TwitchingCheese

@TwitchingCheese@lemmy.world
1 Post – 24 Comments
Joined 1 years ago

Seeing "the source is available here on GitHub", "the project was forked and is now maintained as (other name)", etc. after most of these really helps show the difference with Google. Well that and the length of the article, Google has far more deaths under their belt.

Wow Matt really looking bad on this one. This just reeks of trying to push out a major business competitor to wordpress.com and abusing control over wordpress.org to do it.

2 more...

The bridge is on S Pennsylvania Ave in Lansing, MI, hence "Penny". Construction has routed more people through there than normal lately increasing the bridge's hunger.

If there's one thing people that rent trucks or RVs never learn, it's the height of their vehicle (and that yes the flashing overheight lights are in fact for you).

Source: Used to live near there.

5 more...

How about pass and enforce strong digital privacy protection laws you fucking cowards. When other countries spy on us it's scary and bad, but for US companies? Best we can do is ban porn and demand backdoors to stop E2EE messaging.

5 more...

Wow, come on, who would really think that?

3% is far too low.

1 more...

Not to mention that ads are a prime vector for malware and spyware (well, more spyware on top of the ad vendor itself).

TLD is just another DNS layer, try an SOA or NS lookup for "com." those are obviously hosted somewhere. Hell the "." at the end is even another layer with the root nameservers. You'd probably trip up a bunch of systems that filter on common convention rather than the actual RFC, but you could do it.

1 more...

I get that it's not the point of the article or really an argument being made but this annoys me:

We could blame United or Delta that decided to run EDR software on a machine that was supposed to display flight details at a check-in counter. Sure, it makes sense to run EDR on a mission-critical machine, but on a dumb display of information?

I mean yea that's like running EDR on your HVAC controllers. Oh no, what's a hacker going to do, turn off the AC? Try asking Target about that one.

You've got displays showing live data and I haven't seen an army of staff running USB drives to every TV when a flight gets delayed. Those displays have at least some connection into your network, and an unlocked door doesn't care who it lets in. Sure you can firewall off those machines to only what they need, unless your firewall has a 0-day that lets them bypass it, or the system they pull data from does. Or maybe they just hijack all the displays to show porn for a laugh, or falsified gate and time info to cause chaos for the staff.

Security works in layers because, as clearly shown in this incident, individual systems and people are fallible. "It's not like I need to secure this" is the attitude that leads to things like our joke of an IoT ecosystem. And to why things like CrowdStrike are even made in the first place.

Same thing that happened with the Shannara TV show. MTV wanted a kid friendly fantasy romance competitor to GoT, so they butchered a series that's basically none of those things. They also started with book 2 for whatever reason.

1 more...

For all of Trump's fascism and corruption he was at least so amazingly incompetent at it. His actions brought to light a lot of shortcomings and vulnerabilities in the system we can now more effectively watch for as his slightly smarter cohorts try and exploit them.

Too bad half the time "watch in horror" is about all we end up doing.

1 more...

They were talking about Kennedys so you figure there'd be a few. I was not prepared.

1 more...

I thought NPR left Twitter when Musk had them labeled as "state controlled media"

Based on their other comments I'm pretty sure that was a [citation needed] on there being any examples of the GOP actually helping people.

Probably shouldn't have included Project Plowshare in the training data...

Oh don't worry, they're going to try and kill that too before it hurts them too much, and with the audacity of calling it the "American Privacy Rights Act". https://www.eff.org/deeplinks/2024/06/eff-opposes-american-privacy-rights-act

It's still blinking 12:00 after a power outage and needs reset.

Elon smoke, don't breathe this.

So they're just making "We have God of War at home" now. Everything they've put out about this game has made me more and more apprehensive. Guess I just have to accept that Origins was a one-hit wonder and they have no idea how or desire to recapture that.

What? No it's totally different, our Gandalf is named Allanon and he's a Druid, not a Wizard. Druids get a d8. And the Warlock Lord's Skull Bearers are definitely not Nazgul, they fly with wings not horses.

Along that same line, the Jean-Claude Van Damme / Raul Julia Street Fighter movie. 11% critic rating, but enjoyable.

I hear the mafia is looking for pizza delivery drivers.

Ah, I remember this controversy when the game launched. That person later admitted to modifying the meshes to make them fit better because they hated Palworld for "glorifying animal abuse".

https://www.dsogaming.com/news/modder-who-accussed-palworld-of-using-3d-models-from-pokemon-games-admits-that-he-has-faked-everything/

Yea that's a tough system to design for. Ideally you want sensitive stuff like that, where you don't care what the data is just that something matches it, stored as the results of a one-way hash function.

The problem is that most of the data you're going to want to secure is pathetically tiny. 10 digit SSN? My phone can brute force that in a few minutes if you're doing raw hashes. Gotta salt them. But now you have a tradeoff decision, salting every one uniquely is best but now your comparison needs to do [leaked data] × [customers] checks to find matches. Same salt on all of them and as soon as one is cracked they all are.