Has reddthat.com had any issues with the recent hacks/exploit that some larger instances have dealt with? Were there any precautions that had to be made like rotating the jwt’s and hiding the exploit (I don’t have a lot of technical knowledge on the subject, so hopefully I’m making sense)? Are we waiting for lemmy devs to make a permanent fix, or is this already happening and I’m just behind on the times? Or does this not affect our instance due to the software version being upgraded? Just curious about if the security breach is something that can be widespread, or if it has already been mitigated around here. Thanks for all that you do for us regardless, I’ve really enjoyed calling reddthat my new home!

  • MrShankles@reddthat.comOP
    link
    fedilink
    arrow-up
    2
    ·
    edit-2
    1 year ago

    I read through some of the “custom emoji exploit” updates earlier today, but wasn’t sure if it was still “the latest (or only exploit)”, and/or if it applied to our instance at all.

    I appreciate your response! I can’t even pretend to know what “rotating a jwt” truly entails, but I had read enough to know even less… and I appreciate the response because it helps things make more sense to me! Thanks again for all that y’all do here!