Blahaj.zone experienced a security breach and is handling it to properly reduce the risk of harm to their users. the current eta for their reture is in about 7 hours.

  • 1984@lemmy.today
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    6 hours ago

    Thank you very much for sharing this, it makes all Lemmy instances safer. Good job!

    Im curious how they could execute that postgres archive command to write a marker. Did they use the oauth token to be able to do that?

    Just not sure how they can run postgres queries as a normal user. What made that possible?