Skip to main content

silverwizard reshared this.


"Inktober", "Little Free Library", and the "Progress Pride Flag" design with the triangle side shape are all trademarked and as such, I ultimately cannot trust them

reshared this

Unknown parent

Simon Richter

@Bigshellevent the entire idea of copyleft is to be the Satanic Temple of rights on immaterial things, claiming any protection afforded to commercial enterprises also for themselves.

Without that context, we risk becoming the Church of Satan.

If art can be fed into a neural net for training despite the authors' wishes then so can everything else. Reverse engineering with an LLM that ingests the input and answers questions just became legal.

in reply to mcc

I'm not sure the trademark on the flag is enforceable, would take a court case to determine, though.


I made Pumpkin Spice Chocolate Chip cookies with my 3yo - and that was a mistake. Now I just want to eat those all day.

silverwizard reshared this.


Trying to put my 5yo to bed and he said "Does the solar system that Arda is in have a planet called Middle Mars?"



Zscaler has a hard dependency on systemd on linux

This causes so many issues, any minor change in modules and defaults causes my user's computers to lock up and completely lose internet. A basic local vpn (which is all zscaler is) is trivial to implement without systemd.

By depending on systemd, they are making my life worse as an admin, for no gain.

I don't get the systemd cult.

in reply to silverwizard

it's running as a service or daemon right? So you need a system that controls your daemons....

Like a firewall, or any other service.

How's the tunnel know when to come up if something doesn't tell it?




Does anyone have any experience with syncing a #bandcamp library to a location. I just want to make sure my purchases and my jellyfin library match and automatically download items if they aren't.
in reply to silverwizard

that's the one! I only used it a couple of times, but I was impressed both times.


RootWyrm 🇺🇦 reshared this.


New funding model for Open Source just dropped.

InfoSec starts screaming about a 9.9 CVSS and then the open source maintainer sells the vuln on the dark web.



The best IMDB pages are these kinds
imdb.com/name/nm0870439/

Just a jobber who has acted in shows I'd love, it's like a To Watch List and a Resume


silverwizard reshared this.


I mentioned months ago that a large West Coast muni whose name rhymes with "Fee Battle" would be hiring a Cybersecurity Specialist.
That job posted 2 wks ago! I learned about today! Closing is 4 PM 8 Oct.

This is a union-represented position and will earn .. more than me. And I'm no pushover.

It will have a substantial OT role.

Come help a utility survive in the wilderness while delivering drinking water to 1.6M! Push back against the AI onslaught!

governmentjobs.com/careers/sea…
#infosec #jobs

reshared this

in reply to Weird Socks

I saw your request right after I boosted it. I'll post it on LinkedIn, too. I have a fairly large audience of cybersecurity professionals there.
in reply to Bob Young

Here's the link to my LinkedIn post, that links to the job posting.
linkedin.com/posts/fifonetwork…

silverwizard reshared this.


diogenes owned nothing but a bowl, until he saw a child drink from a cupped hand. astonished, he threw the bowl away and wrote a lengthy essay on linkedin about what it means for b2b sales
in reply to sluttymayo

diogenes is the only man in history to ever own a cat.

(the cat was so ashamed at losing the argument.)



silverwizard reshared this.


If pentesters were to write „Outdated protocols (IPv4) enabled, increased attack surface“ into their reports, could they coerce companies through compliance into supporting IPv6? 😆

Unfortunately I hear „disable IPv6 to mitigate this and that“ all too often, which is equally stupid as my not-so-serious suggestion.

in reply to Flüpke

@f2k1de Looking at a couple of DFZ dumps, looks like about 730 trillion. There may be some duplicate prefixes, though.
@isа
in reply to Jima

@jima @f2k1de yeah, I count 739,594,983,636,992 x /64 nets. That 172,200 times more than 2³².

The largest IPv6 network that I can see is from Deutsche Telekom: 2003::/19.

