HN user

pseudotrash

1,558 karma
Posts44
Comments58
View on HN
spreadprivacy.com 2y ago

DDG Tracker-Radar

pseudotrash
1pts0
ec.europa.eu 2y ago

Safety Gate: the EU rapid alert system for dangerous non-food products

pseudotrash
104pts32
archive.fosdem.org 2y ago

Fixing Year 2038 Coordinating the 64-bit time_t ABI migration [video]

pseudotrash
2pts0
www.zepp.uni-muenchen.de 2y ago

Lectures in Ethics 2023

pseudotrash
1pts1
www.tandfonline.com 2y ago

Understanding the risks of China-made CCTV surveillance cameras in Australia

pseudotrash
23pts0
www.science.org 2y ago

Subscriptions and external links help drive users to extremist YouTube channels

pseudotrash
34pts46
web.archive.org 2y ago

Scrum Is a Cancer

pseudotrash
10pts48
www.theguardian.com 2y ago

‘The Eurocentric fallacy’: the myths that underpin European identity

pseudotrash
1pts0
web.archive.org 2y ago

Recent Glassdoor Reviews for NCC Group

pseudotrash
1pts0
www.marijuanamoment.net 2y ago

Senate votes to let people who’ve used marijuana work at intelligence agencies

pseudotrash
295pts250
www.sec.gov 2y ago

Harming Investors and Helping Hackers: Statement

pseudotrash
1pts0
towardssoftware-prod.s3.amazonaws.com 3y ago

Venture Deals: Be Smarter Than Your Lawyer and Venture Capitalist [pdf]

pseudotrash
1pts0
www.eff.org 3y ago

EU’s Cyber Resilience Act Raises Concerns for Open Source and Cybersecurity

pseudotrash
2pts0
filezilla-project.org 3y ago

Filezilla blocks download for EU users

pseudotrash
71pts43
news.apache.org 3y ago

Save Open Source /-/ the Impending Tragedy of the Cyber Resilience Act

pseudotrash
109pts34
www.imy.se 3y ago

Companies must stop using Google Analytics

pseudotrash
646pts456
www.geekwire.com 3y ago

Washington state AG: T-Mobile is wrongly withholding documents in security probe

pseudotrash
5pts0
hbr.org 3y ago

The Toxic Effects of Branding Your Workplace a “Family”

pseudotrash
8pts0
www.dni.gov 3y ago

Data previously only available for spooks can now be purchased without oversight [pdf]

pseudotrash
2pts1
whynowtech.substack.com 3y ago

Zig efficient and portable as C, without the footguns

pseudotrash
1pts0
www.biorxiv.org 3y ago

Discovery of merbecovirus DNA clone contaminating rice sequencing datasets Wuhan

pseudotrash
3pts1
web.archive.org 3y ago

Turbo Boost: How to perpetuate security problems

pseudotrash
1pts1
theconversation.com 3y ago

We’re in another Covid wave. But it’s not like the others

pseudotrash
7pts0
www.usenix.org 3y ago

Every Signature Is Broken: Insecurity of Microsoft Office’s Ooxml Signatures

pseudotrash
331pts153
www.mdpi.com 3y ago

Mediterranean Alcohol-Drinking Patterns and All-Cause Mortality

pseudotrash
3pts0
old.reddit.com 3y ago

Security Executive Quits Kaseya Abruptly

pseudotrash
1pts0
www.nbc4i.com 3y ago

Someone has been carrying and shedding the Covid virus for over 2 years

pseudotrash
2pts1
aboutintel.eu 3y ago

NL national security law to grant automatic permission for targeted surveillance

pseudotrash
210pts66
web.archive.org 3y ago

Ohio Cryptic Lineage

pseudotrash
2pts0
netherlands.postsen.com 3y ago

Security.txt file now mandatory for Dutch government websites

pseudotrash
359pts154

The recruiter spam and self promoting content from people who talk like they got 3 mortgages and 4 ex-spouses or ... -the opposite- absolute silence and disdain of a crowd that never posts these thoughts under their real name (and rant on HN or twitter instead speaking their truth on LinkedIn) has always been deafening.

