reshared this
Allen and Darcy Casselman reshared this.
Hypolite Petovan likes this.
I asked my church music director if he had a HAM license today, and he replied he never got into radio. I then had to ask how we'd run a pirate radio station together.
One day I'll be a HAM
Hypolite Petovan likes this.
Tek aEvl likes this.
@Hypolite Petovan why thank you!
But I wanna be an amateur radio operator!
like this
Hypolite Petovan and Tek aEvl like this.
Content warning: USPOL
Hypolite Petovan likes this.
reshared this
straight edge centipede, Julles (inside your device), puffball: bespoke mode, Red_Star_OSX :sterntastatur: 🇵🇸 and biodiverse wetlands reshared this.
silverwizard likes this.
@silverwizard Oh I know I and the people I surrounded myself with don't want this privacy invasion. Beyond that, it becomes unclear to me that it would be the main factor of rejection. My main guess is there is a general disconnect between the data harvesting for AI purposes and the AI tools themselves. Meaning that people may be receptive to the AI tools and at the same time reject high-profile cases of data harvesting like the Reddit debacle, Twitter's change of terms of service, Recall, etc...
This would also mean that the general contempt for the latest AI-everywhere products wouldn't be based on the underlying data harvesting, but rather because they are disappointing products by themselves, regardless of their externalities you and I strongly care about.
silverwizard likes this.
Hypolite Petovan likes this.
@silverwizard I must admit that I haven't read much AI criticism that I don't also share myself. The working theory I outlined earlier is based on a single poll that showed 40% of the responders were considering AI features at least somewhat negatively in new products.
When I learned about the poll, it went against my preconceived notion that the general public was more receptive to AI features, which would have partially explained the rush to implement it into anything and everything.
silverwizard likes this.
Hypolite Petovan likes this.
silverwizard likes this.
Hypolite Petovan likes this.
silverwizard likes this.
Hypolite Petovan likes this.
silverwizard likes this.
@Hypolite Petovan My father: Lives for tech hype
Me: a tech raccoon
My father: staunch conservative
me: anarchist with a chip on his shoulder
otherwise we're exactly the same
Hypolite Petovan likes this.
silverwizard likes this.
Hypolite Petovan likes this.
As usual my forays into making me enjoy reading RSS feeds is failing
One day I'll find a reader I love
Hypolite Petovan likes this.
Hypolite Petovan likes this.
Hypolite Petovan likes this.
MxFraud reshared this.
He produced phonology and semantics from orthography independently!
Hypolite Petovan likes this.
Hypolite Petovan likes this.
A huge mistake the fediverse makes is large instances. It's resource intensive, expensive, and creates wildly large failures instead of little ones.
This is why I'm sad to lose the bots, but also glad botsin.space is going away. BIS was always weird, a place to place bots which cost a lot, but wasn't a community. Bots should live alongside their makers or users (or just have a way of posting without needing a full server).
Ji Fu likes this.
Sat down with a large client's IT since email was getting wild. So we talked. We both explained the other side's mail border to each other. Having established we were both real techs. We talked shop and solved the issue with mutual respect.
It was a notable dance I've not done in a while, and a fascinating one.
Jay Hannah reshared this.
Hanging out with FreeBSD and the boys
One of the things that is destroying the web is WASM and JavaScript.
This isn't really even a joke - it's literal.
By having all these tools to make a web browser have unfettered access to the system, it becomes unsafe to allow users to generate arbitrary code. We can't have another MySpace or NeoPets User Lookup because we can't allow users to write their own HTML, because that's *dangerous*.
like this
cy and Jonathan Lamothe like this.
reshared this
Soatok Dreamseeker, Sham 🏳️🌈, Kawaoneechan, 挧日 | Yuril, Bersl, bluestarultor, hellhound gayming, Frost, Wolffucker 🐺:therian:, the esoteric programmer, screwlisp, leah & glitches & bits, oh my!, mos_8502 :verified:, leah & tigers & bears, oh my!, Ozzelot :anarchy: :linux:, scarlett, nwf, Ph.D., cy, Garrett Latimer, Enjoying Kink, I'm Rime and Fink :antifa: reshared this.
silverwizard likes this.
I haven't seen the video, but I worked in reliability there for half a decade.
Reliability and security on that platform (not to mention safety) are huge unsolved problems.
silverwizard likes this.
silverwizard likes this.
