Hacker Newsnew | past | comments | ask | show | jobs | submit | e12e's commentslogin

It's not, if it can do Io to network/disk..?

> The lotusbail npm package presents itself as a WhatsApp Web API library - a fork of the legitimate @whiskeysockets/baileys package.

> The package has been available on npm for 6 months and is still live at the time of writing.

> (...) malware that steals your WhatsApp credentials, intercepts every message, harvests your contacts, installs a persistent backdoor, and encrypts everything before sending it to the threat actor's server.


Ironically that would probably work on phones, where most people probably have an app for email (Gmail, Apple Mail) - but not so much on computers, where many just use webmail rather than an email application?

Encrypt with your public key, surely?


Fair, encrypt your recipient's public key, sign with your private key.

Assume your correspondents can do the same as in, encrypt with your public key and sign with their private key


Thanks - didn't find that - only searched for this URL.


Unfortunately initially submitted with wrong URL:

https://news.ycombinator.com/item?id=46246416


> As of December 15, the Department will expand the requirement that an online presence review be conducted for all H-1B applicants and their dependents, in addition to the students and exchange visitors already subject to this review. To facilitate this vetting, all applicants for H-1B and their dependents (H-4), F, M, and J nonimmigrant visas are instructed to adjust the privacy settings on all of their social media profiles to “public.”


> As of December 15, the Department will expand the requirement that an online presence review be conducted for all H-1B applicants and their dependents, in addition to the students and exchange visitors already subject to this review. To facilitate this vetting, all applicants for H-1B and their dependents (H-4), F, M, and J nonimmigrant visas are instructed to adjust the privacy settings on all of their social media profiles to “public.”


page not found


Hm, I can only edit the title, not the URL?

https://travel.state.gov/content/travel/en/News/visas-news/a...

Resubmitted - I accidentally snipped part of the path, removing tracking params...

https://news.ycombinator.com/item?id=46246727


I'm guessing geology play a big part - Japan is mostly "new" rock, Alps mostly "old".


Sorry, I don't understand your point. Why is Japan considered "new" and European Alps considered "old"?


The Japanese islands are situated in one of the most geologically active regions on Earth, primarily characterized by multiple subduction zones where four major tectonic plates, producing 'new' Earth, emerge.

The Alps are very, very old in comparison.


> would love to see more tooling to lint and sanitize them before deployment

Did you see?:

https://github.com/cloudflare/svg-hush


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: