D'oh!
We're talking about this line, right? >The precision of outages (at :29 and :44) matches a network-synchronized clock (NTP). I think this just correctly points out that if the trigger was something unsynchronized like…
When writing this inflammatory post, you seem to have forgot the bigger picture of the thread you are flaming. We're discussing whether it's right to take a second look from a security standpoint when a software…
I'm really surprised they do it at all. I always thought they'd be crazy to.
Like many others have pointed out, Apple is obsessed with avoiding antitrust scrutiny. A fun (edit: incorrect) example: they are fine owning the device you use to connect to their own streaming service to watch their…
Were you running certbot multiple times per day? Looking at the relevant limit, "Consecutive Authorization Failures per Hostname per Account"[0], it looks like there's no way to hit that specific limit if you only run…
Yep, the embedded video in the article really says it all. Proven Industries' wording here at at the very least ambiguous as to whether or not a shim that works on one lock will work on another of the same model. If you…
Here's a (very) small sample gathered from a search for "webrtc" on cve.org and picking high-severity CVEs affecting browsers: * CVE-2015-1260 * CVE-2022-4924 * CVE-2023-7010 * CVE-2023-7024 * CVE-2024-3170 *…
I assume autoexec is referring to the plethora of WebRTC vulnerabilities which have affected browsers, messengers, and any other software which implements WebRTC for client use. Its full implementation is seemingly…
I know, we're locking everything down behind WAFs and repeating captchas so only attested identities can get access in the end.
From the article it's sure starting to seem like people across the internet are just starting to realize what happens when you don't have just 3-4 search engines responsible for crawling for data anymore. When data…
My bad, I forgot I'm a liquid. It's too late to edit, but s/po\w*/poured over/ anyway :)
>In the vast majority of cases, the US government at least, has to obtain a warrant to collect data on US citizens, so those two sets are not the same If only that were true[0][1][2][3]. [0] (2022):…
Without a doubt the most impressive thing I've seen with CSS. This immediately brought "A Single Div"[0] to mind, which stood as the coolest CSS demo I'd seen for... 11 years! This one takes the cake. I'll be pouring…
The people behind Cloudflare engineer this issue for profit, which is a very different motive than to "solve" the problem. The people most interested in doing away with the problem altogether are not Cloudflare, but its…
If you have a single server flooding spoofed traffic, it appears as a DDoS to the victim. It's at this point that the distinction between DoS/DDoS breaks down slightly. It is very much not "trivial" to buy 100Gbps+ of…
Do you ever find that advocating for these tenets feels "weird" nowadays? As in, don't you know these publicly traded companies are legally bound to extract profit without these silly notions of empathy or trust? What…
What website? I'm guessing it is not health related or a "critical resource" if you are cheery about 1% of users being blocked? For people who put stuff online to help people as well as to extract pure profit, knowing…
Simple: Connect larger NICs and do "dumb" DDoS filtering at your fattest point. Consider an HTTP daemon serving static content on a physical server. If that physical server has a 10Gig NIC it will withstand 90%[0] of…
Of course it could claim lives. Hopefully Prince has considered people have also likely died as a result of Cloudflare's repeating captcha which holds the next page in front of you like a carrot on a stick, never…
>You understand the problem here may repeat itself elsewhere as well, right? I do, and how is this to cap off our discussion: >You move your money to another bank, because the increased security annoys you. On my way…
To those who see securing genetic privacy rights as a critical issue, what would you recommend they do? Just wait and Vote Harder Next Time? I think Americans overall would very much support their PII being recognized…
There are plenty of commercial pirates, and those commercial uses were grouped in with noncommercial sharing in much the same way you are doing with scraping. Am I wrong in assuming most of this scraping comes from…
This rings the same tune as the MPAA and RIAA utilizing lawfare to destroy freedom online when pirates were the ones "break[ing] the internet." Could you help me understand what the difference is between your point and…
Very cool. It's too bad that Chroma noise is apparently quite visible on other planets too. It took me a while to understand what looks like a legend in the article's image. I don't think it is a legend, those are color…
D'oh!
