jjtech

@jjtech@infosec.exchange

High school student learning many different languages and technologies. Curious reverse engineer. I reverse engineered iMessage! (see pypush)

Currently contracting for Beeper

This profile is from a federated server and may be incomplete. Browse more on the original instance.

SecureOwl, to random

I’ve read this five times and I still don’t know what I should do

jjtech,

@SecureOwl I know nothing about Google Workspace, but here's how I interpreted it:

Google Workspace has a setting called "Turn labels on" which controls if labels are enabled.

Previously, even if labels were turned off, organizations could still tag emails with them and filter emails based on those labels. This means that the end users would not be able to see why certain rules applied to a labeled email.

Now, Google is removing the ability to filter emails based on invisible labels. They are automatically enabling labels so that existing rules continue functioning. Labels that were previously invisible may become visible to users.

In response to this, you can:
a. remove the label based rules, keeping rules disabled
b. update the permissions on the labels so that users cannot see them

SecureOwl, to infosec

InfoSec Diaries - Black Friday Special:

All Kindle editions of every story in the series are FREE to download today!

Check out https://www.infosecdiaries.com for more info about each story based on real life information security tales.

#infosec #DFIR #Pentest #pentesting #blueteam #cybersecurity #blackfriday

jjtech,

@SecureOwl How does one actually download them? Clicking on the link to the Kindle page shows this message, with no clear actions available.

jjtech,

@SecureOwl well, it shows a one-click buy for $0 option, but it doesn’t work:

We're sorry!
An error occurred when we tried to process your request. Rest assured, we're working to resolve the problem as soon as possible. If you were trying to make a purchase, please check Your Account to confirm that the order was placed. We apologize for the inconvenience.

jjtech,
jjtech,

@SecureOwl OK, yeah, works now, guess it was just glitched. Thanks!

jjtech, to random

Wow, this is so unexpected… not like there were a million red flags or anything.
Anyway, TL;DR is provably insecure, they store your messages in plain text and the token they transmit over plain HTTP has full access.

https://www.rida.dev/blog/nothing-chats-is-not-secure-b75323222be54820b1457afbbd1509b8

BasicAppleGuy, to random
@BasicAppleGuy@mastodon.social avatar

"It ain't much, but it's honest work."
Work on the iPhone 15 Pro internal wallpaper chugs along. There'll be close to 7,000 individual pieces per device when the project is completed. ETA: Late November 🚧

jjtech,

@BasicAppleGuy Did this exist for previous models? Or is this something entirely new?

jjtech, to android

This has been brought up again today, so I just want to reiterate my stance on
I think that RCS is bad. Period. It should not have been adopted on , it should not be adopted on

majorlinux, to android
@majorlinux@toot.majorshouse.com avatar

Who is this really for?

Nothing has iMessage like Apple - Desk Chair Analysts

https://dcanalysts.net/nothing-has-imessage-like-apple/

jjtech,

@majorlinux Unfortunately, the problem with is that it does not have true : they log into your Apple ID on a Mac Mini in a datacenter, and then decrypt and re-encrypt the messages on that Mac. The messages are encrypted in transit, but it is not end-to-end in any manner. This was confirmed in MKBHD's video.

This is kind of disappointing to me, because true E2E encryption is possible, I worked on my project which implements the protocol from scratch (no Mac), bought it so hopefully should be available in the future.

jjtech,

@majorlinux Yep, that's what it was previously. The "upgraded" bridge recently released does not use a Mac, but is not yet client side and E2E, it should be coming soon afaik.

foone, to random
@foone@digipres.club avatar

it's like 33%/33%/33% if I'm going to spend this weekend:

  • putting together shelves
  • writing a bison/yacc parser for flags
  • hacking on the Merlin (BBC) DS game

my life is weird

jjtech,

@foone putting together shelves is the weirdest thing on that list, tbh

Jyoti, to apple
@Jyoti@mas.to avatar

Switching back to iPhone has been relatively painless... until...

MacOs' Messages STILL doesn't sync properly with iPhone Messages. Texts I'm getting do not show up in the desktop app.

https://discussions.apple.com/thread/252335837

This means this has been broken now for ELEVEN YEARS!

