Avatar

Making shitty posts until they kick me out

@fancy-spiders

art blog @dapper-spiders

Twitter is limiting the number of tweets non-blue checks can read per day to 600 lmao.

Binfire website.

Imagine paying $12 per month and only getting to see 6000 tweets a day.

Tumblr, the Titan of social media, stands firm against this nonsense.

And it’s so broken that it’s disabled the ability to see who has liked your tweets.

And it’s been walked back to 800 tweets for unverified users which is basically no difference hahaha

What an absolute bawheid.

June 15 is the anniversary of both the Night Vale and Gravity Falls pilots, as well as Vanessa Doofenshmirtz’s birthday and “give it up for day 15” day

happy birthday to the only things ever

And love händel reunion day and Linda and Lawrence’s anniversary

Hey.

not enough people understand that disability benefits are basically what it would look like if you turned "if you're too sick for school you're too sick for video games" into an official public policy

Hello everyone, so Google is being a big shit an will start deleting accounts that have been inactive for two years.

Okay..Now listen to me, you need to make a HUGE fucking stink about this, start archiving as much legacy youtube content/google docs whatever, and most importantly- SPREAD THA FUCKIN' WORD!!! Literally a decades worth of old content will be gone because of this stupid thing, this is basically like burning down the library of alexandria. ARCHIVE NOW!

UPDATE

HELLO EVERYONE, so a quick update, Youtube/Google may not delete Old videos after all. Please reblog this post with this addition

From Youtubes creator, Liaison

Honestly im not sure about the 9to5 article since the blog hasn't provided any sources for their article, but the tweet from the Creator is true.

Though please still preserve them just in case!!!

Avatar

New Things to Beware on the Internet

On May 3rd, Google released 8 new top-level domains (TLDs) -- these are new values like .com, .org, .biz, domain names. These new TLDs were made available for public registration via any domain registrar on May 10th.

Usually, this should be a cool info, move on with your life and largely ignore it moment.

Except a couple of these new domain names are common file type extensions: ".zip" and ".mov".

This means typing out a file name could resolve into a link that takes you to one of these new URLs, whether it's in an email, on your tumblr blog post, a tweet, or in file explorer on your desktop.

What was previously plain text could now resolve as link and go to a malicious website where people are expecting to go to a file and therefore download malware without realizing it.

Folk monitoring these new domain registrations are already seeing some clearly malicious actors registering and setting this up. Some are squatting the domain names trying to point out what a bad idea this was. Some already trying to steal your login in credentials and personal info.

This is what we're seeing only 12 days into the domains being available. Only 5 days being publicly available.

What can you do? For now, be very careful where you type in .zip or .mov, watch what website URLs you're on, don't enable automatic downloads, be very careful when visiting any site on these new domains, and do not type in file names without spaces or other interrupters.

I'm seeing security officers for companies talking about wholesale blocking .zip and .mov domains from within the company's internet, and that's probably wise.

Be cautious out there.

Avatar

I really want to reiterate how this can go wrong frequently and fast, folks.

A malicious actor sets up a page with an auto-downloader squatting on a domain name that matches a common zip file name like photos DOT zip. This website is set up to start an auto downloader upon being visited, downloading a zip file with the same name as the URL which contains malicious software (virus, worm, keylogger, etc).

Scenario.

Someone you know well sends you an email or text with promised photos attached. The email even reads something like this.

Because .zip is now a TLD, that plain text is automatically formatted into a link to malicious actor's website without them having to send you anything.

Folk with family with iPhones or iPads that are sent multiple photos in one go might be familiar with iCloud's tendency to automatically compile them into zip file for the sender and less savvy tech users have trouble NOT doing that.

These same less savvy users, or even just someone just not thinking in the moment, will click that .zip link, not realizing it isn't the the same as clicking on the promised attachment.

They download a file that matches the name they expected. They open it because they were expecting that file and it's from a trusted source. Except the file they downloaded isn't the one that was sent by their trusted source and now they have malware.

Another Scenario.

An IT person tries to send you an email with instructions on how to resolve a problem with a commonly used filename like install-repair DOT zip or to install new software like microsoft-office DOT zip.

