@matthewskelton@mastodon.social
@matthewskelton@mastodon.social avatar

matthewskelton

@matthewskelton@mastodon.social

Co-author of https://mastodon.social/@TeamTopologies ๐Ÿ“— & others ๐Ÿ“š / CEO at https://mastodon.social/@ConfluxHQ: navigate fast flow / SenseConf / CEng / he/his ๐ŸŽบ๐ŸŽถ๐Ÿง ๐Ÿ–Š๏ธโœ๏ธ

This profile is from a federated server and may be incomplete. Browse more on the original instance.

rysiek, (edited ) to infosec
@rysiek@mstdn.social avatar

Lukewarm take:

When I see general* "security advice" that mentions "do not use public WiFi" or "use a VPN", I am immediately suspicious about all other advice offered.

Yes, a decade ago that was a consideration, because most sites were not using HTTPS. Credentials were flying cleartext on the wire.

Today, almost all sites use HTTPS. Doesn't mean the risk is zero, but it's way lower.

*) "general" meaning "without a very specific threat model in mind", meant for general public, etc.

rysiek, (edited )
@rysiek@mstdn.social avatar

Also, shout-out to @letsencrypt for dramatically changing the security landscape of the Web for the better over the years.

Rarely is there an example of a project so effective and so directly improving everyone's lives, while at the same time keeping the original engineering mindset and just Doing Stuff Rightโ„ข humbly in the background.

Next November it will have been exactly a decade since LE started. We all owe them a huge 10th birthday party.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

I strongly believe we're within 5 years of the generative AI boom collapsing almost completely, and it will have a profound economic impact, as the use cases for the products being sold almost entirely suck arse.

Miriamm, to random
@Miriamm@mastodon.social avatar

These are the type of statues we should be putting up. Danuta Danielsson hitting a neo Nazi (1985).

augieray, to random
@augieray@mastodon.social avatar

80 years ago today, 2,501 Americans died at Normandy to protect lives and democracy.

Some were black, knowing they would return to a racist US.

Some were gay, knowing they could be court-martialed for who they were.

They fought anyway for what was best and right.

I don't care what you think of Biden. A world with Trump in the White House will be a disaster. In 151 days, you can do what is best and right without risking your life.

Every election. Every race. Every Democrat. #VoteBlue #DDay

djlink, to random
@djlink@mastodon.gamedev.place avatar

Ah, I wonder why Photoshop wants access to users work? 100% sure it's for training "AI" stuff. Just with more people tried alternative software, Adobe has such a huge monopoly, might be one of the worst cases in software.

djlink,
@djlink@mastodon.gamedev.place avatar

Movie director Duncan Jones (Moon, Warcraft, Source Code) is locked out because he doesnโ€™t agree with Photoshop new terms. Yeah Adobe is the worst

Strandjunker, to random
@Strandjunker@mstdn.social avatar

80 years ago, the greatest generation of patriotic Americans and Allied forces stormed the Normandy shores on D-Day to throw out the Nazis.

This year, all you have to do is โ€œstormโ€ the polls and vote.

docpop, to random
@docpop@mastodon.social avatar
docpop,
@docpop@mastodon.social avatar

In honor of , here's the story of how I helped get the ๐Ÿช€ emoji added to unicode. https://youtu.be/PkcpLTPOt7Y

slashdot, to random
@slashdot@mastodon.cloud avatar
chris__martin, to random
@chris__martin@functional.cafe avatar

Without making any statement about what "agile" "really means," I'll just say that I cannot imagine why anybody would begrudge spending an hour every two weeks letting engineering and product confer about the relative priorities and difficulties of upcoming work.

mjg59, to random
@mjg59@nondeterministic.computer avatar

The "Recall can't record DRMed video content" thing is because DRMed video content is entirely invisible to the OS. The OS passes the encrypted content to your GPU and tells it where to draw it, and the GPU decrypts it and displays it there. It's not a policy decision on the Recall side, it's just how computers work.

cstross, to random
@cstross@wandering.shop avatar

Welp, I knew Microsoft's CoPilot+ Recall was going to be a privacy disaster but I didn't expect it to turn into an enterprise computing catastrophe for Microsoft quite this fast!

