Jonkman Microblog
  • Login
Show Navigation
  • Public

    • Public
    • Network
    • Groups
    • Popular
    • People

Notices by Daniel Taylor (randomdamage@mastodon.technology)

  1. Daniel Taylor (randomdamage@mastodon.technology)'s status on Friday, 02-Aug-2019 22:17:10 EDT Daniel Taylor Daniel Taylor
    • gudenau

    @gudenau
    UIDs need to match up for permissions.

    NFS problems are almost always UID mismatches between the systems.

    In conversation Friday, 02-Aug-2019 22:17:10 EDT from mastodon.technology permalink
  2. Daniel Taylor (randomdamage@mastodon.technology)'s status on Friday, 02-Aug-2019 19:28:40 EDT Daniel Taylor Daniel Taylor
    • muesli
    • gudenau

    @gudenau @fribbledom it would be, but I do it anyway because I am already in git.

    In conversation Friday, 02-Aug-2019 19:28:40 EDT from mastodon.technology permalink
  3. Daniel Taylor (randomdamage@mastodon.technology)'s status on Tuesday, 30-Jul-2019 18:07:40 EDT Daniel Taylor Daniel Taylor
    • Miredly

    @Miredly people to give him a pass because he's important.

    In conversation Tuesday, 30-Jul-2019 18:07:40 EDT from mastodon.technology permalink
  4. Daniel Taylor (randomdamage@mastodon.technology)'s status on Tuesday, 30-Jul-2019 06:31:18 EDT Daniel Taylor Daniel Taylor
    • Strypey
    • tao

    @strypey @tao most labor reform was attained non-violently, despite the troubles around the initial formation of labor unions.

    In conversation Tuesday, 30-Jul-2019 06:31:18 EDT from mastodon.technology permalink
  5. Daniel Taylor (randomdamage@mastodon.technology)'s status on Sunday, 28-Jul-2019 22:04:42 EDT Daniel Taylor Daniel Taylor
    • Oneesan succubus

    @lain there's more than one kind of dangerous asshole in the world, and they don't all like each other.

    If only we could get them to leave everyone else alone, we'd probably be OK.

    In conversation Sunday, 28-Jul-2019 22:04:42 EDT from mastodon.technology permalink
  6. nil (kotik@phreedom.tk)'s status on Saturday, 27-Jul-2019 12:53:44 EDT nil nil

    #technology

    In conversation Saturday, 27-Jul-2019 12:53:44 EDT from phreedom.tk permalink Repeated by randomdamage
  7. Daniel Taylor (randomdamage@mastodon.technology)'s status on Friday, 26-Jul-2019 18:06:14 EDT Daniel Taylor Daniel Taylor
    • 💀:clippy:

    @mdszy use tiled xterms covering multiple monitors in a Windows shop.

    In conversation Friday, 26-Jul-2019 18:06:14 EDT from mastodon.technology permalink
  8. Daniel Taylor (randomdamage@mastodon.technology)'s status on Monday, 22-Jul-2019 18:59:58 EDT Daniel Taylor Daniel Taylor
    • gudenau
    • 💀:clippy:

    @mdszy @gudenau neat unless malicious, anyway.

    /e runs off to count his HIDs.

    In conversation Monday, 22-Jul-2019 18:59:58 EDT from mastodon.technology permalink
  9. Daniel Taylor (randomdamage@mastodon.technology)'s status on Monday, 22-Jul-2019 18:20:22 EDT Daniel Taylor Daniel Taylor
    • gudenau

    @gudenau you can make all the gates with what's in there, the only thing various additions do is let you make them more compact.

    In conversation Monday, 22-Jul-2019 18:20:22 EDT from mastodon.technology permalink
  10. Daniel Taylor (randomdamage@mastodon.technology)'s status on Monday, 22-Jul-2019 18:10:43 EDT Daniel Taylor Daniel Taylor
    • Kornel

    @kornel if you can be sure that all the files you are getting are indeed hosted on the same server, and that the server hasn't been compromised.

    You can change a few characters in a "trusted" installation script to point the download to a completely different server, and if nobody is even bothering to checksum it you don't have to try too hard to get a malicious payload downloaded.

    Or you can redirect the DNS so that what gets downloaded isn't even the original script at all.

    Who would notice?

    In conversation Monday, 22-Jul-2019 18:10:43 EDT from mastodon.technology permalink
  11. Daniel Taylor (randomdamage@mastodon.technology)'s status on Monday, 22-Jul-2019 16:08:56 EDT Daniel Taylor Daniel Taylor
    • Kornel

    @kornel they'll hack you in any file you download if they are going to, but you can do things like verify checksums if you are patient enough to take a breath between downloading the file and running it.

