[-] towerful@programming.dev 23 points 8 months ago

Battle Royale.
Pretty sure it was the first foreign language film I've watched.

[-] towerful@programming.dev 23 points 1 year ago

"deep research". Lol.

[-] towerful@programming.dev 22 points 1 year ago

Years ago, I played with AWS then contacted their support to make sure any AWS billing to my account was disabled.
I thought I'd try it again recently, and couldn't log in.
I still don't think I'm missing anything.

I'd rather have VPS or server providers where I know exactly what I'm getting per month no matter what, tho I've ran near data transfer surcharges.

[-] towerful@programming.dev 23 points 2 years ago* (last edited 2 years ago)
  • Eutelsat: French giant with global ambitions.
  • Inmarsat: British maritime specialist.
  • SES: Luxembourg market leader.
  • Hisdesat: Spanish strategic player.
  • IRIS²: Europe's ambitious plan for the future.
  • Project Bromo: The industrial alliance.

More info in the article. Or search for them

[-] towerful@programming.dev 23 points 2 years ago

Sorry for the wall of text.

You would hope that a public front end is entirely isolated from critical systems.

Hackers got in.
Either they saw there was nothing of value, and figured they would embarrass the owners.
They got in, saw shitloads of value, but decided the ethical thing was to embarrass as opposed to exfil/exploit/sell the access.
Or the hackers were explicitly aiming to embarrass the owners, and didn't explore scope beyond that.
It's likely "gay furry hackers" or similar, and it's "grey hat" hacking.

The ethical route, ie "white hat", is to contact the owners about the exploit with a fixed period disclosure. Ie, "fix this in 30-90 days, or we will publish our method".
"Gray hat" are more like this. Where they find an exploit, it could go deeper, but they do some lulz instead. Basically make it obvious something has been hacked, but not actually exploit it further.
"Black hat" would find the exploit (even if it was limited access) then sell it while trying to leave no trace, so it can be exploited again. Or straight up exploit it themselves.

There is a possibility of foreign agents doing false-flag gray hat shit. Exfil sensitive data, cover their tracks, then "botch" some "hahaha you've been pwnd" stuff. Both getting sensitive data, and derailing the US government (because Musk has been authorised by Trump. It's a huge undermining).

With the timeline, this seems like gray hat, or black hat further exploited by gray hat. Or false flag.

The obvious aim is to embarrass the owners.
This casts serious political shade on the DOGE servers that have been hooked into government networks without oversight. Any further data exfil is a bonus to certain foreign countries.

Best case scenario is that this is domestic gray hat, the muSSk team learn from it, and figure out how actual internet security works, and harden their systems accordingly.
I mean, the actual best case is that this DOGE coup gets stopped. But the president has authorised DOGE, so this is what America wants. So, not a coup.

Ideally, this hack has 0 actual scope of security vulnerability.
Other than the "yeh, but if they can get into your public web server (something expected to be hardened as fuck, and might as well be static file hosting. Seriously, why is there a database for this shit), how can we trust your servers on government networks".
But chances are the exploits to get into this server will be similar to the exploits to get into the government connected DOGE systems. Unless the sysadmin & network admins (god bless them) have managed to maintain some control that muSSk doesn't understand, and are able to mitigate the tsunami of access such a compromised server might unleash.

[-] towerful@programming.dev 23 points 2 years ago

I'd vote for the EU in a heartbeat.
I'd be fine with the euro, actually going full metric.

[-] towerful@programming.dev 23 points 2 years ago

I am absolutely pro choice.
But I agree that drugs during pregnancy (weed, booze, anything that might harm the future child) should be prevented.
Which, I feel, puts me in an odd spot by my apparent hypocritical application of "My body, my choice".

So, I think it is to do with the intention.
If someone intends to carry a baby to full term, then they should be responsible for ensuring that future child's well being.
If that person makes the choice not to carry the baby to full term, then yeh: their body, their choice. I have no issue with them taking drugs or whatever.

[-] towerful@programming.dev 23 points 2 years ago

When learning c++ you hate c++. Then suddenly you get it, and love c++. Then you learn more c++, and you end up merely liking c++

[-] towerful@programming.dev 23 points 2 years ago

I don't really care about "the economy".
I care about the increase in costs, increases in productivity and the non-increases in wages.
The economy is how well companies are extracting profit. Idk what the word is for what I care about.

[-] towerful@programming.dev 23 points 2 years ago

OP has a ridiculous hip-to-shoulder ratio

[-] towerful@programming.dev 23 points 3 years ago

Cutting the back of x4/x8 slots is pretty common. Some motherboards even have open back slots as default.
Great work, OP. A very nice and well thought out upgrade (most folk skip the kapton tape).

It's worth everyone knowing that pcie slots are generally universally compatible. So a GPU (wanting 16x slot) can run in a 1x physical slot (infact this is how GPU mining expansion rigs work).
I don't think I've ever encountered a pcie card that will not function at all unless it receives it's required lanes.

[-] towerful@programming.dev 23 points 3 years ago

Fraud prevention is a legitimate interest and does not need a consent request.
I'm pretty sure that is specifically called out in GDPR. Certainly ICO (UK) has loads of articles on it.

However legitimate interests are often difficult to demonstrate compliance, so it can be easier to rely on consent.

view more: ‹ prev next ›

towerful

0 post score
0 comment score
joined 3 years ago