floof.org

kopper :colon_three: iceshrimp.net (AP)
security patches aren't needed as it's illegal to be malicious on the interent
1 2

Google Chrome now sends telemetry back to Google about CPU, GPU and memory usage via a browser extension that is hidden in the list of extensions.

https://x.com/lcasdev/status/1810696257137959018 [$]

https://nitter.poast.org/lcasdev/status/1810696257137959018

#GoogleChrome
#Chrome
#Google

1 2

1 2

Ysengrin posing in front of a brick wall, taken at AnthrOhio 2024.

#WerewolfWednesday #AnthrOhio #werewolf #fursuit

1 2

Emily Velasco mastodon (AP)

The year is 2042. AI "employees" are widely used in business and they are compensated better than their human counterparts because management has convinced themselves that AI employees produce higher quality work and are more productive.

An out-of-work writer gets a job by pretending to be an AI. Her work is better than what the other AIs are producing. Management is elated, thinking she's a revolutionary new model. They assign her increasingly high profile projects.

She finds it harder and harder to keep up the ruse, especially because she's fallen in love with one of her co-workers, something an AI doesn't do.

1 2

1 1

1 3

1 3

Chaz6 mastodon (AP)
The UK is introducing a new system to make switching broadband providers easier, called OTS, or one-touch switching. But, rather than fix some show-stopping bugs, the management company called TOTSCO has decided to enforce a change freeze so it can meet the government's deadline for the system to be ready. I highly recommend following @revk if you are interested in learning more.
1 2

Dan Goodin mastodon (AP)

One of the most widely used network protocols is vulnerable to a newly discovered attack that can allow adversaries to gain control over a range of environments, including industrial controllers, telecommunications services, ISPs, and all manner of enterprise networks.

Short for Remote Authentication Dial-In User Service, RADIUS harkens back to the days of dial-in Internet and network access through public switched telephone networks. It has remained the de facto standard for lightweight authentication ever since and is supported in virtually all switches, routers, access points, and VPN concentrators shipped in the past two decades. Despite its early origins, RADIUS remains an essential staple for managing client-server interactions.

Since 1994, RADIUS has relied on an improvised, home-grown use of the MD5 hash function. The result is “Blast RADIUS,” a complex attack that allows an attacker with an active adversary-in-the-middle position to gain administrator access to devices that use RADIUS to authenticate themselves to a server.

https://arstechnica.com/security/2024/07/new-blast-radius-attack-breaks-30-year-old-protocol-used-in-networks-everywhere/

1 1

ineiti mastodon (AP)

I'm getting out the popcorn for this one. Capitalism made right: if we suffer from heat, then let's get the guys who are responsible for it to pay...

Even though I think the bad guys here have too much money and will throw so many lawyers at the problem that the courts will not be able to hold them all...

https://arstechnica.com/science/2024/07/oregon-county-seeks-to-hold-fossil-fuel-companies-accountable-for-extreme-heat/

#heat #climatecrisis #justice

1 1

Rick Altherr mastodon (AP)
Good news everyone! Windows Update is reducing carbon emissions so Copilot can emit them instead.
1 🥰 1 1

Qwyrdo the Munificent hometown (AP)

Kindness is a virtue. Kindness is punk. Be kind to those who deserve it, especially (but not only) those close to you.

Pass it on.

1 2

Pippin friendica
After a whole 10 days of waiting, I have a shiny new Archive Of Our Own account. (Now I just gotta polish something a bit more until it's actually in a fit state to upload. :])

SwiftOnSecurity mastodon (AP)
One of the biggest security expertise redpills is this is unironically a good idea and the time spent making fun of it was ill-advised for most users whose physical security threat is not a factor in comparison.
2 2
SwiftOnSecurity mastodon (AP)
Overcoming the incentive to dunk on “users” behavior is an important element in maturing your security understanding. You have a set of levers to pull. Human nature is not one of them. Deal with that or be a righteous failure.
2 1
sadmac356 mastodon (AP)
and frankly, dunking on users just makes me, as someone who knows I'll inevitably have to contact tech support for one reason or another, NOT WANT TO ACTUALLY CONTACT TECH SUPPORT AT ALL. It's for the same reason I struggle to ask for help in general, actually: I don't wanna feel like I'm being judged for not knowing how to do/needing help doing something
Michael Olsen mastodon (AP)
"You have a set of levers to pull. Human nature is not one of them. Deal with that or be a righteous failure."