We're talking about this line, right? >The precision of outages (at :29 and :44) matches a network-synchronized clock (NTP). I think this just correctly points out that if the trigger was something unsynchronized like…
When writing this inflammatory post, you seem to have forgot the bigger picture of the thread you are flaming. We're discussing whether it's right to take a second look from a security standpoint when a software…
I'm really surprised they do it at all. I always thought they'd be crazy to.
Like many others have pointed out, Apple is obsessed with avoiding antitrust scrutiny. A fun (edit: incorrect) example: they are fine owning the device you use to connect to their own streaming service to watch their…
Were you running certbot multiple times per day? Looking at the relevant limit, "Consecutive Authorization Failures per Hostname per Account"[0], it looks like there's no way to hit that specific limit if you only run…
Yep, the embedded video in the article really says it all. Proven Industries' wording here at at the very least ambiguous as to whether or not a shim that works on one lock will work on another of the same model. If you…
Here's a (very) small sample gathered from a search for "webrtc" on cve.org and picking high-severity CVEs affecting browsers: * CVE-2015-1260 * CVE-2022-4924 * CVE-2023-7010 * CVE-2023-7024 * CVE-2024-3170 *…
I assume autoexec is referring to the plethora of WebRTC vulnerabilities which have affected browsers, messengers, and any other software which implements WebRTC for client use. Its full implementation is seemingly…
I know, we're locking everything down behind WAFs and repeating captchas so only attested identities can get access in the end.
From the article it's sure starting to seem like people across the internet are just starting to realize what happens when you don't have just 3-4 search engines responsible for crawling for data anymore. When data…
My bad, I forgot I'm a liquid. It's too late to edit, but s/po\w*/poured over/ anyway :)
>In the vast majority of cases, the US government at least, has to obtain a warrant to collect data on US citizens, so those two sets are not the same If only that were true[0][1][2][3]. [0] (2022):…
Without a doubt the most impressive thing I've seen with CSS. This immediately brought "A Single Div"[0] to mind, which stood as the coolest CSS demo I'd seen for... 11 years! This one takes the cake. I'll be pouring…
The people behind Cloudflare engineer this issue for profit, which is a very different motive than to "solve" the problem. The people most interested in doing away with the problem altogether are not Cloudflare, but its…
If you have a single server flooding spoofed traffic, it appears as a DDoS to the victim. It's at this point that the distinction between DoS/DDoS breaks down slightly. It is very much not "trivial" to buy 100Gbps+ of…
Do you ever find that advocating for these tenets feels "weird" nowadays? As in, don't you know these publicly traded companies are legally bound to extract profit without these silly notions of empathy or trust? What…
What website? I'm guessing it is not health related or a "critical resource" if you are cheery about 1% of users being blocked? For people who put stuff online to help people as well as to extract pure profit, knowing…
Simple: Connect larger NICs and do "dumb" DDoS filtering at your fattest point. Consider an HTTP daemon serving static content on a physical server. If that physical server has a 10Gig NIC it will withstand 90%[0] of…
Of course it could claim lives. Hopefully Prince has considered people have also likely died as a result of Cloudflare's repeating captcha which holds the next page in front of you like a carrot on a stick, never…
>You understand the problem here may repeat itself elsewhere as well, right? I do, and how is this to cap off our discussion: >You move your money to another bank, because the increased security annoys you. On my way…
To those who see securing genetic privacy rights as a critical issue, what would you recommend they do? Just wait and Vote Harder Next Time? I think Americans overall would very much support their PII being recognized…
There are plenty of commercial pirates, and those commercial uses were grouped in with noncommercial sharing in much the same way you are doing with scraping. Am I wrong in assuming most of this scraping comes from…
This rings the same tune as the MPAA and RIAA utilizing lawfare to destroy freedom online when pirates were the ones "break[ing] the internet." Could you help me understand what the difference is between your point and…
Very cool. It's too bad that Chroma noise is apparently quite visible on other planets too. It took me a while to understand what looks like a legend in the article's image. I don't think it is a legend, those are color…