@phryk@mastodon.social
@phryk@mastodon.social avatar

phryk

@phryk@mastodon.social

Your friendly neighbourhood hⒶcker hobo.
Likes dinosaurs, dislikes hierarchy.

Come for the music recommendations, stay for the #propaganda.

#nojs #ux #infosec #python #freebsd

This profile is from a federated server and may be incomplete. Browse more on the original instance.

kev, to Futurology
@kev@fosstodon.org avatar

deleted_by_author

  • Loading...
  • phryk,
    @phryk@mastodon.social avatar

    @kev Nooo, you should've accepted and recorded the whole thing…! 😂

    keir, to random

    Happy
    This photo was a 6 month exposure from my back yard, It shows the tracks of sunlight from one solstice to the next.

    phryk,
    @phryk@mastodon.social avatar

    @keir Neat, reminds me of the Lorenz attractor.

    vautee, to random
    @vautee@chaos.social avatar

    Tram goes Bim

    Quelle: birdsite

    phryk,
    @phryk@mastodon.social avatar

    @vautee Bim Beste.

    phryk, to random
    @phryk@mastodon.social avatar

    A point in the discussion I at least haven't seen talked about yet: Blocking meta by default in code.

    I'm in the process of completely rewriting my datajournalism webframework and have repeatedly thought about fedi/AP integration – and at least for this, as a tool where privacy and security are somewhere between very important and absolutely paramount, blocking access by surveillance capitalist platforms by default seems like a very prudent thing to do.

    phryk,
    @phryk@mastodon.social avatar

    I for one can definitely pledge that if I end up writing AP integration, that integration will block reads by any fedi service I know to be run by Google, Meta, any of Peter Thiels companies and similar actors by default.

    Which, I guess will surprise no one who knows me. ¯_(ツ)_/¯

    phryk,
    @phryk@mastodon.social avatar

    I can see an argument being made that this is not, or at least less important for clients as they would only give a single users data to this kind of actor and the user has to actively input their instance.

    And, personally, I would say that a client showing a warning and getting an extra opt-in from a user if they choose an instance run by Meta (or some other surveillance corp) is enough to fulfill the spirit of the pact.

    phryk,
    @phryk@mastodon.social avatar

    What, I'm saying, I guess, is that I'd like to see something akin to but for developers to pledge that their software is going to block actors like Meta in their fedi software by default.

    I'm just not sure whether this should look exactly like fedipact.

    Client and server software have different concerns here for example.

    phryk,
    @phryk@mastodon.social avatar

    What I'm less sure about is whether Amazon should be blocked.

    I know a non-negligible percentage of the fedi already runs on Amazon infra.

    That's a bit concerning, but I don't know shit about S3 etc. so I can't judge on things like whether instance TLS keys can be read by Amazon.

    rysiek, to random
    @rysiek@mstdn.social avatar

    rysiek's theory of large hierarchical organizations:

    as opposed to capital, shit does in fact trickle down

    phryk,
    @phryk@mastodon.social avatar

    @rysiek I'd rather say it gets pumped down at high pressure and sprayed right into a fan array. :thaenkin:

    tasmo, to bass German

    You like to listen to bass music while working?

    Here is a DJ mix with a journey into not too quiet Dubstep and Downtempo tracks.

    https://hearthis.at/tasmo/dj-tasmo-deep-work/

    phryk,
    @phryk@mastodon.social avatar

    @tasmo Hells yeah, there's a Culprate remix of that tune. 👌

    phryk,
    @phryk@mastodon.social avatar

    @tasmo This is some good shit and I don't know a single artist in the tracklist – that's an exceedingly rare thing for genres I actively follow.

    Love the tune starting around 25:30, extremely chefskiss.

    yaelwrites, to random
    @yaelwrites@mastodon.social avatar

    Where do lost minds go?

    phryk,
    @phryk@mastodon.social avatar

    @yaelwrites next to the heap with all the socks that ever got lost in washing machines.

    phryk, to random
    @phryk@mastodon.social avatar

    docker is only a thing because of people who couldn't figure out proper release engineering send toot

    phryk,
    @phryk@mastodon.social avatar

    @greymatter Yeah. 127.0.0.1 / ::1 are bound to lo0.

    I have a lo1 that contains a /24.
    The host gets the first address on that (10.101.2.1 for example) and the jails on later addresses.

    Also, I kinda suspect that "rootless" in podman context is similar to the shared basesystem thing I got – everything except /usr/local (where all user-installed stuff goes) only exists once and is mounted read-only into every container.

    phryk,
    @phryk@mastodon.social avatar

    @greymatter Sure I can – but this isn't linux, so it's a different (i.e. incompatible) mechanism.

