cypherpunks

joined 2 years ago
MODERATOR OF
[–] [email protected] 7 points 2 weeks ago

headline was more exciting before i read the last four words of it

[–] [email protected] 37 points 2 weeks ago* (last edited 2 weeks ago) (2 children)
[–] [email protected] 20 points 2 weeks ago* (last edited 2 weeks ago) (6 children)

i can't help but wonder if there isn't some more useful science that these scientists could be doing (i write, while reading garbage on the internet)

[–] [email protected] 10 points 2 weeks ago (1 children)
[–] [email protected] 2 points 3 weeks ago

I don’t think any of his stuff would seem shocking by today’s standards.

See this example earlier in the thread.

[–] [email protected] 2 points 3 weeks ago (3 children)

Or you could just… learn to use the modern internet that 60% of internet traffic uses? Not everyone has a dedicated IPv4 anymore, we are in the days of mobile networks and CGNAT. IPv4 exhaustion is here today.

Where are you getting 60%? Google's IPv6 Adoption page has it under 50% still:

Screenshot of Google saying "IPv6 Adoption / We are continuously measuring the availability of IPv6 connectivity among Google users. The graph shows the percentage of users that access Google over IPv6." with a graph climbing from near 0% in 2008 to 45% in September 2024

(while other stats pages from big CDNs show even less)

[–] [email protected] 1 points 3 weeks ago

If you have ::/0 in your AllowedIPs and v6 connections are bypassing your VPN, that is strange.

What does ip route get 2a00:1450:400f:801::200e (an IPv6 address for google) say?

I haven't used wireguard with NetworkManager, but using wg-quick it certainly adds a default v6 route when you have ::/0 in AllowedIPs.

[–] [email protected] 2 points 3 weeks ago* (last edited 3 weeks ago) (2 children)

You could edit your configuration to change the wireguard connection's AllowedIPs from 0.0.0.0/0 to 0.0.0.0/0,::/0 so that IPv6 traffic is routed over it. Regardless of if your wireguard endpoint actually supports it, this will at least stop IPv6 traffic from leaking.

[–] [email protected] 5 points 3 weeks ago

The article text doesn't support the headline ("Biden helped end the dockers strike by saying reopening the ports to help Hurricane Helene victims would be patriotic"):

“ With the grace of God, and the goodwill of neighbors, it’s gonna hold,” President Joe Biden told reporters Thursday night after the agreement.

In a statement later, Biden applauded both sides “for acting patriotically to reopen our ports and ensure the availability of critical supplies for Hurricane Helene recovery and rebuilding.”

[...]

Thursday’s deal came after Biden administration officials met with foreign-owned shipping companies before dawn on Zoom, according to a person briefed on the day’s events who asked not to be identified because the talks were private. The White House wanted to increase pressure to settle, emphasizing the responsibility to reopen the ports to help with recovery from Hurricane Helene, the person said.

Acting Labor Secretary Julie Su told them she could get the union to the bargaining table to extend the contract if the carriers made a higher wage offer. Chief of Staff Jeff Zients told the carriers they had to make an offer by the end of the day so a manmade strike wouldn’t worsen a natural disaster, the person said.

By midday the Maritime Alliance members agreed to a large increase, bringing about the agreement, according to the person.

[–] [email protected] 3 points 3 weeks ago

In some places it is:

photograph of a packet of Heinz brand "Salat Mayonnaise"

[–] [email protected] 15 points 3 weeks ago

would this text land differently if "public school" were replaced with "school"? 🤔

 

edit: after 20 comments, i'm adding a post description here, since most of the commenters so far appear not to be reading the article:

This is about how surprisingly cheap it is (eg $15,000) to buy a complete production line to be able to manufacture batteries with a layer of nearly-undetectable explosives inside of them, which can be triggered by off-the-shelf devices with only their firmware modified.

screenshot of paragraph from the article saying "The process to build such batteries is well understood and documented. Here is an excerpt from one vendor’s site promising to sell the equipment to build batteries in limited quantities (tens-to-hundreds per batch) for as little as $15,000:" followed by a screenshot of "Flow-chart of Pouch Cell Lab-scale Fabrication" showing a 20 step process

 

cross-posted from: https://lemmy.ml/post/20502769

here is the talk description, from its page on the schedule for KubeCon + CloudNativeCon + Open Source Summit China 2024 (which Linux Foundation somehow neglected to put in their youtube upload's description):

In Febuary the Linux kernel community took charge of issuing CVEs for any found vulnerability in their codebase. By doing this, they took away the ability for any random company to assign CVEs in order to make their engineering processes run smoother, and instead have set up a structure for everyone to participate equally.

This talk will go into how the Linux CVE team works, how CVEs are assigned, and how you can properly handle the huge number of new CVEs happening in a simple and secure way.

今年二月,Linux内核社区开始负责为其代码库中发现的任何漏洞发布CVE编号。通过这样做,他们剥夺了任何随机公司分配 CVE 的能力,以便使他们的工程流程更顺畅,取而代之的是建立了一个人人平等参与的结构。

本次演讲将介绍 Linux CVE 团队的工作方式,CVE 的分配过程,以及如何以简单且安全的方式妥善处理大量新出现的 CVE。

Here is a PDF of the slides from Greg's git repo for this talk.

 

here is the talk description, from its page on the schedule for KubeCon + CloudNativeCon + Open Source Summit China 2024 (which Linux Foundation somehow neglected to put in their youtube upload's description):

In Febuary the Linux kernel community took charge of issuing CVEs for any found vulnerability in their codebase. By doing this, they took away the ability for any random company to assign CVEs in order to make their engineering processes run smoother, and instead have set up a structure for everyone to participate equally.

This talk will go into how the Linux CVE team works, how CVEs are assigned, and how you can properly handle the huge number of new CVEs happening in a simple and secure way.

今年二月,Linux内核社区开始负责为其代码库中发现的任何漏洞发布CVE编号。通过这样做,他们剥夺了任何随机公司分配 CVE 的能力,以便使他们的工程流程更顺畅,取而代之的是建立了一个人人平等参与的结构。

本次演讲将介绍 Linux CVE 团队的工作方式,CVE 的分配过程,以及如何以简单且安全的方式妥善处理大量新出现的 CVE。

Here is a PDF of the slides from Greg's git repo for this talk.

view more: ‹ prev next ›