@Sominemo@collar.place
@Sominemo@collar.place avatar

Sominemo

@Sominemo@collar.place

Sergey | Web & Flutter Dev | 21 y.o.

:verified_paw: A furry that draws sometimes and enjoys TF

My drawings: https://instagram.com/sominemo/

You could've seen me as a certain blue rabbit elsewhere.
#pwa #flutter #dart #furry #telegram

This profile is from a federated server and may be incomplete. Browse more on the original instance.

Sominemo, to random
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

And I caught Microsoft at doing this nasty thing again.

First time I noticed Microsoft doing this on Microsoft Designer website: https://collar.place/@Sominemo/110275107838229822

"We'll be as evil as your local laws allow us"

Sominemo, to random
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

Google Play is killing indie devs

Google will now require developers to get 20 testers and developers will have to "test" their apps for two weeks before launching into public testing or production.

Sorry but where am I, an indie dev who just publishes my small pet projects, supposed to get 20 testers?

It's almost a school class, is a lot of people to get and sign up for your testing. I'm expecting for services to fake these testers to pop up.

https://support.google.com/googleplay/android-developer/answer/14151465

Sominemo, to random
@Sominemo@collar.place avatar

DON'T use username.t.me links. They are UNSAFE. Your ISP can see what handles you interact with this way. Always use t.me/username links instead.

Technical explanation: with current web protocols, the domain part of your request is unencrypted (you either use plain-text DNS instead of DoH/DoT, or your browser and the website doesn't support Encrypted Client Hello. ECH still has low adoption). Having a username in the path instead of subdomain puts it into the encrypted part of the request.

Sominemo, to random
@Sominemo@collar.place avatar
Sominemo, (edited ) to random
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

Modern Google won't invest their own money into anything risky anymore. They want investors.

Context:

  1. https://9to5google.com/2024/02/06/gfiber-more-cities/ [GFiber looking for external investment to expand to more cities]
  2. https://electrek.co/2021/06/16/waymo-announces-another-2-5-billion-in-funding-from-latest-investment-round/ [Waymo announces another $2.5 billion in funding from latest investment round]
  3. https://9to5google.com/2024/01/22/alphabet-x-restructuring/ [Alphabet restructuring X to allow for outside funding, results in layoffs]
Sominemo, to random
@Sominemo@collar.place avatar

YouTube you absolute monster, you show me seal videos in recommended, and I do love watching them, but I shouldn't be watching them, and pressing "Not interested" on them feels so rude because I love them.

Sominemo, to random
@Sominemo@collar.place avatar

I missed fibre optics Friday, oh noes

Sominemo, to random
@Sominemo@collar.place avatar
Sominemo, to telegram
@Sominemo@collar.place avatar

Telegram Demands All Bot Developers to Sell Paid Features Using Its New Currency

Telegram is sending out messages to bot developers, requiring them to start accepting payments for digital goods only through Telegram API in "Stars" currency. They explain this decision was made due to pressure from Apple.

Worst part that has nothing to do with Apple — all payouts will be done in TON cryptocurrency. And some other iffy decisions.

You can read my coverage here:
https://tginfo.me/telegram-stars-en/

soulfirethewolf, to random
@soulfirethewolf@wetdry.world avatar

It's kind of frustrating that .xyz gets abused so much for spam and stuff. I'm afraid of one of my domains for email just getting sent to spam solely because of its tld. I already can't use it on Steam.

Sominemo,
@Sominemo@collar.place avatar

@soulfirethewolf I believe this is because Hostinger used to give it out for free (or still do?)

Sominemo, to random
@Sominemo@collar.place avatar

Google is pushing AI so hard they'd rename Google I/O to Google A/I.

Yeahhh, you're right, I'm giving them ideas.

But look, from this class name in Google Pixel, it seems like they get paid for every use of "AI":
com.google.android.apps.miphone.aiai.app.wallpapereffects.AiAiWallpaperEffectsGenerationService

Sominemo,
@Sominemo@collar.place avatar

Lmao, this was the worst Google I/O ever, every single thing announced is about AI and not a single feature is in general availability today: either private beta or "available later this year".

Sominemo, to random
@Sominemo@collar.place avatar

I sold my soul for a MacBook Pro.

Sominemo, to random
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

Okay so the idea is

You have two WPA3 APs which share a password but have different SSIDs. You as the user know that one of them is not secure somehow. You might also have a VPN configured to disable automatically only on the secure SSID.

An attacker creates an AP near, with the secure SSID, and relays your connection to the insecure one. The client device will show secure SSID but connection security will be degraded, and VPN will disengage.

https://www.top10vpn.com/research/wifi-vulnerability-ssid/

Sominemo,
@Sominemo@collar.place avatar

Not sure how many networks would actually rely on SSID or would have two WPA3 APs with different SSIDs one of which is vulnerable somehow. Sounds a bit exotic.

But authors show one good case with eduroam, where they make university devices from Campus A connect to spoofed APs relaying to less secure devices in Campus B. Client devices still think they are connected to Campus A and disengage VPN.

And there an attacker can theoretically MITM into plain text traffic. Because it's time to go TLS.

soulfirethewolf, to random
@soulfirethewolf@wetdry.world avatar

opens tf2

immediately sniped by sniper bot

closes tf2 and opens overwatch 2 instead

Sominemo,
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

Signal is an unfeasible alternative to Telegram or any other cloud based messenger while it remains all local storage-only. Do you really want to be forced to keep all the furry stickers people use etc. in your constrained local storage you can't expand easily?

Sominemo,
@Sominemo@collar.place avatar

@sneexy yeah, that's kinda the point, that I don't want to remove my old conversations in favor of e2ee. I don't talk about anything so confidential all the time (or at all) that I wouldn't want the service provider to see the contents.

If E2EE is a must, Signal could come with some sort of personal cloud solution tho, that would allow Signal to store large amounts of data encrypted in a cloud or a NAS you point it to and it would pull data partially on demand.

Sominemo,
@Sominemo@collar.place avatar

@sneexy automatic chat backups is not the same as pulling data from cloud partially, backup still forces you to keep a full image of your chat data locally, it seems.

Also in my experience, backups just fail silently in the background sometimes and you learn that you lost your chats only post factum. That wasn't with Signal I believe tho, just a bad experience.

18+ Sominemo, to random
@Sominemo@collar.place avatar

Of course you two idiots have no clue about your competitors, the fact Signal was initially funded by a US gov open fund is common knowledge for anyone who mindfully considered encrypted messaging and googled about it at least once

Sominemo,
@Sominemo@collar.place avatar
Sominemo, to random
@Sominemo@collar.place avatar

if somebody says "domain broker" you can only imagine this guy

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • GTA5RPClips
  • tacticalgear
  • tester
  • normalnudes
  • osvaldo12
  • everett
  • cubers
  • ethstaker
  • Leos
  • megavids
  • cisconetworking
  • anitta
  • lostlight
  • All magazines