sigmoid.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A social space for people researching, working with, or just interested in AI!

Server stats:

587
active users

#sms

4 posts4 participants0 posts today

🙄 Modern Communications 🙄

How shall we contact you? Apparently, not easily.

1. Cell phone, no. Inconsistent for years now.
- Pixel 9 Fold: hardware failure, provider failure. Couldn't port number from Verizon to GFi.
- iPhone 15, hardware failure. Couldn't port from T-Mobile to Verizon.
- TCL 60 5G (color eInk), great phone, but I have no idea what the number is among all of the former ones and it's possibly not even turned on anymore.

2. SIP / VOIP phone: sure, the desk phone rings, and SMS can be received but can't go out (why? I have no idea, and I'm tired of troubleshooting).

3. Email: sure, if thunderbird didn't keep crashing, corrupting cache, and deleting months of messages during folder sync operations. Backups, sure, but the workflow is so broken now that I don't bother. Filters are ruined, recreating filters - no,no,never,again,please,no, the spam is overwhelming. I don't want to miss using Gmail, come on now, wtf.

4. Matrix? iMessage? XMPP, IRC? Whatsomething? Someothernetwork?
Too many networks, too much segmentation, no universal anything, forget useful or consistent notifications across several devices.

5. Write me a letter... actually don't, because USPS routinely loses important packages or the mail is stolen by literal gangs and the Feds don't prosecute anymore. Also, I don't own any paper or any pens, and forget about stamps.

6. Telegram? Signal? No.
Guess what's linked to a cell phone number? And even when you pay for the Very Special Money account on Telegram they will not respond to messages about having lost one's cell phone number (see #1). If you've tried to message me on Telegram since June, those messages are gone - I cannot access them ever again apparently.

Exposed JDWP Exploited in the Wild: What Happens When Debug Ports Are Left Open

A routine monitoring by researchers uncovered an exploitation attempt on a honeypot server running TeamCity, a CI/CD tool. The attack exploited an exposed Java Debug Wire Protocol (JDWP) interface, leading to remote code execution, deployment of cryptomining payload, and establishment of multiple persistence mechanisms. The attack was notable for its rapid exploitation, use of a customized XMRig payload, and stealthy crypto-mining techniques. JDWP, designed for debugging Java applications, becomes a high-risk entry point when exposed to the Internet without proper authentication. The attackers used a structured sequence to achieve remote code execution, likely using a variant of jdwp-shellifier. They deployed a dropper script that installed an XMRig miner and set up various persistence mechanisms including boot scripts, systemd services, cron jobs, and shell configuration files.

Pulse ID: 68962f0f91f8829022afff4a
Pulse Link: otx.alienvault.com/pulse/68962
Pulse Author: AlienVault
Created: 2025-08-08 17:08:31

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

LevelBlue Open Threat ExchangeLevelBlue - Open Threat ExchangeLearn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

Den Begriff "stille SMS" kannte ich bisher nicht, sondern nur den Begriff #OTA(Over the air), die Mobilfunkbetreiber seit Jahrzehnten einsetzen um z.B. Handy's von neuen Kunden zu konfigurieren.

Aber natürlich kann man jede Technik auch missbrauchen.

Interessant finde ich in diesem Zusammenhang das Google Play Store und andere Android Apps wie WhatApps die Berechtigung "SMS" bei der Installation anfordern.

Sollte es also zu einer #Massenüberwachung der deutschen #Bevölkerung von #staatlicher Seite kommen, sind die #Einfaltstüren die #Android Apps die als Berechtigung SMS anfordern.

Replied in thread

Polizei versendet Tausende stille SMS zur Handyortung

Bei Ermittlungen dürfen die Handys von Verdächtigen überwacht werden. Die Thüringer Polizei hat von dieser Möglichkeit zuletzt tausendfach Gebrauch gemacht.

heise.de/news/Polizei-versende

heise online · Polizei versendet Tausende stille SMS zur HandyortungBy dpa
#IT#Polizei#SMS

📰 «Autenticación en dos factores basada en SIM»
🔗 proxy.jesusysustics.com/2025/0

Qué es la autenticación de dos factores basada en SIM androidayuda.com/android/que-e

La autenticación en dos factores basada en SIM no es más que la más clásica, esa en la que te envían un código de verificación por SMS o llamada. Y en este artículo se encargan de recordarnos por qué deberíamos evitarla siempre que sea posible: robo del teléfono, clonación de tarjeta SIM, SMS no cifrados y con otras vulnerabilidades de esa tecnología…

Aún aceptando que es mejor esto que nada, deberíamos tener siempre en cuenta alternativas más fiables como Aegis, una app de código abierto encargada de generar esos códigos temporales.

#️⃣ #2FA #Aegis #Android #app #autenticaciónEnDosPasos #seguridad #SMS #teléfonoMóvil #vulnerabilidad

Que-es-la-autenticacion-de-dos-factores-basada-en-SIM
El Proxy · Autenticación en dos factores basada en SIM
More from El Proxy

US-Wahlkämpfer fürchten Apples "aggressiven" Messaging-Filter in iOS 26

Nachrichten unbekannter Sender blendet iOS 26 wahlweise aus. Ein Wahlkampfkomitee der Republikaner warnt, dadurch könnten Spenden massiv einbrechen.

heise.de/news/US-Wahlkaempfer-

heise online · US-Wahlkämpfer fürchten Apples "aggressiven" Messaging-Filter in iOS 26By Leo Becker
#Apple#iMessage#iOS

My reservations and criticism re: #Signal are not just valid, but the reality is even worse than I thought:

  • The fact that @signalapp requires not only their shitty #Android #App, and a #PhoneNumber but literally won't allow people to use their shitty #Desktop-App unless they have an Android device with a camera pointed at it makes it utterly unuseable for certain users who don't have a fucking #camera in their Android

Seriously, do they expect folks to deal with that shit?

FIX THAT SHIT, @Mer__edith, and if it means you need to kick some devs in their crouch then consider this a necessary "investment"

Infosec.SpaceKevin Karhan :verified: (@kkarhan@infosec.space)Content warning: Rant re: Signal Shills being dangerous Tech Illiterates
Replied in thread

@glitzersachen @Yuki @cperciva

Sadly, #Tarsnap seems.to only accept #CreditCards via #Stripe (which are harder to get than #Monero in #Germany, so I can't even evaluate it.)

I wish they supported Monero or even #Paysafecard cuz #Shitcoins like #Bitcoin are just bad!

  • Ideally they did support #SMS payment too but offering that globally would be even more painful than having a #SEPA bank account setup remotely without #EU residency.

tarsnap.com/faq.html#bitcoin
nowpayments.io/supported-coins

www.tarsnap.comTarsnap - Frequently Asked QuestionsFrequently Asked Questions about the Tarsnap online backup service