Pretentious Moment Incoming But Why Is Everyone's Idea Of Fashion So Fucking Boring These Days. Why The

pretentious moment incoming but why is everyone's idea of fashion so fucking boring these days. why the fuck did my manager just ask me "what's with the scarf". "what's with the scarf" fuck man do I need a reason to wear a faggy little scarf now? you could just say "nice scarf man". what's with your attitude

More Posts from Sumactic and Others

5 days ago
All Gmail users at risk from clever replay attack
Malwarebytes
All Google accounts could end up compromised by a clever replay attack on Gmail users abusing Google infrastructure.

Cybercriminals are abusing Google’s infrastructure, creating emails that appear to come from Google in order to persuade people into handing over their Google account credentials. This attack, first flagged by Nick Johnson, the lead developer of the Ethereum Name Service (ENS), a blockchain equivalent of the popular internet naming convention known as the Domain Name System (DNS). Nick received a very official looking security alert about a subpoena allegedly issued to Google by law enforcement to information contained in Nick’s Google account. A URL in the email pointed Nick to a sites.google.com page that looked like an exact copy of the official Google support portal.

As a computer savvy person, Nick spotted that the official site should have been hosted on accounts.google.com and not sites.google.com. The difference is that anyone with a Google account can create a website on sites.google.com. And that is exactly what the cybercriminals did. Attackers increasingly use Google Sites to host phishing pages because the domain appears trustworthy to most users and can bypass many security filters. One of those filters is DKIM (DomainKeys Identified Mail), an email authentication protocol that allows the sending server to attach a digital signature to an email. If the target clicked either “Upload additional documents” or “View case”, they were redirected to an exact copy of the Google sign-in page designed to steal their login credentials. Your Google credentials are coveted prey, because they give access to core Google services like Gmail, Google Drive, Google Photos, Google Calendar, Google Contacts, Google Maps, Google Play, and YouTube, but also any third-party apps and services you have chosen to log in with your Google account. The signs to recognize this scam are the pages hosted at sites.google.com which should have been support.google.com and accounts.google.com and the sender address in the email header. Although it was signed by accounts.google.com, it was emailed by another address. If a person had all these accounts compromised in one go, this could easily lead to identity theft.

How to avoid scams like this

Don’t follow links in unsolicited emails or on unexpected websites.

Carefully look at the email headers when you receive an unexpected mail.

Verify the legitimacy of such emails through another, independent method.

Don’t use your Google account (or Facebook for that matter) to log in at other sites and services. Instead create an account on the service itself.

Technical details Analyzing the URL used in the attack on Nick, (https://sites.google.com[/]u/17918456/d/1W4M_jFajsC8YKeRJn6tt_b1Ja9Puh6_v/edit) where /u/17918456/ is a user or account identifier and /d/1W4M_jFajsC8YKeRJn6tt_b1Ja9Puh6_v/ identifies the exact page, the /edit part stands out like a sore thumb. DKIM-signed messages keep the signature during replays as long as the body remains unchanged. So if a malicious actor gets access to a previously legitimate DKIM-signed email, they can resend that exact message at any time, and it will still pass authentication. So, what the cybercriminals did was: Set up a Gmail account starting with me@ so the visible email would look as if it was addressed to “me.” Register an OAuth app and set the app name to match the phishing link Grant the OAuth app access to their Google account which triggers a legitimate security warning from no-reply@accounts.google.com This alert has a valid DKIM signature, with the content of the phishing email embedded in the body as the app name. Forward the message untouched which keeps the DKIM signature valid. Creating the application containing the entire text of the phishing message for its name, and preparing the landing page and fake login site may seem a lot of work. But once the criminals have completed the initial work, the procedure is easy enough to repeat once a page gets reported, which is not easy on sites.google.com. Nick submitted a bug report to Google about this. Google originally closed the report as ‘Working as Intended,’ but later Google got back to him and said it had reconsidered the matter and it will fix the OAuth bug.

1 month ago

evangelicals being like "god made men to do This and be like This and women to do That and be like That that's just how it is" and it's just a picture of a white man and woman following traditional gender norms makes me so insane like you boring fascist fucks. god made 2 million species of beetles. god made whales, ducks, humans, and 1500 other species capable of same sex behavior. god made fish and amphibians that change sexes. god made more than 30 different intersex variations in human beings. god, in his infinite curiosity. wake up!!! fuck!!

