Content pfp
Content
@
https://ethereum.org
0 reply
0 recast
0 reaction

sudo rm -rf --no-preserve-root / pfp
sudo rm -rf --no-preserve-root /
@pcaversaccio
1/ time for a quick vibes check on where our industry's at security-wise; well, folks, guess what, 95% of last months' SEAL 911 tickets were the same shitshows on repeat: folks running sketchy code some rando DMed them (stop cloning & running GH repos you got from some random dude who asks for your "help"), hopping on Zoom calls where scammers walk them through (effectively) self-pwning (dude, believe me you don't need to patch your zoom or google meet) their own machines, teams getting nuked because they thought hiring bargain-bin devs from North Korea was a great idea, or some skiddies calling up victims pretending to be Coinbase support (always Coinbase, like 90% of the time and the rest is Ledger) and walking off with their funds. On top of that, there's the usual: someone falling in love with a random Tinder match and getting rinsed by a textbook Sha Zhu Pan play, and of course, the ever-reliable dev who commits their .env file with private keys straight to GitHub, NPM, etc.
2 replies
1 recast
22 reactions

sudo rm -rf --no-preserve-root / pfp
sudo rm -rf --no-preserve-root /
@pcaversaccio
2/ - people cannot handle private keys & seed phrases - people devices are _constantly_ (and by constantly I mean every fucking day) compromised - people are completely naive when it comes to basic web2 security (dude, stop storing your pws & 2FAs in the same password manager you use locally) - devs are blindly cloning, installing and running github repos locally and get rekt we're so fucking far away of being considered a "secure" ecosystem. It's a complete shitshow right now.
0 reply
0 recast
5 reactions