You're still using windows 7 so yeah /s . But jokes aside your fine all credit card numbers are automatically redacted. Put yours below with the CCV code and expiration date, and watch the magic happen.
Hey, if you want i can run to the town hall and check with the official records as well?
Just give me your credit card number, expiration date and security code.
Pwned Passwords uses a model called k-anonymity to let you check whether a password has been seen before without ever sending the full password or its complete hash to the service. Instead, your password is hashed locally and only the first 5 characters of the SHA-1 hash are sent to the API. The service returns a list of matching suffixes, and the full comparison happens on your side so the password itself remains private.
and you can either download the open source client from GitHub, or spin up your own with their API (i would imagine that you can almost do this in a bash one-liner, but haven't looked into the details yet). that sounds good enough to me
34 Comments
radeance@piefed.ca · 93 pts · 30d
You should be fine. It said that your credit card wasn't in their database. Windows prompts aren't allowed to lie.
TIEPilot@lemmy.world · 48 pts · 30d
You know you can type in your passwords to lemmy and it gets hashed out!
Let me demonstrate:
"*******"
See thats my password all masked!
/s Hunter2 lol
MutantTailThing@lemmy.world · 32 pts · 30d
HumongousDickNipple67
MutantTailThing@lemmy.world · 40 pts · 30d
how does i delet post
Bixcut@lemmy.world · 21 pts · 30d
Verify the credit card info I have on file for you for post delete
TIEPilot@lemmy.world · 5 pts · 30d
Yes!
https://youtu.be/XiyjmeQ1_Bo
SatansMaggotyCumFart@piefed.world · 17 pts · 30d
***********
Apparently it works on piefed too.
Tiral@lemmy.world · 7 pts · 30d
Sweet, let me try my password is Goatdiklovr4life@69.
Edi. I think it still shows up for me because it knows it's my password. It's hashed out for you guys right?
helpImTrappedOnline@lemmy.world · 9 pts · 30d
Yes it is, I'll type out your password and you'll see its now hashed out on your end
********************
taj@lemmy.world · 2 pts · 30d
Yes, of course!
tomi000@lemmy.world · 33 pts · 30d
No, it says right there your info was not in any hacker database.
Redjard@reddthat.com · 6 pts · 30d
Nono, to check if this was a scan they now need to rerun it and see if the card was added.
TerraRoot@sh.itjust.works · 28 pts · 30d
"Dixie Normous" sounds legit, I thrust that guy, where do I download the app?
UnderpantsWeevil@lemmy.world · 15 pts · 30d
I bank with Dixie Normous.
superSecretThrowaway@fedinsfw.app · 15 pts · 30d
Nah, it's probably fine. Don't bother checking your accounts for the next 4 months, you have no reason
HeyJoe@lemmy.world · 7 pts · 30d
What can they do without the security code?
mycodesucks@lemmy.world · 24 pts · 30d
olafurp@lemmy.world · 3 pts · 30d
Security code / 3D secure is not mandatory. It's in theory enough to make a purchase but will be flagged for potentially fraud very often.
JelleWho@lemmy.world · 7 pts · 30d
Benefits of Debit, this would not be able to happen
village604@adultswim.fan · 1 pts · 30d
Most debit cards can be used online...
jumjummy@lemmy.world · 6 pts · 30d
And even worse, it’ll be your actual money that gets stolen until you get it back unlike a credit card.
village604@adultswim.fan · 1 pts · 30d
Most debit cards use visa/mastercard on the back end for online purchases, so the "refund any fraud over $50" law in the US still applies
chickenf622@sh.itjust.works · 5 pts · 30d
You're still using windows 7 so yeah /s . But jokes aside your fine all credit card numbers are automatically redacted. Put yours below with the CCV code and expiration date, and watch the magic happen.
Grail@multiverse.soulism.net · 11 pts · 30d
That's obviously Winux 7
Turret3857@infosec.pub · 2 pts · 30d
Why not aerothemeplasma?
Mikina@programming.dev · 5 pts · 30d
Isn't there supposed to be a security code? The three-digit thing? Not sure you can brute-force that easily.
BluJay320@lemmy.blahaj.zone · 5 pts · 30d
Mikina@programming.dev · 11 pts · 30d
I'm pretty sure cards have to have some kind of blocking mechanism for this case, no? It should be really easy to detect.
okwhateverdude@lemmy.world · 4 pts · 30d
Failed transactions get tallied and eventually it tickles some kind of fraud control. And it is easy to detect.
deranger@sh.itjust.works · 3 pts · 30d
Thoughts of a 16 year old “hacker”
Shellofbiomatter@lemmus.org · 5 pts · 30d
Hey, if you want i can run to the town hall and check with the official records as well? Just give me your credit card number, expiration date and security code.
quantumcrop@lemmy.today · 3 pts · 29d
Look at that lovely, lovely Aero UI. Microsoft reserved a special place in hell for themselves the minute they killed Aero.
content_educator_94@thelemmy.club · 1 pts · 29d
Aerosmith
observantTrapezium@lemmy.ca · 1 pts · 30d
No issue if the info gets hashed and the service's database is only searched for the hash à la have I been pwned, it's probably legit 😜
justme@lemmy.dbzer0.com · 3 pts · 30d
according to their website:
and you can either download the open source client from GitHub, or spin up your own with their API (i would imagine that you can almost do this in a bash one-liner, but haven't looked into the details yet). that sounds good enough to me