2 weeks ago

y'all know that whole left-brained/right-brained thing is fake right? and the "brain fully develops at age 25" thing? and the "we only use 10% of our brains" thing? yeah they're all complete horseshit please yell at anyone who says them

1 month ago

sumactic - plonk
sumactic - plonk
sumactic - plonk
sumactic - plonk
sumactic - plonk

Rainworld cardboard sculpture :>


Tags
2 weeks ago
End Of Season Design For Divorcesteal Arch :3 Start Of Season Ref Under The Cut For Comparison

end of season design for divorcesteal arch :3 start of season ref under the cut for comparison

End Of Season Design For Divorcesteal Arch :3 Start Of Season Ref Under The Cut For Comparison

Tags
2 weeks ago
Another X-men Panel Redraw… Predictably I’m Obsessed With This Visual From Inferno #3

another x-men panel redraw… predictably I’m obsessed with this visual from Inferno #3


Tags
1 month ago

MCSR MAKEUP!!!

day 1: feinberg :3

MCSR MAKEUP!!!

Tags
1 week ago
Waiter Waiter 2 🥩🥗 Please Thank You
Waiter Waiter 2 🥩🥗 Please Thank You

waiter waiter 2 🥩🥗 please thank you


Tags
2 weeks ago
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?
Care For A Drink?

Care for a drink?


Tags
Loading...
End of content
No more pages to load
  • alando-matheny-banuelos
    alando-matheny-banuelos liked this · 5 days ago
  • chatnip
    chatnip reblogged this · 5 days ago
  • dulcedesastre
    dulcedesastre liked this · 5 days ago
  • davidcgc
    davidcgc liked this · 5 days ago
  • marylikeslemons
    marylikeslemons liked this · 5 days ago
  • imadethisblogbecauseofmegacon
    imadethisblogbecauseofmegacon reblogged this · 5 days ago
  • thenoodledart
    thenoodledart liked this · 5 days ago
  • thetentacleking
    thetentacleking liked this · 5 days ago
  • lgtbird
    lgtbird liked this · 5 days ago
  • pulhaaa
    pulhaaa liked this · 5 days ago
  • fire-around-us
    fire-around-us liked this · 5 days ago
  • shebuleb
    shebuleb liked this · 5 days ago
  • airagarca
    airagarca liked this · 5 days ago
  • doyourworkdamnit
    doyourworkdamnit reblogged this · 5 days ago
  • doyourworkdamnit
    doyourworkdamnit liked this · 5 days ago
  • bi-lil-guy
    bi-lil-guy liked this · 5 days ago
  • spleen-3t-ideal
    spleen-3t-ideal liked this · 5 days ago
  • americalumidiot
    americalumidiot reblogged this · 5 days ago
  • fenrissama
    fenrissama liked this · 5 days ago
  • viktorscosmicwhip
    viktorscosmicwhip liked this · 5 days ago
  • chacerider-casual
    chacerider-casual liked this · 5 days ago
  • kamikazejuju
    kamikazejuju liked this · 5 days ago
  • aurab0realis
    aurab0realis liked this · 5 days ago
  • hunni-im-great
    hunni-im-great liked this · 5 days ago
  • themelonlad
    themelonlad reblogged this · 5 days ago
  • imminentchaos
    imminentchaos liked this · 5 days ago
  • upsizelexa
    upsizelexa reblogged this · 5 days ago
  • eleanor-gamedev-she-plural
    eleanor-gamedev-she-plural reblogged this · 5 days ago
  • catundrum
    catundrum liked this · 5 days ago
  • cecilia-heart
    cecilia-heart liked this · 5 days ago
  • particle-acchellerator
    particle-acchellerator liked this · 5 days ago
  • possiblythembo
    possiblythembo liked this · 5 days ago
  • waffleelrond
    waffleelrond liked this · 5 days ago
  • sapphic-faggot-trash-bandit
    sapphic-faggot-trash-bandit reblogged this · 5 days ago
  • sapphic-faggot-trash-bandit
    sapphic-faggot-trash-bandit liked this · 5 days ago
  • chacetic
    chacetic liked this · 5 days ago
  • nobody-lavender
    nobody-lavender liked this · 5 days ago
  • grainhoarder
    grainhoarder liked this · 5 days ago
  • greededling
    greededling reblogged this · 5 days ago
  • caesarsavethequeen
    caesarsavethequeen reblogged this · 5 days ago
  • a-realclassact
    a-realclassact reblogged this · 5 days ago
  • a-realclassact
    a-realclassact liked this · 5 days ago
  • beefyantennae
    beefyantennae liked this · 5 days ago
  • blupdup
    blupdup reblogged this · 5 days ago
  • jal-the-jinxed
    jal-the-jinxed liked this · 5 days ago
  • honeylemony
    honeylemony reblogged this · 5 days ago
  • honeylemony
    honeylemony liked this · 5 days ago
  • sagegreenfrogs
    sagegreenfrogs reblogged this · 5 days ago
  • sagegreenfrogs
    sagegreenfrogs liked this · 5 days ago
sumactic - plonk
plonk

mcsr and some other stuff

180 posts

Explore Tumblr Blog
Search Through Tumblr Tags