@Hypolite Petovan @Frost, Wolffucker 🐺:therian: CORS allows you to limit cross domain resources. But I can mine bitcoin on your CPU without any cross domain anything. Hell, in theory,I might be able to send spam that way! I can definitely steal your credit card number.
But if I could just add a X-No-Dynamism header that would say "this HTTP session does not send JS or WASM", I could keep everything on my site safe.
I could let users write pretty unfiltered HTML, and most of the tricks would be contained in a frame.
Hypolite Petovan likes this.
@Hypolite Petovan https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy
Is there a way to say default-src: none? Or just set no valid sources? not as I recall
@Hypolite Petovan So if I send:
Content-Security-Policy: script-src: 'none'
<html>
<script>alert("OH NO");</script>
</html>
With a valid Content-Length and junk
Would that work?
@Hypolite Petovan Ok - actually
I rancat test.txt | nc -l -p 2000
with test.txt containing
HTTP/1.0 200 OK
Date: Tue, 22 Oct 2024 19:27:37 GMT
Server: OpenBSD httpd
Connection: close
Content-Type: text/html
Content-Length: 486
Location: localhost
Content-Security-Policy: script-src: 'none'
<html>
<head>Hello</head>
<body>
<script>alert("OH NO");</script>
</body>
</html>
(Ignore the fake content length)
I then pointed my browser (librewolf) at it, and it saw these response headers:
HTTP/1 200 OK
Date: Tue, 22 Oct 2024 19:27:37 GMT
Server: OpenBSD httpd
Connection: close
Content-Type: text/html
Content-Length: 486
Location: localhost
Content-Security-Policy: script-src: 'none'
And it popped up a popup saying "OH NO"
Hypolite Petovan likes this.
unsafe-inline
policy is explicitly allowed.silverwizard likes this.
silverwizard likes this.
though to be fair the available sandboxing mechanisms for anything tighter than "equivalent to handing off a link to another site" are a huge pain in the ass
and web sites can do shit like allocate memory until your swap space fills up ;)
silverwizard likes this.
cy likes this.
reshared this
Preston Maness ☭ and cy reshared this.
I would also argue that it enables the big corps to limit our freedoms with the computers we bought, by locking us to "the web".
Bare metal is freedom!
Even if people don't like C/C++/Rust/Go/Pascal, it is important that they exist, so others can have their native Python and Node.
I must admit that I do enjoy messing around with WASM, but now that I think of it, it's sort of me enjoying my own leach.
@MontyOnTheRun yeah! We can build these things! Build a limited web and unlimited world!
Remember never download a . exe from the web, but your safe otherwise!
CSS Security Vulnerabilities | CSS-Tricks
Don't read that headline and get worried. I don't think CSS is a particularly dangerous security concern and, for the most part, I don't think you need toChris Coyier (CSS-Tricks)
That said, I've gone on record saying javascript is overhated, so. Make of that what you will.
It's not a perfect platform. But it's a hell of a lot better than... iOS... or Android... or Windows... or macOS... they're such terrible targets to build for and people use web tech for it anyway.
silverwizard likes this.
Hypolite Petovan likes this.
silverwizard reshared this.
Hypolite Petovan likes this.
@Allen "Hash Brownie" Stenhaus My uncle started going bald at 17, and the wisdom was I'd be bald by 20. So I decided to enjoy it while I could.
I am 36 and I've managed to keep it!
silverwizard likes this.
@Mason Loring Bliss I am using a Flo mask
I like it, and have been covid free since its purchase
@silverwizard Thank you. I love that they have a kid version, as the 6100 works for two of my kids, but is too big for two. I'll probably try that too. The part I can't find for love or money this week is the exhaust filter, but it looks integrated in that mask, which frankly would be fine for our use.
Thank you again. :)
Mason Loring Bliss likes this.
taco, bird/cat :verified420: ❄️
•like this
Tek aEvl and silverwizard like this.
silverwizard
taco, bird/cat :verified420: ❄️
•silverwizard likes this.
Tek aEvl doesn't like this.
silverwizard
@taco, bird/cat :verified420: ❄️ yeeeeah that's why I called the first season abyssmal
I might need to do some wiki diving before giving the rest a chance
thanks
Tek aEvl doesn't like this.
taco, bird/cat :verified420: ❄️
•Tek aEvl
•silverwizard
Neil Brown
•I didn’t get through the first season to find out :(
Lots of people loved it, but I really struggled!
silverwizard likes this.
silverwizard
Tek aEvl
•Tek aEvl
•silverwizard likes this.