Baraza
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
@noerdman@discuss.tchncs.de to Comic Strips@lemmy.worldEnglish • 2 months ago

Quishing

discuss.tchncs.de

message-square
16
fedilink
390

Quishing

discuss.tchncs.de

@noerdman@discuss.tchncs.de to Comic Strips@lemmy.worldEnglish • 2 months ago
message-square
16
fedilink

alert-triangle
You must log in or register to comment.
  • Baggins [he/him]
    link
    fedilink
    English
    35•
    edit-2
    2 months ago

    How would you make an arbitrary QR code have a verifiable signature?

    • @0tan0d@lemmy.world
      link
      fedilink
      2•2 months ago

      Just pay a public CA everytime you make one /s

    • Programmer Belch
      link
      fedilink
      English
      -3•2 months ago

      A verifiable signature could be created but the use of public keys lets malicious actors to sign using the same key

  • @helpImTrappedOnline@lemmy.world
    link
    fedilink
    22•
    edit-2
    2 months ago

    Find yourself a QR scanner that gives you a preview of what the code is before sending you to the open web.

    I like this one, found it on F-droid. “QR Scanner (PFA)” https://github.com/SecUSo/privacy-friendly-qr-scanner

    For example, the QR code sirico@feddit.uk posted (it can scan from a saved picture too) shows me this;

    • @yonder@sh.itjust.works
      link
      fedilink
      6•2 months ago

      Wait, do normie phone, just, instantly open an untrusted website? The camera on LineageOS has a “scan” mode where it shows the data of scanned QR codes before you make an action.

      • @helpImTrappedOnline@lemmy.world
        link
        fedilink
        5•
        edit-2
        2 months ago

        Yup, modern security at its finest. Normie’s don’t stand a chance.

        I wish email clients would do something similar, especially for Formatted links.

        Open up a big popup that shows the full sender address, the full link, and underline/color any numbers so its clear AMAZ0N.com is b.s.

      • @Maggoty@lemmy.world
        link
        fedilink
        5•
        edit-2
        2 months ago

        They show you a tiny pop up with some of the URL. Not all of it. You click that and it goes right to it.

  • @Korhaka@sopuli.xyz
    link
    fedilink
    English
    20•2 months ago

    I remember thinking this years ago when I saw a QR code for paying for parking. I don’t want to buy a printer though, otherwise I would have printed one to link here.

    • @fin@sh.itjust.works
      link
      fedilink
      39•2 months ago

      Nice try.

      • @Korhaka@sopuli.xyz
        link
        fedilink
        English
        13•2 months ago

        I just like his music

        • @Mothra@mander.xyz
          link
          fedilink
          3•2 months ago

          Me too I actually like getting rickrolled

      • @gothic_lemons@lemmy.world
        link
        fedilink
        4•2 months ago

        What app you using that gave you that preview?

        • @fin@sh.itjust.works
          link
          fedilink
          5•2 months ago

          Voyager (wefwef). Great app. Just realized they’ve got newer link

          https://vger.app/

    • @AtariDump@lemmy.world
      link
      fedilink
      4•2 months ago

      gXcQ - link stays blue.

      • @Ifeelya@lemmy.world
        link
        fedilink
        4•2 months ago

        XcQ - no click for you.

  • @MystikIncarnate@lemmy.ca
    link
    fedilink
    English
    6•2 months ago

    For some reason this didn’t really occur to me.

    I don’t see QR codes as a potential attack vector… At least, I didn’t… Until now.

    It’s weird because I’m usually the one pointing out issues with everyone else’s plans… I didn’t realize I still had blind spots on this. Oh well, I’m only human.

Comic Strips@lemmy.world

!comicstrips@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !comicstrips@lemmy.world

Comic Strips is a community for those who love comic stories.

The rules are simple:

  • The post can be a single image, an image gallery, or a link to a specific comic hosted on another site (the author’s website, for instance).
  • The comic must be a complete story.
  • If it is an external link, it must be to a specific story, not to the root of the site.
  • You may post comics from others or your own.
  • If you are posting a comic of your own, a maximum of one per week is allowed (I know, your comics are great, but this rule helps avoid spam).
  • The comic can be in any language, but if it’s not in English, OP must include an English translation in the post’s ‘body’ field (note: you don’t need to select a specific language when posting a comic).
  • Politeness.
  • Adult content is not allowed. This community aims to be fun for people of all ages.

Web of links

  • !linuxmemes@lemmy.world: “I use Arch btw”
  • !memes@lemmy.world: memes (you don’t say!)
  • 1.95K users / day
  • 4.26K users / week
  • 7.73K users / month
  • 18.2K users / 6 months
  • 16.5K subscribers
  • 3K Posts
  • 34.8K Comments
  • Modlog
  • mods:
  • @lawrence@lemmy.world
  • BE: 0.19.3
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org