this post was submitted on 28 May 2026
490 points (99.2% liked)

Privacy

49004 readers
1195 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
 

cross-posted from: https://lemmy.ml/post/47972724

i encountered this for the first time today while attempting to read something on archive.today.

i confirmed that decoding the qrcode using a computer and following the URL it contains is insufficient; the error it gave directed me here which is what the linked screenshot is of.

the old type of captcha remains available too, for now:

screenshot of text: Important: Mobile verification for Google Cloud Fraud Defense is an experimental challenge type in Preview. Visual and audio challenges are available as alternatives for users who can't complete mobile verification. To use them, click the Visual  or Audio  buttons.

you are viewing a single comment's thread
view the rest of the comments
[โ€“] dajoho@sh.itjust.works 1 points 1 week ago (1 children)

Unfortunately true for a lot of people, but what's the solution?

[โ€“] Prove_your_argument@piefed.social 2 points 1 week ago* (last edited 1 week ago)

At work? Crowdstrike is kind of the training wheels for people who don't want to use application whitelisting or group policy that disables users running various terminals.

Training isn't the answer, because training is basically an industry propped up by knowbe4 from convincing cybersecurity insurance that it's the right thing. We do training where I work and everyone falls for the same old shit, raise information, pay information, promotion information and performance review content. Doesn't matter how many indicators of compromise are hidden in the message, but they'll gladly just keep clicking along or running code that is prompted because the desire sensor overrides the training.

Anywho, nowadays not giving users admin rights is simply not enough. The script creating people often know how to use privilege escalation exploits without issue to gain control even when a user can't. Really need a tool that can detect behavior and block it, or lock the system down somehow.