it's probably gonna be what needed to be done anyway
1 2

Rekker mastodon (AP)
Oh it's #PortfolioDay already?
Well hi! I'm Rekker! I'm a furry illustrator and 3D artist! Here's some examples of my works, AND NO, THESE ARE NOT PHOTOS! lol
I do use photos for reference, but I prefer to paint everything myself.
2 2
sirlan <( rawr ) sharkey (AP)
those are some awesomely detaile environments, and cool critters

1 3

Please use alt-text on your images. All of them. If you're unable to manage that comfortably, you could CW to say there's no alt text, or even invite others to caption. If you're somehow using a client that doesn't support alt text, you can just type it in at the bottom of the post. "Vague text only explained by image + undescribed image" is just a post format that needlessly excludes people.
1 1
Not just visually impaired people, but people with a poor internet connection that times out trying to load images... like me earlier today.
1 1

1.3.6.1.4.1.61513 mastodon (AP)
Will turning on this aws security feature bankrupt the company?

  • yes (35%, 59 votes)
  • also yes but i checked with corey quinn first (64%, 107 votes)
166 voters. Poll end: 1 year ago

1 2

Bennie (old account) mastodon (AP)

Every so often I used to post this infographic about @Torrle and the stapler wolf and giant paw.

It's nice to see Fang, Feather & Fin did a larger writeup on it:

https://www.fangfeatherandfin.com/stapler-fursuit-the-legend-of-the-paw-and-the-maw/

1 2
a stinky ox 🐂 mastodon (AP)
haha gotta be said, furries have some of the most entertainingly bonkers fetishes I've ever seen :D

overheard: "Linux? What is that?" "Oh, it's like Android for Desktop."

🥴

1 2

Normally, this kind of advice is framed more positively, but I want to be absolutely clear:

Don’t put yourself down.
Don’t apologize for existing.
Don’t tell others they should feel bad for knowing you.
Don’t wallow in shame.

Even if you feel bad, or like you’ve something to atone for, that kind of behavior doesn’t help you or anyone else; debasing yourself does nothing to process negative emotions or to take responsibility for your actions - and nothing hurts your loved ones quite like it.

1 2

BrianKrebs mastodon (AP)

Sometimes you can tell a lot about a person by the domains they register. For no particular reason, I was looking at the domain footprint of Rep. Marjorie Taylor Greene, and found a phone number connected to her over the years that was used to register mtgforamerica[.]us back in 2021. The domain's registration records are hidden behind privacy services from anonymize.com, but their privacy system assigns a unique email to each private registrant, so you can still do a reverse search on that and find out what other domains are registered by the same account.

Domaintools finds 21683@anonymize.com was used to register 156 domains, including supportkylerittenhouse[.]com and repealjuneteenth.com. Here's the full list if anyone's interested: https://docs.google.com/spreadsheets/d/1Xy7FDYtN-YGyv29XZ08wf_Z1OPAemfmccpVqwZ-ci50/edit?usp=sharing

This entry was edited (1 year ago)
1 1
I knew I didn't fully trust their "privacy" services! 🤦‍♂️
1 1

@hukaulaba posing for the camera - one of the better images from last weekend.

#AC2024 #kangaroo #fursuit

1 2

packetcat mastodon (AP)

https://www.malwarebytes.com/blog/news/2024/06/poseidon-mac-stealer-distributed-via-google-ads

this is the kind of thing I point to when I say that blocking ads is effective in blocking an entire vector for malware distribution

1 2

beeps' backup :ying: mastodon (AP)
The 2024 BBC election theme is mmmm so good. https://www.youtube.com/watch?v=UhmFGFYWz6E
1 1
Avon DeRussate mastodon (AP)
It is called "Arthur" by Rick Wakeman. Of "yes" I believe.
beeps' backup :ying: mastodon (AP)

@avon_deer Yee, I know. The BBC did a bit of a mashup of it with the BBC News theme in 2019, and this year a reorchestrated version of that mashup.

It's very lovely.


tiddy roosevelt mastodon (AP)

Content warning: FR pol, lol

1 2


Frang :veripawed4: mastodon (AP)
Me, software engineer of nearly 40 years: <writes code> <runs tests>
tests: <fails, dumps core>
Me: reasonable, let's see what's in the core... ... uhh.. where's the core?
Me: maybe I had ulimit set wrong? ... nope, unlimited.
Me: was cwd different? .. no
<an hour poking at computer and then searching>
Me: WTF IS FSCKING 'apport' AND HOW DO I BURN IT TO THE GROUND?!
<more time passes>
Me: FSCKING _NO_ I IN ABSOLUTELY NO WAY WANT FSCKING _systemd_ TO BE INVOLVED. I JUST WANT MY FSCKING CORES!!!
1 1
Ralesk mastodon (AP)

@tilton Ah, old people yelling at PoetteringOS :D

I almost never have issues with it, however kubernetes, docker and all the messy, half-finished, half-stable, half-unusable crap around them that we build the world around... yeah.