The email may start with instructions of where to go get the legitimate file to do the install or repair, but now a line later in the instructions is also has a link to a .zip URL. A user, already frazzled by IT problems, may click it to ensure they have the right file. Again, they download malicious code from a squatting website or it prompts them with a fake login and now the squatting website has stolen their login credentials for a legitimate site. All due to an expected email from a trusted source.

Above you can see microsoft-office DOT zip is already out there with a fake Microsoft login screen waiting to steal your credentials.

These risks are already out there now because the TLD has been activated.

Plain text on old post are already being resolved into links to the new websites.

Here you can see a tweet from 2021, long before .zip was a domain name, now resolves that plan text into a clickable link. You'll start seeing this everywhere, and malicious actors do not have to lift a finger to send it to you.

Yes, a lot of users aren't going to click that, but a lot of folk will. Whomever is squatting on photos DOT zip domain name has made a one time payment to have access to anyone that ever sees that file name typed out.

In an example of an existing squatter site, clientdocs DOT zip is exactly one such pre-setup .zip domain name that initiates an automatic download. This one may be harmless, but the set ups are already out there and waiting to catch folk.

It's an unnecessary and risky can of worms that's been opened up.

Holy Unforced Errors, Batman.

URGENT: Congress about to pass a mass censorship and surveillance bill under the guise of "protecting children"

May 13 2023

The Senate has been in a "do something!" mode regarding children's online safety. They're using this as an excuse to push for widespread internet censorship and surveillance. I already spoke about the EARN IT Act, which has a slimmer chance of passing with widespread opposition and a few senators saying they won't vote for it. The real threat is actually KOSA (s.1409), the Kid's Online Safety Act. It does two primary things:

First, KOSA pressures platforms to install filters that would wipe the net of anything deemed “inappropriate” for minors. This means instructing platforms to censor. We saw how these filters impacted websites firsthand with tumblr in 2018, with not only blocking all adult content but also sfw queer content such as suicide hotlines, art archives, wiping out entire blogs because they had queer fandom related posts, etc. Places that already use content filters have restricted important information about suicide prevention and LGBTQ+ support groups. KOSA would spread this kind of censorship to every corner of the internet. And who gets to decide what is and isn't harmful for minors? Oh don't worry, just every single state attorney general and the FTC, which is appointed by the president. You know, the same attorney generals that just banned gender-affirming healthcare under the guise that it "ruins mental health" of minors. This is why the Heritage Foundation was one of the first to sponsor the bill because they can use it to censor trans content, and Senator Marsha Blackburn of Tennessee is it's co-author.

Second, KOSA would ramp up the online surveillance of all internet users by forcing websites to use age verification and parental monitoring tools. Yup, that's right. Now every single person who wants to access the internet has to upload their govt ID online to third party apps that get hacked all the time. You queer in a red state? You undocumented? You an activist? Have fun getting all your online activity and metadata attached to your govt ID.  

Over 90+ human and LGBT rights groups agree that KOSA is dangerous and updates to the 2023 version won’t and can’t address the big problems with the bill. This bill has MASSIVE bipartisan support, and the authors Blumenthal and Blackburn (yes, that Blumenthal that's pushing the EARN IT Act, and who also sponsored the RESTRICT Act and SOPA/PIPA if you remember) are using the tragedy of mothers who lost their kids to online harassment and young adults who've been traumatized online to lobby for it, and got Dove the company to use a bunch of influencers to push for this under the guise it prevents eating disorders...I wish I was lying. There are already 30 co-sponsors.

HOW TO FIGHT KOSA
  1. CALL YOUR REPRESENTATIVES & THE COMMERCE COMMITTEE

Opposition is getting drowned, and these upcoming weeks will be heavy for lobbying and they're using young people to do it. We NEED to show these senators that young people are actually opposed to this and don't want it.

2. Sign these petitions

  1. Open Letter Against KOSA
  2. Petition 1
  3. Petition 2
  4. Petition 3
  5. Petition 4
  6. Resistbot: Text PHJDYH to 50409

3. Spread the word.

The opposition is getting absolutely drowned online. Dove has nearly 100k signatures to push for KOSA. Influencers on tiktok are pushing for this without ever having read the bill. Fucking Lizzo is sponsoring it. If you have twitter, reddit, tiktok, are in any community, SPREAD THE WORD, PLEASE.

