Hello dear Root-Me community,
We're aware of claims circulating on a hacking forum about a Root-Me data leak. We've obtained and analysed the files in question, and here's what we found.
No user data is affected. The files contain only challenge source code, no passwords, no emails, no personal information.
This is an old leak. Several years ago (prior to 2018, so nearly a decade old), a vulnerability allowed challenge sources from a specific server of ours to be extracted, and someone did exactly that at the time. The material surfacing today appears to originate from that incident.
We've since fixed the underlying issue by hardening challenges and ensuring they were all properly sandboxed. There's nothing for our community to action, but if you have questions, we're here to answer them.
We thank you all for the responsible reports that brought this to our attention.
The Root-Me Team
@Brain0verride faites le test chez vous et vous verrez que vous avez tort. Lancez un modprobe -r puis relancer la tentative d'exploit et vous verrez que ca ne l'empêche pas
🚨 BREAKING: Wiz Research discovered Remote Code Execution on https://t.co/SvN2lGsnbO with a single git push
The flaw in @github allowed unauthorized access to millions of repositories belonging to other users and organizations 🤯
@un_pedago@dsampaolo 10 ans pour sortir encore des choses comme ça... Il faut peut être commencer a apprendre des choses au lieu de raconter n'importe quoi
@un_pedago Ya plein de soft pour faire de l'édition de fichier qui n'est pas libre office avec de la collaboration intégrée. Donc stop dire des idioties aussi grosses que ça
@FabriceSimonet@dsampaolo Wine et proton existent depuis des années et fonctionnent très bien. De nombreux jeux (compilés pour windows) tournent même avec des meilleures performances sur linux que sur windows.
Like I said in a previous post on the topic of ID/Age Verification - I started digging into the topic quite a bit, especially after that Meta lobbying exposed news dropped.
What I have (and more of others) found is something that is so stupid, but also makes a whole lot of sense...in fact imo its the perfect piece of the puzzle.
I will lay out my digging through a series of events:
1. Advertisers (ie Corporations with products or services to sell), contract with big Social media platforms, paying boatloads of money for adspace. The logic is that even if 10% of the tens of millions of users buy into their ads, its worth the investment.
2. The onset of botting, has led to ads being viewers by more bots than they do humans. No matter how many bots watch your ads, they never need your products or services. So they will never give advertisers' money and business.
3. This essentially means that, Advertisers are proverbially throwing money into the drain. Paying the price with practically no ROI. Many reports indicate that this botting problem resulted in multi-billion dollar wastage on ad spending.
4. Advertisers have started grilling social media companies, especially Meta which was one of the biggest sources of the issue. This resulted in many advertisers basically threatening to pull ad money until the botting situation is controlled.
5. The botting situation became even WORSE around 2023-2025 with the Ai-Bros and Ai Companies hard pushing Ai development. The past anti-bot systems and measures lose effectiveness as Ai makes bots more sophisticated.
6. Then late 2025/2026, you can see the SNAP. The nuclear solution - Age/ID verification being pushed or implemented across multiple countries at around the same timing (within months).
7. Then now all the news about Socmed and big tech corps lobbying politicians and governments for mass ID/Age Verification on an OS/Appstore level.
8. Why? Since you pick your poison to "age verify"...a selfie, submit your ID, or Ping your credit card. Sure your age will be "verified", but it also comes with the useful byproduct of confirming you are HUMAN.
So as a takeaway, what does this mean?
Well to me at least, this quite neatly explains why BOTH Governments and large Corporations have collaborated and colluded to push for ID Verification at an alarming pace Globally. In the end, it really was about money.
It also means quite simply in my opinion - these Corporations and Governments, NEVER really cared about "the children". "Think of the Children" imo, has always been, and will continue to be the convenient excuse for these corporations and politicians to implement this privacy-invasive system.
Because if only PROVEN humans can use social media, or other similar sites/services - Advertisers will be mollified and continue to throw money at these Big Tech corporations for continued ad space.
This ALSO means - that the so-called parents and people like the Riceman who run defence of ID Verification, are either very stupid, or complicit in this.
Either way, the only winners are the Advertisers, the Big Tech Corpos, and the Politicians. We all however, lose.
SystemD has added birth date storage in order to comply with Brazil and California Age Verification laws.
Let that sink in.
A Linux init system now handles Age Verification.
https://t.co/HfwRhjp8be
@davidnburgess Critical is a bit overkill for this vulnerability. Even the maintainer says it is a moderate vulnerability. The vulnerability doesn't give any code execution so it is definitely not critical
@KuptoKosmos@lsr874 de rentrer un autre code différents du login/mot de passe. Le seul moyen d'avoir accès aux discussions est donc d'avoir accès à la machine même de la personne. Donc stop le bullshit au soi-disant hack en tout genre et apprenez à lire les docs techniques des protocoles utilisées.
@KuptoKosmos@lsr874 Lol, dit que tu ne connais pas l'informatique sans dire que tu bite rien a l'info. On est juste sur une personne qui s'est fait péter son compte et donc accès aux discussions. Et encore l'accès aux discussions est a prendre avec des pincettes car chaque nouvelle session nécessite
The Linux community of 20 years ago would've taken one look at AB 1043 and pushed an update that limited the network speed of every machine in California to 1 kbps until it was repealed.
Today my entire feed is about the C compiler built by claude. Different opinions. Endless threads. So many takes. But I doubt you will find anything better than comments in https://t.co/RaTnVE8qig