Before starting this series, I was completely unfamiliar with this game from the makers of the Oregon Trail…because it was recalled shortly after its release in 1992 (CW for content in video: slavery, potentially offensive portrayals of Black people/speech) https://www.youtube.com/watch?v=UBa9ZmZaCBc#WozADay#AppleII#retrocomputing#apple2
Any journalists interested in informing the public about the uncertainty and risks involved with this now publicly-traded social media corporation, feel free to reach out for inquiries! https://mastodon.social/@gbhnews/112162105752356614
Also, if anyone has concrete information showing that Truth Social is actually using Pleroma in production now instead of Mastodon, please get in touch with compliance@sfconservancy.org via email
From a “securities fraud” perspective, knowingly violating software licenses to form your core product without ever disclosing it in public filings may actually be worse than a disclosed risk of security vulnerabilities. And in case it’s not entirely clear, Trump is using this IPO to try to make bond on a $454M penalty…for committing fraud https://www.nytimes.com/2024/03/22/business/trump-media-merger-truth-social.html
Had a chance to look back at the SEC filings. Pleroma is not mentioned, and they continue to state that they use Mastodon and post the source code publicly for AGPLv3 compliance:
As an update, Truth Social's posted Mastodon source code has not been updated since my initial post in this thread, and has seemingly not been updated since at least June of 2022 (compare: http://web.archive.org/web/20220614001551/https://opensource.truthsocial.com/mastodon-current.zip). So if they're still using and updating Mastodon internally, they're no longer complying with its AGPL license at that link.
I don't know who needs to hear this but #TruthSocial, which is running a forked version of Mastodon, does not from the source code appear to have appropriate mitigations in place for CVE-2023-36460, which theoretically allows attackers to create and overwrite any file Mastodon has access to, allowing Denial of Service and arbitrary Remote Code Execution https://nvd.nist.gov/vuln/detail/CVE-2023-36460 (probably other CVE's as well, but some rely on federation which Truth Social doesn't use?) #infosec
another obscure #Apple2#AppleII#retrogaming#retrocomputing inquiry—ring any bells for anyone? I couldn’t turn anything up under this title for the Apple II, just legit games on other platforms. I strongly suspect a homebrew gag game, maybe even circulated among a small group of people…
📜 Papyri, Ancient Greek, Latin, computers, video games, cats, etc.https://papyri.info maintainerCreator of https://podqueue.fm, the missing "Listen Later" for audio on the web