this post was submitted on 21 Jan 2021
16 points (100.0% liked)

Privacy

33590 readers
1123 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

Yesterday, the "Polish response to Facebook" was launched by government media owner Tomasz Sakiewicz - Albicla or "All Be Clear".

Making the portal was not the pinnacle of professionalism, few key points:

  • The terms of the portal are copy-pasted facebook regulations within its fb hyperlinks

  • You can download the entire user base, because it is not protected in any way (a request was sent to the Personal Data Protection Office, but most probably nothing will be done due the fact the office is led by government representative)

  • If you want to post on the wall to a "stranger", you can click rmb -> inspect element on the "publish" button (on your profile). Then you look for "input" in html which will open for you and change "Value" to the id of the person whose profile you want to write something on.

  • User password has no character limit, someone pasted the entire content of Pan Tadeusz (Master Thaddeus) polish poem as a password

  • Half the users are popes (its national treasure to post John Paul II memes everywhere)

  • The other half are fake accounts of government party activists, Trump and other famous figures,

  • Someone created an account called "login", after clicking on his profile, you just log out

  • Someone else called himself "delete_account", after clicking on his profile, you can delete your account (and currently it's probably the only working method of deleting an account),

  • A lot of pedophile content passed through the night

  • barely some managed to receive an activation e-mail, the portal itself crashed after a few hours of operation

  • Others do not have a problem with it, apparently someone has already set up 500k multi accounts (even after a ban, you can register from the same email)

  • It seems possible to create an account without a name, without an email and without a password. In the source of the page, remove the required attribute from the input fields.

  • Sakiewicz is proud of his portal popularity

Poles literally trolled Albicla. No surprise tho, the majority of young people hate government and its tricks.

top 16 comments
sorted by: hot top controversial new old
[–] [email protected] 3 points 4 years ago

Someone created an account called “login”, after clicking on his profile, you just log out

I laughed out loud when I hit this one.

[–] [email protected] 2 points 4 years ago (2 children)

How much did they pay for it? And who's brother in law made it?

[–] [email protected] 3 points 4 years ago

within time more details will come I think :)

[–] [email protected] 2 points 4 years ago (1 children)

Albicla.com has been prepared by the same group of IT specialists who have recently been working on new versions of the Niezalezna.pl and TVrepublika.pl portals. - It's hard to believe, but none of these dozens of people has asked for money yet. Of course, we will want to settle accounts with everyone, unless someone declares that he worked socially - describes Tomasz Sakiewicz. 10-20 people are to work on a permanent basis for the service.

translated article

[–] [email protected] 1 points 4 years ago (1 children)

Yeah... This is insane. Am not Polish, but am Eastern European. I know this smell very well. Doesn't Poland have strict rules on how public contracts should go? Or this is not even treated as a contract since money didn't exchange hands?

In the next few years the people who were in charge of this project are going to get showered in public positions and / or contracts. This is sad.

[–] [email protected] 2 points 4 years ago

The don't obey the rules. I could write a book about how bad the polish government or just check some of the scandals here (from google translated website) https://translate.google.com/translate?sl=pl&tl=en&u=http://www.100aferpis.pl/

They pay 2 billions every year to TVP (Polish "Public" TV Station) to spread propaganda.

[–] [email protected] 1 points 4 years ago (1 children)

I don't get it, is it a portal or a social networking site?

[–] [email protected] 4 points 4 years ago (1 children)

Its social network made by government media owner. Its "his response to Facebook".

[–] [email protected] 1 points 4 years ago

Sounds amazing

[–] [email protected] 1 points 4 years ago (1 children)

Why is "User password has no character limit, someone pasted the entire content of Pan Tadeusz (Master Thaddeus) polish poem as a password" a bad thing? I make the most out of super long character passwords and create ssh key level entropy with it lol.

[–] [email protected] 3 points 4 years ago* (last edited 4 years ago) (1 children)

Also, you're supposed to hash passwords, which turns them into a set length. So you only really need to worry about uploading and hashing passwords on login, so as long as someone doesn't have a gigabyte long password, I don't see the problem.

[–] [email protected] 4 points 4 years ago (1 children)

Even a 1 KB password might be enough to ddos a server if enough people do it, cause password hashing algorithms are very slow by design.

[–] [email protected] 2 points 4 years ago
[–] [email protected] 1 points 4 years ago (1 children)

A government funded centralized social media platform sounds already like a mess, what could possibly go wrong?

Someone created an account called “login”, after clicking on his profile, you just log out

Holy shit this is bad, and I thought Parler was done more hastily.

[–] [email protected] 0 points 4 years ago

Parler's bzen around for a while though.

[–] [email protected] -1 points 4 years ago

This is so funny. How do script kiddie school websites pass off as country endorsed international platforms?