it also has something for invalidating all json web tokens by changing the signing key (all users will need to re-login after doing that), which may be necessary depending on whether the tech team believes any of them (especially any of the admin’s) have been compromised (there is currently no expiry date on the tokens).
I also found this lemmy moderation tool (seems to be by the same dev as lemmyverse.net), which the tech team may want to take a look at to see if it’s comparable to what you all had on reddit…at least after the security issue thing blows over.
https://github.com/LemmyNet/lemmy-ui/issues/1895 has more information on mitigations, which may not be necessary if no custom emojis were added.
it also has something for invalidating all json web tokens by changing the signing key (all users will need to re-login after doing that), which may be necessary depending on whether the tech team believes any of them (especially any of the admin’s) have been compromised (there is currently no expiry date on the tokens).
#lemmyworldhacked #fediversedrama
Thanks, i’m giving it a read but i’m not coding literate so may need some time to parse 😂
I also found this lemmy moderation tool (seems to be by the same dev as lemmyverse.net), which the tech team may want to take a look at to see if it’s comparable to what you all had on reddit…at least after the security issue thing blows over.
#redditmigration
The team are currently working on the bot though, but thanks for the suggestion 😁