remotelove

joined 2 years ago
MODERATOR OF
196
[–] remotelove@lemmy.ca 5 points 1 day ago

Japan seems to be having more success: https://www.futura-sciences.com/en/this-new-japanese-weapon-can-neutralize-the-fastest-machine-ever-created_17488/

Still, the technical challenges are exactly the same. While I can't find many more details, it being ship mounted is a significant step forward and it seems to imply that some of the more serious issues have been solved. (A demonstration is just a demonstration and anything other than it being able to hit a target ship is just speculation.)

[–] remotelove@lemmy.ca 1 points 1 day ago

A response that is actually in context: Considering how expensive it is to build a fab for a component as critical and delicate as RAM, there is incentive to perform proper QA for products released under the original brand. Having a fab fail because of reputation is not likely an option. Rebranding wouldn't help as modules can be de-capped and the source vendor could still be identified.

The success or failure of this vendor is going to be how well they physically control their bottom tier bins and ensure that any waste product doesn't get funneled back into the supply chain. With China specifically, it seems the incentives are much higher for that behavior. Again, if you doubt that, I can point you in the direction of thousands of bunk components.

As with any company that is state owned or state backed, the potential security risk is much higher. I am not just pointing directly at one country in this case. Some governments may pose higher risks than others though. (From a security perspective, you would want trojaned components to be as reliable as possible, TBH.)

[–] remotelove@lemmy.ca 2 points 2 days ago (3 children)

Unless there is strict 3rd party (out of country) quality control or there is financial motivation for proper QA, Chinese electronics are usually trash. The market is flooded with cheap Chinese silicon fakes, which has caused significant price increases to verify legitimate parts. If its not "original" pirated silicon that is the issue, it's filed off package marking with a shitty re-badge.

You can keep barking that nationalist bullshit, but it doesn't change the fact that I have to rebuild any equipment that I need at a slight discount and don't want it to kill me because of a 2 cent savings on a missing ground.

Unlike you, I don't give a flying fuck about talking shit about another country. It's the electronics that matter to me, and if you haven't seen the absolute shit show that is Alibaba, you have your head so deep in the sand you are never going to experience that sweet smell of burning, pirated XT-60 connectors.

I have delt with so many fake parts smuggled into legit supply chains it would make your head spin. This isn't a "buyer beware" issue: it's complete lack of respect for anyone else further down the supply chain.

At least stay on-point if you are trying to defend something, FFS.

[–] remotelove@lemmy.ca 9 points 2 days ago

The art of war is extremely complex and there is no way to cover everything in one Lemmy comment.

However, I can summarize: An attacker or defender simply needs to prevent the opposing side from being able to support a war.

While there are thousands of different things that can support war, it usually boils down to raw manpower, food/supplies, weapons, energy, logistics and communications. Failing to defend, or not having the capability to replenish/repair those things is usually a quick game-over as those items are highly dependent on the other. Anything that supports those key items is a target of the enemy, so those are the things that are stockpiled, fortified or should be rebuilt quickly.

[–] remotelove@lemmy.ca 16 points 3 days ago

There are some fairly beast defense lines just past Pokrovsk the Ukraine has had plenty of time to build. Hopefully it works as advertised.

[–] remotelove@lemmy.ca 4 points 3 days ago

Both Russia and Iran build the drones, even if Russia is building the majority now. (I would speculate that the Iranian versions are much better quality.)

[–] remotelove@lemmy.ca 2 points 4 days ago (1 children)

000, 666 and 900-999 are invalid area numbers and any digit group of all zeros is also invalid. Thanks for playing!

[–] remotelove@lemmy.ca 5 points 5 days ago

From the research papers I have read, psychedelics introduce a degree of neuroplasticity that allows psychotherapy to more effective. (I cannot speak to what types of psychotherapy would be more effective than another as I do not know or understand the differences.)

I attribute my use of psychedelics to helping me through my alcohol addiction. While it wasn't guided therapy, it was still very controlled and allowed me to "rewrite" how I interpreted feelings and how I handled a variety of different situations. My hallucinations allowed my feelings to become more tangible and physical. I felt I had the opportunity to think differently about difficult parts of my life.

I suspect proper guidance is similar to what I did to myself: Have a person describe situations and the therapist proposes different ways to interpret those situations. The brain is able to physically form new pathways and sidestep old behaviors.

