• spizzat2@lemm.ee
    link
    fedilink
    arrow-up
    146
    ·
    8 days ago

    This isn’t so much “hacked” as someone walked through the door they left wide open. They just hid it behind a bush.

  • jballs@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    89
    ·
    8 days ago

    JFC is their moto seriously “The people voted for major reform”? First, they barely won and are acting like there was some monumental landslide victory.

    Second, none of what they’re doing is actually what they campaigned on. Trump actually tried to distance himself as much as possible from Project 2025 during the campaign.

    • Tja@programming.dev
      link
      fedilink
      arrow-up
      18
      ·
      7 days ago

      He campaigned for “I will fix everything on day one” and gave zero details, so if you voted for that I have a bridge to sell you. It was obvious, painfully obvious, that project 2025 was their program and since it had more that 3 pages and no pictures, trump didn’t understand it.

      Trump was caught on thousands of lies already, from crowd sizes, to cat eating, to covid curing, to sexual assault, to taxes, to hurricane paths, to state secrets, to election results. People knew VERY WELL what they were getting with him. This is no surprise. They voted exactly for this.

      About the result, I’m going to have to quote fast an furious here, doesn’t matter if by an inch or a mile…

      Besides, polls indicate that he is at his highest EVER approval rating. Not only people voted for this, they are actually enjoying this. Yes, you and me see where this is going, but the average voter still thinks that this is fine. Americans are dumb as fuck and (at least in Europe) the relationship has been damaged for generations. I was super supportive the first Trump admin and I thought the people learned their lesson, but apparently it just took the billionaires fucking up egg prices for people to shoot themselves in the floor with a cannon.

      There will be lots of pikachu faces just before leopards eat them and at this point I can’t help but shrug. I don’t think “I told you so” helps, but it’s all i have.

    • psud@aussie.zone
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      5 days ago

      The bad side of this:

      • It’s going to be stupidly expensive to fix
      • It’s going to take years to hire and train, or rehire lost staff to do the fixing
      • People are going to lose services and probably money that they need
      • It achieves nothing

      The good side:

      • jballs@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        6
        ·
        6 days ago

        Isn’t it crazy that basically every election at this point is basically like:

        • Option 1) We keep the status quo, nothing really changes.
        • Option 2) We burn it all down to the ground. Not to rebuild something better, but just for the hell of it.
        • Flax@feddit.uk
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          6 days ago

          That was a referendum, but my point basically was that the government was like “we have a mandate to leave the EU fully” when the vote result was like… 52% in favour, and many people (including some I know personally) regret voting leave because they didn’t realise how significant the EU was.

          Of course, there was a 2019 election where the conservative party won on a “get brexit done”’ campaign under Boris Johnson, but their opposition was split between Lib Dems (wanted a second referendum and was quite clear) and Labour (run under Corbyn who already lost an election, was extremely incompetent and hard to elect, and decided for some reason in this crucial time to fencesit the entire Brexit issue. All I can remember is them offering free WiFi which has the same vibes of the 2024 national service campaign)

    • WhatAmLemmy@lemmy.world
      link
      fedilink
      English
      arrow-up
      62
      arrow-down
      1
      ·
      7 days ago

      Fascists lie about everything. If a fascist ever tells the truth, it’s either a mistake or a coincidence that conveniently aligns with their propaganda and goals.

      That’s just how fascism is, and always will be.

  • floofloof@lemmy.ca
    link
    fedilink
    English
    arrow-up
    80
    arrow-down
    1
    ·
    edit-2
    8 days ago

    Anyone who leaves a message in full view to announce they’ve accessed the system isn’t the real danger. If whoever this is could get in, so can the real experts from China, Russia, North Korea, etc. There’s no way Musk’s DOGE people, in their destructive haste, have taken any care over security. It’s even likely his team of punchable kids put in their own backdoors, thinking they were being clever. If and when foreign adversaries find their way in through those, they’re not putting up an announcement.

    • Adalast@lemmy.world
      link
      fedilink
      arrow-up
      2
      arrow-down
      2
      ·
      7 days ago

      You seem to think that Trump didn’t add access keys for his idols the instant he got back in the door. He loves Putin and Kim Jun Il. They are like, his favorite drinking buddies.

    • towerful@programming.dev
      link
      fedilink
      arrow-up
      20
      arrow-down
      1
      ·
      7 days ago

      Sorry for the wall of text.

      You would hope that a public front end is entirely isolated from critical systems.

