are unrealistic to brute-force. For now at least.

    And here's a screenshot from when I brute-forced the 2FA to my Lemmy account because I trusted the wrong app (Cisco Duo and its backups without version control wiping everything after turning on older device):

    6 digits isn't much.

    Also I hate how it's implemented everywhere. We figured out that telling someone whether the password or username is incorrect is a bad thing, so now we do "username or password incorrect". But what about 2FA? Username is easy to get if targeting a specific person.If you can get to 2FA, you know the password was correct. That's the case basically everywhere. Then it's just 6 digits to guess. And typically you also only get notified about logins when successful. Too late at that point.My wish would be to take both password and 2FA code at once, and just return "password or 2FA invalid" if one or both of them are wrong.

  • Whether yes or no I can't answer, which is what people seem to be discussing. Also "hormone blockers" probably doesn't sound that scary (at least it seems that's what they do anyway).

    Anyway, this is just sex part. Do you feel like telling your parents "I will not be having sex"? Someone you should consult it with is a medical professional, but parents just if you feel like it makes sense. I don't know how open you are with them.

  • I don't follow what you're trying to say here. (The last 2 sentences contradict in my mind)

    Anyway, phone vs this tomfoolery, it might not be more/less secure, just different.What's on paper is all there will be, as it doesn't include the secret for generating additional codes.Phone has that, but also has a screen lock. Whether that is easy to bypass will depend on environment, but after the first unlock, it is at least realistic.Plus you have people like my father who go by "no lock, nothing to hide".

    For immediate exploit, paper looses.For later persistent exploitation, phone looses.

    Also, no one's going to have endless scrolls of codes like this. 2 pages for less than 4 hours. Round that up to 2 hours per page, that would be 12 pages per day, 360 pages per month, 4,380 pages per year.I had to do this, because it was a requirement (they even recommended to print out the password). Actually, they didn't mention 2FA, just to print out the password (and no use of personal devices). This is the best I could do given the environment.

  • Same for banks in Slovakia, but you typically have monthly packages that will include unlimited withdrawals. Say, €7/month.

    But it's all over the place.

  • about as secure as using someone’s SSN for the 2fa

    I'll give you one better. For a certain thing, the university I attend decided to use birth numbers as a password. And that was the only factor.Mind you, in Slovakia, the birth number consists of birth date + random 4 digits.Much safety.

    Anyway, SSN doesn't expire in less than 4 hours.

  • 196 @lemmy.blahaj.zone

    Small Blahaj army (14 of them) rule

  • 196 @lemmy.blahaj.zone

    After 4 nights, I finished downruleading Linux Mint ISO over 2G EDGE mobile data

  • World News @lemmy.world

    Russian doctor carved ‘Glory to Russia’ scar on POW during operation

    kyivindependent.com /beyond-cynical-ukraine-says-russian-doctor-carved-glory-to-russia-scar-on-pow-during-operation/
  • 196 @lemmy.blahaj.zone

    69% still waiting somewhere rule

  • Reddit @lemmy.world

    T-Mobile? Straight to jail.

  • 196 @lemmy.blahaj.zone

    Burning pictures to CD in a different way rule (just software with unmodified regular drive) - audio sample in post

  • 196 @lemmy.blahaj.zone

    I travelled for total of 14 hours, didn't manage to convert my pSIM to eSIM, but I got to pet a cat (this makes senserule, I swear)

  • Canvas @toast.ooo

    Arrived half a year later, envelope cockled and moldy.

  • 196 @lemmy.blahaj.zone

    How do I rule 8 hours of sleep in 1 hour?

  • 196 @lemmy.blahaj.zone

    Totally 💅 rule

  • Ask Android @lemdro.id

    Is there a way to disable audio post-processing (without root access)? Perhaps in ADB. - Borderline unusable audio quality for anything more than voice by default (incl. example)

  • 196 @lemmy.blahaj.zone

    Chonky phone rule (not OC - image source in post

  • Linux Mint @lemmy.ml

    How can I find out what exactly LightDM does (and reproduce it manually) to use VNC server? (broken XFCE Mint customization, missing audio, lack of privileges)

  • 196 @lemmy.blahaj.zone

    Hmmmmmm... rule

  • 196 @lemmy.blahaj.zone

    It seems I almost had a DVD shatter due to drive spinning too fast (probably thanks to low 5V power on external SATA adapter)

  • 196 @lemmy.blahaj.zone

    Fountain pen ink in printer at 3AM rule (more stuff in post) (I don't know where to post this, so 196 it is)

  • 196 @lemmy.blahaj.zone

    You're finally awrule

  • Bun Alert System @lemmy.sdf.org

    Deviously waiting behind fence

  • sdfpubnix @lemmy.sdf.org

    Blahaj? I'd be curious what led to this decision.

  • 196 @lemmy.blahaj.zone

    Election rule