lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

69
active users

#HoneyPot

0 posts0 participants0 posts today
Replied in thread

@signalapp It's not #disinfo when one points out that you demand #PII aka. #PhoneNumbers from Users and that is literally a architectural vulnerability, alongside your #proprietary & #Centralized #Infrastructure.

Not to mention the lack of @torproject / #Tor support with an #OnionService or the willingness to fulfill #cyberfacist "Embargoes" or shilling a #Shitcoin #Scam named #MobileCoin!

  • #KYC is the illicit activity!!!

And don't get me started on the #cyberfacism that is #CloudAct.

  • If you were secure, criminals would've used your platform so hard, it would've been shutdown like #EncroChat and #SkyECC.

I may nit have allvthe.evidence yet, but #Signal stenches like #ANØM: #Honeypot-esque!

It's just crazy how phpmyadmin mass exploitation remains popular (read: effective) to this day. The only developments I have seen in these exploit attempt is that the list of locations that are checked for phpmyadmin installations gets longer and more creative.

Other than that: pretty boring stuff

#DataPrivacy #MAGA aficionado
#ProtonMailControversy

#ProtonMail has made a name for itself with its data privacy.
In the face of past compliance with foreign law enforcement and its #MAGA leaning #CEO could it become a #Honeypot for governments due to its particular clientele?

ICYMI, via #Techstory.in

"👉Proton Mail Faces Backlash Over Claims of Political Neutrality Amid CEO’s Praise for Republican Party👈

by #AnochieEsther
January 30, 2025

"Proton...

techstory.in/proton-mail-faces

Someone just reached out to me asking to attach my name to a local #protest on social media. Yeah, no. If you want me to participate in your protest, we need to have known each other prior to the protest announcement.

Careful out there, folks. I sense a lot of astroturfing and “amateur organizing” going on. Don’t get yourself into trouble for nothing, and more importantly, don’t get swept up in a #honeypot operation. I know you’re mad (so am I) but as always, BE STRATEGIC. Don’t lose your cool.

I’m not discouraging you from protesting! But before you sign up, make sure you KNOW YOUR ORGANIZER and what kind of event they are trying to organize. Don’t be a sucker.

Replied to sb arms & legs

@sb @jonah

#Tutanota #honeypot?

On the + sie they publish their whole client code in GitHub (for what that's worth). I am not an #ITsec expert and cannot judge if there are still backdoors possible.

This Otis guy is a murky figure, parts of his story don't make sense as apparently HE was asked by the criminals to use the service first.

It's easy to damage reputations in this domain, so what's a bit surprising is that Tutanota did not sue Ortis for these extremely damaging statements to wash themselves clean (his claims would have undergone scrutiny in a court trial then).

(Dear @Tutanota team, why didn't you?

@sb, are there other indications for the honeypot claim? because this single one doesn't completely hold for me.

*thebureau.news/p/alleged-rcmp-

The Bureau · Alleged RCMP mole researched Brit spy "Kim Philby" while leaking Five Eyes intel to HezbollahBy Sam Cooper
Replied in thread

@jonah
Oh nooo :(

I've heard good things about #tutaMail. It appears to be #openSource.

I do seem to remember possibly hearing something similar to what's happening now to proton happening to them though... I'm digging around for it.

*edit: oh right... It's a #honeypot set up (at least in part) by my government:

torontosun.com/news/national/e

Additionally, it was never actually open source, either.

torontosunAccused RCMP leaker tells of clandestine operation, moles inside law enforcementA former RCMP official accused of leaking secrets says he was actually conducting a clandestine intelligence operation.
Continued thread

(This has so many advantages; it really is money well spent. For one, you can use it to argue that you’re not a monopoly – though, as recent rulings have shown, within limits. Then, you can have that champion of Definitely The Opposite Of Horrible Thing X advocate for self-regulation tactics like Do Not Track that stave off regulation for years, perhaps even a decade if you’re lucky. But that’s not all. You also gain a voice that can lobby softly for lack of regulation at institutions like the EU when your direct lobbying might be more suspect. Not to mention a honeypot that can attract people who actually care about the issues and keep them busy on projects you know won’t make a real difference. But, whatever you do, do train your future heads of public policy better so they don’t beg their friends at conferences they’re both speaking at to “go easier on us”, proclaiming “I don’t know why you’re holding to us such a higher standard, we’re just another Silicon Valley tech company.” Because those quiet parts should never be spoken out loud. Tsk, tsk.)

