deleted by creator
deleted by creator
This is all I’ve run across on reverse engineering, so far but it is quite interesting.
https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b
Some of the trust comes from eyes on the project thanks to it being open source. This thing got discovered, after all. Not right away, sure, but before it spread everywhere. Same question of trust applies to commercial software too.
Ideally, PR reviews help with this but smaller projects esp with few contributors may not do much of that. I doubt anyone has spent time understanding the software supply chain (SSC) attack surface of their product but that seems like a good next step. Someone needs to write a tool that scans the SSC repos and flags certain measures like the # of maintainers.
PS: I have the worst allergies I’ve had in ages today and my brain is in a histamine fog so maybe I shouldn’t be trying to think about this stuff right now lol cough uuugh blows nose
Well maybe they aren’t experienced info security professionals :)
I think you win.
If you haven’t yet, give Lief Ove Andsnes’ rendition a try.
Everyone has their favorite interpretations, I guess. This is one of mine. From a pianist that impressed the hell out of me when I first heard him.
(The album Horizons if the link doesn’t work or you’re boycotting Spotify or whatever)
God I am getting crazy goosebumps just listening to this again. I love the 9th symphony so much.
Oh wow that is amazing. Thank you!
I forgot how much I love this kind of choral music.
I get where you’re coming from but is he managing his risk or not?
Does he understand the risk? If yes, good. No? Bad.
Is he ignoring the risk? If yes, bad. No? Good.
Is he weighing the risks against the benefits he receives of using these apps and taking appropriate steps to mitigate those risks? If yes, then good. No? Bad.
Cyber security isn’t “lock everything down at all costs”. Otherwise I would insist you throw your phone in an incinerator along with all your computers, live in a bunker reinforced against nuclear attack with a small army to guard you, never leave it, never talk to anyone… Etc.
It is enabling one to achieve their goals with a tolerable amount of risk. That level of tolerable risk is different for everyone.
I am a big fan of Cherry myself. Seems to be food contact safe and I find it a joy to work with.
It won’t be hard when all oversight is gutted or populated with members of Trump’s Mafia. Once they have enough control they can ensure they always win future elections. Sort of like Putin does.
And sure bears uncanny resemblance to the antichrist (who IIRC was based on some asshole Roman Caesar or something… Who was probably a crooked, narcissistic piece of shit like DT)
I blame greed. Again.
Indeed. The message: you’re helpless. Just sit around and wait to be rescued. Any minute now…
Perhaps that’s also why superhero movies were so popular for a time recently.
The ethics matter McCarthy referred to pertains to an investigation into Gaetz dating back to 2021, which alleged that, according to The New York Times, “he engaged in sexual misconduct and illicit drug use, shared inappropriate images or videos on the House floor, misused state identification records, converted campaign funds to personal use and accepted impermissible gifts under House rules, among other allegation.”
So Gaetz asked McCarthy to shut down the ethics investigation into all this, which totally sounds like something that an innocent, honest, upstanding person would do. /s
Sounds like a job for our counter intelligence services…right? Or do they just sit on their thumbs and do fuckall like they have since 2016 while this worthless gasbag mobster sells the country out from under us?
His followers would think it is a compliment. Or just beat you for using “them fancee ass collijj werds”
Physically, at the physical / link layers, an Ethernet transceiver integrated circuit is used that knows how to take data provided by the cpu and communicate it by sending signals along the RJ45 Ethernet physical layer to communicate with the switch. By looking at the datasheet and IEEE 802 specs one could figure out more detail.
Perhaps, but they’ve been trained to interpret everything in a way that favors Trump. So it is unlikely to snap the majority of them out of their trance.
Nobody is both that bored and that motivated. Unless paid.