Even if we leave out everything bigger than (but including) /29, it's still 324,534,932,078,592 x /64 nets.

Damn, there must be many small nets. I had expected some extremely large ones that when left out, make scanning ::1 feasible …

in reply to Flüpke

@f2k1de I would make the point that Rob Graham's masscan tool makes the dubious claim that it "spews SYN packets asynchronously, scanning entire Internet in under 5 minutes" (which I've long purported is why he dismisses IPv6 every chance he gets); if its operational efficiencies could be leveraged, it could scan all of those ::1s in...about 20 months, which while seemingly underwhelming, is actually somewhat useful.
@isа
in reply to Jima

@f2k1de (My first concern would be storage space for the results, but if you only log positive responses... 🤔)
@isа
in reply to Jima

@jima @f2k1de 16 bytes for the address + 2 bytes for the TCP port per result, potentially less when compacted or stored in a tree.
Collecting the data and making use of it appear to me as the harder challenges.

Some leakix.net, search.censys.io or shodan replica, but community hosted. How expensive and challenging would hosting a large Elasticsearch index be?

in reply to Flüpke

@f2k1de Disagree with two assertions here:

1. Why store 16 bytes of address when the last eight are :0000:0000:0000:0001?

2. Why hit a TCP port, when in all likelihood it'll be blocked? Better to use ICMP echo. (It may still be blocked, but it's still LESS LIKELY than a TCP port.)

3. (bonus) Are you storing negative results? If so: why? Log the BGP-announced prefix as done when done (with a timestamp, so you know when a rescan might be useful).

@isа
in reply to Jima

@jima > It may still be blocked, but it's still LESS LIKELY than a TCP port.

May I talk with you about business IT?

@Jima
in reply to isа

@f2k1de Err, after 24 years of doing business IT, I'm not sure how much proselytizing I need, but...

I get the trope of "dumb orgs block ICMP," but exactly what TCP port do you think is a) going to be commonly listening on most hosts bearing x::1 IPs, and b) going to not be subjected to firewalling from the WAN, that c) is going to be more prevalent than getting a response to an ICMP echo request? 🤨

@isа
in reply to Jima

@jima @f2k1de my naïve assumption was, that the days of addressing through IP + port are over and everything is :443 now and addressing is done through TLS SNI
in reply to Flüpke

@f2k1de Well, wildcard certs aside, the easiest way to scrape HTTPS, in a dual-stack or v6-only context, is via the certificate transparency log. 😑
@isа

silverwizard reshared this.


in case any #fountainpen or #ink nerds haven't already heard this breaking news: the Goulet family (owners of Goulet Pen Company) are involved in founding a new branch of a vocally anti-lgbtq+ church. i was a GPC customer for almost 15 years, but never again.

reshared this

in reply to Sauce

Not gonna lie, when the news broke it crushed me a little. I'm used to fountain pen communities displaying all kinds of -isms but up until now, I'd assumed the Goulets were the nice kind of Christians. Sucks.
This entry was edited (1 month ago)



Ran into family friends from childhood while out last night, and all they could talk about is that my dad had a heart attack a few months ago.

My family is downplaying it so much, and it was the first time I got to talk to someone who took it seriously (except my wife), and it was nice.

in reply to Jonathan Lamothe

@Jonathan Lamothe oh, I don't know if I've mentioned it that much online. And you're mostly an online friend these days. He's doing better, just one of those things.

silverwizard reshared this.


So the Hamburgler used to steal burgers, mostly for redistribution, but after years realized he needed to make systemic change. This is why he disappeared, he attempted to unionize several McDonalds.

McDonalds Corporation cannot stand a Robblerouser.


silverwizard reshared this.


“AI is revitalizing the fossil fuels industry, and big tech has nothing to say for itself”

bloodinthemachine.com/p/ai-is-…

> Now analysts and agencies are quietly revising their decarbonization goals downward, gas and coal plants that were slated for retirement are being kept online, and now utilities are building more gas plants in the first half of 2024 than were built in all of 2020 combined.

