25 Matching Annotations
  1. Last 7 days
    1. Dlatego jedyna sensowna rada to… regularnie wykonuj kopię bezpieczeństwa konta Google za pomocą Google Takeout. Bo na phishing albo instalację malware zawsze możesz się złapać, tak jak zrobił to Mateusz, człowiek od lat działający zawodowo w branży IT.
      • The article describes the case of a user (Mateusz) whose Google account was hijacked after he ran malware (a stealer) sent from a compromised friend's Discord account.
      • The malware stole the user's active session cookie, not their password. This allowed the attacker to bypass all login protections, including 2-Step Verification (like a YubiKey), because they were able to take over an already-authenticated session without needing to log in.
      • Using this hijacked session, the attacker convinced Mateusz to join a "Family Group" (Google Family Link) and simultaneously changed his account's birth date to an age under 13.
      • This action immediately flagged the account as a "child's account," with the attacker as the "parent/guardian," which locked Mateusz out and triggered a 14-day permanent deletion process.
      • Mateusz is now in a "digital Catch-22": standard account recovery forms do not work for "child accounts," and Google's support (including YouTube and Google Play) has been unhelpful, closing his tickets despite him having proof of ownership.
      • The article criticizes Google for an "astounding oversight" in its business logic that allows an adult account's age to be so easily changed to a child's, creating a major vulnerability.
      • As a result, Mateusz lost 13 years of data (Gmail, Drive, Contacts) and access to all his purchases on Google Play.
      • The article concludes that since 2FA can't stop session hijacking, the only effective way to protect against the data loss from this specific attack is to regularly back up your Google account data using Google Takeout.
  2. Jun 2025
  3. Sep 2024
  4. Jan 2024
  5. Oct 2023
  6. Sep 2023
  7. Aug 2023
  8. Apr 2023
  9. Mar 2023
    1. Other PKM forums, places to discuss?

      reply to u/deafpolygon at https://www.reddit.com/r/PKMS/comments/121ihrj/other_pkm_forums_places_to_discuss/

      The space is fragmented broadly by both tools (some with specific workflows) and philosophies, so you may have to hunt/peck (or subscribe/filter) for the types of pieces you're searching for. Here's some resources you might appreciate. In the fora section things are ordered roughly by relation to the topic as well as frequency of posting/activity.

      Fora

      Sites

      Discord

      For some communities like Obsidian, Logseq, etc. you're also likely to find discord servers with some reasonable sub-channels and activity as well. A good non-product specific Discord with related material is The Productivists at https://discord.gg/m2bP2hh3. There's also one for Zettelkasten https://discord.gg/bYrVm9sr.

      And of course as you visit all these locales, be sure to mention r/PKMS and maybe more will learn that this location is a better catch-all for in-depth conversations and questions.

  10. Jan 2023
  11. Sep 2022
  12. Aug 2022
  13. Nov 2021
    1. The survey was vague -- the only product-specific query asked about a “Discord-native crypto wallet” -- but it showed that Discord was aware of the web3 community’s growing usage of its product and at least exploring how it might play in the space. 

      Discord might be mulling a native wallet.

    2. Discord’s bot ecosystem extends into crypto. In a recent piece on DAOs, The Generalist outlined a few integrations that have caught on with the web3 world. In particular, products like Collab.Land — which allows holders of unique tokens or NFTs to access private channels — have become essential. Other players in this subspace include Tip (accept crypto tips!) and Piggy (an RPG with crypto rewards).

      Discord integrates with web3. One example of this are channels that are only accessible for people holding a specific NFT.

    3. Whereas Slack was clearly designed to be the home for one company and its employees -- each time you get invited to a new Slack workspace, you need to re-enter your email and go through the signup flow -- Discord was built for promiscuity. Discord users are expected to jump from server to server, and to slide into any other Discord user’s DMs. 

      Slack was designed for monogamous relationships between a user and their company, Discord was designed for promiscuity.

  14. Sep 2021
  15. Feb 2021
  16. Dec 2020
    1. Bots will be simpler to use. They’ll feel like natural extensions of Discord, polished products for desktop, web, and mobile users. Developers will get powerful new tools to take their creations to the next level. It’ll be easier to turn great ideas into code.
  17. Oct 2020
  18. Aug 2020
    1. Beyond its Slack-like functionality, Discord has functionality like a social graph, seeing what games your friends are playing, voice chat, etc. These have been misunderstood by the market. They aren’t random small features. They are the backbone of a central nervous system. Active users of Discord have it on all the time, even when they are not playing games. It’s a passive way to have presence with your friends. And when your friends start playing games it makes it easy to with one click go join them in the game. Bringing your actual social graph across all games. Finally, voice chat makes it possible to talk with your friends across all games, even when you are playing the game. Like when working in a google doc, having to switch out of your game to message is a negative experience. Instead Discord adds functionality to your games even while you are focused solely on them. We will see more companies understand and begin to work on this area.

      Discord, unlike Slack, is the central nervous system (or meta-layer) for the gaming market. You can see what games your friends are playing and join them in real time. You can talk with them while playing a different game.