Any journalists interested in informing the public about the uncertainty and risks involved with this now publicly-traded social media corporation, feel free to reach out for inquiries! https://mastodon.social/@gbhnews/112162105752356614
Also, if anyone has concrete information showing that Truth Social is actually using Pleroma in production now instead of Mastodon, please get in touch with compliance@sfconservancy.org via email
From a “securities fraud” perspective, knowingly violating software licenses to form your core product without ever disclosing it in public filings may actually be worse than a disclosed risk of security vulnerabilities. And in case it’s not entirely clear, Trump is using this IPO to try to make bond on a $454M penalty…for committing fraud https://www.nytimes.com/2024/03/22/business/trump-media-merger-truth-social.html
Had a chance to look back at the SEC filings. Pleroma is not mentioned, and they continue to state that they use Mastodon and post the source code publicly for AGPLv3 compliance:
As an update, Truth Social's posted Mastodon source code has not been updated since my initial post in this thread, and has seemingly not been updated since at least June of 2022 (compare: http://web.archive.org/web/20220614001551/https://opensource.truthsocial.com/mastodon-current.zip). So if they're still using and updating Mastodon internally, they're no longer complying with its AGPL license at that link.
I don't know who needs to hear this but #TruthSocial, which is running a forked version of Mastodon, does not from the source code appear to have appropriate mitigations in place for CVE-2023-36460, which theoretically allows attackers to create and overwrite any file Mastodon has access to, allowing Denial of Service and arbitrary Remote Code Execution https://nvd.nist.gov/vuln/detail/CVE-2023-36460 (probably other CVE's as well, but some rely on federation which Truth Social doesn't use?) #infosec
another obscure #Apple2#AppleII#retrogaming#retrocomputing inquiry—ring any bells for anyone? I couldn’t turn anything up under this title for the Apple II, just legit games on other platforms. I strongly suspect a homebrew gag game, maybe even circulated among a small group of people…
apparently this game has a permadeath mechanic where it will write character deaths back to disk. you can resurrect them once but if they die again the only way to get them back is to send the publisher a petition and $7 for a new disk
📜 Papyri, Ancient Greek, Latin, computers, video games, cats, etc.https://papyri.info maintainerCreator of https://podqueue.fm, the missing "Listen Later" for audio on the web