Skip Navigation

User banner
Posts
1
Comments
27
Joined
2 yr. ago

  • When I have problems like this, I start to question whether I can program at all and whether I should perhaps change my profession. This often happens when I'm tired or overworked. I make stupid mistakes and assume that the cause of the problem is something complex.

  • Just a guess, but I think it is also somehow connected to an handler object

  • To fully grasp how containers actually work, you should read the Linux kernel documentation on namespaces and permission control via capabilities.

    Hmm, I thought the aspect of demystification would also include a brief explanation on, how namespaces and capabilities work.

  • It's not security debt, it's just general technical debt.

    I would also say, that this is just technical debt. I also fully understand, that there are things like breaking changes. I remember clearly when we used asyncore in the past for Python at work and then it became deprecated. It was still possible to use it for a long time, but a change was needed. Such breaking changes caused work and are not nice. Especially if it is a big software.

    On the other side, I am not happy if I buy software or hardware, which has probably insecure dependencies. I understand the developers, I am also one, and I know that many things are not under their control. I am also not blaming them. But it is a no-go if something new is sold with 10-year-old OpenSSH Server, 15-year-old curl or other things.

    But I am not taking exotic vulnerabilities that seriously. Like, if you need specific constellations, so this is somehow hackable.

  • German liberals think, that the rise of the AfD is a product of Russia. You know, without Russia we all would live in peace and there would be no rightwing extremism anymore

  • Since May, according to Microsoft, Chinese hackers have been secretly accessing data from the State Department and Commerce Department, among other targets including Western European entities.

    Shut the fuck up. Its not Chinas fault, that Microsoft miserably failed. Whoever of the whatever-department decided to put their stuff in to the microsoft cloud was an idiot. How the fuck could this happen at the first place. This remindes of Solardwinds, when their password "solarwinds123" (What a secure password!) has been spotted on their Github repo.

    MSA (consumer) keys and Azure AD (enterprise) keys are issued and managed from separate systems and should only be valid for their respective systems. The actor exploited a token validation issue to impersonate Azure AD users and gain access to enterprise mail.

    (source)

    They had one fucking job. But no no, its not their fault, its China! Dont look at us, our cloud products are still great. And please dont forget to put 20 layers of snake oil on your computer

  • How concrete is that antifascism. Having gay sex is a personal choice, based on one's own preference. Furthermore, it fails to recognise what fascism actually is: the atomisation of all organs of the working class.