Elektrine lite

← Feed

@robpike@hachyderm.io

Post #1336179

2026-04-17 09:43 UTC

I found this very upsetting. The security guys deciding a priori that it's hard to do so we don't need to concern ourselves. That hasn't worked out well in the past. You think they'd learn. https://www.youtube.com/watch?v=PPJ6NJkmDAo

Replies (3)

  • @tmcfarlane@toot.community 2026-04-17 10:30

    @robpike@hachyderm.io this is baffling. With a stolen phone this appears to be trivially exploitable. The idea that "it's not being exploited so we don't need to fix it", is crazy. It's not being exploited because no one has bothered commoditising the exploit *yet*.

    Open ##2883439

  • @cdegroot@mstdn.ca 2026-04-17 12:25

    @robpike@hachyderm.io What I find upsetting is that VISA rather than fixing a known bug chooses to send you through a hellhole of phone calls, being on hold, supplying information, all while your bill payments are bounced because your credit card is maxed out. But then, that banks don't care about customers is already long-known, so I guess nothing new here?

    Open ##2883442

  • @robpike@hachyderm.io this is actually a problem with all passive rfids as well which has been a known security risk long before they were jammed in every credit card.

    Open ##2883443