Is that some kind of record? Coders out there - do you give out medals for this level of shiteness??

jjtech,

@Jyoti That is an odd issue... I know a bit about the iMessage protocol, and it's very odd that you are able to send messages but not receive them...

Just to confirm, by "texts" you mean iMessages too, not just SMS/MMS messages forwarded from the iPhone?

Honestly, I'm inclined to think that something is messed up on the Mac side of things... sender devices have to individually encrypt the message for every device on your account, so the iPhone should not be involved at all (for iMessages, this is not the case for SMS/MMS)

jjtech, to random

@jerry What's up with https://video.infosec.exchange/ not allowing new registrations? Did it ever? Just making sure I'm not missing something... I'm not seeing many PeerTube instances at all. Just hoping for somewhere to host a few unlisted videos!

kornel, (edited ) to random
@kornel@mastodon.social avatar
jjtech,

@kornel If you're like me and cannot stand not knowing:
https://video.infosec.exchange/w/iEGMmZhKeRVHrysQv6UzhA

It's still transcoding, either wait for PeerTube to finish or hit the Download button (under the 3 dots)

🤫 I had to use a London Droplet with yt-dlp

jjtech, to random

@marqle @chris has PFS in newer versions, but if you turn on iCloud sync then it's all pointless...

jjtech, to apple

This still needs lots of testing and polish, but:

now has a branch where it can register a phone number to your account via a helper app.

This means that you can send iMessages from your phone number (better than email for some reason) with or , without owning an iPhone.

stroughtonsmith, to random
@stroughtonsmith@mastodon.social avatar

Since I don't have any iOS 17 devices, I hadn't seen that you can now, once again, turn off multitasking modes completely on an iPad. Nice!

jjtech,

@stroughtonsmith Wait, why would you want to do that? Slide Over doesn't actually interfere with anything if you're not using it, right?

jjtech,

@stroughtonsmith Ah, I can see that. I was worried they had modified Slide Over to do something that actually needed to be turned off, rather then just being passive and non-intrusive.

jjtech, to random

I have transferred to , its new home is https://github.com/beeper/pypush

jjtech, to random

It's ready! can now send and receive , on any platform, completely server-less and open-source! 🎉

https://github.com/JJTech0130/pypush

stroughtonsmith, to random
@stroughtonsmith@mastodon.social avatar

Going back to explore Windows Mixed Reality after using visionOS, I'm struck just as much by their similarities as their differences. These are very similar OSes.

visionOS scales windows so they look like they cover the same surface area as you position them; Windows just moves them at their current size.

Windows also lets you pin windows to your viewport so they follow you; visionOS has no such feature.

Apple has positioned window controls at the bottom of the window, Microsoft the top

video/mp4

jjtech,

@stroughtonsmith Apple's certainly looks more pretty though! Hopefully the polish should attract more users and developers?

Rairii, to random
@Rairii@haqueers.com avatar

WHAT THE FUCK

jjtech,

@Rairii ...this is not a good sign

popey, to random
@popey@ubuntu.social avatar

This is a fun game. It gets silly, fast… https://neal.fun/password-game/

jjtech,

@popey The annoying part is the stupid YouTube video... I spent too much time looking for it and Paul died.

siguza, to random
@siguza@mastodon.social avatar

Sigh, I should move off this mega-instance, shouldn't I...

jjtech,

@siguza @jerry's doing a fine job over here!

geerlingguy, to random
@geerlingguy@mastodon.social avatar

"Out, damned chatbot!"

jjtech,

@geerlingguy (a little late) I'm always annoyed when they flash the title bar and badge the icon and act like I have a "message", when it's just this stupid thing...

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • GTA5RPClips
  • DreamBathrooms
  • cubers
  • mdbf
  • everett
  • magazineikmin
  • Durango
  • Youngstown
  • rosin
  • slotface
  • modclub
  • kavyap
  • ethstaker
  • megavids
  • ngwrru68w68
  • thenastyranch
  • cisconetworking
  • khanakhh
  • osvaldo12
  • InstantRegret
  • Leos
  • tester
  • tacticalgear
  • normalnudes
  • provamag3
  • anitta
  • lostlight
  • All magazines