      Hackers got in.
      Either they saw there was nothing of value, and figured they would embarrass the owners.
      They got in, saw shitloads of value, but decided the ethical thing was to embarrass as opposed to exfil/exploit/sell the access.
      Or the hackers were explicitly aiming to embarrass the owners, and didn’t explore scope beyond that.
      It’s likely “gay furry hackers” or similar, and it’s “grey hat” hacking.

      The ethical route, ie “white hat”, is to contact the owners about the exploit with a fixed period disclosure. Ie, “fix this in 30-90 days, or we will publish our method”.
      “Gray hat” are more like this. Where they find an exploit, it could go deeper, but they do some lulz instead. Basically make it obvious something has been hacked, but not actually exploit it further.
      “Black hat” would find the exploit (even if it was limited access) then sell it while trying to leave no trace, so it can be exploited again. Or straight up exploit it themselves.

      There is a possibility of foreign agents doing false-flag gray hat shit. Exfil sensitive data, cover their tracks, then “botch” some “hahaha you’ve been pwnd” stuff. Both getting sensitive data, and derailing the US government (because Musk has been authorised by Trump. It’s a huge undermining).

      With the timeline, this seems like gray hat, or black hat further exploited by gray hat. Or false flag.

      The obvious aim is to embarrass the owners.
      This casts serious political shade on the DOGE servers that have been hooked into government networks without oversight. Any further data exfil is a bonus to certain foreign countries.

      Best case scenario is that this is domestic gray hat, the muSSk team learn from it, and figure out how actual internet security works, and harden their systems accordingly.
      I mean, the actual best case is that this DOGE coup gets stopped. But the president has authorised DOGE, so this is what America wants. So, not a coup.

      Ideally, this hack has 0 actual scope of security vulnerability.
      Other than the “yeh, but if they can get into your public web server (something expected to be hardened as fuck, and might as well be static file hosting. Seriously, why is there a database for this shit), how can we trust your servers on government networks”.
      But chances are the exploits to get into this server will be similar to the exploits to get into the government connected DOGE systems. Unless the sysadmin & network admins (god bless them) have managed to maintain some control that muSSk doesn’t understand, and are able to mitigate the tsunami of access such a compromised server might unleash.

      • psud@aussie.zone
        link
        fedilink
        English
        arrow-up
        1
        ·
        5 days ago

        I expect it was an internal hack. Like a DOGE person left for the day with their terminal open and a federal employee took the opportunity to make it look bad for DOGE

        • Zoop@beehaw.org
          link
          fedilink
          arrow-up
          1
          ·
          7 days ago

          I dont recall having heard of this term yet; although of course I’ve heard of what it refers to happening. Thank you for sharing this here!

        • towerful@programming.dev
          link
          fedilink
          arrow-up
          1
          arrow-down
          1
          ·
          7 days ago

          Yeh, but they aren’t keeping control.
          They have been elected. They have 4 years.
          So far, it doesn’t seem that they have broken any laws or whatever, that would cause the system to reject their workings. They’ve rigged the courts, so the system is unlikely to reject their workings.
          I’d say it’s more of a constitutional coup. They are using loop holes to seize more power.
          I think it will be an attempted self-coup in 4 years.

          Regardless, it isn’t worth arguing about.
          It’s wrong. It’s a shit sandwich, the flavour of shit doesn’t matter.

      • floofloof@lemmy.ca
        link
        fedilink
        English
        arrow-up
        8
        ·
        7 days ago

        The ethical route, ie “white hat”, is to contact the owners about the exploit with a fixed period disclosure. Ie, “fix this in 30-90 days, or we will publish our method”.

        I’m not sure that is the ethical route when you’re talking about disrupting the operations of a Nazi-led government.

        • towerful@programming.dev
          link
          fedilink
          arrow-up
          3
          ·
          7 days ago

          Hmm, maybe I mean moral?
          Like, there is a correct way to go about something regardless of context.
          As opposed to doing something because of the context.

          Any exploit should be notified to the software/platform maintainers with a proper disclosure timeline to ensure it gets fixed in a timely way.
          That is the correct way.

          Abusing the shit out of a poorly implemented nazi government is the moral thing to do, but would go against a white hat’s ethics. Collectively a good thing to do, but not the correct thing to do as a white hat.

          Are gray hats more ethically and morally true?
          This is getting to deep for me.

          • Ashelyn@lemmy.blahaj.zone
            link
            fedilink
            arrow-up
            2
            ·
            6 days ago

            I guess you could consider someone who is staunchly whitehat with no exceptions to have a creed/code, where they consider the rules transcendent of any specific situation (e.g. nazi websites).