Here is a linktree with all the above petitions for easy shargin: Link to linktree

URGENT: 🚨🚨EARN IT ACT IS BACK IN THE SENATE 🚨🚨 TUMBLR’S NSFW BAN HITTING THE ENTIRE INTERNET THIS SUMMER 2023

April 28, 2023

I’m so sorry for the long post but please please please pay attention and spread this

What is the EARN IT Act?

This is the third time the Senate has been trying to force this through, and I talked about it last year. It is a bill that claims "protects children and victims against CSAM" by creating an unelected and politically appointed national commission of law enforcement specialists to dictate "best practices" that websites all across the nation will be forced to follow. (Keep in mind, most websites in the world are created in the US, so this has global ramifications). These "best practices" would include killing encryption so that any law enforcement can scan and see every single message, dm, photo, cloud storage, data, and any website you have every so much as glanced at. Contrary to popular belief, no they actually can't already do that. These "best practices" also create new laws for "removing CSAM" online, leading to mass censorship of non-CSAM content like what happened to tumblr. Keep in mind that groups like NCOSE, an anti-LGBT hate group, will be allowed on this commission. If websites don't follow these best practices, they lose their Section 230 protections, leading to mass censorship either way.

Section 230 is foundational to modern online communications. It's the entire reason social media exists. It grants legal protection to users and websites, and says that websites aren't responsible for what users upload online unless it's criminal. Without Section 230, websites are at the mercy of whatever bullshit regulatory laws any and every US state passes. Imagine if Texas and Florida were allowed to say what you can and can't publish and access online. That is what will happen if EARN IT passes. (For context, Trump wanted to get rid of Section 230 because he knew it would lead to mass govt surveillance and censorship of minorities online.)

This is really not a drill. Anyone who makes or consume anything “adult” and LGBT online has to be prepared to fight Sen. Blumenthal’s EARN IT Act, brought back from the grave by a bipartisan consensus to destroy Section 230. If this bill passes, we’re going to see most, if not all, adult content and accounts removed from mainstream platforms. This will include anything related to LGBT content, including SFW fanfiction, for example. Youtube, Twitter, Reddit, Tiktok, Tumblr, all of them will be completely gutted of anything related to LGBT content, abortion healthcare, resources for victims of any type of abuse, etc. It is a right-wing fascists wet dream, which is why NCOSE is behind this bill and why another name for this bill is named in reference to NCOSE.

NCOSE used to be named Morality in Media, and has rebranded into an "anti-trafficking" organization. They are a hate group that has made millions off of being "against trafficking" while helping almost no victims and pushing for homophobic laws globally. They have successfully pushing the idea that any form of sexual expression, including talking about HEALTH, leads to sex trafficking. That's how SESTA passed. Their goal is to eliminate all sex, anything gay, and everything that goes against their idea of ‘God’ from the internet and hyper disney-fy and sanitize it. This is a highly coordinated attack on multiple fronts.

The EARN IT Act will lead to mass online censorship and surveillance. Platforms will be forced to scan their users’ communications and censor all sex-related content, including sex education, literally anything lgbt, transgender or non-binary education and support systems, aything related to abortion, and sex worker communication according to the ACLU. All this in the name of “protecting kids” and “fighting CSAM”, both of which the bill does nothing of the sort. In fact it makes fighting CSEM even harder.

EARN IT will open the way for politicians to define the category of “pornography" as they — or the lobbies that fund them — please. The same way that right-wing groups have successfully banned books about race and LGBT, are banning trans people from existing, all under the guise of protecting children from "grooming and exploitation", is how they will successfully censor the internet.

As long as state legislatures can tie in "fighting CSAM" to their bullshit laws, they can use EARN IT to censor and surveill whatever they want.

This is already a nightmare enough. But the bill also DESTROYS ENCRYPTION, you know, the thing protecting literally anyone or any govt entity from going into your private messages and emails and anything on your devices and spying on you.

This bill is going to finish what FOSTA/SESTA started. And that should terrify you.

