Live data from Hacker News

Internet Archive: Security breach alert

theverge.com

291–300 of 648 posts

Re: Internet Archive: Security breach alert

#291
I’m feeling extremely conflicted on all of this with IA right now.

On one hand, I love IA

On the other hand…I’m in a long thread with their support right now on removing old snapshots of a social media account I have. Creeps are actively using the old snapshots to dox me and send me death threats using my PII.

It’s incredibly frustrating and IA keeps insisting they cannot do anything about it.

A small part of me hoped IA didn’t recover from today because I knew my info would be finally deleted :/

Re: Internet Archive: Security breach alert

#292
post #87

Earlier quoted context omitted.

How long does an average hard drive last? You'd have to spend that 700k every that many years (plus the extra bits you mentioned). Quite an operation actually

> How long does an average hard drive last? This is a great question, and a state of the art kind of thing. HDDs are sold with a lifetime drive read/write amount and power cycle warranty, along with usually some environmental operating envelope. read/write relates to the quality/space of the platter, power cycle is usually the actuator & read/write head being reseated/wearing out. Environment is the same as all other…

> ...or when the warranty runs out.

Do people really replace their drives when the warranty runs out? Hard drive manufacturers won't provide data recovery on drives that fail under warranty[1]. It makes more economical sense to just run a drive until it dies. You'll end up paying the price for a new drive either way, but less often if you ignore the warranty expiring.

1: I discovered this myself when a Seagate drive containing some important data failed under warranty. If you're foolish enough to send them a failed drive with data you need recovered (like I was), all they'll do is throw it in the bin and send you a replacement drive.

Re: Internet Archive: Security breach alert

#293
post #285

Earlier quoted context omitted.

Great until you need to give someone an email address in real life and awkwardness ensues. Cashier: "What's your email?" Me: "walmart@somedomain.com" Cashier: "No I meant YOUR email address." Me: "Yeah walmart@somedomain.com" Cashier: "Oh do you work for Walmart???" Me: "No see I set up my email so... oh nevermind, 420BLAZEIT@GMAIL.COM"

Meh, it’s not that bad. I have a short domain and usually use an abbreviated version for user part. If it’s a big corp, just the stock ticker will suffice and nobody bats an eye. Some boomers raise an eye if it’s not @gmail.com or one of the big providers, but otherwise nobody cares. But better than giving them an iCloud “hide my email” generated addy ;)

Just like how some people think GitHub is git.

Re: Internet Archive: Security breach alert

#294

Earlier quoted context omitted.

Perhaps you can persuade Elon that it owns the libs?

I don't want Elon anywhere near Archive.org, please don't give him any ideas. There are plenty of other people in the world with money.

Yes please, we need this lunatic out of our life, not the other way around

Re: Internet Archive: Security breach alert

#295

“According to their twitter, they’re doing it just to do it. Just because they can. No statement, no idea, no demands.” A special place in Hell…

Its being done by pro Palestine Islamic hacktivists.

They stated on twitter because IA is controlled by "the US" and is "pro Israel".

could also just be RU larping under another flag. They have done this in the past with groups like Anonymous Sudan.

Re: Internet Archive: Security breach alert

#296

“According to their twitter, they’re doing it just to do it. Just because they can. No statement, no idea, no demands.” A special place in Hell…

100% the result of boredom. Visit website, notice its design is old and crusty and you start to dig deeper. That's all it takes. Funny how we just expect hackers to have a manifesto now.

nah. its politically motivated hacktivists that are pro Palestinian.

See their Twitter https://x.com/Sn_darkmeta

could also just be RU larping under another flag.

Re: Internet Archive: Security breach alert

#297

I’m feeling extremely conflicted on all of this with IA right now. On one hand, I love IA On the other hand…I’m in a long thread with their support right now on removing old snapshots of a social media account I have. Creeps are actively using the old snapshots to dox me and send me death threats using my PII. It’s incredibly frustrating and IA keeps insisting they cannot do anything about it. A small part of me hope…

Once you have been doxed, isn’t the cat kinda out of the bag at that point? Creeps already have the snapshots now, deleting them from IA is just closing the barn door after the livestock has already escaped.

Re: Internet Archive: Security breach alert

#298
post #115
post #103

Earlier quoted context omitted.

There is a big difference between doing something for pure curiosity, love, or exploration and doing something directly harmful to other people for the same reasons. One is art; the other is sadism.

I'm not sure that placing free long distance calls isn't harmful to the org whose infrastructure you're using for your own benefit, but 2600 (Hz) is a respected hacker magazine and phreaking and Cap'n crunch whistles are seen as cool Hacking the Internet Archive and only placing an alert with a provocative message, I could see my teenage self do that. My judgment of the character is going to depend on what it turns o…

Their tag in ASCII Art via console.log() would earn equivalent cred, and not annoy fellow users of a useful service, IMHO

Re: Internet Archive: Security breach alert

#299

Earlier quoted context omitted.

I'm not 100% sure that that gets you wildcard email addresses that all point to the same inbox, but if they support that, sure!

I don’t know about Google, but I know iCloud supports domain wildcarding

Proxy address ie user@gmail.com you would use ia+user@gmail.com and have rules to match that

Re: Internet Archive: Security breach alert

#300
post #231

Earlier quoted context omitted.

They are actual archive.org accounts. Maybe you made an account to upload something, or to check out a digitized book from their library?

Thank you.. was worried at first as I didn't understand the true scope of the breach. For such a vital website, the info gleaned seems relatively harmless (for those of us who don't reuse passwords that is)

Yea, it is pretty harmless. I suppose someone might be interested in any books you currently have checked out, but beyond that there isn't much.
Post reply on HN