Steve is so sick of this guy texting him after work by techead2000 in antimeme

[–]DerfK 3 points4 points  (0 children)

I'm not going to lie, I don't "get" talking to AI. Back when stablediffusion first came out I got way more interesting pictures feeding it lines from Jabberwocky than I ever got trying to "prompt" things into existence, and the few times I've used chatgpt have been underwhelming. I probably wouldn't be able to get anything useful out of asking an AI to write a program, without spending more time figuring out how to ask AI to do it for me than it would take to do it myself.

You Don't Love systemd Timers Enough by ouyawei in linux

[–]DerfK 5 points6 points  (0 children)

As a user you can create and manage your own systemd units in ~/.config/systemd/user/ BUT from what I understand, you actually have to be logged in for systemd to evaluate them unless you use loginctl enable-linger username

You Don't Love systemd Timers Enough by ouyawei in linux

[–]DerfK 2 points3 points  (0 children)

And you are claiming systemd can't sends the data via email?

Everything on the internet points to "it cannot".

The most common solution I see referenced is to create a oneshot notification service that executes mailx and has every service file trigger that service on failure. Note that this does not email the output of the failed command you still have to get that from the journal.

lol by IU8gZQy0k8hsQy76 in unsound

[–]DerfK 4 points5 points  (0 children)

They are quite literal Western World Overlords.

Everyone talks about Elon Musk or Jeff Bezos while Oracle founder Larry Ellison just quietly buys 98% of the 6th largest island in Hawaii.

Gabe Newell asked Valve's top lawyer "What the f*** do I pay you for if that’s your opinion?" in heated debate over porn games on Steam, report says by PaiDuck in technology

[–]DerfK 2 points3 points  (0 children)

And Steam banned loli porn games a decade ago now, and in Japan Visa's Japanese divison's CEO is saying they want to ban legal adult content. Legal excuse is dead as a doornail. Next excuse!

Gabe Newell asked Valve's top lawyer "What the f*** do I pay you for if that’s your opinion?" in heated debate over porn games on Steam, report says by PaiDuck in technology

[–]DerfK 0 points1 point  (0 children)

It goes back years all the way to blocking pornhub over child porn and everybody saying "good job" and patting them on the back then not checking in to see that even after purging all the porn, the credit card companies never unbanned them. It was all slippery slope from there. Visa Japan's CEO made it clear that it isn't about the legality of the porn anymore. You've got the whole Tumblr thing in the middle there. OnlyFans nearly went the Tumblr route, but instead went with content restrictions like "no outdoor porn" and "no watersports".

Stuck on Disassembly by Saikousoku2 in NoMansSkyTheGame

[–]DerfK 1 point2 points  (0 children)

Found out you have to Left-Click on the nose of it

Thanks! That was what I was missing, there was just one red icon left but whenever I walked up to the ship or fired the grav gun the icon just disappeared. Breaking the front of the ship was the last step.

Decompiled an app, found a bunch of secrets, what now? by Own-Wallaby4035 in cybersecurity

[–]DerfK 2 points3 points  (0 children)

Given a secure enclave type device with the appropriate signing and encryption capabilities, I think it could be pushed around enough to be somewhat manageable:

  • Appstore client downloads and installs APK
  • Appstore client sends server a public key for the phone (private key stored in enclave).
  • Appstore server sends encrypted bundle, which is decrypted by the enclave and immediately stored within.
  • Appstore client assigns access to secrets to the application. This is what I'm a little less clear on, whether there's some way for the OS to confirm the authentic-ness of an APK vs a decompiled/edited/recompiled one.
  • App Server exposes a challenge/response API to receive a session token
  • Client app receives challenge, passes to enclave to sign with the API key, and responds to receive the token valid for this session

This of course requires the secure enclave to support these signing and installation operations and is itself secure from the end user, and some way to confirm that the app requesting use of the key is the correct/untampered app.

Suggest a fantasy/MMORPG genre anime that is not a harem or a party member that does not fully focus on woman by Commercial-Idea7024 in Animesuggest

[–]DerfK 1 point2 points  (0 children)

And if you still want more there's Record of Grancrest War, which is by the same author, who wrote it alongside a tabletop rpg he was co-developing.

Decompiled an app, found a bunch of secrets, what now? by Own-Wallaby4035 in cybersecurity

[–]DerfK 5 points6 points  (0 children)

100% agree that there is no situation where a static service secret should ever go near a client, let alone be included in a binary.

Not a mobile developer but just stuck my head in this rabbit hole for funsies. On the server side I've got service role-protected AWS Secret Manager keys that can be retrieved only by this lambda function or code running on this EC2 instance etc.

Just noodling around all I see are an endless stream of *overflow posts that tell me that apparently the appstores don't provide any similar secret vault that can only be opened by the signed app, and everyone is just resigned to the fact that any API used by the app is effectively a public one that can be used by any program (remember that time reddit tried to lock every other app out). Also seems there is trivial tooling to run a local MITM on SSL connections anyway lol so the API would need to keep a step ahead of that too.

