• 120 Posts
  • 791 Comments
Joined 2 years ago
cake
Cake day: March 19th, 2024

help-circle







  • To address your first edit, yes, it’s a script, and yes, it did delete the site and the backups, as confirmed by the site creator. You can browse the data extracted on https://okstupid.lol/

    This wasn’t “just a fun script”. The site, backups, and infrastructure were actually deleted.

    Did you read the article, like at all? It would have told you the same thing:

    As of this writing, WhiteDate, which Hoffmann described as a “Tinder for Nazis”; WhiteChild, a site that claimed to match white supremacists’ sperm and egg donors; and WhiteDeal, a sort-of Taskrabbit-esque labor marketplace for racists, are all offline.

    The administrator of the three websites confirmed the hack on their social media accounts.

    “They publicly delete all my websites while the audience rejoices. This is cyberterrorism,” the administrator wrote on X on Sunday, vowing repercussions.

    The administrator also claimed that Root deleted their X account before it was restored.




  • Like dgdft said, if you’re using certbot, it should typically be running on the machine that your endpoints are hosted on. Enterprise solutions don’t require this, but they have other means of deploying certificates automatically and alarming if they are unable to, before they expire. My organization has dashboards showing which certs expire and when, and it triggers alarms at least a month before anything goes wrong.

    High stakes automation should always have alarms on error, and since certs have set expiration dates baked into them, you can alarm far before anything goes wrong. Apparently, Riot didn’t have that.

    Also, more frequent renewals make it so that people are less likely to forget it exists. Because of that, along with the possible security ramifications, 2 to 10 year certs should never be used, in my opinion. A 10 year cert will always get kicked on to the next team and it’s very possible for things to fall through the cracks.