Again, a sincere fuck you to everybody who has had a hand in inflating the AI Bubble.


Allen reshared this.


My friend is watching Past Tense (the DS9 episode about the Bell Riots), and is like "Sisko is in the present. It is all normal"

neb 🇳🇴 reshared this.


remember, it's not Surfing the Web

You cerf the net

You berners-lee the web


silverwizard reshared this.


I wonder what the 4th big grift that involves a huge amount of GPUs is going to be, after cryptocurrencies, metaverse and generative AI models. Because there will be a large amount of unusued GPUs left with Big Tech after the current bubble bursts.

I don't think cloud gaming would be able to use up that much capacity. There are data centers being built now which won't be completed before the bubble bursts.

reshared this

in reply to René Seindal alcinnz reshared this.

@seindal @alcinnz I'm sure the US government, which already does business with all the major cloud companies, will find some use for all those GPUs. Probably as part of some economic stimulus package.
in reply to Charles U. Farley alcinnz reshared this.

@freakazoid @seindal @alcinnz I am 100% sure that magneto-hydrodynamic simulations run very well on giant arrays of GPUs...


I moved my work laptop from Devuan to Debian because Zscaler doesn't know you can launch an program without systemd, but somehow Thunderbird on Debian is eye searingly, upsettingly, bad.

All the other Thunderbirds I've seen are great, but Debian is doing something that I can't turn off.


Ben Zanin reshared this.


For @Becky 's birthday, our 5yo wanted to make a custom PvZ mod where everything is rainbows.

So our first attempt all the work we did got eaten because the game didn't like the files. So we redid it, and then had to test.

And my son is being a proper game dev, having all his work ruined and needing to fix it


silverwizard reshared this.


🇨🇦🇨🇦🇨🇦
If a candidate for Prime Minister surrounds himself with lunatics, crooks, and agents of hostile foreign powers, the patriotic response is not: ‘Oh no, he might cost himself the election!’

The patriotic response is: ‘He damn well should lose the election.

reshared this



silverwizard reshared this.


Said it before and I'll say it again: pretty much guaranteed to be annoyed by your documentation site that hijacks C-f, C-k, and / or /.

silverwizard reshared this.


christian mock reshared this.


I have a friend who is being harassed and threatened semi-anonymously via Facebook. She knows *who* it is, but Facebook and Police are characteristically being uselss.

I am kinda useless at this side of deanonymization, but does anyone have advice or resources for deanonymizing enough to get cops to move?

#infosec #batsignal

in reply to silverwizard

if you can host a file on a site where you can look at the access logs and then post a link to that file, you might be able to bait them into downloading the file which could give you their IP address in the access logs. A whois search for the IP address.could get you their ISP and geolocation information on the IP could get you the general area.

That's a lot of "ifs" and "coulds", though.

in reply to Jim Jones

here is a Forbes article (that also points to more sources) on how to do it. Beware that it isn't a quick fix, but it can work if they are persistent (and it require some legal action, which isn't always affordable). forbes.com/sites/kashmirhill/2…
in reply to Jim Jones

from there, if the police still won't do something, it turns to filing court orders to get information from the IP holders about who had the IP at the time of access and harassment.

Good luck.

This entry was edited (2 months ago)

silverwizard reshared this.


Programming language power efficiency always feels like the tech industry green washing if I'm being honest. It always comes and goes on a pretty predictable year or two cycle.

A data center switching everything to Rust won't use less power than running Java, as the companies running these resources hogging computing warehouses will just use the reduced overhead to further expand their through-put.

Training AI crap will always use astronomical compute resources because they'll use everything they can usurp regardless of language.

reshared this

in reply to JP alcinnz reshared this.