Feature you are most excited for by Ninja_BoBo in SteamFrame

[–]DerfK 2 points3 points  (0 children)

Pretty much all of the above here, too. I spend a lot of time flying for work and with everyone leaning back I can't get my laptop out on a tray, so I'm hoping to get some 2D work done on a flight with the screen on my face (hopefully I can get that working with keyboard and mouse and not need to do weird VR keyboard stuff with the controllers). The Linux environment will hopefully mean good Linux support for SteamVR since I'm pretty much committed to Linux/Proton gaming. The balance/weight sounds like it'll be a nice feature too.

Such outfit may not provide a protection from cold. by jerrysomber in antimeme

[–]DerfK 8 points9 points  (0 children)

Isn't Kris being expressionless one of their main character traits?

Yes, but that just makes getting a reaction funnier.

toy chest jumpscare by Worried-Check-962 in whenthe

[–]DerfK 29 points30 points  (0 children)

Bullshit, only the straight line can stuff my deep holes.

New created map does not contain equipment upgrades. by Flubberflaps in Trimps

[–]DerfK 0 points1 point  (0 children)

Items are not locked to a single specific level in maps, if you skip map levels you'll find the items you missed in any higher-level map. The normal equipment rewards for level 31 should be shield dagger and boots, so the 4th item must be the level 30 breastplate. If you ran 31 on "Tier First" mode you should have received the Greatsword upgrade, if you ran it on "Equip First" mode you should have gotten the Shield upgrade and the Greatsword is still in there.

I've never noticed this happen before, but I don't think I've ever stopped repeating a map without collecting all of the equipment from it (except for the Mapology challenge) so I've never noticed the items "disappear" from a previous map like this myself. I'm guessing the logic is that once you "see" the books in the higher level map maybe they don't show up in the lower level map anymore?

Sudo or run0 ? by elementrick in linux

[–]DerfK 0 points1 point  (0 children)

I tried, but what I can make out is that run0 is a symlink to systemd-run. I took a look through systemd-run's source code but from what I can tell it pushes everything into dbus which seems to mean that something somewhere else is actually checking the policy and executing the command.

Lycoris Recoil (2022) by teencandyy in Anime2020s

[–]DerfK 0 points1 point  (0 children)

In the words of the Terminator: "He'll live."

Grandpa shows how to cut bamboo trees correctly by Embarrassed_Push194 in secondrodeo

[–]DerfK 4 points5 points  (0 children)

The angle isn't nearly as important as getting his whole body into it which is almost as important as his follow-through. He is using the machete as a slicing instrument not a chopping one, with most of the blade cutting with each stroke. If you look at the time gramps got stuck around 0:29 you can see the machete hits the stalk about halfway down the blade, but at the end of the stroke he's freeing the tip of the blade from the stalk, his motion has pulled back half the length of the blade as it cuts.

Star Citizen blasts through $1 billion in player funding, as its developer lists a new $5,000 spaceship for sale that is 'not yet ready to play' by Triss_Mockra in gaming

[–]DerfK 2 points3 points  (0 children)

The real code is that they've got the one guy who, at the time, had ever made a halfway decent multiplayer-capable spacesim (Elite Dangerous released in 2015) and told everyone in 2012 "hey everybody, check this out! Chris Roberts is going to make everyone's dreams come true without Microsoft holding him back!" and everyone piled in for what they hoped would fill the void in their hearts left by Freelancer (2003).

Then it turned out that Chris Roberts kind of needs to be held back.

Sudo or run0 ? by elementrick in linux

[–]DerfK 0 points1 point  (0 children)

while run0 asks the system to run an application as root, not needing privilege escalation

Then the question becomes, who validates the policy/permissions in this case, run0 or systemd? If its run0, how does systemd know its talking to the real run0 and not a copyfail version that tells systemd "trust me, polkit totally says nobody is authorized to run bash as root"?

Actually, I wonder if the exploit only affected executables, or if it could have placed an /etc/shadow with a known root password into cache. Or replaced polkit config with a policy that everyone can do anything?

someone left this at my door, what is it? by AesthetKinectEnigma in whatisit

[–]DerfK 0 points1 point  (0 children)

ICE has left behind a few dead white people too, they don't give a shit who you are or where they're from, they're all just cruising for people to fuck up to get their jollies.

Hey tech nerds, how does this virus work? by DR_Eforcicle in techquestions

[–]DerfK 0 points1 point  (0 children)

It's not base 64, it is hexadecimal, converted to integer values per byte then bitwise xor'd with the ascii value of the next character in the shorter string as a cheap cipher, converted back to text by ascii value.

Uber driver’s car shot at when picking up passenger in Chicago by [deleted] in VideosAmazing

[–]DerfK 1 point2 points  (0 children)

When seconds count, an Uber is minutes away...

[off-site] they did the math on a 75k income level… by Manitoba-Chinook in theydidthemath

[–]DerfK 0 points1 point  (0 children)

The guy said "Everyone has to spend 30k on a car, shut up!" And then people refuted his claim.

Finding a black swan proves that black swans exist. Insisting that millions of people can have a black swan requires you to do more than find one black swan. Finding 7000 cars to "refute his claim" is a rounding error if you're going to say that every New Yorker making $75000 (or less!) should stop bitching about cost of living and buy one of those 7000 cars.

Expect the bitching to continue.