veganism.social: About · Status · Privacy policy
Mastodon: About · Get the app · Keyboard shortcuts · View source code · v4.3.0-alpha.5+vegan
Major #security flaw discovered in #Arc #Browser
* arc boosts can contain arbitrary #javascript
* arc boosts are stored in #firestore
* the arc browser gets which boosts to use via the creatorID field
* we can arbitrarily chage the creatorID field to any user id
> thus, if we were to find a way to easily get someone elses user id, we would have a full attack chain
Spoiler alert you gave out your creatorID when you sent the invite link out on social media
So I just asked #ChatGPT to:
1) Give me script that mass renames keys in my #firebase database.
2) Tell me how to obtain & setup firebase credential keys.
3) Tell me how to install necessary #python libraries (language of said script) and set #virtualenv.
4) Resolve series of issues with my python environment by simply copy & pasting terminal errors and progressing further on each step.
Outcomes:
- I managed to get the outcome I wanted in fraction of the time I would have to invest otherwise.
- I might have not learned the details about the intricacies of python environment setup, but frankly I can't care less about this geeky stuff.
- I can move on with my life and not a single white hair was harmed in the process.
At this years company #hackathon our project team created a proof of concept #KotlinMultiplatform and #ComposeMultiplatform app for #Android, #iOS & desktop with a single code base for data layer, business logic and UI, well, for everything!
Within three days we were able to create a simple but functional application from scratch that accesses a #Firebase backend.
Still some rough edges on iOS but the future is bright for Kotlin Multiplatform!
Mastodon is the best way to keep up with what's happening.
Follow anyone across the fediverse and see it all in chronological order. No algorithms, ads, or clickbait in sight.
Create accountLogin