• 0 Posts
  • 62 Comments
Joined 2 years ago
cake
Cake day: June 17th, 2023

help-circle






  • If you use HTTPS, the attacker can still see what websites you connect to, they just can’t see what you are sending or receiving. So basically they can steal your browsing history, which defeats the purpose of a commercial VPN for many users.

    This is blatantly false. They can see IP addresses and ports of you connect to from IP packets, and hostnames from TLS negotiation phase (and DNS requests if you don’t use custom DNS settings). HTTP data is fully encrypted when using HTTPS.

    If exposing hostnames and IP addresses is dangerous, chances are that establishing a VPN connection is as dangerous.


  • Control of the DHCP server in the victim’s network is required for the attack to work.

    This is not a VPN vulnerability, but a lower level networking setup manipulation that negates naive VPN setups by instructing your OS to send traffic outside of VPN tunnel.

    In conclusion, if your VPN setup doesn’t include routing guards or an indirection layer, ISP controlled routers and public WiFis will make you drop out of the tunnel now that there’s a simple video instruction out there.



  • Please correct me if I’m wrong, but doesn’t this allow one to represent virtually any resource as a mail inbox/outbox with access through a generic mail app?

    I’m working with a specialized healthcare company right now, and this looks like a way to represent patient treatments data as an intuitive timeline of messages. With a local offline cache in case of outages. Security of local workstations is a weak point of course, but when is it not…



  • Slotos@feddit.nltoMemes@lemmy.mlWorst day
    link
    fedilink
    arrow-up
    5
    ·
    10 months ago

    Don’t compare someone’s highlight reel to your behind the scenes.

    I once convinced someone that they are actually doing a great job by sharing my struggles and showing that they are not an impostor. They now outshine me and will go to even greater heights.

    And while that one episode of dealing with burnout and impostor syndrome is a drop in the ocean of their persistence, it’s a great illustration to how misleading comparison to others is.

    PS: Also, if you have ADHD, you’re nearsighted in time. That doesn’t only mean “you can’t plan well”, it means “your life looks like a hazy blob, where others see a complex scenery”. And that can be devastating when doing a comparison. Be kind to yourself, be kind to others.


  • Sorry, but you don’t get to claim groupthink while ignoring state of Apache when Nginx got released.

    Apache was a mess of modules with confusing documentation, an arsenal of foot guns, and generally a PITA to deal with. Nginx was simpler, more performant, and didn’t have the extra complexity that Apache was failing to manage.

    My personal first encounter was about hosting PHP applications in a multiuser environment, and god damn was nginx a better tool.

    Apache caught up in a few years, but by then people were already solving different problems. Would nginx arrive merely a year later, it would get lost to history, but it arrived exactly when everyone was fed up with Apache just the right amount.

    Nowadays, when people choose a web server, they choose one they are comfortable with. With both httpds being mature, that’s the strongest objective factor to influence the choice. It’s not groupthink, it’s a consequence of concrete events.




  • Moreover, “deep work” is a bullshit claim. Working solo long sessions without communicating is not an indication of… anything, really. The moment “deep work” becomes a trend, some idiot will start measuring it, making it yet another counterproductive way to torture people.

    Measure business outcomes and implement changes that don’t fall victims to Goodhart’s law. If a director can think of a way to game a measure, workers will think of ten.


  • Teleportation in that term means “make a thing disappear in one place and appear in another”. No “immediate” is ever implied.

    Wikipedia article has a great diagram on the topic. Add an article on “no cloning theorem” to understand why “teleportation” is a fitting term. I recommend reading both without expectation, just read through the steps as if you’re learning a new math tool.

    In short, quantum teleportation is a way to take a quantum state (which are fundamentally unforgeable - you can’t simply create a clone of a particle), destroy it, extracting classically communicable data, and they recreate it in another location.


  • FTL is a weird one.

    Speed of light is a singularity in a special relativity theory. Singularities usually indicate model limitations, not reality fundamentals.

    The theory happily describes behaviours below and above this “speed limit”, but insists on it being unapproachable from either side, which is weird already. At the same time our other models tell us that matter loses a finite amount of energy when it gains mass and stops moving at the speed of light.

    Problem is, we don’t seem to have a vocabulary to discuss ways around this singularity and universe is not so forthcoming with any clues.

    It’s a general crysis of physics lately. We know our models have limitations, we often know where they break exactly, and universe just giggles along.

    But yeah, it’s highly unlikely that any SF will correctly guess a viable FTL, even if it is possible. Especially considering how seemingly every author thinks quantum entanglement is it.



  • Atheist is a non-believer. Prefix “a-“ means absence. Every human is an atheist unless they believe in every god. The word was first used in relation to Christians.

    Anti-theist is someone opposed to religion or belief in supernatural. “Anti” means “opposed / opposite to”.

    Agnostic is a bullshit cop-out term that at some point in a Christian discourse briefly meant “someone who considers supernatural to not be knowable”, but doesn’t have a proper meaning nowadays. It has a transactional role in conversation - it most often relays unwillingness to continue the conversation on religion.

    A “definite belief that there is no god” would be “gnostic atheist” in proper terms. I.e. “god is knowable and he’s absent”. But those proper terms were barely ever alive. Instead, people dance around topic of religion as if it didn’t enjoy enough fucking dances for millennia past.