Readit News logoReadit News
vurpo commented on Kevin Mitnick Hacked California Law in 1983   schneier.com/blog/archive... · Posted by u/barathr
fallowkevin · 3 years ago
>Defcon is basically run by a gang

No, Derby was run by a gang. (The 303 could probably be RICO'd)

I cannot confirm or deny that Defcon is where the event occured, especially since it was technically just an event at a casino, as many things occuring on the same days as Defcon occur.

>a gang that values loyalty and dedication above most things.. which has historically low standards of ethics for their goons and attendees

I actually was told by someone at my last Defcon they were boycotting CCC because they allowed Nazi imagery or something to that effect, which surprisede me given... you know... Germany.

I've never been to CCC.

I can tell you that Defcon is changing though. I volunteered with a village rather than as a goon since I don't want to kiss ass to war criminals.

(A lot of their security is ex Navy Seals. I will hold the goddamn door open when it comes time to batman people to the Hague, I don't like people who volunteered to do war crimes then walk around Las Vegas with a gun on their hip whining about weed.)

Anyways... I never felt welcome at Defcon, it was like being in high school at the pool table -- you can pay like anyone else to play, but... there's a line... for lack of a better analogy.

Maybe I should check out CCC but part of the appeal of Defcon was cost... for an American, it's pretty cheap for a hotel and airfare compared to going to Europe, a place I may never return to since standing up for folks in the Me Too era + standing against white nationalism has resulted in me being blacklisted from infosec.

vurpo · 3 years ago
Last time I went to CCC I was greeted with a giant Antifaschistische Aktion banner at the entrance. That made me feel pretty safe about the event (unironically).
vurpo commented on EU Joins Mastodon Social Network, Sets Up Its Own Server   pcmag.com/news/eu-joins-m... · Posted by u/geox
yucky · 4 years ago
>I can't wait for it to be supplanted.

You could have saved a lot of typing by leaving it at this and saying what you meant. No reason to be coy any more. The quiet part is being said out loud now.

vurpo · 4 years ago
Please read the beginning halves of sentences, not just the latter halves. As a European, this whole thread reeks _painfully_ American.

I honestly had no idea what the original commenter was even talking about before I started reading replies, which in hindsight was a mistake.

vurpo commented on Noto emoji, a new black and white emoji font with less color   developers.googleblog.com... · Posted by u/Vinnl
xiphias2 · 4 years ago
I just checked for status bar icon packs, and while I can change the icons themselves (and probably the foreground/background color), there's no way to get rid of mono color....the color feature has gone forever.
vurpo · 4 years ago
Noto Emoji and Noto Color Emoji are two different fonts. Do you somehow already have Noto Emoji (the new one) installed on your system?
vurpo commented on Let’s Encrypt Receives the Levchin Prize for Real-World Cryptography   letsencrypt.org/2022/04/1... · Posted by u/deaddabe
justhere4beer · 4 years ago
I applaud the Let's Encrypt founders, past and current team for solving the automation problem that's plagued the SSL/TLS industry.

The yang to that ying is a lack trust. I have zero trust in a site owner using LE certs. Domain vetting only means control of the domain ... everything inside that beautifully encrypted traffic can be insightful, helpful or script kiddies scamming the vulnerable. If one finds the scam, LE shrugs, "not our problem bruh. We just issue certs to those who control the domain."

They single handedly reduced the price of entry for douchebag asshats ability to pretend someone they are not and harm a non-technical populace.

Two steps forward, one step backward.

vurpo · 4 years ago
TLS or SSL never meant that kind of safety in the first place. Even before LE, there was no guarantee that HTTPS means it's not a scam, and the PKI system has never been meant to guarantee that anyway! Let's Encrypt didn't change anything here, and they're doing exactly what they or any other CA is supposed to do.
vurpo commented on Let’s Encrypt Receives the Levchin Prize for Real-World Cryptography   letsencrypt.org/2022/04/1... · Posted by u/deaddabe
tomc1985 · 4 years ago
So how the hell did Let's Encrypt convince the certificate cartel to let them in and undercut their products?
vurpo · 4 years ago
They didn't need to do that. They simply got their cert into browsers and OSes, and there you go.
vurpo commented on Firefox now only available via snap on Ubuntu   old.reddit.com/r/Ubuntu/c... · Posted by u/sm4rk0
kkfx · 4 years ago
Another good reason to ditch a distro once honest, well done, but things change, now just a distro that push commercial crap. It's not a bold statement, snap, flatpack, appimage exists ONLY for commercial purposes.

