• 3 Posts
  • 411 Comments
Joined 2 years ago
cake
Cake day: June 30th, 2023

help-circle






  • That’s just the remote control part.

    promises of a free TradingView Premium app for Android. Instead of delivering legitimate software, the ads drop a highly advanced crypto-stealing trojan — an evolved version of the Brokewell malware.

    From another source, that works in part by exploiting “accessibility service permissions”:

    Like other recent Android malware families of its kind, Brokewell is capable of getting around restrictions imposed by Google that prevent sideloaded apps from requesting accessibility service permissions.

    This includes displaying overlay screens on top of targeted apps to pilfer user credentials. It can also steal cookies by launching a WebView and loading the legitimate website, after which the session cookies are intercepted and transmitted to an actor-controlled server.



  • How can you know the success is zero? Encryption is more widely used and much more resistant to political attack. Open source software is more powerful and accessible. A large portion of people loathe corporate tech platforms at a level they didn’t years ago. Granted a lot of that is just down to how functional or trustworthy the software is, and what guarantees about it can be plausibly provided, and it isn’t all wins. Maybe you can’t exactly get everyone caring about this stuff in the same way or for the same reasons you do. But that doesn’t mean there are no possible avenues to success, or that the tech habits of other groups can be written off as useless here, because it’s probably the most important thing.









  • In those cases it seems like the law does prevent state level regulation of those things, because the state is only allowed to regulate commerce happening within its borders, not what its residents do elsewhere (although they can still also regulate the use of fireworks and airguns, but enforcement is more difficult, for instance where I am they sometimes send out notices in the mail warning that it’s against the law for individuals to be setting off fireworks but there’s always a massive decentralized fireworks show every 4th of July anyway).

    Somehow with the internet, the location of the server isn’t the thing that matters, it’s whose computer is accessing it and where that person and computer is located, and the liability is on the server not the user. IMO it should not work that way, because then every state with regressive politics has a stranglehold on the whole internet.