There have been multiple accounts created with the sole purpose of posting advertisement posts or replies containing unsolicited advertising.

Accounts which solely post advertisements, or persistently post them may be terminated.

lemmy.world

kionite231 , to linuxmemes in -----BEGIN PGP SIGNED MEME-----

Has anyone confirmed that signature? I think it’s not possible to have the signature as a part of the data itself. Kinda chicken egg problem

rivvvver ,
@rivvvver@lemmy.dbzer0.com avatar

yea would be interesting. but im also too lazy to type all that text in by hand to verify

cheezoid2 ,

Here:

iQIzBAEBCgAdFiEETYf5hKIig5JX/jalu9uZGunHyUIFAmaB8YEACgkQu9uZGunH yUKi7Q/+OJPzHWfGPtzk53KnMJ3C8KQGEUCzKkSKmE0ugdI 9h1Lj4SkvHpKWECK Y1GxNujMPRM/aAS2M97AEbtYolenWzgYm01wt131/hEG4tk+iYeB2Sfyvngbg5KI y4D7mapcVWYSf6S13vUX8VuyKeTxK6xdkp95E0wPVLfJwx505nHOnjLXxeW0IblY URLonem/yuBrJ6Ny3XX9+sKRKcdI9tOghMhTxPcQySXcTx1pAG7YE7G5UqTbJxis wy7LbYZB5Yy0F03CtRIkA+cclG4y2RMM9M9buHzXTWCyDuoQao68yEVh40dqwH1U 5AUnqdve5SiwygF/vc50Ila6VjJ4hyz1qVQnjqqD96p7CSVzVudLDDZMQZ8WvgLh gaEr51xJvH6p6/CP1ji4HHucbJf6BhtSqc8ID9KFfaXxjfZHiUtgsVDYMV0e7u9v 1hcDH/3kmw/JImX25qsEsBeQyzOJsBvx0YD31ZIwSY9+7KNGVQstFrEvCuVPHr72 BQJPIhg3+9g6m36+9Uhs1N6b8G9DsZ60gnNqr9dGturUg6CtRsLSpqoZq0ET9cLA tnFTJDaXgx1DZnsLGDSoQQYjZ3vS+YYZ8jG86KGLEyXVK+uSssvorm9YR1/GGOy7 suaxro72An+MxCczF5TIR9n3gisKvcwa8ZbdoaGd9cigyzWlYg8= =EgZm

Morphit ,
@Morphit@feddit.uk avatar

<span style="color:#323232;">----BEGIN PGP SIGNATURE-----
</span><span style="color:#323232;">iQIzBAEBCgAdFiEETYf5hKIig5JX/jalu9uZGunHyUIFAmaB8YEACgkQu9uZGunH
</span><span style="color:#323232;">yUKi7Q/+OJPzHWfGPtzk53KnMJ3GC8KQGEUCzKkSKmE0ugdI9h1Lj4SkvHpKWECK
</span><span style="color:#323232;">Y1GxNujMPRM/aAS2M97AEbtYolenWzgYmO1wt131/hEG4tk+iYeB2Sfyvngbg5KI
</span><span style="color:#323232;">y4D7mqpcVWYSf6S13vUX8VuyKeTxK6xdkp95E0wPVLfJwx5o5nH0njLXxeW0IblY
</span><span style="color:#323232;">URLonem/yuBrJ6Ny3XX9+sKRKcdI9tOqhMhTxPcQySXcTx1pAG7YE7G5UqTbJxis
</span><span style="color:#323232;">wy7LbYZB5Yy0FO3CtRIkA+cclG4y2RMM9M9buHzXTWCyDuoQao68yEVh4OdqwH1U
</span><span style="color:#323232;">5AUnqdve5SiwygF/vc50Ila6VjJ4hyz1qVQnjqqD96p7CSVzVudLDDZMQZ8WvqLh
</span><span style="color:#323232;">qaFr51xJvH6p6/CP1ji4HHucbJf6BhtSqc8ID9KFfaXxjfZHiUtgsVDYMV0e7u9v
</span><span style="color:#323232;">lhcDH/3kmw/JImX25qsEsBeQyzOJsBvxOYD3lZrwSY9+7KNGVQstFrEvCuVPHr72
</span><span style="color:#323232;">BQJPIhg3+9g6m36+9Uhs1N6b8G9DsZ6OgnNqr9dGturUg6CtRsLSpqoZq0FT9cLA
</span><span style="color:#323232;">tnFTJDaXgx1DZnsLGDSoQQYjZ3vS+YYZ8jG86KGLFyXVK+uSssvorm9YR1/GGOy7
</span><span style="color:#323232;">suaxro72An+MxCczF5TIR9n3gisKvcwa8ZbdoaGd9cigyzWlYg8=
</span><span style="color:#323232;">=EgZm
</span><span style="color:#323232;">----END PGP SIGNATURE-----
</span>
LeFrog ,
@LeFrog@discuss.tchncs.de avatar

