nbwpuk

@nbwpuk@infosec.exchange

Technical Director @EncodeDotHost / Organiser @wp_cov / Helping keep local business online in Coventry and Warwickshire (And across the UK!). #Linux user. #WordPress dev. Views=Mine

This profile is from a federated server and may be incomplete. Browse more on the original instance.

sil, to random
@sil@mastodon.social avatar

Can a web server credibly guess whether an incoming connection comes from a mobile phone on the mobile network, or from something else? Client-side there’s the network information API in JS but it’s not well supported; is there something like GeoIP that knows about mobile networks? Or is that not how it works?

nbwpuk,

@sil @dracos

Further to this 👆I haven't used it, but have seen this offered as part of the Matomo config. They link out to Apache: https://maxmind.github.io/mod_maxminddb/ or Niginx: https://github.com/leev/ngx_http_geoip2_module/blob/master/README.md#installing

nbwpuk, to gaming
nbwpuk, to SEO

GA4 Is Likely Exaggerating Your Direct Traffic (and here’s how to fix it)

https://lukecarthy.com/blog/ga4-is-exaggerating-your-direct-traffic-how-to-fix/

biptoot, to Cybersecurity
@biptoot@mas.to avatar

What's the best path for reporting this?

Rec'd email claiming to be from wordpress.org re: CVE 2024-46188, an RCE. Link to domain en-us[.]web-wordpress[.]org. Claims urgency needed to install new plugin. Yeaaaaaaaaaaaah.

Screenshot of suspicious and spoofed email claiming a vulnerability in wordpress

nbwpuk,

@biptoot had this same issue a couple of weeks ago where a few clients had received a similar email.

The process I ended up going through was to report the links to Bitly, and submit an abuse report via the registrar with the details of the campaign.

Took a while, but eventually the domain was taken offline.

nbwpuk, to random

"Nearly 90 percent of top news outlets like The New York Times now block AI data collection bots from OpenAI and others. Leading right-wing outlets like NewsMax and Breitbart mostly permit them."

https://www.wired.com/story/most-news-sites-block-ai-bots-right-wing-media-welcomes-them/

nbwpuk, to random

The gift that keeps on giving!

Why meat, fish, cheese and dairy products will cost more from today | Business News | Sky News

https://news.sky.com/story/brexit-border-controls-coming-into-effect-today-will-force-up-price-of-food-and-flowers-13060123

nbwpuk, to random
nbwpuk, to uk

I keep saying that this does feel like the country I grew up in. Actually it does feel like the same country from 15 years ago.

"UK perceived as more corrupt, falling to its lowest score on global index | Corruption index and barometer | The Guardian"

https://www.theguardian.com/world/2024/jan/30/uk-perceived-as-more-corrupt-lowest-score-global-index-transparency-international

GriffinGroup, to puns
@GriffinGroup@mstdn.social avatar

How many clickbait articles does it take to screw in a lightbulb?...

The answer will shock you!

nbwpuk,

@GriffinGroup 😂😂

nbwpuk, to random

Accounts reveal £9.9bn of the £13.6bn spent on PPE during pandemic has been written off

"UK government wasted nearly £10bn on unused Covid PPE, figures show | Health policy | The Guardian"

https://www.theguardian.com/politics/2024/jan/25/uk-government-wasted-nearly-10bn-on-unused-covid-ppe-figures-show

nbwpuk, to wordpress
nbwpuk, to random

Just reading the ISRG January newsletter ( https://www.abetterinternet.org/#footer-newsletter-column ) and reading that "Did you know that Let’s Encrypt – which issues 35 certs per second and provides TLS to more than 360M websites – is managed by an engineering team of only 12 people?"