1 1
Pippin friendica
@Tilton Raccoon @Frang :veripawed4: I already hate systemd quite a bit but thankfully I don't get reminded of this daily, because I've been careful to ensure practically all the machines I use for anything worth worrying about run sysvinit instead. Sorry. 🤗
1

St1ka mastodon (AP)
1 2

Linksys routers are sending Wifi passwords to their servers in plain text 😬

#Infosec #Security

https://stackdiary.com/linksys-velop-routers-send-wi-fi-passwords-in-plaintext-to-us-servers/

1 1

stitch mastodon (AP)
1 2

As more Internet infrastructure protocols get replaced with JSON queries over TLS, I reflect on how much more bandwidth and processing power is needed to do basic stuff, and feel a little bit like we are wandering further from the light.
1 1
JamesB mastodon (AP)

You are right, of course, but it's far easier for the human eye to debug JSON than it is a myriad of binary protocols. Bandwidth is fast and relatively cheap.

I come from an embedded background though so it still makes me twitch.

Finger pointing should really go at Web frameworks though. An utter waste of bandwidth to usually display very little.

@mw1cgg I'm still trying to squeeze stuff through amateur radio and narrow band satellite links!
JamesB mastodon (AP)

I still get pissed off using more RAM than I need to. It used to be a source of pride fitting something in the smallest and cheapest chip possible, usually in assembly.

All those moments will be lost in time, like tears in rain.

Full on STM32 now in C rather than PIC assembly.

Ghost mastodon (AP)
JSON over packet radio is the most cursed thing I’ve seen so far this month, although it’s still early

Pippin friendica

I just finished logging into eight different Twitter accounts (all of which had 2-factor of one kind or another on them, so were fairly safe anyway) and changing all their passwords. Including one account I created back in 2011 or something and have literally never got round to using. I'm not sure I can even remember what it was going to be for, now, although I'm sure I had a project in mind for the account name. I know, I should probably just delete them all, but I hate deleting stuff, probably for the same reason my living space is jammed full of stuff I haven't used yet (but absolutely definitely will someday). At least with fresh passwords they should be safe to leave alone for now.


if you somehow still have a twitter account make sure to change your password, and any shared passwords. they just got hacked
https://cybersecuritynews.com/massive-9-4gb-twitter-data-leaked-online/

GrumpSec Spottycat mastodon (AP)
@Jessica eh, until I see more evidence/proof, sounds like a scrape of previously already known about stuff and there's no passwords/MFA included: "The leaked data includes email addresses, names, and Twitter account details"
1
Pippin friendica
@GrumpSec Spottycat @Adderall girl grindset (Jes) True, although it may have included stuff they didn't mention. (Of course, if it included password hashes it may have also included TOTP secrets). Either way, not a bad thing to go through and check I still had access to them all. And refreshing passwords can't hurt.

if you somehow still have a twitter account make sure to change your password, and any shared passwords. they just got hacked
https://cybersecuritynews.com/massive-9-4gb-twitter-data-leaked-online/
1 1

Reyn Goldfur 🔞 mastodon (AP)

In this house, we don't kinkshame.

We kink-enable. 😏

Being a furry with lots of wonderful and varied friends means that (almost) no matter what degenerate filth crosses my timeline, I know somebody I can send it to, safe in the knowledge it'll give them an inappropriately timed boner. :3c Muehehehe~ #furry #kobold #phone #kink #teasing #comic

This entry was edited (1 year ago)
1 4

The three act structure of storytelling:

1) Aw shucks do I have to?
2) Living the grindset and barely scraping by and shit keeps going wrong
3) Finally. Can I go home now?

#AmWriting

1 1

Tragedy edition:

Act I: I tried so hard
Act II: and got so far
Act III: but in the end, it doesn't really matter

#AmWriting

This entry was edited (1 year ago)
1 1

Hero's Journey edition:

Act I: Hey now,
Act II: You're a rock star, Get your show on
Act III: Get paid

#AmWriting

1 2

Dairishgoat mastodon (AP)

Hyena nubs.

Eurofurence 19 in 2013.

1 2

2 2
Later posts Earlier posts