The FLOSS world works with

- devs :: who write and publish code without the need to support any specific distro, packaging etc, many also package for their own favorite distro but that's a mere choice, many others just manually build their own code to have is hyper-fresh;

- packagers :: who package "upstream" code, some are distro core developers who package system things, others more or less casual packagers who package various software they use/need/like. They all provide patches as needed, ideas, well done bugreports to devs, they are not "a burden" but the core of the model, the ones who provide quality testing and reporting to devs, something no end-users do without a tremendous background noise, something no commercial software devs can get, the key to hi quality of FLOSS;

- generic users :: who profit from a complete distro, the one that fist their need most, offering casual bugreports, ideas, background noise as any casual user do, but filtered by distro community itself and distro packager the best kind of "data lake" that matched to packages form the best kind of automated expert system;

"modern" app-only packages serve a sole purpose: cut the packagers, cut off the distro variety pushing distros to mere cargo ship of apps, well separating "code producer" to "customers", something harmful for FLOSS but vital for commerce, the sole way a proprietary software house to stay afloat without the need to give code to a community, without the need of a community that help, of course, but also demand and pretend useful features and not anti-users lock-in.

IMVHO FSF should write a formal statements: supporting those limited and limiting (they can't work at system level) package systems means supporting commercial crap against FLOSS so distro who choose them must be considered Troy Horses in the FLOSS land. Unfortunately FSF receive too many funds by some interested party so I doubt that happen and that's another good reason to discuss the actual FLOSS sorry state reviving classic models from usenet to email-based development, modernized in UI/frontends terms for young devs, with modern video-tutorials etc, but pushed as much as possible to teach people the FLOSS model not the commercial model in disguise.

vurpo · 4 years ago
That's a lot of text without giving any motivation for your main point. What makes an app package created by the app developer more "commercial" and anti-FOSS than an app package created by a distro-specific packager? What's the difference between an RPM package and a Flatpak package? Proprietary software and FOSS software both get distributed in both kinds of packages.

In short: what are you talking about?

vurpo commented on Firefox now only available via snap on Ubuntu   old.reddit.com/r/Ubuntu/c... · Posted by u/sm4rk0
spaniard89277 · 4 years ago
Snap gives all kind of headaches. I remember trying VSCode and I had problems working with files normally. I asked for help and I got quite a bit of backlash because I didn't wan't to deal with another layer of configuring a system just to access to my local files, and even after that you won't get the same experience.

But apparently I'm some bastard n00b that does not care about security enough! Can you imagine trying to access your files from your editor like you've been doing for decades? This guy doesn't get it!

Apparently flatpak et al have the same problems.

In my case, I'm not sure where to switch. I want easy of use, I don't really enjoy meddling with the OS. I use Xubuntu because it works better out of the box for me, but if I have to deal with this, I'm not interested.

vurpo · 4 years ago
I don't know what kind of hoops Snap require to access files. Flatpak, however, has a pretty simple system for a fully sandboxed app to open a file or a directory: it just opens a file or directory picker, you pick a file or directory, and the app gets access to that file or directory without getting access to anything outside what you picked. Behind the scenes this is done via the XDG Portal system, but that's irrelevant to the end user who only sees a normal file open dialog.

Then for apps that have dotfile-type directories where you can put config files and other stuff, those simply exist in app-specific directories under .var in your home directory, so they're not difficult to find either.

vurpo commented on Steve Wozniak: Steve Jobs wasn’t a natural-born leader   cnbc.com/2022/03/07/steve... · Posted by u/ksec
KingOfCoders · 4 years ago
Well I found it perfectly fine and such a relief after using tapes (speed, direct access, delete files,...). And I guess the reason is "Many commercial games had their built-in fast loading routines that often doubled as a copy protection. "
vurpo · 4 years ago
The 1541 was slow because the VIC-20 shipped with faulty hardware that couldn't move data on the serial port at full speed, so they patched their software to get it working at a much slower speed. The C64 didn't come with faulty hardware but still retained the same software routines for backwards-compatibility. Those fast loaders then replaced these slow compatible routines with full speed ones.
vurpo commented on Estonia, allies to trigger NATO Article 4   twitter.com/EstonianGovt/... · Posted by u/throwaway5752
awb · 4 years ago
It was originally part of the USSR. Putin has said many times he thinks breaking up the USSR was a huge mistake and wants to re-acquire those territories.

But yeah why does anyone start a war? Power, control, money, distraction, madness, idealism, etc. Probably a little of everything.

vurpo · 4 years ago
Putin said in his recent speech that he thinks Lenin made a mistake in breaking up the Russian Empire into independent nations (that then joined the USSR). I think Putin is more after restoring the old Russian Empire than restoring the USSR.
vurpo commented on Some neurons are active when adding, others when subtracting   uni-bonn.de/en/news/028-2... · Posted by u/gmays
galaxyLogic · 4 years ago
It's an old saying that: Having opinions is great, because opinions are already half intelligence.

But come to think of it, is there any AI which has "opinions"? Wouldn't that take AI closer to human intelligence?

vurpo · 4 years ago
GPT-3 and these kind of natural language generators in general can already present opinions if prompted to do so. Depending on what you mean by "opinion", you might also require some memory to let it be consistent in what opinions it presents to you. (Not that humans are always consistent either.)

If you dig any further than this into the question, you quickly get back to the age-old question of "when is it 'real' consciousness and not just an automaton that acts and sounds conscious?"

u/vurpo

KarmaCake day212September 30, 2016View Original