Show newer

software security, vaguely ranty (3) 

(Referring to this part of Midori specifically: joeduffyblog.com/2015/11/03/bl)

Show thread

software security, vaguely ranty (2) 

Bonus frustration: Microsoft almost, *almost* resolved this problem, most likely, with Midori (being one of the very few organizations that could put their foot down and *make* people care about this) - and then axed the project and only took parts of it.

Show thread

software security, vaguely ranty 

I find "supply chain security" discussions so exhausting, even in their genuine form of "how do we contain malware on the average person's system"... because they are all identical carbon copies of each other in the end, and no new conclusions are ever reached.

It goes something like this:
- All these plugins and packages are a security disaster! Anyone can publish them! We should limit publishing to a curated set that's been reviewed.
- Oh, turns out nobody has the review capacity to do so, and/or it would break the world by creating a centralized gatekeeper for everything, so I guess we need to make it possible to run untrusted code safely instead. Sandboxing!
- Oh, turns out sandboxing is imperfect, so we actually need to fix the problem at the root, and adopt secure programming practices and tools like capability security and explicit authorization grants.
- Oh, turns out it's impossible to convince the majority of developers to collectively work on that (which is needed to make it succeed) because most of them don't recognize the problem and keep waffling on about curation and sandboxing. Guess we're just fucked then and it will be broken forever!

Rinse repeat for three decades.

(The more general life hack: think about which specific terms and services agreements you're asking your friends, colleagues, and loved ones to sign.)

Show thread

EXTRY EXTRY READ ALL ABOUT IT: A new allowlist-only instance for Black folks 

Following the repeated harassment waves that white supremacists have been sending our way, we've been hard at work putting together an alternative option/model for Black folks to engage with the fediverse. And I am very happy to now be able to announce publicly that we are open for signups!

This new instance is called NiggasAndFriends (shout-out to Kid Fury for the name inspiration 😊) and will be open to any Black folks on the fediverse. We will have very limited federation, with us predominantly (but not exclusively) being connected to BIPOC-run instances.

When I started BlackQueerLife, I was hoping that with robust moderation, we could have a space that had open federation and was relatively sheltered from white supremacy. I now believe that given the stranglehold whiteness has on this network (particularly on Mastodon), that just isn't possible. It reminds me of what MLK once said about integrating his people into a burning house. That’s a very apt metaphor for this space imo. It's also very clear that the current state of affairs is just how most fedizens want it. I can yell at folks for being antiblack until I'm blue in the face, but as Pharrell once said, “They're gonna do it anyway.”

So, we will continue to do what Black folks have always done: build something for ourselves. If you're interested in making an account with us, DM me and I can send you the signup instructions. Thanks for reading!

#BlackMastodon #BlackFedi #BlackFediverse @blackfedi

Hey fedi, let's play a new(?) game! It's called "Stories That Could Have Happened". :boost_requested:

The game: Someone picks a phenomenon, a saying, an event, or something else, where we don't actually know for sure how it happened or came to exist, and then we collectively write a Story That Could Have Happened about its origins! It doesn't need to be true or based on history!

There are only a few base rules, to keep it fun and non-confrontational for everybody:
1. You can either post a top-level reply to start a new story about the topic, or reply to someone else to continue on their story chain so far.
2. If you reply to someone else, you must either add to it or refine it with more nuance - you cannot outright contradict their post!
3. Posting with public visibility is encouraged, but make sure to add the hashtag, so that people can mute it if they want.
4. Keep your post short, and leave enough room for the next person to build on it.

So, anyone up for playing? 🙂 Let's start with this topic:

"Turning lead into gold"

Where did the idea come from?

(If your local waste collection program has different instructions for "when in doubt", then follow those; but almost no collection agency seems to specify this, for whatever reason)

Show thread

Just realized that probably not everybody knows this: when sorting plastic waste, and you're not sure whether something can go in the plastic waste... if in doubt, put it in mixed waste!

The potential consequences of mixed waste in plastic collection are much worse (can make an entire truckload of plastic useless, depending on local collection process) than the potential consequences of plastic in mixed waste (one piece of plastic wasted).

any of you using "write.as" for blogging? is it good? i'm gathering that wordpress is uncool right now lol

My phone is dying and I need a replacement fast. Does anyone here have a fairphone discount code for their official shop?
:reply_request: :boost_request:

the internet archive being down is really annoying when I'm trying to read old as fuck papers that it probably has archived

NMBS has these paid bike parking spaces. Who would design a system for bike parkings? Apparently nobody as the system asks for a car license plate 🤣

Love how Thunderbird just randomly freezes for seconds at a time while I'm trying to write an e-mail.

(Do not love it)

You can tell my Linux laptop did not shut down correctly because my laptop bag is warm to the touch more than an hour and a half after I asked it to shut down

💊 Denk mee over drugsregulering in de pop-up XTC-winkel. De XTC-winkel is open van 16 oktober tot en met 24 november.
➡️ amsterdam.nl/nieuws/nieuwsover

So people are saying I should introduce myself:

My name is Imani aka AngryBlackLady.

Abortion rights are pretty much my entire personality.

I'm a lawyer, SCOTUS nerd, a journalist, and an expert in repro rights and justice and related law.

I am Editor-at-Large at Rewire News Group—the only nonprofit publication dedicated to repro rights health and justice.

I co-host a podcast called Boom! Lawyered with Jess Mason Pieklo.

I have three rescue dogs and I live outside Boulder, Colorado.

Show older
Pixietown

Small server part of the pixie.town infrastructure. Registration is closed.