Sunday, March 31
Daily News Stuff 31 March 2024
Postprismatic Stress Edition
Postprismatic Stress Edition
Top Story
- A little more background on that security disaster that almost was. (Substack)
It looks like it started with "social engineering" - a confidence scam - two years ago, with one person attacking the maintainer of the xz utility and another one offering to help, and then actually helping. That warped over time into slipping more and more suspect code into the package, until they got caught.
It's a bit of an odd one because it took a lot of care and planning but was guaranteed to get caught and removed if it ever went mainstream. So it's not a targeted attack on particular groups, and not subtle enough to pass unnoticed long-term.
If you infect one server you're likely to get away with it, but if you infect every server in the world, there are literally hundreds of honeypot servers set up by security researchers specifically to detect weird stuff like this.
Purely speculation but I'm wondering if this was North Korea rather than China or Russia. It looks like the kind of miscalculation they would make.
Tech News
- Software needs to be more expensive. (Glyph)
There's a well-known XKCD cartoon illustrating that the modern world is utterly dependent on some random bit of code maintained by one guy in Nebraska since 2003.
Not specifically true, but true in general; we nearly had a global disaster with a small but useful library called xz because the maintainer wasn't getting paid anything despite the code being used on hundreds of millions of computers. (If it's included in iOS or Android, which it probably is, billions.)
The solution proposed here is to make it easy to pay these people.
- Meanwhile AT&T is resetting customer passcodes after millions of customers' account details were leaked... In 2019. (Tech Crunch)
Or possibly earlier. AT&T doesn't know or isn't saying. But yeah, the data has been out there for five years and they're responding now.
- The world needs more gadgets like this (checks notes) overpriced underwhelming 27" 1080p monitor in a briefcase. (The Verge)
The world needs fewer websites like The Verge. If that leaves me with nobody to mock, so be it.
- Banning TikTok could harm blah blah blah. (Tech Crunch)
Don't care, didn't ask.
Sasaki and Peeps Opening Credits Video of the Day
Not sure what I expected going into this, but this show goes in every direction at once. It's no Frieren but it's not objectionable either, and it just got a second season so we won't be left hanging for too long.
I really like the quiet competence of the main character. He's not out to save the world; he's just trying to do his job, no matter how weird things get.
Disclaimer: I think "Don't care, didn't ask" would make a great state motto.
Posted by: Pixy Misa at
05:02 PM
| Comments (3)
| Add Comment
| Trackbacks (Suck)
Post contains 474 words, total size 4 kb.
1
I don't think we should ban tiktard or the smellies who inhabit it, but we could decriminalise ass-whoopin' of those who have tiktok accounts.
Posted by: normal at Monday, April 01 2024 02:57 AM (bg2DR)
2
Sasaki started off with so many disparate elements it left you wondering where it was going to go. After several episodes it left me wonder if it was even going to go anywhere, but I pushed on through. Was the first season mostly background development for the second season? It did have some understated humor moments I appreciated.
Posted by: Frank at Monday, April 01 2024 03:24 AM (tSpjU)
3
Naturally an outstanding attempt! Seeing such well-reasoned and articulate ideas written out is inspiring. In addition to being nice, the writing was excellent. Please visit Laser Hair Removal for more information and skilled assistance.
Posted by: Pies at Friday, July 26 2024 04:32 AM (BF7eL)
52kb generated in CPU 0.0133, elapsed 0.1173 seconds.
58 queries taking 0.1076 seconds, 350 records returned.
Powered by Minx 1.1.6c-pink.
58 queries taking 0.1076 seconds, 350 records returned.
Powered by Minx 1.1.6c-pink.