@migratory@jorts.horse
@migratory@jorts.horse avatar

migratory

@migratory@jorts.horse

what's a bird but a word

This profile is from a federated server and may be incomplete. Browse more on the original instance.

migratory, to random Spanish
@migratory@jorts.horse avatar

@halide what's the private-use area unicode codepoint in your bio mean? U+F8FF

pootriarch, to random
@pootriarch@eldritch.cafe avatar

i was feeling mh- and found myself listening to les misérables, which doesn't help. so i switched to donna summer. but macarthur park is next and i may need a new plan

migratory,
@migratory@jorts.horse avatar

@pootriarch I'd say try substituting cicero park but tbh it isn't much more uplifting https://www.youtube.com/watch?v=Rd2CPiC42No

migratory,
@migratory@jorts.horse avatar
pootriarch, to random
@pootriarch@eldritch.cafe avatar

left field, any recommendations for spanish pop singers? i have a lot of spanish-language singers, but they're almost all mexican (many telenovela stars but i digress). planning to go to spain in the fall and would like to have a little material for osmosis. only actual spanish artist i have is soraya. for reference, mexican singers in library include belinda, maite perroni, danna paola, alicia villarreal, dulce maría, sofía reyes. (i never claimed to be anything but basic)

migratory,
@migratory@jorts.horse avatar

@pootriarch for two wildly disparate options you might try Los Fresones Rebeldes (teen pop) and La Paquera de Jerez (one of the most famous flamenco singers)

Rosalía is from spain too

whitequark, to random
@whitequark@mastodon.social avatar

next time we rent a place i should just ask my headmate to deal with the landlord. she doesn't get panic attacks triggered by "email"

migratory,
@migratory@jorts.horse avatar

@whitequark not to be a way but this is the phreaker paradigm

migratory, to linux Spanish
@migratory@jorts.horse avatar

filesystem defenders act like it's natural for a computer to have a filesystem. meanwhile filesystem implementors are hard at work convincing me that not only is a filesystem a bad idea, it's also virtually impossible to implement any nontrivial optimizations in one without catastrophic data loss bugs

#zfs #btrfs #linux

migratory, to bluesky Spanish
@migratory@jorts.horse avatar

I clicked a #bluesky toot or whatever they're called and it turns out they've implemented the most critical twitter feature: in-page loading spinners that make you wait several seconds for no fucking reason before you can read less than a kilobyte of text

bugaevc, to random
@bugaevc@floss.social avatar

New display name, let's see how long this one lasts :D

migratory,
@migratory@jorts.horse avatar

@bugaevc can I call you gtk4-b~1.EXE for short

pervognsen, to random
@pervognsen@mastodon.social avatar

For du-style recursive disk usage reporting, is there an accepted way that programs (and people) assign "blame" when you have aliasing through multiple hardlinks, bind mounts, the same device mounted multiple times, etc.

migratory,
@migratory@jorts.horse avatar

@pervognsen this seems like the same problem as memory accounting for processes where they share pages for mmapped libraries

migratory, to random Spanish
@migratory@jorts.horse avatar

every time I see a flipper zero I'm surprised that it doesn't have a meat thermometer probe even though that would be an unambiguously gross feature to have. my subconscious just thinks all objects shaped like that are meat thermometers

migratory, to random Spanish
@migratory@jorts.horse avatar

every time I post I feel like "masto is not ready for this toot but it will grow by seeing it"

tef, to random
@tef@mastodon.social avatar

having trouble coming up with a good name for a rpc/remote filesystem that hasn't already been used a hundred times over

again

migratory,
@migratory@jorts.horse avatar

@tef I would suggest "trrfs" from "tef's rpc/remote filesystem" but the acryonym is a bit unfortunate

whitequark, (edited ) to random
@whitequark@mastodon.social avatar

what does "woem" mean

... oh, "meow"

migratory,
@migratory@jorts.horse avatar

@whitequark htonl

migratory, to random Spanish
@migratory@jorts.horse avatar

neti pot espresso. is this anything

gfxstrand, to random
@gfxstrand@mastodon.gamedev.place avatar

Ugh... dnf system-upgrade destroyed yet another @fedora Arm install...

When are we going to get this working to the point where Arm boards actually work? 😩

(In particular, I have a raspberry pi 4 which I was trying to update from f38 to f39.)

migratory,
@migratory@jorts.horse avatar

@anteru @gfxstrand @fedora it's always seemed to me that updating a large number of packages at once is a statistically foolish design

gedeonm, to random
@gedeonm@mastodon.social avatar

In retrospect, this is where things all started to go to crap.

migratory,
@migratory@jorts.horse avatar

@gedeonm not trynna reply-guy too hard but afaict nobody has mentioned it yet so the technical name here is tendril perversion: https://en.wikipedia.org/wiki/Tendril_perversion

kernellogger, to linux
@kernellogger@fosstodon.org avatar

Annoyed by having to put #sudo in front on #dmesg[1]?

