Skip Navigation

The Doctor
Posts
0
Comments
944
Joined
2 yr. ago

  • If you actually talk to some of those people as people (person to person, just shooting the shit, not questioning or obviously gathering intel or anything) and the subject comes up, they'll straight up tell you that.

  • I use Alt+Tab and Alt+Shift+Tab.

  • New flash: Fast twitch games go to players with the fastest twitch.

  • When somebody tells you things will be different, they're usually lying.

  • It's not like we can do anything about it. Customers can't control what a business does with the money they pay. Writing and calling don't work. The best any one person can do is cancel their service, but they're in the minority.

  • There was a betting pool back home on how long he was going to stay alive. First time I've seen everyone in a pool lose.

  • Nope. The publication date aside (2 April), DHS is not known for its sense of humor in any context.

  • If it was that easy, I don't think the US government would have mandated a whole project to figure it out. NASA would have done it by now and been using it internally for a while before anybody noticed.

    That's not sarcasm - that's kinda how NASA solves weird (to baselines) problems like this. They just sort of do it, it's done, and then somebody might get around to publishing a paper about it. At least in the years I worked there (GSFC, 2010-2013) it used to be a thing that engineers would chat about while waiting for the coffee maker to finish brewing a fresh pot, or maybe doodle on a bad while waiting for a run to finish.

  • If folks haven't yet, what's it going to take?

  • They're spending a lot of money lobbying inside the Beltway to change that. So far it hasn't worked but it's only a matter of time.

  • Deer season in Pennsylvania has entered the chat. :/

  • It was nice when it was limited to Usenet only. You knew what was coming and why, and generally speaking businesses stayed away from it.

  • Just because somebody picked a vaguely Chinese-sounding handle doesn't mean much about who or where.

  • Somebody wrote a PoC for it: https://github.com/amlweems/xzbot#backdoor-demo

    Basically, if you have a patched SSH client with the right ED448 key you can have the gigged sshd on the other side run whatever commands you want. The demo just does id > /tmp/.xz but it could be whatever command you want.