i'd like to apologise to all the serious and smart people following me expecting me to provide like. breathtaking commentary on the state of the tech industry and nuanced discussion about the PowerPC architecture and i'm just here talking about "Timulating my Fort" and "what if i made the Wii display funny pictures"
so on #Bluesky, rather than going with the well-documented and defined webfinger protocol, behind the .well-known directory, decided to make their own shit for verifying domains via HTTP (to change your handle to the website, proving your ownership of it)
thus, somebody took the S3 bucket name "xrpc" and now is s3.amazonaws.com on the platform
do not trust hello.coop and their verified identities, or their verified.coop and press.coop instances
they use their "verification" service to make a false claim of association for accounts such as BBC and NPR at their press.coop instance, despite them not being at all official
they then use a fake checkmark badge and tag their Twitter mirroring accounts on press.coop with this verification to mislead people into thinking they're official
can't wait to see a bunch of "Oh man, Twitter is dead!" from accounts that have not posted here in months, and then watch them fade back into inactivity after Twitter comes back up
something i just realised is that in a way, 2 self-hosted XMPP or Matrix users talking to each other reveals more metadata to ISPs and law enforcement (and a man-in-the-middle)
rather than "this user is talking to people on [platform]" and (if they are law enforcement) having to ask [platform] for access to metadata (which could be rejected), they have immediate access to see "Hey, this user on [self-hosted single-user domain] is talking to this user on [self-hosted single-user domain]"
definitely something to keep in mind if that kind of thing is in your threat model
im a developer, hacker, game modder, VR enthusiast, & i make silly programs for old tech. level 5 ghidra mage. least annoying macos userbig fan of the powerpc architecture and tinkering with platforms that run it (wii, xbox 360, old macs). i am very silly but i post about the nerd stuff i get up to as well. im not perfect, but trying to be better.i play fortnite and rock band and other video games too, and i post cringe about them. i also love music.feel free to send a follow request! i'll probably accept if you seem cool :D (a DM would be nice too)"emma is the first person to touch grass and somehow absorb even more chronically online behavior from it" - @zgedlog"i quite literally run a website filled with people with some of the worst brainrot on the planet and yet somehow you have surpassed all of them" - @esm"every time i see you [post] it's something like java on microwave what the fuck are you doing" - @wa wetdry.world admin(this is my on