@baloo@sfba.social avatar

baloo

@baloo@sfba.social

copying and pasting from stackoverflow.
Nerd on a #bike, writing #RustLang and doing crimes with #NixOS

This profile is from a federated server and may be incomplete. Browse more on the original instance.

baloo, to random
@baloo@sfba.social avatar

Second coworker today to reach in my DM for advise on getting starting with rust.
3rd this month.

I can't even say it's the holiday season effect, not all of them are in the US.

clive, to random
@clive@saturation.social avatar

Can you imagine the conversations going on right now in all the startup companies that built their product on top of ChatGPT?

I don't mean to mock or belittle any of them -- some of those services are good, some are just a layer of html/css/javascript dirt on top of OpenAI

But it really shows the risks of building a company entirely on top of someone else's product

baloo,
@baloo@sfba.social avatar

@clive @benbradley that is not what the article reads?
They moved the content via internet, the truck crashes relates to the new machines they were installing in their datacenter. Or am I reading that wrong?

baloo,
@baloo@sfba.social avatar

@clive @benbradley (to be more specific, aws has a service to move data in to aws (snowmobile), but I’m not sure they have anything to move data out, except by copying it out of storage via the internet)

gsuberland, to random
@gsuberland@chaos.social avatar

I wish more household things came with those twist-to-release buttons used for emergency stop. I want to feel something meaningful when I turn the microwave on.

baloo,
@baloo@sfba.social avatar

@gsuberland Neutrik powercon connectors everywhere!

gsuberland, to random
@gsuberland@chaos.social avatar

I wonder if AMD's choice to use PCIe lanes for IPC will end up biting them in the datacenter ML market in the long run.

Intel's per-CPU PCIe lane count isn't as high, but the dedicated UPI bus for IPC means they can linearly scale the lane count in MP servers, and they can scale up to 8S. AMD, on the other hand, can only scale to 2S, and ~40% of the PCIe lanes on both sockets end up being used for IPC, so you only get a few extra lanes when jumping from 1S to 2S.

baloo,
@baloo@sfba.social avatar

@gsuberland aren’t pcie switches a thing now?
Besides latency issues, which you might expect with 8S systems?

baloo, to random
@baloo@sfba.social avatar

Customer: "your product should have protections against zero days."

mjg59, to random
@mjg59@nondeterministic.computer avatar

Dealing with Dell firmware that wants an admin password to boot from an external device, except if you just let it synthesise the boot entry and then set BootOrder to that it'll happily boot from the external device

baloo,
@baloo@sfba.social avatar

@mjg59 @SwiftOnSecurity
wild guess: this is for disk encryption "offload" on high end perc controllers. (Where the key for Self Encrypting Drives is stored and handled by the perc)

I think that was the recommended approach to prevent boot from non internal devices.
I might have screamed a little on that call.

DrTCombs, to cycling
@DrTCombs@transportation.social avatar

What color clothing am I supposed to wear around drivers who see me and just don't give a $hit?

baloo,
@baloo@sfba.social avatar

@DrTCombs even with a bright yellow vest I almost got a head collision because driver didn't seem like waiting to overtake a car double-parked on their lane this morning. So I don't have an answer to that question.

mjg59, to random
@mjg59@nondeterministic.computer avatar

Slides for my Linux Security Summit presentation on hardware-backed per-process secretsL https://docs.google.com/presentation/d/1D8nOUg1-nX9JooslM16no6aSksoU4smZ8GzTPAWDxW0/edit?usp=sharing

baloo,
@baloo@sfba.social avatar

@mjg59 halfway curious: wouldn't - somewhat extended - write patterns to NV burn flash cells in the TPM?

baloo,
@baloo@sfba.social avatar

@mjg59 Ha, I missed that.

mjg59, to random
@mjg59@nondeterministic.computer avatar

First time in O'Hare for a long time - 2018, apparently?

baloo,
@baloo@sfba.social avatar

@mjg59 try sharing TPM tips on TikTok, that should shave off a couple years.
“🎶always cap off your PCRs. 🎶”
“🎵 here is the secret behind PCR0 and intel bootguard 🎤”

kwf, to random
@kwf@social.afront.org avatar

Living the homeowner dream involving rolls of the pink stuff.