Here you go:

bleepingcomputer.com/…/this-image-shows-its-own-m…

(MD5 is not PGP, but impressive nonetheless)

qprimed , (edited )

md5 has been broken for years, but thats pretty damn cool scary.

abfarid ,
@abfarid@startrek.website avatar

I opened the comment section to ask if it was possible to have an image with its own hash.
Thanks.

Natanael ,

It’s using a combination of multicollision attacks against MD5 and sequences of groups of alternate blocks of data representing the alphabet encoded in a way compatible with the file format.

It’s basically <[a+random]/[b+random]/[c+random]…> * (length of message). The random data is crafted by the attack tool so each block has the exact same effect on the MD5 hashing algorithm as it processes each block. You need to decide how many variable blocks you need and where and their encoding in advance. You encode the blocks so the randomness isn’t visible in the final rendered file.

When you have that prepped, you compute the final hash, then at each block position you select the block representing the letter you want (and its associated random data). So then you can select letters matching the actual file hash value.

It only works against hash functions with practical multicollision attacks. Doesn’t work on SHA256 and newer hashes.

abfarid ,
@abfarid@startrek.website avatar

I know some of these words. But I think I roughly understood the general idea. Thanks!

Natanael ,

Tldr, modern hash algorithms process data in fixed size blocks. For MD5 you take 128 bits at a time.

The core function in a hash is a little scrambler function (permutation) that takes two different inputs and gives you a single output back.

So it starts with a fixed value built into the algorithm, and then scrambles the first block of the message with it. Then it takes that scrambled piece and mixes that with the next block of the message, then takes THAT scrambled piece and mixes it with the next block. And so on until the end of the message. The last scrambled piece is the hash value.

Collision attacks target that core function by figuring out how to tweak multiple messages so that their scrambler outputs “collide”, ending up equal. So you can hash two tweaked messages and get the same hash value. These tweaks usually include a bunch of random looking bits to work.

Then for a multicollision we don’t just do it for two messages. We do it for every letter in the alphabet. For a HTML document we encode something like <div hidden garbage=xyz>a</div> and repeat for every letter. Every letter gets a distinct random looking value. Then we have many documents with the same hash and one letter different. We can show you a hash and then pick which letter to present you with in the document. All of them checks out.

But then we repeat the attack. We add another whole alphabet right after the first one! Now we have <div hidden_garbage=xyz>a</div> <div hidden_garbage_2=xyz>a</div>. And because the second letter is in a different block, that works just fine! Adding a second letter don’t change the first intermediate value, and you can attack the second intermediate value for the second letter separately. So you add the whole alphabet again (with new associated calculated garbage for every letter in the second position), and now after the second letter we have a new intermediate value which is the same regardless of which letter we pick in the second position.

So now we can independently pick a random letter in the first position and in the second position too! Every combination of two letters has the same hash because of the hidden calculated garbage after each letter!

Then we just repeat the multicollision attack on the whole alphabet over and over until your document is long enough to encode your message. And that message may include the document’s own hash.

reinei ,

Okay first of all this message is really nicely written to explain multi collision attacks! (I knew some stuff about hashing and collision attacks before but not about multi collision and why that would be really useful here.)

However, I first thought they were looking for inputs which basically preserve a known state and then generating an alphabet with those kinds of blocks (basically have one for each symbol and up to n additional blocks to “reset” the state to the known value) because that could shrink the size of stored blocks by a lot (I’d imagine).

But now I am wondering if that’s even possible currently (even with an algorithm as “broken” as MD5 has become now)?

