@django I obviously didn’t know that. Thanks for taking the time to explain.
Paco Hope #resist
Amateur professional #selfhost sysadmin. Professional amateur #cloud #security at #AWS. Also fond of #cats, #cigars, #whiskey and #pipes. I like board games and some video games. I am #covid cautious and I still #wearamask. Opinions are my own, but they can be yours too. 100% Organic:,No artificial colors, preservatives, or intelligence added.
- 0 Posts
- 5 Comments
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•All programs should tell you where they store config files1·2 years agodeleted by creator
deleted by creator
@django Yeah. I’m just using the reader view in the browser. Is it that web sites have reader views for individual articles but no longer update an index of some kind?
deleted by creator
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•FediPact is an Organized Effort to Block Meta's ActivityPub Platform12·2 years agodeleted by creator
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•FediPact is an Organized Effort to Block Meta's ActivityPub Platform11·2 years agodeleted by creator
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•Kev Quirk, one of the admins of Fosstodon (a Mastodon instance), destroys Meta in an email exchange.5·2 years ago@smokinjoe An interesting reaction to react is Svelte: https://svelte.dev/. Instead of sending an entire application to the browser and making the poor client run all of it, do a crap ton of compute and calculation at build time. Send minimal code and computation to the browser. Totally different paradigm.
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•Meta and Mastodon: What’s really on people’s minds?8·2 years agodeleted by creator
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•How important is it to verify the signing certificate...3·2 years ago@hedge doing the math is one thing. Deciding on the semantics of what it MEANS is something else. If it verifies, what does that mean? Does it mean the contents of a file are “good” (valid, trustworthy, not malicious, complete, etc)? Does it mean you know WHO signed it? And what does that WHO really mean? A person, an organisation? Was the user that caused the signature authorised to do so? What do you believe about the identity, knowing that the certificate validated?
And if the certificate DOESNT verify…what does it mean? Does it mean the contents were modified? Does it mean the contents are invalid? And HOW does it fail to verify? Was the signature made before the NotBefore date? Was the signature made after the NotAfter Date? Is the certificate fine and the signature valid, but the certificate who signed the certificate who made the signature somehow untrustworthy? Or maybe the certificate you have is a tampered certificate where the identity has been modified, but the cryptographic math of the signature on your file checks out. So the contents of the file are probably fine.
We don’t ask these questions. And we definitely don’t answer them. As James Mickens says in his talk about computer science, “The stuff is what the stuff is, man.”
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•Discord, Twitter, Reddit, and Tumblr have something in common and it's not good12·2 years agodeleted by creator
Paco Hope #resist@infosec.exchangeto Technology@beehaw.org•Discord, Twitter, Reddit, and Tumblr have something in common and it's not good24·2 years agodeleted by creator
@e8d79
I think it’s time to start writing how labor unions are good and get as much of that into the ecosystem. Connect them not just with the actual good things they do. But connect them with other absurd things. Male virility, living longer, better golf scores, etc.
Let’s get some papers published in open access business journals about how LLMs perform 472% more efficiently when developed and operated by union members.
@o7___o7