If you want to continue doing Horrible Thing X, you must ensure you invest not only in Horrible Thing X but in the most visible opposition to Horrible Thing X. Ideally, that opposition should owe its continued existence to you and to Horrible Thing X.

So, for example, if you’re a surveillance capitalist like Google, you should ensure that Mozilla owes its existence to you and to surveillance capitalism by funding them with roughly half a billion dollars every year. Which, thankfully, Google being the smart and cunning people they are, they are already doing.

#PayPal 's #Honey Service is allegedly one of the biggest scams for users AND creators. It:
- Replaces original affiliate links at checkout with their own, shifting commission away from creators to PayPal
- Applies worse coupons than there are available in the open internet
- Incentivizes usage by giving a fraction of the "stolen" comission to the user in form of "points"
- Lies about these facts in ads

Credit to Megalag:
youtube.com/watch?v=vc4yL3YTwWk

Share, if you care
#Honeypot #enshittification

"Peak Stupid" - I wrote this piece, "Password Gropers Take the Spamtrap Bait" (nxdomain.no/~peter/password_gr or with G's trackers bsdly.blogspot.com/2014/08/pas) a little more than 10 years ago.

Mid-Sep 2024 I generated a block of spamtraps on the pattern "drone???@spartmaps.lfja.org" because that subdomain part sounded like fun, and lo and behold, those local parts started turning up on pop3 on Nov 10 (your curiosity satsified nxdomain.no/~peter/202411_popf).

nxdomain.noPassword Gropers Take the Spamtrap Bait
Replied in thread

You use XMPP+OMEMO because you think it's neat.

I use XMPP+OMEMO because all centralized, single-vendor and/or single-provider messengers are inherently garbage, collect PII like phone numbers for no "legitimate reason" and don't offer proper End-to-End - Encryption with self-custody of all the keys, making them either honeypots or prime targets for warrants.

  • We are not the same!
Infosec.SpaceKevin Karhan :verified: (@kkarhan@infosec.space)@evacide@hachyderm.io NO, YOU CANNOT USE @signalapp@mastodon.world WITHOUT A PHONE NUMBER!!! * They still require a phone number as they still do restrict the functionality of their App based off the phone number given! Also we've all seen that #centralized, #SingleVendor & #SingleProvider solutions are inherently bad - so why should anyone use #Signal over #XMPP+#OMEMO or XMPP+#PGP/MIME ??? #Signal, like every provider in the #USA, is subject to #CloudAct ** and will obviously hand over the #metadata they collected without legitimate interest if told to do so. *** After all, clients like @monocles@monocles.social ' #monoclesChat **** make XMPP w/ OMEMO and PGP/MIME extremely user-friendly... Im many juristictions, you cannot legally obtain an anonymous prepaid SIM legally! ***** - - - Sources: * https://social.tchncs.de/@kuketzblog/111968247576555678 ** https://en.wikipedia.org/wiki/CLOUD_Act *** https://web.archive.org/web/20220112020000/https://twitter.com/thegrugq/status/1085614812581715968 **** https://f-droid.org/en/packages/de.monocles.chat/ ***** https://infosec.space/@kkarhan/111968383793566135
Replied in thread

Gern geschehen @BlumeEvolution.

Ich betreibe schon seit gut zehn Jahren meinen eigenen Friendica-Server und davor war ich kurz auch auf Diaspora aktiv. Solche Troll-Wellen kommen leider immer mal wieder vor, nervten bis jetzt aber immer nur kurzzeitig. Auf Diaspora waren es mal sehr unangenehme Faschos. Irgendein Spaßvogel hat dann mal einen #Honeypot Beitrag verfasst der diese Typen dann sehr schön getriggert hat so das man alle Block-Kandidaten in einem Thread finden konnte, das hat eine Zeit lang für Ruhe gesorgt.