Senator Blumenthal (Same guy who said ‘Facebook should ban finsta’) pushed this bill all of 2020, literally every activist (There were more than half a million signatures on this site opposing this act!) pushed hard to stop this bill. Now he brings it back, doesn’t show the text of the bill until hours later, and it’s WORSE. Instead of fixing literally anything in the bill that might actually protect kids online, Bluemnthal is hoping to fast track this and shove it through, hoping to get little media attention other than propaganda of “protecting kids” to support this shitty legislation that will harm kids. Blumental doesn't care about protecting anyone, and only wants his name in headlines.

It will make CSAM much much worse.

One of the many reasons this bill is so dangerous: It totally misunderstands how Section 230 works, and in doing so (as with FOSTA) it is likely to make the very real problem of CSAM worse, not better. Section 230 gives companies the flexibility to try different approaches to dealing with various content moderation challenges. It allows for greater and greater experimentation and adjustments as they learn what works – without fear of liability for any “failure.” Removing Section 230 protections does the opposite. It says if you do anything, you may face crippling legal liability. This actually makes companies less willing to do anything that involves trying to seek out, take down, and report CSAM because of the greatly increased liability that comes with admitting that there is CSAM on your platform to search for and deal with. This liability would allow anyone for any reason to sue any platform they want, suing smaller ones out of existence. Look at what is happening right now with book bans across the nation with far right groups. This is going to happen to the internet if this bill passes.

(Remember, the state department released a report in December 2021 recommending that the government crack down on “obscenity” as hard the Reagan Administration did. If this bill passes, it could easily go way beyond shit red states are currently trying. It is a goldmine for the fascist right that is currently in the middle of banning every book that talks about race and sexuality across the US.)

The reason these bills keep showing up is because there is this false lie spread by organizations like NCOSE that platforms do nothing about CSEM online. However, platforms are already liable for child sexual exploitation under federal law. Tech companies sent more than 45 million+ instances of CSAM to the DOJ in 2019 alone, most of which they declined to investigate. This shows that platforms are actually doing everything in their power already to stop CSEM by following already existing laws. The Earn It Act includes zero resources for proven investigation or prevention programs. If Senator Bluementhal actually cared about protecting youth, why wouldn’t he include anything to actually protect them in his shitty horrible bill? EARN IT is actually likely to make prosecuting child molesters more difficult since evidence collected this way likely violates the Fourth Amendment and would be inadmissible in court.

I don’t know why so many Senators are eager to cosponsor the “make child pornography worse” bill, but here we are.

HOW TO FIGHT BACK

EARN IT Act was introduced just two weeks ago and is already being fast-tracked. It will be marked up the week of May 1st and head to the Senate floor immediately after. If there is no loud and consistent opposition, it will be law by JUNE! Most bills never go to markup, so this means they are putting pressure to move this through. There are already 20 co-sponsors, a fifth of the entire Senate. This is an uphill battle and it is very much all hands on deck.

  1. CALL YOUR REPRESENTATIVES.

This website takes you to your Senator / House members contact info. EMAIL, MESSAGE, SEND LETTERS, CALL CALL CALL CALL CALL. Calling is the BEST way to get a message through. Get your family and friends to send calls too. This is literally the end of free speech online.

(202) 224-3121 connects you to the congressional hotline. Here is a call script if you don't know what to say. Call them every day. Even on the weekends, leaving voicemails are fine.

2. Sign these petitions!

3. SPREAD THE WORD ONLINE

If you have any social media, spread this online. One of the best ways we fought back against this last year was MASSIVE spread online. Tiktok, reddit, twitter, discord, whatever means you have at least mention it. We could see most social media die out by this fall if we don't fight back.

Here is a linktree with more information on this bill including a masterpost of articles, the links to petitions, and the call script.

DISCORD LINK IF YOU WANT TO HELP FIGHT IT

TLDR: The EARN IT Act will lead to online censorship of any and all adult & lgbt content across the entire internet, open the floodgates to mass surveillance the likes which we haven’t seen before, lead to much more CSEM being distributed online, and destroy encryption. Call 202-224-3121 to connect to your house and senate representative and tell them to VOTE NO on this bill that does not protect anyone and harms everyone.