erre

joined 1 year ago
[–] erre@feddit.win 12 points 1 year ago

Looks like lemmy.blahaj.zone is back

https://lemmy.blahaj.zone/post/766402

[–] erre@feddit.win 5 points 1 year ago

Thanks for sharing! Forgot to look this up, tuned into the match late. That was a brutal hit. First time I see a ref injured.

[–] erre@feddit.win 11 points 1 year ago

Realizing this blew my mind. Definitely more interesting than following people.

[–] erre@feddit.win 8 points 1 year ago

Tough call, probably for the best. Hopefully it's resolved soon.

[–] erre@feddit.win 10 points 1 year ago
[–] erre@feddit.win 5 points 1 year ago

The sophistication is impressive, using emojis. Are people getting paid to find the vulnerabilities or are they just bored??

[–] erre@feddit.win 6 points 1 year ago

Curl didn't return anything. They're likely just using it to log requests since the request path contains the data they need.

[–] erre@feddit.win 4 points 1 year ago (1 children)

I'd be willing to bet they're using the API to make all the changes. The cookie has the jwt token. I don't believe you need the username (at least judging by the js API docs).

[–] erre@feddit.win 45 points 1 year ago* (last edited 1 year ago) (6 children)

Looks like it's issuing a GET to https://zelensky.zip/save/{ENCODED_JWT_TOKEN_AND_NAV_FLAG}. The ENCODED_JWT_TOKEN is from btoa(document.cookie+nav_flag) where nav_flag is essentially 'navAdmin' if the account hit is an admin or '' if the user hit is not an admin (it checks if the admin button in the nav exists). Their server is likely logging all incoming requests and they just need to do a quick decoding to get jwt tokens and a flag telling them if it's an admin account.

I'd be hesitant to visit Lemmy on a browser atm 😓

[–] erre@feddit.win 2 points 1 year ago (1 children)

Also tuning in late. Surprised to see the score, I thought USMNT would be up by now 🤷‍♂️

Last fifteen minutes looked good, players ready to fight already 😅

[–] erre@feddit.win 2 points 1 year ago

Dang, missed that. Gonna keep an eye out for replays. Amazing.

[–] erre@feddit.win 2 points 1 year ago (1 children)

Good match. Tough luck for the Guatemalans but they showed up. Jamaica capitalized on their errors.

 

I'm getting old and the morning coffee isn't doing anything for the crash after midday. It's also getting hot and I don't want an afternoon hot cup of coffee. I want to try making cold brew and it seems simple enough. Any tips?

So far I've seen 1:8 coffee to water recommended. 24 hours steeped and 2:1 water to concentrate. Sound ok? Any extra steps to make it twice as good?

75
submitted 1 year ago* (last edited 1 year ago) by erre@feddit.win to c/android@lemmy.world
 

For me at least.

Looks like they enforced rate limits an hour before midnight UTC.

 

Thought this might be an interesting read for some.

 

Not a fan of the change in format but still excited for top teams to be visiting the country.

view more: next ›