IHawkMike

@IHawkMike@lemmy.world
0 Post – 149 Comments
Joined 1 years ago

You're not missing much. A few modern file types are zips with expected folder structures, especially MSOffice files. But this is nowhere near universally true.

You can open a file in your text editor of choice and if you see it start with PK (for Phil Katz the creator of the format and the original PKZIP/PKUNZIP programs) then it's probably a zip.

Also, by the logic of the OP, all DLLs are EXEs.

The FTC actions at least are because of Lina Khan and we better protect her. The billionaires are actively trying to get Kamala to drop her.

I found it amusing that these posts were adjacent.

The CNN article seems to be cherry-picking his statements. This is his op-ed on the topic which is much more in-depth:

https://www.theguardian.com/commentisfree/2023/nov/01/gaza-humanitarian-pause-bernie-sanders

If you owe the bank $100 that's your problem. If you owe the bank $100 million, that's the bank's problem.

-- J. Paul Getty

And if a significant enough portion of the people are getting their information from those sources, we're all in for a bad time.

Their country, their rules. One bullet can still kill someone. Play stupid games, win stupid prizes.

1 more...

Yeah, but that security patch level.

3 more...

Most likely it was a password stuffing attack. If they used the same password on multiple sites, there is a good chance one of those other sites was compromised and the attackers took the compromised credentials and tried them on other sites like Instagram. It could have been something more advanced like a stolen cookie, but usually the simplest explanation is most likely.

Always use a different password for each service, enable MFA where possible, and use a password vault like Bitwarden.

1 more...

The problem, and the reason we've stopped using Doordash completely, is that your big tip means your order will get stacked with the low/no tippers to incentive the driver to pick them all up. And your food will sit there getting cold while the driver waits to pick up the others.

This has become universally true over the last year or two in Chicago at least. We are good tippers and every single time we'd see our food get picked up then watch the driver wait to pick up some other order -- sometime waiting 30 minutes or more with our food in their car less than a block from our home.

3 more...

I don't disagree with the message and hope he gets what's coming to him, but what is this source? To quote:

Trump’s Lawyers Ask Him to Cancel Press Conference on Georgia Election Before He Makes Matters Worse, Jon Karl ReportsKarl noted that between Trump’s enraged reactions to his fourth indictment, Trump announced on Truth Social that he would hold a press conference on Monday where he would produce a “Large, Complex, Detailed but Irrefutable Report” that will supposedly prove he was right that Georgia’s 2020 election results were “rigged” by mass voter fraud.

That's a one sentence paragraph with the nineteen-word title (from another source perhaps?) injected as the subject.

Is this what AI-driven journalism looks like?

Putting anything onto or any effort into a .zip domain seems futile and short-sighted.

7 more...

Except it's not "them" that gets to decide, it's the courts. And from what I've seen, TST is actually winning. So I wouldn't call it a fallacy.

Are you getting redirected to their captive portal?

Try this:

http://neverssl.com

7 more...

5 more...

My concern is that the people that already own everything today will capture all of the new value created by AI + automation and the rift of inequality will only deepen.

Guillotines aren't as effective when they have AI-controlled assault drones.

6 more...

That stance only works if the foundations of the government are strong enough to ensure an eventual return to the status quo. We used to be able to safely assume that the pendulum would always swing back.

However we have learned that our foundations are not quite as stable as we all thought. We have learned that it's based on a series of "gentleman agreements" that can just be ignored with no repurcussion.

And the next time the conservatives get to the white house -- at least under the current political climate -- it just might be the spark that launches the US into full-blown fascism. And we're not coming back from that.

1 more...

You need to demand a raise. And keep working from home.

2 more...

This is incredibly well said and I agree 100%. I'll just add that software TOTP is weaker than the MS Authenticator with number matching because the TOTP seed can still be intercepted and/or stolen by an attacker.

Ever notice that TOTP can be backed up and restored to a new device? If it can be transferred, then the device no longer counts for the "something you have" second factor in my threat model.

While I prefer pure phishing-resistant MFA methods (FIDO2, WHFB, or CBA), the support isn't quite there yet for mobile devices (especially mobile browsers) so the MS Authenticator is the best alternative we have.

