Show newer

the yubikey thing 

@astraluma What are you even arguing about? I already explicitly acknowledged this in the very first post, and none of my post is about this

Despite my issues with the Matrix Foundation as an organization, their on-site COVID/health guidelines for the conference are looking excellent: 2024.matrix.org/attend/#health

the yubikey thing 

@astraluma But... it didn't? The whole point here is that those Yubikeys were successfully exploited, and did not resist that attack

Can you boost this please? I'm sort of load-testing / trying to reproduce a bug, and I think I need a bit more traffic to do so. Thank you!

Show thread

the yubikey thing 

Sure, sure, most people are unlikely to be affected by the Yubikey vulnerability in practice. But this attack raises two serious questions:

1. How, exactly, was a failure to implement constant time overlooked for 14 years despite many rounds of certification? This should have been caught.

2. I've frequently hear people claim that Yubikeys are safer than FOSS security keys, because the FOSS keys are not resistant against physical tampering. And sure, to some degree they're not, that's the point - but *is* a Yubikey actually any better, if we're treating this vulnerability as "not a big deal" anyway?

Remember when we thought browser toolbars were the worst problem to deal with?

Remember when we thought browser toolbars were the worst problem to deal with?

is there any way to begin to comprehend the widespread damage tech companies have done to the art community, or the psychological damage tech companies have done to writers and artists over the past several years; or are we exclusively going to try to reason around with the tedious, shuffling logics of copyrights and intellectual property?

Does anybody need a terabyte of historical ship movement data that I'm about to delete? It's from aishub.net, circa 2016-2023. I'm done with the project I was collecting it for, but thought I'd check in case anybody else wants it. Yours for the cost of getting it out of AWS.

Update: Looks like we've found a couple of possible takers, so my fellow data hoarders can relax.

Flipped through a book of historical photos and stories from the town I live, Rosmalen, and was pleasantly surprised to find some (now-removed) graffiti street art among the pictures in the "Culture" section, as a piece of historical local art 🙂

hi i'm intellectually disabled and so-called "AI" is making the world worse for me and people like me

the claim that being against using LLMs to do an art challenge for you is somehow ableist or shares a scope with ableism is, itself, an ableist claim

hiring a ghostwriter to do NaNoWriMo for me wouldn't mean i did NaNoWriMo either. this is not ableist to say.

it is not ableist for a challenge i cannot complete to generally exist within the world. that's not what ableism is about.

Like, that whole thing about how most of the infosec industry is just defense contractors with extra steps, under the guise of 'security' but actually prioritizing state interests?

Brian Krebs is practically the personification of that sort of thing

Show thread

Reminder (to nobody in particular) that Brian Krebs is a self-serving "law and order" windbag, and not a particularly credible source

I found out a feature on android called "Dynamic System Updates" that lets me load Generic System Images (GSI) Android Open Source Project ROMs temporary with no data loss. So I loaded the latest android 15 ROM and its so cursed.

on the homepage, there's an old google search widget with their old google logo that looks like its from 2011. most of the material design apps look like they haven't been updated since 2017. the calendar app looks like it hasn't been updated since android 4.

@elilla I feel like we (as in, anti-fascists in general) should have something of a rotating schedule of who keeps an eye on the fascists, to be honest, as it doesn't really feel sustainable to be 'tuned in' 24/7. Formal schedule or otherwise.

(Having experienced much the same problem of "watching trouble" grating on my mental health)

NaNoWriMo, "AI" 

@Rhube@wandering.shop Aha. A Generative AI sponsor. Guess that explains why they're suddenly so pro-generative-AI... I'd been wondering why they made that statement.

(Not that they apparently didn't already have a sketchy reputation, but this sure is an obvious connection to make)

Linktree is maybe the saddest modern platform to me. Linking-as-a-service as a workaround to instagram's link-hostile dark design to discourage using the rest of the internet. Productivizing the failure.

I like when the element app gets two progress spinners when you press "jump to unread", it's like "wow so much progress is being made right now"

REALLY tired of people saying, "Why are you still worried about covid? It's endemic."

"Endemic" does NOT mean "harmless & without risk".

It DOES mean "here to stay" which means the RISKS of covid are here to stay, which means we're all living with a HIGHER baseline of risk which means governments & institutions & people should be making PERMANENT changes that address that risk.

I curse the journalists & "let it rip" "experts" that made people think "endemic" = "harmless".

#CovidIsNotOver

Show older
Pixietown

Small server part of the pixie.town infrastructure. Registration is closed.