Vermutlich handelt es sich ja bei Deinem speziellen Freund auch um ein und dieselbe Person oder einen Wandertroll wie ich sie nenne. Solche Wandertrolle ploppen leider auch von Zeit zu Zeit mal hier auf, verlieren aber in der Regel schnell die Lust daran. Letztendlich geht es für einen Admin ja deutlich schneller solche Accounts zu blockieren als solche Accounts anzulegen (Von einem sehr unangenehmen Exemplar von Wandertroll habe ich mindestens 30 seiner Inkarnationen in meiner Blockliste stehen bis er die Lust verlor ... ).

Generell glaube ich, dass das #Fediverse ganz gut gegen Trolle und Artverwandte geschützt ist, die meisten Admins und Mods sind ja sehr bemüht. Dauert manchmal leider ein paar Stunden bis Tage aber insgesamt vermutlich schneller und effektiver als bei Twitter/FB usw.

#SignalMessenger continues to move along a #dark path.

First they integrated a #ShitCoin behind the back's of their users, which is a major issue regarding #Trust. If you were not aware of this, here is a great video overview by #TheHatedOne
bitchute.com/video/tJoO2uWrX1M

They still require a phone number to use their platform - like HELLO? Seriously?

And more recently we have more #Censorship lined up via the #SignalFoundation
city-journal.org/article/signa

Why are people still relying on this application??? ^_^

www.bitchute.comSignal's Terrible MobileCoin BetrayalSignal's behavior resembles that of the big tech more and more. But it should be criticized even more harshly than them. Support me through Patreon: https://www.patreon.com/thehatedone - or donate anonymously: Monero: 84DYxU8rPzQ88SxQqBF6VBNfPU9c5sjDXfTC1wXkgzWJfVMQ9zjAULL6rd11ASRGpxD1w6jQrMtqAGkkqiid5ef7QDroTPp Bitcoin: 1FuKzwa5LWR2xn49HqEPzS4PhTMxiRq689 Ethereum: 0x6aD936198f8758279C2C153f84C379a35865FE0F Safing Podcast with me and David: https://safing.io/podcast/2021/05/06/how-weak-business-models-corrupt-privacy-projects/ Sources Signal's Business Model https://nitter.cc/moxie/status/1350901586898259968#m http://ndtv.com/india-news/co-founder-brian-acton-to-ndtv-where-signal-scores-over-whatsapp-2351616 https://productmint.com/signal-business-model-how-does-signal-make-money/ Signal Outage https://www.theverge.com/2021/1/15/22232993/signal-outage-new-users-messages-not-sending MobileCoin Official MobileCoin sources https://github.com/mobilecoinfoundation/mobilecoin https://github.com/mobilecoinfoundation/mobilecoin/tree/master/transaction https://github.com/mobilecoinfoundation/mobilecoin/tree/master/ledger/db https://signal.org/blog/help-us-test-payments-in-signal/ https://nitter.cc/signalapp/status/1379472676905963523 https://signal.org/blog/update-on-beta-testing-payments/ https://www.mobilecoin.foundation/foundation-trusted-nodes https://www.mobilecoin.foundation/about https://mobilecoinfoundation.medium.com/mobilecoin-main-net-8e355d82c726 Media critique and reception from the cybersecurity community https://www.wired.com/story/signal-mobilecoin-payments-messaging-cryptocurrency/ https://www.coindesk.com/mobilecoin-mainnet-launch-ftx-trading Intel vulnerabilities https://www.wired.com/story/researchers-expose-a-new-vulnerability-in-intels-cpus/ Moxie's ties with MobileCoin https://www.coindesk.com/signal-founder-may-have-been-more-than-tech-adviser-mobilecoin https://techcrunch.com/2021/03/09/mobilecoin-a-cryptocurrency-involving-signal-founder-..