thesmokingman

joined 1 year ago
[–] [email protected] 5 points 1 month ago (2 children)

Wait, you want to use a private currency pegged to the value of gold which is pegged to government currency? That kinda sounds like government currency with extra steps.

So instead using something we sort of agree has some value we should instead reject the government while using utilities it controls and regulates to access the internet it controls and regulates to use a currency susceptible to a 51% attack that could easily be executed by not just one but many governments? That’s a really novel idea. Do you have plans to run fiber across the oceans paying for everything with Monero so we can break free of these oppressive regimes?

[–] [email protected] 7 points 1 month ago (2 children)

It is in the recycle bin if you didn’t know. Nothing is lost; just moved. That has scared some folks

[–] [email protected] 7 points 1 month ago

This issue has nothing to do with SaaS and everything to do with regular software updates (which are not limited to SaaS). Change the package to “LibreOffice Writer” and the delivery to “pacman -Syu” and suddenly the same bug has the potential to hit me. Hell, I have (well, had) floppies fresh from the store that introduced bugs into existing software back when I was a kid. Bugs will always exist and there isn’t enough regression testing in the world to ensure they don’t happen in the future.

All of your SaaS points are correct they just don’t apply here. We should be mad about the lack of testing in this instance.

[–] [email protected] 8 points 1 month ago (2 children)

Anyone in tech who knowingly works for Google supports these things in the same way that anyone that works in tech who knowingly works for Meta support genocide and the erosion of the democratic process. I give the caveat “in tech” because there are some roles like content moderation or executive assistant where you really don’t have the luxury of a huge market working almost anywhere else that doesn’t support genocide and I don’t fault those faults for taking a job that has better benefits. My engineering peers? I judge them for it.

[–] [email protected] 2 points 1 month ago

There’s really nothing preventing that now. Used to be you just forwarded X (mobaXterm is great); looks like there’s an MS offering now.

As for Linux-exclusive games, there are some (eg this publisher) but really only because no one has bothered to make a Windows port. tbh you could probably get them running on macOS without much trouble because the toolchain’s all the same.

[–] [email protected] 2 points 1 month ago

This is actually true. Essentially a big drug manufacturer took down a scientist through a serious harassment campaign and blew him the fuck up when he finally snapped. In no large part to this coordinated glowup, published literature in the US agrees with the chemical manufacturer while it’s been banned in the EU for 20 years. The EPA might disagree with me that it’s true; the EPA and others funded in no small part by Syngenta refuse to look at things by Dr Hayes because he lost his cool a few times. Unfortunately Alex Jones further eroded the credibility of Dr Hayes but, imo, only because Syngenta actively deplatformed his research. Also Jones said some crazy shit about it.

[–] [email protected] 1 points 1 month ago

You have answered nothing and read way more into the word “so” than was actually there. It’s pretty clear you’re just here to be mad so have fun with that!

[–] [email protected] 5 points 1 month ago (4 children)

So only art in museums is culturally significant? Made by artists who are dead? What about buildings? Religious places? Graveyards? Note that these are things I called out in my first comment so I’m not trying to move the goalposts here. You highlighted the Taliban destroying cultural places so, by your definition, we must include those and since we can’t displace any new ones must be added.

I completely disagree that the footprint of the world’s art museums is minuscule. Museums today already have problems with storage. In order to meet your definition for art, museums must continue to expand their collections. As the number of people grows, the number of artists grows, increasing the supply of art. How do you define “great artist” without proportionally increasing the number? As fields specialize, so too do the “great artists” that define mediums.

What about books? Records? Movies? How do we decide what to keep here?

[–] [email protected] 14 points 1 month ago (6 children)
  • What defines “irreplaceable art” and why do we have a legal or moral obligation to protect it? Why does this allow for the private ownership of art?
  • How much of the earth’s resources are we willing to dedicate to “culturally significant, irreplaceable things” such as buildings, artwork, graveyards, and civilizations? Who gets to decide what from modern times needs to be available in ten thousand years?

I come from a hoarding home where everything was important. My approach to preservation is colored through this lens. At some point we either exist solely to preserve artifacts created before us or we learn to let go. Not every Van Gogh or Picasso in a museum’s collection will be put on display and many museums struggle to maintain their hidden collections full of what curators would honestly call junk art of interest to only the most specialized of scholar. Assuming we only keep the “best” samples (that’s another debatable topic) there will be a point when we simply cannot collect any more art or culturally relevant things any more, similar to the eventual trade off between graves and arable land.

Hoarding aside, why are you not arguing to prosecute oil as hard as these folks? The number of indigenous cultural sites across the world destroyed by drilling astronomically outweighs the number of paintings with soup on them. Sure, we can prosecute both, but I don’t see you saying that either.

[–] [email protected] 4 points 1 month ago

That’s fair! You can create an issue now with a branch in your repo as a proof of concept. Don’t wait to figure it out!

I am really curious tho and poking around myself.

[–] [email protected] 6 points 1 month ago (2 children)

I agree with comment OP; you haven’t solved the problem. The number of empty lines in a file that shouldn’t be parsed shouldn’t affect your code. If it is, then you need to stop parsing files that shouldn’t be parsed. For example, if this arbitrary file is being included (totally valid assumption given your debugging), what’s to prevent a malicious payload from being included or executed?

I genuinely have no idea how a random text file, much less a dot file, gets parsed in a PHP project. It feels like there’s no attempt at file validation which is really fucking important for server-side code.

[–] [email protected] 23 points 1 month ago (2 children)

The Security Online article only cites Margitelli’s post on the matter. My assumption has been the article used the post as its single source. On one hand, watching MS fuck shit up for years, I want to believe Margitelli. On the other hand, researchers using weird tools and uninterested in reality are why curl is now a CNA.

I’m personally frustrated with Margitelli’s post because it’s all about abandoning responsible disclosure globally rather than naming and shaming (Canonical? Red Hat? Both? Others? If it affects all GNU/Linux I’d expect every single distro maintainer to be named and shamed). Responsible disclosure is our best solution to make sure innocent bystanders don’t get caught in the crossfire. When specific entities don’t abide by responsible disclosure we lambast those specific entities not the entire process built to keep users safe.

view more: ‹ prev next ›