This article happened to cross my path. It's largely just reporting over the articles findings, but the opening paragraph irked me:

One metric that has become more important over the years is that of energy efficiency, as datacenters keep growing along with their power demand. If picking one programming language over another saves even 1% of a datacenter’s electricity consumption, this could prove to be highly beneficial, assuming it weighs up against all other factors one would consider.


hackaday.com/2024/09/10/assess…

The problem in this case isn't the choice of programming languages, but the unrestricted growth of data centers. With the introduction of LLMs, the training of them has seen titanic jumps in power usage. Additionally, data centers have a much, much more destructive cost to them: water usage. We don't even know how much water some companies use because they have managed to label that a trade secret...

If you are researching low power computing, keep pushing that field forward. We will need low-energy tools. I want to see extreme efficiency in computing. But, there is no future where a privatized centralized data center, trying to extract patterns and monetary value from god-knows-how-much-data, is not a resource hog.

This entry was edited (2 months ago)
in reply to Capital alcinnz reshared this.

I was gonna say data centers in general, but a library could actually as a benign data center providing hosting, data archiving and storage at a community scale. Supported not by exploiting the data they have been trusted with, but by the collective funds of the community themselves.


I am reading my kid The Hobbit at bedtime, and this feels like the most authentic and fun way to read it
in reply to Mason Loring Bliss

@Mason Loring Bliss this is making me realize I can use this as an excuse to start The Dark is Rising, a series I never read as a kid
in reply to silverwizard

@silverwizard Oh, absolutely. There's no better excuse in the world. Reading about it, it reminds me of a similar-sounding story I read when I was young, but I can't remember the name now. I'll have to dig around. Something that might help me find it was that it existed as of somewhere between 1980 and 1984.
en.wikipedia.org/wiki/The_Dark…

in reply to silverwizard

all about reducing cost and making line go up at any cost. I just had a pair of WDC 770's brick after less than 3 years in RAID0 (so no write amplification.)
in reply to silverwizard

I feel like a proper cyberpunk when I manage to pull apart a set top box, pull out the disk, and use that to rebuild my router.

silverwizard reshared this.


:BoostOK: Hi Fedi, I'm now looking for new work. I have ~10 years of professional experience as a software developer, with 4 more in IT Systems Administration.

For the past 7 years, I've helped several startups and scale-up businesses successfully build and launch their products through the roles of Software Developer, DevOps, Tech/Team lead and Architect.

My primary competencies lie within systems designs, as I'm responsible for architecting, building and administering the backend software and systems for these companies. While I'm a 'polyglot' in terms of programming languages, the vast majority of my work has been BigData/ML/AI driven and written in Python and JavaScript/Node.js

I describe myself as a Software Architect, Python Developer & OpsGal.

I am open for hybrid office within the Randstad or remote. Full CV & Contact details available upon request.

#getfedihired #python #software #softwaredevelopment #jobsearch #boost

This entry was edited (2 months ago)

reshared this


silverwizard reshared this.


The basic law of socialism is that the economy is essentially made up and is a creation of human beings to satisfy human needs.

reshared this


silverwizard reshared this.


according to android app developers my device was compromised by the evil hacker known only as "myself" for committing the advanced penetration technique called "unlocking the bootloader"

reshared this



Hobbesian philosophy sounds deep until you say it, "Ain't no claws when you're drinking laws"


silverwizard reshared this.


DNS jokes are difficult.

It can take at least 24 hours for everyone to get it.

reshared this

in reply to Esther Schindler

If you can't talk to a server that understands the root of the joke you'll never get it.

in reply to voted 'too real' for eugen

Imagine walking through that park, relaxing and enjoying nature, when you come across this group.

Dave "Wear A Goddamn Mask" Cochran reshared this.


Slack, Discord, and all of those all bind /me to italics - and it's wildly annoying because my /me instincts still exist
in reply to silverwizard

@silverwizard @🩷 eva 🩷 I've migrated mostly to XMPP (for the half dozen or so people I know who use it) but I was pretty happy with irssi for IRC. It can even pull double duty and do XMPP, though admittedly a little buggily.
This entry was edited (2 months ago)