[-] SeriousBug@infosec.pub 27 points 8 months ago

You couldn't make a proprietary server. Client is fine, AGPL doesn't apply when you are accessing the server over a public API.

[-] SeriousBug@infosec.pub 11 points 10 months ago

Nope. And more importantly, it looks like nobody considered what might happen if the signal gets spoofed. The backup systems that are supposed to keep working if GPS breaks also break due to these spoofed signals.

[-] SeriousBug@infosec.pub 10 points 10 months ago

Have you ever actually seen a laptop lid just break off because the epoxy failed, or is this just a hypothetical? I used my last laptop for around 8 years, I took it with me to college every day in a backpack, on public transit. It got thrown around, scratched up, but the hinges didn't break lol

[-] SeriousBug@infosec.pub 39 points 10 months ago

This is worse. Let's go with an example: on an Android phone, you visit a website. The website asks for an integrity check, the browser works with Google Play Services to complete the check.

What if you have a de-Googled phone without Play Services, or if you made modifications to restrict Google's tracking? Then Google can refuse to verify you. What if you installed an ad blocker in your browser? Google can refuse to verify you.

If you fail verification, the website could ask you to complete a captcha, or just refuse to show you anything.

[-] SeriousBug@infosec.pub 14 points 11 months ago

Severence pay is not mandatory everywhere. So you might get nothing if you are laid off.

[-] SeriousBug@infosec.pub 7 points 11 months ago

Did they get rid of the questions? That was the most awesome part of OkCupid. Because you not only answered the questions but you could pick if you cared what your potential matches answers should be.

I met my wife on OkCupid, we were a high % match according to OkCupid and we did turn out to be a great match. That's stupid if they got rid of that.

[-] SeriousBug@infosec.pub 17 points 1 year ago

how many musicians don’t have the right to their own work because record companies dominate the music industry?

But not having copyright law doesn't fix that, it makes it worse. Without copyright law if you make music, a big label can grab your music and sell copies without paying you anything. Sure you can try to sell it yourself and try to educate customers that they should buy it from you. But the big label can easily out-advertise you and get into the top spots on streaming services, online and physical stores etc. and get 99% of the sales.

Same for artists, writers, programmers, photographers, or anyone else whose work is protected by copyright.

I fully agree things are not great right now, but that's not copyright laws fault. I think you need other laws and regulations to fix things, like small creators should be able to sue large companies with minimal cost if they infringeme on their copyright. And there should be some sort of provisions so companies can't trap people in horrible contracts. I'd also love to see fair use exceptions broadened in cases where the copyrighted material is just not available anymore, like old games or movies that are not sold anymore. Shorten the length of copyright too. But getting rid of it completely would not work.

[-] SeriousBug@infosec.pub 49 points 1 year ago

Men will literally write a Business Insider article instead of going to therapy. No really, I feel like this guy could benefit from some therapy.

It wasn't until I met a few women on dating apps that I realized being a software engineer in a tech hub is far from special. Working at companies like Amazon or Microsoft just isn't interesting; it's the norm here.

It's weird to expect that you'd get dates just for being an engineer. What? Like if someone did date you just because you are an engineer, that would be such a shallow relationship.

I think one big reason for that is software engineering doesn't require socially demanding skills like in product management or UX design.

Strongly disagree, software engineering is mostly social skills. It's all about communicating problems, learning your users pain points, explaining your solutions, and coordinating work. Coding the actual solutions is typically the easy part unless you are doing cutting edge computer science research.

[-] SeriousBug@infosec.pub 7 points 1 year ago

How about Track & Graph? It's not necessarily for mental health, it can track anything you want. You can attach notes while tracking, it includes CSV exports, and you can configure it to send reminders.

[-] SeriousBug@infosec.pub 12 points 1 year ago

"AI compute module"s exist, they are called GPUs. All the matrix calculations that go into neural networks are highly parallelizable, which means GPUs are optimal for them. A cheap used GPU will beat anything you can cook up yourself.

[-] SeriousBug@infosec.pub 68 points 1 year ago

What people are rightfully scared of is that:

  • Big websites will only accept attestations from big companies like Google, Apple, and Microsoft
  • Google, Apple, and Microsoft will refuse to attest your browser if you have an adblocker installed, or if you are using a browser or operating system they don't approve, or if you made modifications to your browser or your operating system etc.

While adblocking can be detected, you can block anti-adblock scripts, it's sort of a weapons race. Depending on how deep an attestation goes, it might be extremely difficult to fight. Attestations might also be used to block more than just adblockers, for example using Firefox, or rooting/jailbreaking your phone, or installing an alternative OS might make your phone ineligible for attestations and thus locked out of a lot of the internet.

[-] SeriousBug@infosec.pub 27 points 1 year ago

If you are looking to use it for 5 years, I'd say go with Fairphone. They actually have a 5 year warranty and committed to providing software updates for 6 years. All other phones will lose support in 2 or 3 years, leaving you vulnerable to security vulnerabilities.

view more: next ›

SeriousBug

joined 1 year ago