sylver_dragon

joined 2 years ago
[–] sylver_dragon@lemmy.world 6 points 16 hours ago

Live a good life. If there are gods and they are just, they will accept you for your virtue. If the gods are unjust, then they weren't worth worshiping anyway. And if there are no gods, then at least you lived a good life to be remembered by .

[–] sylver_dragon@lemmy.world 16 points 17 hours ago (11 children)

How do you know a crypto scheme is a scam?
You already know, the answer is "yes". It's always "yes".
The only question is, can you hold the tiger's tail just long enough to make a mint and still let go in time that you aren't the last one holding it.

[–] sylver_dragon@lemmy.world 14 points 19 hours ago* (last edited 19 hours ago)

As other folks have already covered, most modern websites use TLS (formerly SSL) which will encrypt any thing going to/from those sites. Someone could redirect a page to a server they own and try to get you to enter your credentials into their site for harvesting, though you'd probably notice due to errors related to the security certificate. There is a risk here, but it's not all that bad. Just pay attention to any security errors and maybe don't go to high value sites (e.g. banking websites). There are some highly technical attacks (e.g. TLS downgrade) which could pose a risk. But, it's not all that likely, and you're probably fine. For the most part, you can ignore the "zomg! you need a VPN" ads clogging up YouTube. Yes, they have a use case. No, that's probably not you.

The other consideration is the security of your system itself. If you are running and old and vulnerable OS, it's possible that an attacker could use the greater exposure to attack your system. For example, if you are running a Windows 7 system, there's a real chance that you don't have the EternalBlue patch applied or some other remote exploit vulnerability can be used to compromise your system. Even with a newer OS, if you haven't been installing updates, you could have some holes which would allow an attacker in. Though, for most situations, there's not going to be an attacker just waiting to pounce on your system. So, you probably don't need to be worried. But, it's also a good reminder to keep your system up to date, if you're going to be using WiFi regularly. Some folks just get bored and start poking at anything around them. Make sure the doors are locked when those folks rattle the handle. It can also be useful to have a host based firewall running, even just setting the network to "Public" in Windows will do a lot to mitigate this risk.

Security is always going to come down to a trade off between risk and convenience. Public WiFi can be very useful, but it does carry some risk. In most situations, you can mitigate that risk by keeping your system up to date, having a host based firewall running (even if its just Windows setting the network to "Public"), watching URLs/Links carefully and watching for certificate errors in your browser.

On the Privacy side, assume someone can track the domains you are visiting (though likely not the full URL). If you use normal DNS, the network owner can look at DNS logs and know all the sites you visited. Even if you use a different DNS server, the network owner could be sniffing the packets on the wire (DNS is not encrypted). Additionally, WiFi is logically a bus topology; so, anyone on the same network could be sniffing packets and also get all your DNS traffic. This is a good use case for DNS over HTTPS (DoH). With DoH, you can stick to a DNS provider of your choice and get TLS encryption to keep things private. Anyone sniffing packets would know that you are using DoH and would likely know what provider you are using, but not see the contents of the DNS queries.

Of course, even with DNS traffic encrypted, most web servers still rely on Server Name Identification (SNI) to determine the host you are connecting to. The end result of this is that the domain you are visiting is sent, unencrypted over the wire and could be sniffed. There are solutions for this (e.g. eSNI), but they are not widely adopted yet. So, assume that anyone sniffing packets can get a list of the domains you are visiting. If this poses a serious risk to your safety (e.g. you are a journalist working in a repressive regime), this is a use case for a VPN. Though, using a VPN may be obvious to anyone monitoring and they could apply Rubber Hose Cryptanalysis to the problem.

The tl;dr of this all is, you're probably fine. The fact is, it's more likely that no one gives a shit about you and all the other folks on that public WiFi are too busy looking at cat pictures to try and hack you. A few simple security hygiene things will cover the 99% situation, and the other 1% isn't worth worrying about.

[–] sylver_dragon@lemmy.world 9 points 1 day ago

An Operating System is a tool. Would you be annoyed because you had to use a hex key on a bolt with a hex socket, when what you really like using is a robertson drive? If the work you are doing is dependent on a particular OS choice, then use that OS and get over yourself.

That said, if this is for work and you want to avoid the crapware in Windows 11, talk with your IT team. By default, Recall is removed on commercially managed devices. I'm not 100% sure, and can't be arsed to look it up at the moment, but this likely refers to devices managed via Intune. Assuming your IT team isn't stuck in the 90's, they are probably doing this already. Telemetry can also be mostly disabled via Group Policy, and many IT organizations will already be doing this. Or, as you have arrived at, use a Mac and disable the telemetry.

On the other side of that coin, if you expect privacy on a work owned device, I have bad news for you. More and more organizations are using Endpoint Detection and Response (EDR) products on all endpoint devices. Yes, this includes Mac and Linux devices. So, your organization is watching you browse porn on your work device. If you are doing something and you don't want someone watching over your shoulder, don't use a work device. Keep your work device for work and your personal device for everything else.

[–] sylver_dragon@lemmy.world 3 points 1 day ago

When my father's dog was getting towards the end of his life, my father would order an extra burger patty, with nothing else for the dog. He figured the dog was close enough to the end of his life, the occasional burger patty wasn't going to cause meaningful harm and it gave the dog a nice treat.

You may have had a customer with a similar situation.

[–] sylver_dragon@lemmy.world 1 points 1 day ago

But, we'll know where the aircraft is. It's a built in, instant location flare. No more aircraft disappearing and not being found.

[–] sylver_dragon@lemmy.world 2 points 1 day ago (1 children)

I played naked frisbee on the front lawn of my college once. I thought it would be effortless but in fact it’s extremely painful to have your nuts bouncing around unsupported like that.

