one of the annoying things about indieweb is that people will just take it upon themselves to pentest your website. like well done you broke into my git repo and fucking wiped all the info there and replaced it all with a "security notice". all this does is make me not want to use git again?
Timeline
Post
Remote status
Context
1
@Velveteen unfortunately, literal skill issue. it's less of a problem if its just your data and not like anything important like your bank passwords, but even if you're being entrusted with people's medical records, your computer could still get turned into a botnet by a russian to take down whatever. not using git if you're getting pwned is really treating the symptom. i don't think most people should be actually using computers
Replies
4
@shibao yeah there is just some fundamental complication that I don't understand with how git works since it is twice now this has happened. My site is still live and nobody has ever broken in over ftp or ssh and git isn't really a crucial component in this case anyway so like idk I think not using git is a fair concession in this case. Thankfully I do not have a reason to ever handle data that's actually important
@Velveteen i gotta be honest i don't think git is the problem or the solution
@shibao @Velveteen >your computer could still get turned into a botnet by a russian to take down whatever
I dunno that also sounds like a skill issue. Don't Windows and don't javascript, and subscribe to some low-frequency alerts for your distro (or just check fedi regularly), you'll be fine.
I dunno that also sounds like a skill issue. Don't Windows and don't javascript, and subscribe to some low-frequency alerts for your distro (or just check fedi regularly), you'll be fine.