    *That's* the threat model, not the nature of the downloaded file, but whether the user is patient enough to make sure they got what they thought they were getting before running it.

    In conversation Monday, 22-Jul-2019 16:08:56 EDT from mastodon.technology permalink
  12. ITsecJ (itsecj@infosec.exchange)'s status on Sunday, 21-Jul-2019 04:46:06 EDT ITsecJ ITsecJ

    RT @markontechcom@twitter.com

    Haven't realized that you can secure your computer with Vim... @MasteringVim@twitter.com

    🐦🔗: https://twitter.com/markontechcom/status/1152684118938923008

    In conversation Sunday, 21-Jul-2019 04:46:06 EDT from infosec.exchange permalink Repeated by randomdamage
  13. Daniel Taylor (randomdamage@mastodon.technology)'s status on Saturday, 20-Jul-2019 14:23:32 EDT Daniel Taylor Daniel Taylor
    • Kornel

    @kornel it's low hanging fruit for a compromise, and you aren't even verifying a signature or checksum.

    If you can't see a threat model in that, you won't see a threat model.

    In conversation Saturday, 20-Jul-2019 14:23:32 EDT from mastodon.technology permalink
  14. Daniel Taylor (randomdamage@mastodon.technology)'s status on Friday, 19-Jul-2019 13:04:32 EDT Daniel Taylor Daniel Taylor
    • ITsecJ

    @ITsecJ obviously he never needs to carry more than fits in a briefcase.

    In conversation Friday, 19-Jul-2019 13:04:32 EDT from mastodon.technology permalink
  15. Daniel Taylor (randomdamage@mastodon.technology)'s status on Thursday, 18-Jul-2019 10:58:49 EDT Daniel Taylor Daniel Taylor
    • 💀:clippy:

    @mdszy stay hydrated, it's only temporary.

    In conversation Thursday, 18-Jul-2019 10:58:49 EDT from mastodon.technology permalink
  16. Daniel Taylor (randomdamage@mastodon.technology)'s status on Thursday, 18-Jul-2019 07:12:08 EDT Daniel Taylor Daniel Taylor
    • codesections

    @codesections there are character columns for 1B length, 2B length text columns, and 4B length long text.

    In conversation Thursday, 18-Jul-2019 07:12:08 EDT from mastodon.technology permalink
  17. Daniel Taylor (randomdamage@mastodon.technology)'s status on Thursday, 18-Jul-2019 07:10:08 EDT Daniel Taylor Daniel Taylor
    in reply to
    • codesections

    @codesections there are different types if SQL strings depending on the length of the length. There is also metadata to say what length category they are.

    That might push them more over to Rust style, I suppose it depends on the implementation.

    In conversation Thursday, 18-Jul-2019 07:10:08 EDT from mastodon.technology permalink
  18. Daniel Taylor (randomdamage@mastodon.technology)'s status on Wednesday, 17-Jul-2019 23:32:17 EDT Daniel Taylor Daniel Taylor
    in reply to
    • codesections

    @codesections I'm honestly torn, but Pascal style is also SQL style, and it does have distinct advantages over null terminated.

    It allows optimizations and checks that null terminated doesn't, and also allows you to prevent string buffer overflows by the simple expedient of *stopping the read when you hit the length of the buffer*.

    In conversation Wednesday, 17-Jul-2019 23:32:17 EDT from mastodon.technology permalink
  19. Daniel Taylor (randomdamage@mastodon.technology)'s status on Wednesday, 17-Jul-2019 21:35:08 EDT Daniel Taylor Daniel Taylor
    • codesections
    • rain
    • Kornel

    @kornel @codesections @rain most projects that do this aren't the Linux kernel, X11, or systemd.

    Besides, those first 200 lines will often tell me if I *should* trust the rest. "chmod 777 $install_directory"? look for another package.

    In conversation Wednesday, 17-Jul-2019 21:35:08 EDT from mastodon.technology permalink
  20. Daniel Taylor (randomdamage@mastodon.technology)'s status on Wednesday, 17-Jul-2019 19:57:40 EDT Daniel Taylor Daniel Taylor
    • Digital Mark 800 48K GTIA
    • rain

    @mdhughes @rain people don't stop between steps to make sure they finished properly?

    Even without the security reasons, there are so many practical reasons why you might not want to do that as an unsupervised chain.

    Steps can fail to give the expected result without throwing an error code (typo in the package name, for instance, or wrong branch).

    In conversation Wednesday, 17-Jul-2019 19:57:40 EDT from mastodon.technology permalink
  • Before
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

Jonkman Microblog is a social network, courtesy of SOBAC Microcomputer Services. It runs on GNU social, version 1.2.0-beta5, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Jonkman Microblog content and data are available under the Creative Commons Attribution 3.0 license.

Switch to desktop site layout.