In the age of Musk's twitter it is somewhat peculiar that LinkedIn ended up as the last social media platform where interesting posts can be discovered provided you don't "blind-follow" and follow the right people. None of this will work for those who expect it to work as some kind of magic garden where recruiters will present only what is relevant to you. That LinkedIn though never existed in the first place.

Nitpick: there is no "vs." ... because in the long run X11 is dead. After decades of serving us well it's not maintainable and not a good base to build anything on top that you want to continue maintaining in 5 or 7 years. Any warranty of a "cyber physical systems" is better off starting on Wayland IMHO

What issues are you facing with screen recording?

Can't say anything about NVIDIA because I avoid these chipsets like the plague (even for windows)

I do think work is important part to rehabilitation and also meaningful to pass time. Where I have an issue with is as you point out the for-profit nature of prisons. Even in Europe where one might not immediately consider prisons to be for-profit structures, one has inmates assembling ballpoint-pens or assembling low tech items for EUR 5,30 per day. This will ensure the inmate can purchase coffee and chocolates once a fortnight. But it doesn't change their employability after release. Once they get out it is either back to crime, or straight into another state facility (homeless shelter etc). This could be different if the inmate were actually able to save up some money while there. Sure an addict will likely sound it, or they might have a chance to put it into getting help.

There is another more meta aspect to it when considering a facility location. Many times the facility is a small town and then becomes the biggest local employer. Not just for guards but also lawyers, state attorneys, social-workers, judges etc. If that facility closes down it means these people would have to relocate. This is very hard to decouple and untangle.

Whether someone is a criminal or not doing this work is besides the point. The person is being punished for the crime through incarceration. Having to serve as a slave in that system should be illegal.

This is btw also common practice in Germany and France. Prisoners who want access to sports, more than 1 shower a week, a TV/radio, etc ... are only able to do so when taking part in prison work.

Edit: And whether one is allowed to work, and how soon, also depends on whether one gets along with the guards. Work also decides if one can afford to fuel a nicotine or caffeine addiction - if not you have to go beg the Russians, Albanians or whoever runs that racket etc to add it to your tab that you can later pay off with interest ...

Edit-2: what most don't seem to grasp is that a large percentage point of those inside are usually on the streets in cold countries and rather get locked up than freeze to death. Another sizable percentage are refugees escaping conflict zones and that fell through the cracks of a system that should have given them ptsd treatment. Not everyone inside is there because they deserve doing time.

"Watch Oppenheimer Free" on Google returns mostly malware and fake media-purchase websites

In the EU much of our malware and blogspam is hosted by the EU government itself. We are way ahead here lolol

https://www.google.com/search?hl=en&q=watch%20oppenheimer%20...

https://road-safety-charter.ec.europa.eu/sites/default/files...

Edit: this is the same domain that hosts documents on the latest laws for cybersecurity (Radio Equipment Directive, Cyber Resilience Act, ...). And the same body that airs strong opinions on client side scanning. The same org that wants to be in charge of a EU wide database of vulnerabilities so it can tell you if your patch management process is too slow. ENISA were informed about these problems over 8 months ago. Meanwhile they are publicly ridiculed on social media for not fixing it.

"Cybergibbons" from PentestPartners has done a teardown of W3W in 2021 on twitter. It was very spicy and the takeaway was not that it is just ugly implementation as some here suggest, but flawed by design:

What3Words – The Algorithm https://cybergibbons.com/security-2/what3words-the-algorithm...

Why What3Words is not suitable for safety critical applications https://cybergibbons.com/security-2/why-what3words-is-not-su...

AI Crap 3 years ago

Couple thus with the expectation of everyone carrying a phone at all times:

1 in Italy booking a train ride without providing your phone number, email and tessera sanitaria, proved a challenge last month

2 civid required us to carry our green pass everywhere (I'm not anti vaxx)

3 get stopped on some countries (like US) at a border and unable to present a phone for search might deny you entry.

