

If I ever end up back in a Walmart and see these, I’m definitely setting something in front of them.


If I ever end up back in a Walmart and see these, I’m definitely setting something in front of them.
I try a lot of stuff that’s a lot younger than Jellyfin but I respect your position on it. From what I’ve read the most serious identified issue will allow unauthorized playback, but one requirement for the exploit is knowing the local system path for the media. It forked from emby somewhere around 8 or so years back and I managed to trust emby back then so maybe I’m being a bit overly naive.
My main issue with Plex is that it only supports using its auth servers so when their having an outage, so am I; I’d rather control the media server and it’s IdP.
Or feed those steams into Dispatcharr and back to Jellyfin/Plex so you can pause/skip/record what’s on.
People keep saying that Jellyfin is scary to expose to the internet but Plex isn’t. Could you share your reason for it?
Same here, I’ve had a lifetime pass for a bit over a decade but now I just keep it for coworkers and some family members. Jellyfin just runs better 99% of the time.
Which problems? The only one I know of requires the attacker to know the exact media path on the local server, even if they figure that out all they gain is the ability to view that file.
Seriously though, if there is a bigger vulnerability out there, I’d love to know about it (the only one I found would allow unauthorized viewing).
That’s the only reason I opened the comments… To be fair though, I think I’m gonna adopt that term.


Technically he didn’t enter the PIN. When repeatedly asked for it with no way to speak to a lawyer first, he gave them his PIN. Did they ask for his phone PIN, yep, did he give them his phone PIN, yes. Had they asked for a specific PIN for the device, they might have been able to get one specific to a profile on the device but they didn’t.
Did they ask him if this PIN was for a specific profile? Doubtful so it’s kind of on them.


That’s the fun part… There wasn’t one, he just happened to oppose a very unpopular thing happening in his city.
As one of those kids, he’ll probably turn out okay. As a juror, it’s better to let a piece of shit go free than make an innocent person rot in jail.
When the kid grows up I would almost guarantee that he would make the same decision.


It may be an IT person thing but I like numbers lol.


While I am not entirely disagreeing, I have to a bit for anyone that can’t bring themselves to say it (all sides should be heard).
I may have misread but I don’t think he typed the PIN, as far as I understood they had already taken the phone and were insisting he give them the PIN without any access to a lawyer. Not only did he not wipe it, he only gave them the ‘I’m in duress’ PIN because he felt he was, if I’m on the jury it’s innocent until proven guilty beyond a reasonable doubt.


Definitely have to check this out, thanks man!


The man was in duress and being forced to hand over his PIN while being denied access to legal counsel, that is the very reason for a duress PIN. I don’t think the charge is even going to make it to real court, his defense has a great case for it to be thrown out.
It’s much better now, I put off moving from cmd until somewhere around 2015 when I was using ‘invoke-command’ constantly, over the last decade or so I’ve moved to powershell proper cmdlets… Its actually not that bad.


Surely he was also using the built in backup feature, if he was he would have been able to grab another used Pixel, install GOS, then just recover from his backup (I haven’t tried the restore yet just because I’m lazy, fingers crossed it works).


Sounds dumb to give it out, but mine is my normal 8-digit pin, just backwards. It’s easy to remember and seems like a legitimate PIN.
Fucking-eh, he made every calamity that has befallen man, yet the shits still think it’s a “good” plan.
Start it brother (or sister), that’s the best name for a resistance in this climate.
I was thinking a box of cereal, but I like the cut of your jib!