I'm thinking a lot these days about how gender isn't just a personal identity, it's a site of interaction and negotiation with various power structures, the gender of white womanhood was constructed to be a supporting beam of white supremacy, voting patterns like these aren't white women voting against their interests, it's actually an act of gender affirmation.
I hate how all AI hype is predicated on "if we can just make this not be broken then it would be an amazing product"
And because AI produced things look kinda close to the real deal people buy it. Cause it feels like it just needs a small improvement, even though its flaws are a fundamental part of the technology
Just don't draw the weird 6th finger. Just don't make up things when you don't have a real answer. Just don't change the environment in an AI generated game entirely if the player turns around 180 degrees
These things *feel* like they're small, solvable problems to people who don't know better. We could easily fix those things if humans were doing the work!
But AI can't. It will never be able to. It can't because not doing those things means it couldn't do anything else either. Like self-driving cars, the solution to these issues will always be 2 years out
CW-boost: description of disease, politics
Rijkswaterstaat houdt vast aan de plannen ondanks eerdere protesten. Daarom bezetten we de boerderij als laatste redmiddel en roepen iedereen op ons te steunen. Morgen hebben we extra hulp nodig in de strijd voor de Limburgse natuur. Meer info: https://stopa2verbreding.nl [4/4]
Does anyone currently living in Germany follow me?
I'm in the UK, and I want to send my friend in Germany some backed goods as a present - what's the cheapest and most hassle free way to do so?
Something like a basket of muffins or a small fruit basket is what I'm after.
Thanks
On one hand I think it's naïve to expect that all medicine and disability care can be as straightforward as diy hrt but also I think there's definitely something to be sought out there with the kind of independence it affords us
uspol and election meta
Serious question: do you *need* to follow the elections in the US?
Don't get me wrong, you should do your part and do what you can to prevent a disastrous outcome. But you also need to recognize where "what you can do" ends, and where the doomscrolling loop begins.
We all know how bad things could end up being after this election, we're all aware. Reading up more on analyses and predictions is unlikely to improve our understanding, and even less likely to result in a concrete action that we can take against it - at least, one we didn't already think of.
Maybe it's better to just... detach from it, if you are not actively working on it already, let the chips fall where they may, and instead put your energy into building a sustainable society going forward, with or without the systems currently in place.
There are a lot more productive things you can do with your time and energy, than worrying more about something you already know is bad. And for a lot of those possibilities, it just doesn't really matter what the outcome of this election is.
✏️ Mark your calendars! In just two weeks, I’ll be offering a free Krita workshop (in French) at Capitole du Libre 2024. This session will be a perfect blend of exploring Krita’s features and sharing valuable drawing tips. I can’t wait to see you there and create together! 🎨
More info: https://cfp.capitoledulibre.org/cdl-2024/talk/KLHKLR/
CW-boost: election manipulation
okta vulnerability, grumbling about security (2)
I will give Okta a tiny bit of credit for having used a cryptographic hash for their cache, which is something that many people get wrong. But that doesn't really help you if you then use the *wrong* cryptographic hash...
okta vulnerability, grumbling about security
Another year, another critical vulnerability in Okta's infrastructure - an authentication bypass for users with long usernames, this time.
They ran up against bcrypt's input limit. You know, exactly the kind of footgun that causes people to recommend "don't try to roll your own authentication, outsource it to experts". Like... Okta. Who used bcrypt. And did it wrong.
I would really like for people to stop recommending external authentication providers. It's not actually *that* hard to implement authentication correctly for the vast majority of cases, if you take some time to read up on how to do it. Outsourcing isn't the answer here.
I find myself wishing on a daily basis that I had built @bitfolk database as postgres from the start instead of MySQL (now MariaDB).
Don't be like me. If your new thing needs a relational DB, Just Use Postgres.
Just after posting this I lost 3 hours of my life to MariaDB's unhinged and cursed "utf8 charset/collation isn't really utf8" nonsense.
It's 1214 days since I filed a React Native bug because an external keyboard user on Android cannot get focus into a text input field so can't fill in forms. No-one cares. Except people with access needs, of course. https://github.com/facebook/react-native/issues/31820
Technical debt collector and general hype-hater. Early 30s, non-binary, ND, poly, relationship anarchist, generally queer.
- No alt text (request) = no boost.
- Boosts OK for all boostable posts.
- DMs are open.
- Flirting welcome, but be explicit if you want something out of it!
- The devil doesn't need an advocate; no combative arguing in my mentions.
Sometimes horny on main (behind CW), very much into kink (bondage, freeuse, CNC, and other stuff), and believe it or not, very much a submissive bottom :p
My spoons are limited, so I may not always have the energy to respond to messages.
Strong views about abolishing oppression, hierarchy, agency, and self-governance - but I also trust people by default and give them room to grow, unless they give me reason not to. That all also applies to technology and how it's built.