Certainly a juicy onion to take a bit of, regardless
2026 Debian Vs 2001 windows?
Or 2001 Debian Vs 2001 windows?
Cause 2001 Debian 2.2 was like 4MB ram, maybe 16 if you are really going for it!
https://groups.csail.mit.edu/mac/projects/omnibook/boot-floppies/current/doc/ch-hardware-req.en.html
So yeh, let's continue comparing apples and oranges.
FreeRTOS is bloatware cause we were able to orbit a sphere that could reflect radio waves with a bunch of tubes and a handful of germanium.
What the fuck is this "windows xp Vs modern Debian" shit?
IDK. It puts them at the forefront of this fight.
If governments successfully prosecute distro maintainers (if they can) for this, then distro maintainers are liable.
And distro maintainers would then have to pursue non-compliant users to cover that liability, or fold.
Which is a huge loss for open source.
Or, there would be a huge legal fight and it turns out that the licence of a distro protects it from its users actions.
Which would be awesome and a massive win. It also makes sense. Nobody is suing an OS maintainer because it was used for a data breach.
And then the governments have to pursue the actual users. Which... is gonna be useless wrt these laws
What's your vector, Victor?
So Russia is using point-to-point radio.
Musk runs a service that gives internet everywhere and has the ability to pinpoint the ground access point precisely, as well as requiring a billing account to access.
You can't use starlink without the service provider knowing.
You can use cheap, 2nd hand, outdated, whatever network equipment to create your own local network without anyone knowing. It can be entirely airgapped and still work.
Unifi/Ubiquiti point to point radio kit is extremely easy to get hold of an can be used entirely airgapped (because it's on the border of pro & consumer level kit).
That's like saying "Russia is using ethernet cables" or "Russia found to be using intel NICs" or "Russia found to be using Mellanox SFP modules".
That can't be restricted.
The ability to tune in a point to point wireless network and maintain that ALL the way to the frontline takes skills. Any mid station can be targeted and isolate a bunch of frontline networks. Running multipath redundancy links is a significant challenge.
The ability to drop something on the ground and have instant internet access anywhere (starlink) is not a skill. It's an enabler, and musk enabled.
I think this is the a major step in discords plan to be a service to games (ie business-to-business).
They are positioning themselves to be an age-verifying platform for games, alongside in-game chat, in-game VoIP, in-game store and game community.
At some point, games are going to have to require age verification. It's just the way the "protect the children" bullshit is going (instead of "enable the parents to raise their kids", which is far to socialist and progressive)
Or game shops will. But if you don't sell your game, that bypasses game shops. And if cracks can bypass purchasing, then... It's on the game to comply with laws.
If there is in-game chat: needs age verification.
If there is in-game voip: needs age verification.
At some point, discord is going to roll out this massive suite of dev tooling that "just works" for devs creating multiplayer games with voip, chat, in-game purchases, gifting in-game purchases to friends, friends lists, out-of-game chat, game communities etc. while also offering age verification.
It already does a lot of that.
They are getting ahead of the age verification laws so they offer a very simple path for developers to "just pay discord" to skip a HUGE legal minefield, and get a bunch of functionality for whatever cut discord decides .
1 fire took down twitter globally?
That's some great streamlining that Musk has done.
It's been 4 days.
How did people get these email addresses?
I mean, the domain is known.
But was the system that president musk broke really holding back this torrent of abuse and garbage?
Feels like actual email addresses were leaked.
Unless it was a mailing list that was suddenly exposed.
Still seems strange that an email that simply says "yo" suddenly came through as part of the spam.
Feels like email addresses were posted somewhere, and someone jumped on for the lulz. Along with the wall of trolls and abusers jumping on.
I mean, as soon as I link a domain to an IP, I see all sorts of "security" scans turn up. Till then, firewall is pretty quiet.
And if I wildcard direct a domain to an ip, the root gets scanned but any sub domains don't.
I feel email addresses would follow a similar pattern.
That sounds like a legitimate use case, tbh.
Sometimes the complexity of a "better" system isn't worth it when a "lesser"-but-easier system exists that produces satisfactory results.
I know PCB etching enthusiasts have developed a way to transfer laser toner onto copper PCBs.
I wonder if there is a similar system that could be done, but between print paper and product paper.
"Oh you are logged in on your phone? Lets zoom there"
This is the exploit.
The technical details dont really matter. Webservices are extremely difficuly to make secure if you cannot trust a legitimate users computer who is legitimately authenticating.
The key extraction could be seen as a vulnerability. Likely an oauth token that the webservice passes to the browser, which passes it to the auth service, then the auth service passes a new token to the browser, which then passes to the webservice which verifies the token then starts an authenticated session.
There will be a reason that keys are (im guessing, as this is the only way it can be leaked to screen sharing) passed as query parameters. Likely load balancers operating on SNI, or its to rely on basic browser/headers to control the authentication flow, instead of having to have specific browser code (ie javascript) to take the key and pass it as body data in a post request without the users intervention.
Unfortunately it is probably the most secure way of doing it given the restrictions of http, browsers and ease-of-use-for-users.
The lesson is "if you are dealing with a stranger and : you have a bad feeling, you are put under emotional stress, time deadlines, any kind of pressure. STOP."
Thats how scam/phishing etc works. It engineers you to dismiss any red flags that would normally make you stop.
Sometimes scammers get really lucky and hit you when you are expecting legitimate contact.
That's why it's containers... in containers
It's like wearing 2 helmets. If 1 helmet is good, imagine the protection of 2 helmets!
towerful
0 post score0 comment score
A CNC shop wouldn't start because someone decides "I want to start a CNC shop".
It would start cause some guy has a mill and a lathe for hobby stuff, and does some work for a mate or a local business.
And then gets more work, and gets work that requires CNC, and gets more work than 1 person can deal with, and then needs more machines and machinists and CAD tech and designers and so on.
Yeh, a business could get something from PCBway or whatever. But maybe they need it by the end of the day, or maybe they need an opinion on something, or maybe they can't do the actual technical document production but can provide some measurements and a rough sketch.
Apply that to anything.
The UK Army's L96A1 was made by 3 guys in a shed.