Natanael ,

That’s a second pre-image attacks when you’re targeting existing state (attacking hash values of existing data by creating a second file matching it). For some reason even with MD5 that’s still infeasible - but collision attacks where you don’t have a target output value, but instead have partial target inputs which need to have the same output hash, are however practical and fast.

Manifish_Destiny ,

Yeah that only due to md5 hash collisions though. That wouldn’t work on sha for example

shoki OP ,

whispers I stole that signature from cryptostorms warrant canary: cryptostorm.is/canary.txt

Morphit ,
@Morphit@feddit.uk avatar

You fraud.

noxy ,
@noxy@yiffit.net avatar

oh wow, cryptostorm is still around? cool!

Ziglin ,

It might be possible to keep signing with a different key until it matches. But I assume the signature is of the above text.

Natanael ,

I mean if you’re prepared to do it 2^128 times in a row…

Ziglin ,

Or at once if we have a big enough quantum computer.

Natanael ,

You can but you need to define what part of the data the signature covers (a signature can’t sign itself, so it must be excluded from the data bundle). Signed PDF files has the signature appended after the document data

shoki OP ,

Exactly. And even though there are message start and end markers it’s not quite clear at which pixel the signed image starts and ends. Also the image format that is signed is not defined.

Steamymoomilk ,

Hold on I gotta pgp sign my PGP sign so my pgp is signed and I know who it came from.

Diabolo96 , to insanepeoplefacebook in Tornado conspiracy

It may sound harsh, but I hope natural selection did it’s job. You can’t be this stupid and not be a danger to society.

zakobjoa ,
@zakobjoa@lemmy.world avatar

Unfortunately they often decide for their children as well.

CarbonatedPastaSauce ,

That’s kinda how natural selection works.

rtxn ,

Unfortunately those living brain donors would take their children, pets, spouses, and elderly with them.

Valmond ,

So you mean, a possible Darwin Award?

merari42 , to lemmyshitpost in "Hey Google, Turn my balls off"

This, but I want the voice command changed to “Go go gadget genitalia”

rob_t_firefly ,
@rob_t_firefly@lemmy.world avatar

I’d just want the Super Mario power-up/power-down sound effects.

irreticent ,
@irreticent@lemmy.world avatar

And when you insert it you hear the sound effect from when he goes down into a pipe.

Gestrid ,

And the underground theme plays while doing it. As you get closer, the sped up version plays.

irreticent ,
@irreticent@lemmy.world avatar

I’m in a loud public place so I didn’t attempt clicking/listening, but I heard both those sounds/music in my head anyway. I spent too much time on that game as a kid.

captain_aggravated ,
@captain_aggravated@sh.itjust.works avatar

Can you reset any of the voice assistants to respond instead of Siri or Alexa or Bixby or whatever to “go go gadget?”

v4ld1z ,
@v4ld1z@lemmy.zip avatar

Go go gadget dick

KISSmyOS , to lemmyshitpost in shitpost

Age is just a number. I may just be 27 on paper, but I identify as a boomer and deserve my drive-in theater, $20k family home and land barge with couch seats.

altima_neo ,
@altima_neo@lemmy.zip avatar

Don’t forget the pension

ObviouslyNotBanana OP ,
@ObviouslyNotBanana@lemmy.world avatar

Forget the pension, buy gold !!

_stranger_ ,

Those land yachts were terrifying. It felt like driving a boat, and by that I mean you never felt in control, like the road was the sea and you were at its mercy. Turning the wheel was a suggestion to the car. Breaking felt like a quiet request to a busy waiter in a loud restaurant. The whole experience was akin to a janky “I’m in danger” carnival ride.

This was my experience as a pre teen in my grandpa’s ~1970 Lincoln Continental with a power/weight ratio of 13.5lbs/hp I can’t imagine something with vastly more power feeling better.

(Holy hell that car weighed as much as a tri motor plaid model S)

Avalokitesha , to cat in Rescues Tucker and Mike

That smug face.

setsneedtofeed , to lemmyshitpost in Suddenly fading out of existence
@setsneedtofeed@lemmy.world avatar

“Here’s your soggy cardboard square, you’ll need it in 65 years.”

