• 0 Posts
  • 22 Comments
Joined 2 年前
cake
Cake day: 2023年6月22日

help-circle
  • Synthient wasn’t hacked, as a security company, they aggregated tons of stealer logs dumped to social media, Telegram, etc.

    They found 8% of the data collected was not in the HIBP database, confirmed with some of the legitimate owners that the data was real.

    They then took that research and shared it with HIBP which is the correct thing to do.

    I was also thrown off by the title they gave it when I first saw it, a security company being hacked would be a terrible look. but they explain it in the article. Should probably have named it “list aggregation” or something.






  • Yes, correct. You can always locally host it as there are other benefits like unifying user credentials for all your hosted services. But its primary design is to be hosted externally.

    currently I host everything locally, but I don’t like the fact that anyone visiting my domain can easily find my address.

    I’m in the process of determining on if I set up Pangolin myself or not. Another huge benefit is higher availability. (ex. If my internet goes down at home, I won’t know until I try to connect, but if I have an external service and it’s monitoring that connection, it can inform me when it loses connection)

    Price is certainly something to consider when weighing its value for your setup


  • The connection between your Pangolin service (hosted outside your network) and your LAN is through a VPN. Essentially you’re creating a proxy that you can point your domain address at which isn’t your house’s IP address. Plus then everything inside your network is still secure behind your VPN.

    So you connect to Pangolin, and Pangolin routes the traffic to your network.













  • Expect to see this in more applications, especially when dealing with AI. Why do you feel like you’ve noticed an uptick in having to complete captchas on every website you visit?

    It’s an easy way for them to validate if you’re human or some competitor AI/scraper bot that’s trying to train on their data.

    OpenAI is so scared about the possibility of DeepSeek distilling their model, I guarantee they are adding a keystroke/key pattern recognition system into their own front ends to combat it. If it’s not there already which would surprise me.

    Expect your privacy to continue to be eroded in the name of profit technological progress.