But this can't be a one-off. Any large enterprise that has to comply with a regulated privacy environmentโ€”HIPAA in the USA, GDPR in the EU, banking/insurance/finance globallyโ€”must be considering a ban on Microsoft installations on laptop/desktop computers right now or be breaking the law.

https://infosec.exchange/@SecurityWriter/112558224281615019

mekkaokereke, to random
@mekkaokereke@hachyderm.io avatar

Some of y'all are still confused as to why it seems that Silicon Valley billionaires are "turning to Trump." That's because you don't listen to Black people, you disrespect poor white people, and you ignore obvious statistics that have been staring you in the face for decades.

Silicon. Valley. Billionaires. Have. Always. Supported. Trump.

Not because they like the tax breaks. Because they are more likely to be racist, and racism is the greatest predictor of Trump support.

1/N

mekkaokereke,
@mekkaokereke@hachyderm.io avatar

Most of the people in Silicon Valley, vote Dem.

But most of the money in Silicon Valley, votes GOP.

Some of these VCs sit around in online chat rooms with alt-right reactionaries and real life nazis. Some of them hold little public meetings, where they talk about ending democracy and great replacement theory. Some of them write books on why diversity is bad, and should be avoided. Most of them cheer on Elon's anti-woke, fashy push.

And y''all are surprised that they support Trump?

4/N

TheWarOnCars, to Podcast
@TheWarOnCars@mastodon.social avatar

"Paris has closed more than 100 streets to motor vehicles, tripled parking fees for SUVs, removed roughly 50,000 parking spots, and constructed more than 1,300 kilometers of bike lanes since Mayor Anne Hidalgo took office in 2014. Those changes have contributed to a 40% decline in air pollution..."

https://www.nbcnews.com/science/environment/paris-olympics-city-reduce-air-pollution-rcna153470

marick, to random
@marick@mstdn.social avatar

I am, for no particular reason, rereading the multi-author anthology /Tales of the Cthulhu Mythos/ยน. I sometimes make up little short stories as I go to sleep. Influenced by the book, I conceived of an AI doomerism story. The premise was:

  1. We know that large language models (henceforth, โ€œAIโ€) have a โ€œdumping sewage upstream of where you get your drinking waterโ€ problem in that their output at time N will be used as training input at time N+1. (1/4)
marick,
@marick@mstdn.social avatar
  1. Bad enough. But suppose Cthulhu mythos stories form some sort of strange attractorโด for the AI generator. For certain algorithmically-targeted subgroups, the rage-inducing fixed point shifts to creating the sort of rage-and-despair-fueled slavish devotion that drives groups of maddened acolytes to perform unholy rites on unhallowed ground. (3/4)
marick,
@marick@mstdn.social avatar
  1. Itโ€™s generally thought that the โ€œfixed pointโ€ยฒ for AI output will be some universally bland sort of meaningless marketese.
  2. Oh really? What readers actually like marketese? What people want is pithy content that riles them up. Isnโ€™t the fixed point more likely to be Twitter?
  3. So that, not marketese, is what the not-so-smart AI that destroys civilizationยณ will produce. (2/4)
overholt, to random
@overholt@glammr.us avatar

Iโ€™ve got some practice with 17th century English orthography but this one throws me every time.

b0rk, (edited ) to random
@b0rk@jvns.ca avatar

I know $12 USD is a lot of money for some people, so to celebrate 1000+ sales (!!!), I'm giving away 1000 PDF copies of How Git Works (honour system: only if $12 is a lot for you!)

Here's the link, enter code BUYONEGIVEONE at checkout to get a free copy https://wizardzines.com/zines/git/

(it'll ask you for a billing address but you can enter a fake address if you'd prefer)

b0rk, (edited )
@b0rk@jvns.ca avatar

I was going to post โ€œthe 1000 free copies of How Git Works for folks who can't afford it have all been claimed, I'll release more when we sell 2000 copies"

But then I went to check this morning and we've already sold 2000 copies of the zine??? So I guess we're giving away another 1000 copies now. https://wizardzines.com/zines/git/

more details in this post: https://social.jvns.ca/@b0rk/112552672907642693

gutenberg_org, to Aviation
@gutenberg_org@mastodon.social avatar

in 1783.