    And yeah, jokes aside, I'm not bitching about projects that also release a docker container while doing proper release engineering and documentation.

    phryk,
    @phryk@mastodon.social avatar

    @greymatter Heard good things about podman, but since it's not on my platform, I haven't looked into it.

    On my own infra, I run a custom thinjail setup where all jails share a base system and are on an extra loopback interface.

    Access to internal services (and other resources like certs) is shared only for the jails that actually need them via unix sockets in readonly nullfs mounts.

    Been periodically refining this setup over the last decade or so and it's getting pretty close to my ideal. :)

    phryk,
    @phryk@mastodon.social avatar

    @greymatter
    But with these projects where the entire setup doc is essentially "shut up and run this docker image" I have to assume that they don't follow good practices.

    One problem here is that while containers are a good means of logical/administrative encapsulation, way too many people think they are security encapsulation on par with VMs – which they definitely aren't.

    jacqueline, to random
    @jacqueline@chaos.social avatar

    -----BEGIN OPENSSH PRIVATE KEY-----
    b3BlbnNzaC1rZXktdjEAAAAABG5vbmUAAAAEbm9uZQAAAAAAAAABAAAAaAAAABNlY2RzYS
    1zaGEyLW5pc3RwMjU2AAAACG5pc3RwMjU2AAAAQQTMLsuWhCH6h9ZFVDEuMQl7u/supv8r
    vemP2pUatWdBY8HiAPGcVYv94PumJt0gT4ZvM4HHlnhfWhpUaJKvsh9yAAAAsObDVGfmw1
    RnAAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBMwuy5aEIfqH1kVU
    MS4xCXu7+y6m/yu96Y/alRq1Z0FjweIA8ZxVi/3g+6Ym3SBPhm8zgceWeF9aGlRokq+yH3
    IAAAAgInhx8hYRL5YhvTkbz4p1T7R4U70aYp5lQnH4m3hNXyYAAAARamFjcXVlbGluZUBy
    ZWZvcm0BAgMEBQYH

    phryk,
    @phryk@mastodon.social avatar
    phryk, to random
    @phryk@mastodon.social avatar

    sips tea and ignores fraught scene drama

    phryk,
    @phryk@mastodon.social avatar

    Do I have opinions? Sure.
    Do I feel I should weigh in? No, not really.

    I'm just gonna keep hacking and trying to do my tiny part in making FOSS a community that's enjoyable for people.

    phryk, to Dubstep
    @phryk@mastodon.social avatar

    https://yewtu.be/watch?v=_WOvi3rW4SQ&quality=dash

    Kryptic Minds feat. Alys Be – Time Flies

    Still one of the very best dubstep tunes. <3

    phryk, to random
    @phryk@mastodon.social avatar

    Finding it to be too little too late that people realize using billionaire platforms for convenience makes them complicit.

    I mean hell, it's already foreseeable that virtually everybody bitching now will forget about this as soon as the next big thing comes around. And I'm not sure at all most of these people will leave platforms like Whatsapp even now.

    Just saw a toot recommending people leave Twitter even for Bluesky and, like – do you have any clue who the fuck Jack Dorsey is? :thaenkin:

    phryk, to dnb
    @phryk@mastodon.social avatar

    https://yewtu.be/watch?v=UyNAFqvH-qA

    Misanthrop – Alert

    Didn't even notice Misanthrope putting out a big EP last year. Real high quality stuff. 👌

    phryk, to random
    @phryk@mastodon.social avatar

    Oh no, some rich people died in the ocean. What a tragedy. 🥱

    Can we now please redirect the ridiculously huge rescue effort for five rich bitches to the thousands of migrants drowning in the Mediterranean every fucking year? :thaenkin:

    phryk, to random
    @phryk@mastodon.social avatar

    I got at least 26 mosquito bites within 15 minutes yesterday.

    Of all the flying insects apparently the only one to survive in numbers are fucking mosquitoes.

    Usually, I'm staunchly on the side of conservationism, but with these fuckers, I'm tempted to introduce some invasive species to make sure they go extinct… :F

    phryk, (edited )
    @phryk@mastodon.social avatar

    @n3wjack Main "use" I'm aware of is being bat food. Maybe I should look/hang up whatever the hell the bat equivalent of bird houses are. Bat caves? :thinkhappy:

    phryk,
    @phryk@mastodon.social avatar

    So far this year, I have seen 0 bees, 0 wasps, 0 hornets, 0 bumblebees, 0 butterflies, 1 moth and maybe half a dozen houseflies.

    And at least 50 fucking mosquitoes.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • GTA5RPClips
  • tacticalgear
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • anitta
  • provamag3
  • Leos
  • cisconetworking
  • lostlight
  • All magazines