riebeckite

moths on the internet

  • yes

hi we're jones, a 33 y/o system of 6
shit could get weird, possibly nsfw ergo 🔞


janederscore
@janederscore

ohhh my godddddd i'm glad everyone who has a passing interest in compsci has decided to be the most condescending person imaginable about concerns over cohosts security flaws. "ok kids let's all sit down and learn exactly what an ip address is and why it's not scary :)" thanks. you're right, absolutely nothing bad has ever come from users being able to fairly easily obtain that information.

btw did you know that the deeper issue is less "cohost can leak your ip" and more "any image post can be loaded up with malware, which Includes but is very much not limited to hidden ip scrapers". i guess that's slightly harder to make people feel stupid over though so i understand why you'd rather just talk about the ip thing


You must log in to comment.

in reply to @janederscore's post:

I JUST OPEN THE WEBSITE!! literally i open the website and every day i see at least one but usually more posts vaguing me about how fucking stupid i am for talking about anything ever and its really fuuuuuucking getting to me i gotta be real .

i think that is the full issue though. cohost can leak your ip, but image posts can't be loaded up with malware? what image posts can do includes and is limited to ip scraping (= approximate location data & isp info). am i wrong about this?

oh sorry i saw on other posts you're also worried about script injections in images. that is fully limited to ip scraping. the php scripts are run on someone else's computer and they can't mess with your computer. they can draw a custom image based on the data they have (your ip, time you loaded the image, browser info). they're not a security vulnerability though (beyond the fact that they can scrape your ip)