3 more...

Exactly. Everybody on Lemmy a couple days ago was acting like the sky was falling when all we had were these one-paragraph FUD articles quoting Microsoft's own KB article. Most people commenting have no clue that "VPN" is a broad term covering at least a dozen different possible protocols and acted like Microsoft was intentionally breaking all VPNs.

The only thing I found was a reddit thread talking about how some VPNs using TPM-backed certs were broken. I, for one, am using an IPsec VPN with certs stored in TPM on one of the affected versions of Windows 11 and have had no problems. Nor have I had any issues with SSL or Wireguard-based VPNs, so it does just seem to be a fringe case they're warning about.

So Microsoft is just giving a heads-up that IT should probably include VPN testing in their patch cycle test rings and all the anti-MS people are losing their shit.

3 more...

We’re not as stupid as they think we are.

Aren't we though?

That's good advice, especially when traveling internationally.

Also when traveling to another country, always check the state department's travel advisory for your destination(s).

https://travel.state.gov/content/travel/en/international-travel/International-Travel-Country-Information-Pages/TurksandCaicosIslands.html

Obviously this is the US state department, but it is still good info and I'd assume other countries have something similar.

That's why you should get two.

And if you only need FIDO2/passkeys, the Security Key series is half the cost ($25) of the Yubikey 5 ($50) and all you really lose is OpenPGP and PIV (smart card) functionality.

Now I like playing with all the features of the 5, but most people should just need FIDO2.

1 more...

Right, because international hackers are going to mobilize boots on the ground across the world to steal your fucking Optiplex.

2 more...

The title is a bit misleading but it doesn't sound like karma can actually be converted to real money.

Reddit gold is going to cost $2 to buy and awarding a user can give them $1 of that if they have over 5,000 karma. Between 100 and 4,999 it's $0.90 per gold.

And you have to receive at least 10 gold in a month to be eligible. Edit: it apparently rolls over.

Fuck /u/spez

Of course not, silly. They'll just promote the 8 hour person to something they're more suited for.

You're not wrong. But as we get older we also tend to lose the passion and fervor we used to have to fight for what we believe in. Instead, we try to convince the younger generations that they'd be better off falling in line, when in reality we've just been beaten down and are tired.

The reality is somewhere in between. As you say, it's nuanced.

But (and this is probably my beaten-down cynicism) the youth vote will never matter to the degree which it should. They will never actually turn up at the polls. I've been hopeful and let down too many times.

I'm not sure about color support without HTML or add-ons, but Obsidian is a good markdown editor with a lot of functionality and extensibility.

It's not open source but it runs on everything.

2 more...

As someone familiar with the OSI model, this thread is a bit confusing since the Internet to me is really the infrastructure on top of which all of your fancy sites and apps are built. When you say "the Internet", I'm thinking about TCP/IP, BGP, DNS, etc.

That said, I'm pretty sure most people here are just taking about websites at L7, although there are arguments for change at the other layers.

My brothers and I would ask our parents in the other room who thought we were playing a trivia game. Eventually we memorized most/all of the answers.

And conversely, when we lose weight the vast majority is exhaled as CO2, not excreted as liquid or solid waste.

The rootkit is easy enough to turn off in the BIOS but I highly, highly recommend G-Helper instead of Armoury Crate.

Moving to it from AC is like leaving a prison cell full of screaming children and entering a calm beach.

It's a shit company for pulling this, for sure. But I kinda like the building.

1 more...

Kagi has been amazing for me so far. I signed up as soon as they changed the pricing to allow unlimited searches at $10/mo.

I'm still working on my filters and promoting/demoting/pinning sites in my results, but it's already night-and-day better than Google and even DuckDuckGo (which still deserves much respect).

Unless you're born into it.

Three digits is not that easy to get by brute force. It'll be locked for fraud pretty quickly.

However the CVV is usually only required for card-not-present purchases. One way around that is to imprint the number onto their own magstripe card and run it as a card-present transaction.

Well they're discontinuing the OG Chromecast and Chromecast w/ Google TV for this. So you're probably right.

https://www.theverge.com/2024/8/6/24214471/google-chromecast-line-discontinued

Never invest too heavily in Google anything.

3 more...