baloo,
@baloo@sfba.social avatar

@kwf tools you need:

  • dust mask
  • long sleeves
  • fire pit to burn the last two in that list
baloo,
@baloo@sfba.social avatar

@kwf upside: they won’t be itchy anymore

malwaretech, to random

The concept of being a felon is so funny to me. It's like "hey, you did some crime when you were 19, so we're going to make it exponentially harder to not do crime in future by limiting basically all your options for survival".

baloo,
@baloo@sfba.social avatar

@malwaretech not even bear spray?
So you can’t just go camping in most places anymore?

kwf, to random
@kwf@social.afront.org avatar

Flipper Zero status: the wireless remote for my truck doesn't work anymore, and I can't figure out how to fix it.

baloo,
@baloo@sfba.social avatar

@kwf isn’t there rolling codes in those schemes?
The ones where if you fuck up that will desync the actual key fob?

mjg59, to random
@mjg59@nondeterministic.computer avatar

If I had a nickel for every time I've been facing a firmware bug that involves sniffing TPM traffic, I would have two nickels. That's not a lot, but it's funny that it happened twice.

baloo,
@baloo@sfba.social avatar

@mjg59 how do you sniff tpm traffic actually? Logic analyzer or do you have something more practical?

baloo,
@baloo@sfba.social avatar

@mjg59 practical/immediate I should say.

fasterthanlime, to random
@fasterthanlime@hachyderm.io avatar

It's been two months and still no new libc release, which means I can't land the changes in nix, which means I can't fix ktls. 😢

https://github.com/rust-lang/libc/pull/3287

baloo,
@baloo@sfba.social avatar

@fasterthanlime can’t you just [patch.crates-io] in the mean time?

baloo,
@baloo@sfba.social avatar
baloo,
@baloo@sfba.social avatar

@fasterthanlime ha right, sorry for the noise then.

philpem, to random
@philpem@digipres.club avatar

It's not often you see Python derps IRL... Scotrail seem to be having a special on b'-quoted byte strings today!

baloo,
@baloo@sfba.social avatar

@philpem at least they are using python3.

foone, to random
@foone@digipres.club avatar

ugh. the good news is that I can write some clever xpath that makes this SVG-manipulation trivial

the bad news is that I'm having to use ElementTree, which has "limited support for XPath expressions", so NOPE! my xpath won't work

baloo,
@baloo@sfba.social avatar

@foone hate fusion360, onshape is actually kinda great though. I wish there was a Linux version of solidworks.

kwf, to random
@kwf@social.afront.org avatar

I just lost power at my house again.

I'm beginning to think I should go all in and not just install grid tie solar but local storage. I've lost power at least 6 times this year already

baloo,
@baloo@sfba.social avatar

@talldarknweirdo @kwf said rabbit holes will eventually form a network. Said network will talk bgp at some point.

mjg59, to random
@mjg59@nondeterministic.computer avatar

STOP DOING PKCS#11

  • SECURITY SENSITIVE APPS WERE NOT SUPPOSED TO LOAD ARBITRARY CODE
  • YEARS OF DEVELOPMENT but NO REAL-WORLD USE CASE FOUND for PROPRIETARY CODE
  • Wanted to drive your HSM anyway for a laugh? We had a tool for that: it was called "GHIDRA"
  • "Yes, please dlopen() /usr/lib/systemd/boot/efi/linuxx64.elf.stub. Please dlclose() libsegfault.so" - Statements dreamed up by the utterly Deranged

They have played us for absolute fools

baloo,
@baloo@sfba.social avatar

@mjg59 yubihsm :)
Commands to the hsm are documented. Code is open source. Folks at iqlusion have a rust crate to talk to it directly.

kwf, to random
@kwf@social.afront.org avatar

What are we supposed to do once the retail therapy stops working?

baloo,
@baloo@sfba.social avatar

@kwf You're out of luck since you already tried the - proven - just-setting-up-this-bgp-router therapy.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • GTA5RPClips
  • ethstaker
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • tacticalgear
  • anitta
  • megavids
  • Leos
  • cisconetworking
  • lostlight
  • All magazines