Wow!

craiggrannell, to random
@craiggrannell@mastodon.social avatar

EA in the UK soft-launches Plants vs Zombies vs My Patience To Deal With Another Classic Game Enshittified With IAP.

nbwpuk,

@craiggrannell £75 !! 😱

nbwpuk,

@craiggrannell they must be going for the "kids click on their parents account" crowd?! Surely no-one would pay that.

nbwpuk, to wordpress

Important Security Notice: WordPress administrators being actively targeted with phishing campaign

It has come to our attention that a fraudulent phishing campaign is actively targeting administrators of WordPress websites.

The attackers are sending emails with the subject line "URGENT: Vulnerability found - Your website [DOMAIN] is at risk!" The email claims to be from the WordPress Security Team and insists on addressing a critical Remote Code Execution (RCE) vulnerability affecting your website. It urges users to download a plugin labelled as "CVE-2024-46188 Patch" to mitigate the alleged threat.

READ MORE: https://encode.host/announcements/64/Important-Security-Notice-WordPress-administrators-being-actively-targeted-with-phishing-campaign.html

nbwpuk, to random

Post Office suspected of more wrongful prosecutions of operators over Horizon | Post Office | The Guardian

https://www.theguardian.com/business/2024/jan/07/post-office-suspected-of-more-wrongful-prosecutions-of-operators-over-horizon

nbwpuk, to uk

Britain’s got some of Europe’s toughest surveillance laws. Now it wants more – POLITICO

https://www.politico.eu/article/uk-bulking-up-spying-regime-breakneck-speed/

nbwpuk, to random
nbwpuk, to uk

So we can expect it around May!

Rishi Sunak indicates he will not call election until second half of 2024 | Rishi Sunak | The Guardian

https://www.theguardian.com/politics/2024/jan/04/rishi-sunak-hints-he-will-delay-calling-election-until-second-half-of-2024

Nick_Craver, to random

Being young: "I can't wait to grow up!"

Being old: "This random part of your body will hurt for the next 42 hours and we'll keep rolling the dice on the random ache generator every time you wake up, cheers"

nbwpuk,

@Nick_Craver very relatable!

Newton, to wordpress

Need some advice from people that are far smarter than me.

Thought I'd try and set up a website using - simple objective. A catalogue of the YouTube videos, and, when I'm live, an embedded twitch stream & chat.

After pulling what hair I had left out, I've found that I need to pay £240 a year for the pleasure to embed twitch.

So, first question:

Is there a workaround to this?

2nd question...

Recommendations for an alternative approach?

nbwpuk,

@Newton where's that cost coming from WP or Twitch?

nbwpuk,

@Newton wow. That's ridiculous!

Maybe go down the self hosted route? Give me a shout if you want to try a test install to see if it would work.

nbwpuk, to Cybersecurity

"customer names, phone numbers, addresses, email addresses and parts of credit card numbers had been taken but said parking data had not been compromised in the cyber-attack."

Ah. Well. Ok. As long as it's not parking data, everything must be ok!

Hackers steal customer data from Europe’s largest parking app operator | Hacking | The Guardian

https://www.theguardian.com/technology/2023/dec/26/hackers-steal-customer-data-europe-parking-app-easypark-ringgo-parkmobile

nbwpuk,

@falken tis' the season!

nbwpuk, to random

Testing activitypub 👍

Testing whether mentions are working @nbwpuk or @nbwpuk

Lets see

Fediverse Followers

https://nbwp.uk/2023/09/22/ping-test/

nbwpuk,

@nbwpuk

If I reply to the original post, is it attached to the correct post ID?

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • mdbf
  • magazineikmin
  • Youngstown
  • thenastyranch
  • rosin
  • slotface
  • Durango
  • ngwrru68w68
  • PowerRangers
  • kavyap
  • osvaldo12
  • tsrsr
  • DreamBathrooms
  • Leos
  • tester
  • GTA5RPClips
  • khanakhh
  • tacticalgear
  • vwfavf
  • InstantRegret
  • ethstaker
  • everett
  • normalnudes
  • cisconetworking
  • modclub
  • cubers
  • provamag3
  • All magazines