Malicious parties have taken over popular Chrome plugins to push malware.
I can confirm it is not just Cyberhaven plugin. We dont have a list of impacted plugins, just reports of machines reaching out to the reported malicious domains from Chrome. Still gathering informaiton.
https://therecord.media/hackers-target-vpn-ai-extensions-google-chrome-malicious-updates
https://x.com/jaimeblascob/status/1872445912175534278
Edited to add additional IOCs (IP of C&C and Domains):
149.28.124[.]84
bookmarkfc.info,
cyberhavenext.pro,
parrottalks.info,
uvoice.live,
vpncity.live
castorus.info, censortracker.pro, ext.linewizeconnect.com, iobit.pro, moonsift.store, readermodeext.info, wayinai.live, yescaptcha.pro and yujaverity.info
'when we have people like Keir Starmer, Rachel Reeves, Kemi Badenoch, and all the others in UK politics who believe in this nonsense view of growth at all costs and corporate maximization as their priority.
People should be the epicentre of their concern, but they're not.'
It’s time to talk economics https://www.taxresearch.org.uk/Blog/2025/01/02/its-time-to-talk-economics/
I'm fully aware that this is a total waste of my time, but given today's news about an Apple settlement relating to Siri audio recordings I wrote this blog post about why I still don't think that companies are spying on us through our phone's microphones: https://simonwillison.net/2025/Jan/2/they-spy-on-you-but-not-like-that/
That said, #docker for development is better than some alternatives. Like sending code archives to a shared google drive for instance.
Ok, so.
I have avoided using #docker for development (because it's not fit for development).
Now I'm looking at how people work with it and #firebase and in case you haven't seen it, the best way I can express it is "#nix rebuild whenever you need to do something non-trivial, except with a shitton of side-effects".
It's absolutely unfit for purpose.
Want to start the new year with a good deed? Play some dope short IF games and vote :D
https://itch.io/jam/if-short-games-showcase-2024/entries
#interactivefiction #sgs #shortgameshowcase #visualnovel #parser #indiegame
A reminder that obnoxious, blocking cookie consent banners are not required by law but are there because tech companies had a massive tantrum at being prevented from tracking the bejesus out of you by default.. They don't need to be annoying or intrusive, companies can absolutely choose not to track, to track less, or make the consent experience easier, they choose not to 💩💩💩
Hello, Hachyderm! If you haven't seen the system-wide announcement yet, we've increased the max toot length from 500 to 2263, so now you can enjoy posting longer form content - no more word Tetris to squeeze that last word in!
We're excited for Hachyderm's future and happy to have you as part of our community.
See you in the 'verse!
It took only five days for #Ghostty to become available in #NixOS and #HomeManger! I'm trying it out as a replacement to #iterm2.
This match is real fun, thank in advance for giving it a watch.
@zarfeblong There's probably an MtG card combination that does exactly this. I mean, there's an MtG card combination that gives you infinite mana if and only if the twin prime conjecture is true, so sucking physical objects into your hand, why not.
That https://doma.dev guy
#lean #rust #typescript #react #nix
In my non-existent free time I design and run #TTRPG
If you use tools made by genocide-apologists, you are a genocide-apologist.
#lemmy users aren't welcome here.