I had a similar discovery about kickboxing practice and boxers. It's not fun when you're holding a thigh pad for your partner to practice kicking, and you realize that your legs can transmit energy, much like a newton's cradle.

[–] sylver_dragon@lemmy.world 4 points 1 day ago

It seems that internal polling put the "weird" message as not really helping (or hurting) the Harris campaign. Arguably, keeping up the "weird" message may have been useful, but they were likely trying to find something that seemed to have a larger impact.

[–] sylver_dragon@lemmy.world 13 points 1 day ago (1 children)

It's rather amazing that this one guy keeps churning out fixes for FromSoft's complete inability to understand multiplayer.

That said, I do plan to try the vanilla setup first (finishing up Shadow of the Erdtree before we change over). I just worry about my wife and I dropping into a session and having some rando who either wants to faff about; or, we run into the type of toxic behavior which seems to inundate online games. We had pretty good luck with Vermintide 2, back in the day. But, with way too many years of playing WoW, we've also run into a lot of assholes. And we just don't have the patience for that sort of thing anymore.

[–] sylver_dragon@lemmy.world 16 points 2 days ago

Well, the world should have moved on to IPv6 a long time ago.

[–] sylver_dragon@lemmy.world 2 points 2 days ago

Yet.

If the store ever takes off, the enshitification will ensue and MS will demand a sacrifice.

[–] sylver_dragon@lemmy.world 40 points 3 days ago (2 children)

The short answer is, it's what we were taught in school. Like many preferences, it's shaped by the culture we grow up and live in.

I’m sorry but it doesn’t make sense to me.

Of course not, you were raised and live in a different culture; so, your preferences are different.

Ultimately, the right answer is ISO8601. It's unambiguous and sorts well on computers. But, I don't think any culture is teaching that as the primary way to write dates, so we're stuck with the crappy ways.

 

With layoffs starting at WordPress, and me recognizing that I'm a bit of a dinosaur in this regard, I'm wondering what folks are using for self-hosting their own blog these days? While I'm not exactly prolific, I do like having my own little home on the internet to write up things I find interesting and pretending people actually read it. And, of course, I really don't want to be reliant on someone else's computers; so, the ability to self-host is a must.

Honestly, my requirements are pretty basic. I just want something to write and host articles and not have to fight with some janky text editor. And pre-built themes would be very nice. It would be nice if there was an easy way to transition stuff I have in WP; but, I can probably get that with some creative copy/paste work.

So, what are all the cool kids blogging on these days?

 

On our current world, we decided to try a different tactic for fighting Bonemass. In retrospect, the bonfires were mostly pointless, but the platform worked out pretty well.

A couple minutes into the fight, I discovered that I could reach Bonemass with my mace from the platform, by taking out the half-walls. While a bit dangerous, this greatly sped things up.

 

I would like to request to take over moderation of the community: https://lemmy.world/c/virginia

The current mod "@gabowo@lemmy.world gabowo" has been inactive for 2 years and the last mod action for the community was also 2 years ago (https://lemmy.world/modlog/4102).

 

A great quantitative examination of the effects of infill on part stiffness.

 

On May 8, 1971, a freelance photojournalist was flying over central Vietnam when he looked down and saw something unexpected: A huge peace sign that had been carved into the landscape near Camp Eagle, home of the U.S. Army’s 101st Airborne Division during the Vietnam War.

Fifty-four years have passed since the photo was taken, but the person who created the peace sign was a mystery.

Until now.

 

I recently used Firefox Nightly on my Android device, in a private tab, to login to gmail. After I closed the browser, both via the "quit" menu icon and via swiping the Firefox away in the Overview, I had expected the session information to be deleted and the next time I came back to gmail via a private tab, to be required to login again. However, this was not the case. Despite closing out the browser, something seems to have survived and the I was immediately logged back into the gmail session.

Is this some sort of expected behavior? Shouldn't closing out the browser delete all session information from a private tab? Is there something I missed that maybe I'm not actually "closing" the browser?

 

My daughter wanted a "Gorilla Tag" birthday. And my wife wanted me to print some party favors for the guest kids. Not my model, but they are churning out ok-ish.

 

I'm currently purchasing a new GPU and specifically settled on the MSI 4070 Super. I'm all set for everything except connecting the display to the card.

Currently, the display I have (which isn't being upgraded for now) only has two input options: DVI and VGA. The new GPU only provides HDMI or Display Port. This isn't really a problem as adapters/cables exist to go from Display Port/HDMI to DVI-D.

But, the question I have is, which is the better option, or does it make any difference? And, are there any "gotchas" I should watch out for when buying the cable?

I realize that I am likely over-thinking this, but I would rather ask a stupid question than make a stupid mistake.

 

Just got started with this game (PC - Steam version). It's fun so far. I had really wanted to use my controller. But, the aiming movement is so sluggish. I've tried pushing the "Aim Sensitivity" up to 10, but still felt like I was turning through molasses. Is there anything which can be done to speed that up, or is the controller just fundamentally slow on PC?

Using an Xbox controller via Bluetooth. And the issue isn't lag, it's the rotation speed in game.

 

The politically divided Virginia General Assembly approved long-overdue budget legislation Wednesday, voting in an unusually fast-paced special session to both reduce taxes and boost spending on public education and mental health as part of the package.

 

The free Friday ride program seems to be having the impact the Virginia Railway Express wanted when the commuter rail system decided to offer it earlier this year.

The program started on June 2 and will run through Sept. 1. The aim is to draw new and non-traditional riders to take train trips north and back home.

So far, the program has increased average daily rider trips for those Fridays by around 40%, from about 3,500 to 5,000

view more: next ›