Then use this instead[2]:

$ journalctl -k

It should work if the user executing this is a member of the groups "systemd-journal", "adm", or "wheel".

[1] which is the case if CONFIG_SECURITY_DMESG_RESTRICT is turned on in your #Linux #kernel's .config – which #Fedora recently switched on, something many other distros did already a while ago.

[2] works for the common case, for some fancier stuff you might still need dmesg #LinuxKernel

migratory,
@migratory@jorts.horse avatar

@kernellogger surely the answer is simply setting kernel.dmesg_restrict = 0 for any user that was happy with the prior behavior

dangoodin, to random

Despite more than a decade of reminding, prodding, and downright nagging, a surprising number of developers still can’t bring themselves to keep their code free of credentials that provide the keys to their kingdoms to anyone who takes the time to look for them.

The lapse stems from immature coding practices in which developers embed cryptographic keys, security tokens, passwords, and other forms of credentials directly into the source code they write. The credentials make it easy for the underlying program to access databases or cloud services necessary for it to work as intended. I published one such PSA in 2013 after discovering simple searches that turned up dozens of accounts that appeared to expose credentials securing computer-to-server SSH accounts. One of the credentials appeared to grant access to an account on Chromium.org, the repository that stores the source code for Google's open source browser.

In 2015, Uber learned the hard way just how damaging the practice can be. One or more developers for the ride service had embedded a unique security key into code and then shared that code on a public GitHub page. Hackers then copied the key and used it to access an internal Uber database and, from there, steal sensitive data belonging to 50,000 Uber drivers.

Researchers from security firm GitGuardian this week reported finding almost 4,000 unique secrets stashed inside a total of 450,000 projects submitted to PyPI, the official code repository for the Python programming language. Nearly 3,000 projects contained at least one unique secret. Many secrets were leaked more than once, bringing the total number of exposed secrets to almost 57,000.

The credentials exposed provided access to a range of resources, including Microsoft Active Directory servers that provision and manage accounts in enterprise networks, OAuth servers allowing single sign-on, SSH servers, and third-party services for customer communications and cryptocurrencies.

There are no good reasons to expose credentials in code. The report said the most common cause is by accident.

“In the course of outreach for this project, we discovered at least 15 incidents where the publisher was unaware they had made their project public,” the authors wrote. “Without naming any names, we did want to mention some of these were from very large companies that have robust security teams. Accidents can happen to anyone.”

https://arstechnica.com/security/2023/11/developers-cant-seem-to-stop-exposing-credentials-in-publicly-accessible-code/

migratory,
@migratory@jorts.horse avatar

@dangoodin "The lapse stems from immature coding practices" no, the lapse stems from programming environments that make it harder to do the right thing than the wrong thing. Unix makes it painful to accept input (much less to do so securely). we need an OS environment that simplifies the process of accepting a capability as input (that doesn't force the programmer to think about parsing and data formats) and authentication APIs that expect such a token rather than username/key strings

migratory,
@migratory@jorts.horse avatar

@dangoodin the environment just determines the direction of "downhill". whether a given developer has the time/knowledge/etc. to overcome the steepness of the slope at their position is a function of their individual conditions

I don't think blaming developers will ever solve the problem, but fixing the environment very well could

migratory, to random
@migratory@jorts.horse avatar

society if Firefox moved their "adding new crap to the toolbar" budget to making the browser run faster and use less RAM

migratory, to random
@migratory@jorts.horse avatar
migratory, to random
@migratory@jorts.horse avatar
foone, to random
@foone@digipres.club avatar

Imagine an alternate universe where USB instead used NEMA L21 twist lock plugs

migratory,
@migratory@jorts.horse avatar

@foone I stand up quickly while wearing a USB headset. my laptop enters low earth orbit.

ryanc, to random

It would be nice if we could get this to £69k. Less than £500 needed!

https://www.crowdjustice.com/case/non-binary-recognition/

migratory,
@migratory@jorts.horse avatar

@ryanc I believe the whole point of non-binary gender presentation is to combat gender "recognition", especially by the state

SecureOwl, to random

September 24th, 2023: a group of engineers troubleshoot Kubernetes

migratory,
@migratory@jorts.horse avatar

@SecureOwl if it's kubernetes why's it look so simple

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • GTA5RPClips
  • tacticalgear
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • anitta
  • provamag3
  • Leos
  • cisconetworking
  • lostlight
  • All magazines