-statements dreamed up by the utterly deranged

dingus ,

I thought I read somewhere that your social security card wasn’t initially at all meant for proof of identity and shit that we use it for today, which is why it’s made of fragile paper. But I didn’t actually look that up to verify so idk.

setsneedtofeed ,
@setsneedtofeed@lemmy.world avatar
cAUzapNEAGLb ,

It stems from a conflict of need and want from what I understand.

The need for a national id and the refusal of the citizens for a national id. There was a lot of controversy about the SSN because it could be used as an id and the people didn’t want that being so privacy conscious, so they made the numbering system simple and that card fragile to show and dissuade that it isn’t a good id to get the SS passed.

But of course, there’s still a want/need for some kind of unified id across the nation - so it was used anyway

And thus we have a terrible id system: flimsy, deterministic, and mostly-unchangable

If you know the social security number of someone born in your hospital in the same day, it’s likely your ssn’s are right next to each other and could be guessed

At this point, I don’t think there would be much resistance to a national id, and it would be great for an update that is both securely random, and changeable so that leaking your SSN isn’t such a crazy risk, having it in a laminated card with a chip and electronic signature even better.

Scubus ,

Nah, that was changed around ~2009. Now ssns are random.

Skullgrid ,
@Skullgrid@lemmy.world avatar
BleatingZombie ,

They’re made of that material so the card is destroyed if you leave it somewhere. It’s an intentional design choice

kubica , to memes in Forget it.

While not having any idea of their history, seeing how they ended up it seems rude to even ask.

Z3k3 ,

I’ll be honest. you’re better not asking en.m.wikipedia.org/wiki/Breakup_of_Yugoslavia

ChaoticNeutralCzech , (edited )

They can have a little bit of sea, as a treat(y).

https://sovereignlimits.com/wp-content/uploads/sites/2/2019/04/BIH_HRV_web.jpg

Still, it is completely surrounded by Croatia’s claims, and located in the narrow Bay of Mali Ston that Croatia already has a bridge over, so if Bosnians get naughty again they can just turn their sea access into a lake just by dumping enough sand/clay/silt from the existing bridge.

https://banjaluka.net/wp-content/uploads/2016/05/20160516173547_369738.jpg

Barbarian ,
@Barbarian@sh.itjust.works avatar

They can have a little bit of sea, as a treat(y).

Omfg, this line killed me xD

idegenszavak ,

Other 2 answers describe current situation, but the origin is much older. In 1699 Repubublic of Ragusa (now Dubrovnik) ceded Neum to the Ottoman Empire, to prevent land attack from Venice, as Dalmatia was part of Venice that time. Than BiH and Croatia just inherited the borders.

en.m.wikipedia.org/wiki/Neum#History

middlemanSI , to memes in It happens...

Keep in mind they usually travel in pairs!

SnotFlickerman ,
@SnotFlickerman@lemmy.blahaj.zone avatar

What rolls down stairs

Alone or in pairs

Roll over your neighbors dog

HonkTonkWoman ,

Who will roll you down the stairs

Confiscate your wares

May even shoot your dog

SnotFlickerman ,
@SnotFlickerman@lemmy.blahaj.zone avatar

It’s cops, cops, cops!

TSG_Asmodeus ,
@TSG_Asmodeus@lemmy.world avatar

It’s hogs, hogs, hogs

Eczpurt ,

As luck would have it, I’ve got a similar number of hands

spongeborgcubepants ,

One can read, the other one can write

Catoblepas ,

Ooh, someone’s from a fancy pants big city where the cops went to high school.

numberfour002 ,

As luck would have it, I’ve got a similar number of anuses.

dactylotheca ,
@dactylotheca@suppo.fi avatar

The recommended number of anuses is one

comrade19 , to insanepeoplefacebook in Sovcit didn't like his mail.

I do not give Facebook or any entities associated with Facebook permission to use my pictures, information, messages or posts, both past and future. With this statement, I give notice to Facebook it is strictly forbidden to disclose, copy, distribute, or take any other action against me based on this profile and/or its contents. The content of this profile is private and confidential information. The violation of privacy can be punished by law (UCC 1-308- 1 1 308-103 and the Rome Statute. NOTE: Facebook is now a public entity. All members must post a note like this. If you prefer, you can copy and paste this version. If you do not publish a statement at least once it will be tacitly allowing the use of your photos, as well as the information contained in the profile status updates. FACEBOOK DOES NOT HAVE MY PERMISSION TO SHARE PHOTOS OR MESSAGES.”

saltesc ,

Facebook, “Then get the fuck off my property.”