The whole affair was predicted already 50-70 years ago. Jacques Ellul's La Technique is a great comprehensive read on this idiocy

We are talking about Nokia or Ericsson or the actual provider? Since 15-20 years now the provider doesn't build anything. All that remains vaguely interesting is managed by subcontractors and externals. The actual number of people who are full time employees and still do tech at a telecom operator is close to 0. They are users of pre-built solutions and everything is offshore or managed by the firm that sold the software. This includes NFV, SDN, and the O&M plane, and other places (where actual innovation still happened in the past decade)

mostly corporate roles

Middlemanagers that failed to Left-Shift LOL. Good riddance ... the only time T-mobile ever makes the news it's because of their terrible management practices. Or for missing the boat on Security and data breaches. Or for selling customer data to advertisers. I recommend a copy of "who moved my cheese" and a best of luck.

I love Firefox. The only time I struggle it's because it is the only browser today that correctly implements CORS. This is a good thing. But it means broken middle boxes and MiTM enterprise tech (like Zscaler) should fix their stuff rather than pointing their smelly fingers at Firefox.

Mozilla should up its game in educating the public that Edge and Chrome aren't following the standards correctly. This seems IMHO pretty important in a world where everything relies on the browser to sandbox things.

I've watched the Twitter InfoSec crowd slowly turn from:

    supportive -> ambivalent -> hostile.
Guess exposing XKeyScore, PRISM, TEMPORA really pissed off the hypocrites in the US.

The intersection in the Venn diagram between Intel and Infosec community is substantial. And quite a number of accounts directly linked to US IC influence decisions of who is allowed to have a voice at DefCon and BlackHat.

The same happened with public support for Assange.

Nobody talks about the retaliation by proxy against Ola Bini. They should.

If you stand up for them better prep yourself to either get labeled a tankie or get character assassinated¹ by some nutjob with pink hair and overly strong feelings about pronouns. Which is an odd hostile spectrum to find oneself in. Jacob Applebaum was especially torn down hard using manufactured content of blog posts of "rape victimes" coming forward. And until today he remains so:

¹ > In May 2013, Snowden was permitted temporary leave from his position at the NSA in Hawaii, on the pretext of receiving treatment for his epilepsy.[10] In mid-May, Snowden gave an electronic interview to Poitras and Jacob Appelbaum which was published weeks later by Der Spiegel.[119] -- https://en.m.wikipedia.org/wiki/Edward_Snowden

Interesting for me to reflect on this because I'm in that age group and most of my environment is too and they are absolutely my target of this comment. While I have skin in the game holding this position I wonder if those downvoting do too. How many friends did you lose to social media dividing you harder than I ever could, and who do you direct that anger to. :)

never mind fake internet points or moron writers that optimizes content for likes or whatever their audience wants to hear. Schopenhauer and Taleb have already written plenty on the subject.

If you think your job isn't BS you probably haven't read enough adversarial content.

0) The Conspiracy Against The Human Race

1) The Machine Stops

2) The One Dimensional Man

3) A City Is Not A Tree

4) Influence

5) La Technique

6) anything from James C. Scott

7) ...

Figuring out the links is left as an exercise to the reader.

That's fair. It's got to be both for balanced individuals. But how many really are balanced. Anyone with a nin-linear CV can tell a story of how they had to come up with ways to make it appear more linear?

Reminds me of the saying that people attribute all their success to their own skill and forsight. Every step was careful planned. And they forget that it's due to chaos and randomness that they're even alive.

This post by the The Apache Software Foundation is fairly complete:

And what makes matters worse is that the type of open source organizations most affected are also exactly those that, today, tend to have very mature security processes, with vulnerabilities getting triaged, fixed, and disclosed responsibly with CVEs to match. While it generally is further downstream; with the companies that place the product on the market — that the CRA needs to drive significant improvement. It now risks doing the reverse.

But all organizations (ECLIPSE, LINUX, ...) raised alarms

https://news.apache.org/foundation/entry/save-open-source-th...

Edit: https://nitter.kavin.rocks/search?f=tweets&q=cyber+Resilienc...