100% agree with your statement that gemini models have most knowledge in domains. They shine in so many generic topics
HN user
maxo133
Windows GDID Changer:
Windows GDID Changer:
Windows GDID Changer:
A script that requests the generation of a new GDID from Microsoft servers and assigns it to the Windows installation. GDID tracking variable became publicly discussed after it was mentioned in the Peter Stokes indictment
AI-generated "research" once more. How can anyone call it full writeup?
As someone pointed out in the X argument comments, this is unconfirmed and most likely NOT how the actual GDID being sent to microsofts servers looks like.
1. The GDID that most closely resembles the one mentioned in the DOJ indictment of Stokes is found inside the registry key Computer\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\IrisService\IrisActionCreatives, which starts with the "g:" prefix and is explicitly called GLOBALDEVICEID. This keys holds cached json response from microsoft servers and this is clear as night and day what value microsoft servers consider a "GDID"
2. According to the research, a Microsoft account is required. No, it's not necessary. Whether or whether you are not logged into your Microsoft device, GDID is being filled in. Did AI forget to check that?
3. How can author claim this is full writeup of GDID, when you did not verify whether the value your AI found, is the one being sent along with telemetry network requests? Author did not even verify whether he found the right thing
I also verified the value computed as suggested by the repository's creator and it is different from the value discovered inside the Iris registry key that begins with "g:".
Summary: The value author of repo claims is a GDID, is not the same value as saved on microsoft servers.
The fact that graphane is getting attacked speaks enough for it's relability. First in france now in Wired.
I'm more concerned that Signal incorporated in US is having easy life.
I can completely believe this.
I was always convinced that Skype was bought by microsoft so CIA/US intelligence agencies to have listening capabilities.
The first thing Microsoft did after the Skype purchase was making it easier to tap into the calls by removing p2p calling and routing calls using centralized servers.
You are right, but i still have no idea what is the point of this article.
The guy unlocked the bitlocker, then restarted PC just before login screen appeared. He said that's when he had most success. What sense does it make to restart and start looking for key in memory, when bitlocker has been just unlocked.
Too bad the author did not provide hardware specs. Such attack is even harder on DDR4 and DDR5 memory and most publications refer to legacy ram such as DDR3
In my experience I have had the most success restarting the system while Windows is loading but before the login screen has appeared, at least in the case of finding FVEK keys.
So what is this? It was supposed to be memory attack and he's dumping the keys after someone unlocked it and it's booting?
So this is just another theoretical attack where perfect conditions must be met.
Yes and the DGSE agents visiting every week or so giving him an release offer you can't refuse.
CEO getting arrested does not mean telegram will go down.
Direct involvement with scams? You got to be kidding me. This guy is worth 15 billion USD, he does need to do anything.
It's about lack of cooperation in censoring content.
This is a good point. It doesn't have to be Mullvad but it's almost guaranteed based on what we've seen in the history (see CIA + swiss crypto company) that some of the major VPN providers are managed by intelligence agencies. Either VPN companies were bought via shell companies after reaching certain market share or they were even developed from the scratch.
This is step closer, after few more steps they'll make sure only those "approved" companies can operate email server... leading to more internet centralization.
this is most interesting piece of entire presentation.
They can query location remotely using GPS and likely turn on microphone too.
Dont worry, registrants will move to offshore locations and that's how it's gonna end.
Today, i read somewhere while watching protonmail case comments, that switzerland has quite extensive surivellance laws which include possiblity of logging whole country inbound and outbound traffic for period of 6 months.
If they really cared about anonymity ProtonMail would ship their mobile app with bundled TOR. Especially the mobile version, since plenty of non-tech savy people use mobile only.
Nothing stops them from deploying malicious javascript code to comply with court orders.
Nothing stops them from logging user password either, then the entire mailbox contents is compromised
Many good points + 1.
So... if they receive valid swiss court order they can be forced to log user passwords on demand and their entire service is then useless? As when you have password you can decrypt entire mailbox content.
They market their service to journalists and activists, which are often targetted by their own governments. Seems that they cannot protect any of them.
So right, people just dont get the big picture.
If they were forced to log the IP address, they can be forced to log user password. This makes entire encrypted mailbox useless.
Isn't DMCA working the way that if you disagree with dmca takedown and fill certain form, the side asking to take down content (RIAA) needs to get court order?
That's the way how it works with google search.
How can you advise synology when their system doesn't even have FULL DISK ENCRYPTION? As longas it doesn't have it, i wont be even interested looking at their platform.
Can you imagine it? NAS'es usually are targeted for business users, yet they dont have full disk encryption...
For now i'm using QNAP, in terms of possible features i believe QNAP is little ahead (x86 cpu, virtualization, containers, fde). It has all what synology has + more.
However their platform is badly constructed, most processes are esentially running as root user... You get like firmware update every 2 weeks. It doesn't mean that there are bugs tho. I'm running it for 2 years and never had a problem.