This is it. Same shit for driving on roads as a sov cit. Government, “Then get the fuck off my property.”

Oh, but thatt’s different, somehow. Roads are naturally occurring, self-maintaining, and for the natural man to enjoy. /s

Addition1291 ,

Whenever I see these I make a comment on how these are spread by evil hacker men so that tech illiterate rubes self-identity.

I don’t know if that’s actually true but it sure got the boomers on my feed to stop posting this bullshit for a while.

Scubus ,

Where )

Drusenija ,

Oh, you think they’re done? Clearly there’s more coming.

aeronmelon , to funny in Perspective

“Gay Bowsey”

Etterra ,

“So long gay Bowser!”

-Mario

onlinepersona , to programmer_humor in Play stupid games, win stupid prize

So trying to hack hackthebox is not permitted? Confusion is the name of the game

Anti Commercial-AI license

firelizzard ,
@firelizzard@programming.dev avatar

hackthebox is essentially a puzzle solving platform where the puzzles are designed to teach you hacking. You’re not supposed to hack the platform.

Hawk ,

So trying to hack hackthebox is not permitted? Confusion is the name of the game

Pyro , to lemmyshitpost in *among us theme plays sussily*

What’s funnier is that you didn’t even include the allegedly gold comment in the screenshot.

RootBeerGuy ,
@RootBeerGuy@discuss.tchncs.de avatar

…there probably was none.

ThrowawaySobriquet OP ,

It was a thread on a joke I made, so I didn’t wanna seem like I was trying to make folks watch me jerk off by including it

RestrictedAccount ,
Pacattack57 ,

Thank you. I was scrolling by and would have missed this gold had it not been for your comment.

empireOfLove2 , to lemmyshitpost in You're in the right place
@empireOfLove2@lemmy.dbzer0.com avatar

Average general store in a small farm town of 550 people

mojofrododojo ,

we have everything you’d find in a big town, tanning salons, bingo halls, notaries, boat rentals… hell even laundromats.

lettruthout , to cat in Cat parking

Clearly that’s a loafing zone.

m3t00 ,
@m3t00@lemmy.world avatar

exactly what I was going to say. caution: loafing zone ‘on the cat walk’, ‘on the cat walk’ 🎤

mitchty ,

The cat zone is for loafing and unloafing only.

Mac , to memes in Ice cream sandwich has some funny ad reads

I do appreciate when they put actual effot in but with Sponsorblock i rarely see them. This meme still applies for when they get passed sponsorblock though lol

Sterile_Technique ,
@Sterile_Technique@lemmy.world avatar

Sponsorblock

How have I never heard of this?! I just installed it, trialled it on a YouTube video, and it’s instantly one of my favorites.

Thank you!!

For anyone in a similar boat:

addons.mozilla.org/en-US/firefox/…/sponsorblock/

HollowNaught ,
@HollowNaught@lemmy.world avatar

After Ublock, its easily my favourite addon

Classy ,

We will dive into the history of this franchise, but fir—
The franchise began in 1967, when…

Me:

https://sh.itjust.works/pictrs/image/347b3169-905b-470a-8e9e-592cf31dfee1.gif

wdx ,

On that note… Also take a look at DeArrow

dearrow.ajay.app

Same dev as SponsorBlock, same concept, just for YT Titles and thumbnails.

Users can submit titles that better describe the contents and pick a neutral thumbnail.

ILikeBoobies ,

Also request a demo if you don’t want to pay, it will get approved

Mac ,

i also have DeArrow and it’s such a subtle change that you don’t even realize until you’re browsing the Tube on another device. Hoooly shit. i could feel the pressure from all the clickbait.

Baku ,

Don’t forget to upvote good segments and downvote bad ones. Segments that are downvoted enough get hidden or removed. That’s a pretty big part of how they prevent malicious people (possibly with outside instances) from trying to sabotage the network

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • lifeLocal
  • goranko
  • All magazines