The Montgolfier brothers publicly demonstrate their montgolfiรจre (hot air balloon).

in 1784.

ร‰lisabeth Thible becomes the first woman to fly in an untethered hot air balloon. Her flight covers four kilometres in 45 minutes, and reached 1,500 metres altitude (estimated)

njr, to random
@njr@zirk.us avatar

If you use Git, no matter how expert you are, you should probably buy (or download, if itโ€™s too expensive) @b0rk โ€˜s amazing zine about git.

I bought it mostly to support Julia, thinking it probably wouldnโ€™t help me, but I was wrong: I learned tons.

Whatโ€™s really great about the way Julia approaches git it is that she goes kind-of bottom up, looking at actual files to explain how git works. And itโ€™s super clarifying.

Just buy it!

From: @b0rk
https://social.jvns.ca/@b0rk/112552672907642693

tofugolem, to random
@tofugolem@mastodon.social avatar

This is why there are no funny conservative comedians.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

For those who arenโ€™t aware, Microsoft have decided to bake essentially an infostealer into base Windows OS and enable by default.

From the Microsoft FAQ: โ€œNote that Recall does not perform content moderation. It will not hide information such as passwords or financial account numbers."

Info is stored locally - but rather than something like Redline stealing your local browser password vault, now they can just steal the last 3 months of everything youโ€™ve typed and viewed in one database.

video/mp4

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

WIRED has a piece about Total Recall, a now released tool which dumps keypresses, text and screenshots (theyโ€™re JPEGs) from Microsoft Recall

https://www.wired.com/story/total-recall-windows-recall-ai/

Total Recall software by @xaitax https://github.com/xaitax/TotalRecall

Example search for โ€˜passwordโ€™:

๐ŸชŸ Captured Windows: 133
๐Ÿ“ธ Images Taken: 36
๐Ÿ” Search results for 'password': 22

๐Ÿ“„ Summary of the extraction is available in the file:
C:\Users\alex\Downloads\TotalRecall\2024-06-04-13-49_Recall_Extraction\TotalRecall.txt

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

A key element of Recall is Microsoft say only you can access your Recall, it is per user.

ArsTechnica enabled Recall on Windows 11 box and tested the claim. By logging in as another user they could access the database and screenshots.

https://arstechnica.com/ai/2024/06/windows-recall-demands-an-extraordinary-level-of-trust-that-microsoft-hasnt-earned/

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

Three Copilot+ Recall questions that keep coming up.

Q. Can you alter the Recall history?

A. Yes. You can change the OCR database and change the screenshots as the logged in user or as software running as the local user. There is no audit log of changes.

Q. Are they snapshots, as Microsoft says, or screenshots?

A. They are just screenshots, jpegs.

Q. What is to stop apps on your machine accessing your Recall covertly?
A. Nothing. There is no audit log of access.

GossiTheDog,
@GossiTheDog@cyberplace.social avatar

If you want to know how Microsoft have got themselves into this giant mess with Recall, hereโ€™s what the documentation says between the lines:

you, the customer, are a simpleton who doesnโ€™t want to be an AI genius yet. Have a caveman mode.

GossiTheDog, (edited )
@GossiTheDog@cyberplace.social avatar

If anybody is wondering what Microsoft's reaction to any of the Copilot+ Recall concerns are, they're continuing to decline comment to every media outlet.

I've seen comments MS staff have been given for enterprise customers, which are nonsense handwaving.

Product ships live on devices from Dell, Lenovo etc this month. https://x.com/zacbowden/status/1798221879741931847

  • All
  • Subscribed
  • Moderated
  • Favorites
  • โ€ข
  • JUstTest
  • kavyap
  • DreamBathrooms
  • cubers
  • osvaldo12
  • mdbf
  • magazineikmin
  • normalnudes
  • InstantRegret
  • rosin
  • Youngstown
  • slotface
  • khanakhh
  • ethstaker
  • Leos
  • ngwrru68w68
  • everett
  • cisconetworking
  • tacticalgear
  • anitta
  • thenastyranch
  • Durango
  • tester
  • GTA5RPClips
  • modclub
  • megavids
  • provamag3
  • lostlight
  • All magazines