[–] remotelove@lemmy.ca 6 points 5 days ago* (last edited 5 days ago) (3 children)

I am making a slightly different point and have a bias to this perspective: https://www.legis.iowa.gov/docs/publications/SD/19230.pdf

I am saying that an SSN can be part of a larger validation scheme, not the only key to the castle. Specifically for government sites, SSNs can be linked to IRS data to verify places of last residence. A person generally needs to verify multiple items that are referenced by the SSN before basic authentication can be established and set by the user. (This is part of the full Authentication, Authorization and Access Control triad.)

An SSN is just a broad level identifier. If you look at many laws around the release of SSNs, the redaction is usually in place to prevent the linking of different documents and other data points.

If I released my SSN in this chat, I could be fully doxxed in a matter of seconds. It's mainly because there are many legal systems in place that use an SSN as a primary key, of sorts. (It's a bit more than that, as SSNs can be duplicated in some circumstances.)

So to say, at a high level, an SSN is considered private is absolutely correct. However, it's so easily referenced and obtainable it really isn't fully private either.

If I was to generate a full list of every possible SSN in the US (which I have done, multiple times), that list is effectively useless to anyone who obtains a copy of it. So, by itself, an SSN is effectively public.

[–] remotelove@lemmy.ca 11 points 5 days ago (5 children)

SSNs are generally considered public information but how the SSN is linked to other information is usually the more difficult bit to find and it's generally pay-walled. (Any jackass with a business license and a credit card can usually buy background check information for 'hiring'.)

But no, it shouldn't be solely used for authentication. That is just dumb. However, it can be used as part of a larger verification and validation scheme while building authentication/authorization profiles. In most systems that I have seen that use full or partial SSNs, it is always linked to several other identifiers that need to match.

[–] remotelove@lemmy.ca 26 points 1 week ago

You could probably look at RAM and GPU prices and come to the same conclusion much faster.

 

Bug Report

Describe the issue: NSFW blur/hide/show/etc setting will not save.

Steps to reproduce:

  1. Change NSFW Setting
  2. Scroll up/down or back out of settings
  3. NSFW Setting reverts to Hide

Device Information

  • App Version: 1.0.403 (403)
  • Platform: android
  • OS Version: BP4A.260105.004.E1

Modified Settings

The following settings have been changed from defaults:

  • isNotificationEnabled: 1 (default: 0)
  • isMarkdownEditorEnabled: false (default: true)
  • alwaysShowInstance: true (default: false)
  • shouldShowPageNumbers: true (default: false)
  • commentTextStyle: bodyMedium (default: bodyLarge)
  • enableCommentNavigator: true (default: false)
  • shouldAlwaysDisplayAvatars: true (default: false)
  • shouldHighlightNewComments: false (default: true)
  • defaultPostSort: New (default: Active)
  • nsfwView: Hide (default: Blur)
  • applyNsfwInCommunities: false (default: true)
  • cardType: list (default: card)
  • shouldResolveOpenGraph: false (default: true)
  • imageDomainRewrites: {} (default: {})
 

Bug Report

Describe the issue: Images may be assigned different IDs on page reloads resulting in duplicate cache items. (See attached image: Not sure if actually duplicate files or if cached files are soft linked to each other.)

Steps to reproduce:

  1. Clear cache
  2. Reload same feed or page multiple times

Device Information

  • App Version: 1.0.332 (332)
  • Platform: android
  • OS Version: BP3A.251105.015
  • Notice: Using legacy Shared Preferences

Modified Settings

The following settings have been changed from defaults:

  • isNotificationEnabled: 1 (default: 0)
  • alwaysShowInstance: true (default: false)
  • shouldShowPageNumbers: true (default: false)
  • showFullVotes: true (default: false)
  • defaultPostSort: New (default: Active)
  • nsfwView: hide (default: blur)
  • cardType: list (default: card)
  • maxCacheSizeGB: 5 (default: 2)

6
submitted 1 month ago* (last edited 1 month ago) by remotelove@lemmy.ca to c/lemmyconnect@lemmy.ca
 

Bug Report

Describe the issue: Just feed scrolling lag. I noticed it this time after page 20, with about 1Gb in process memory. (It seems to take a bit more scrolling now to see issues.)

Steps to reproduce:

  1. Have no life
  2. Leverage online media as a form of social acceptance
  3. Keep doom scrolling.

Device Information

  • App Version: 1.0.319 (319)
  • Platform: android
  • OS Version: BP3A.251105.015

Modified Settings

The following settings have been changed from defaults:

  • isNotificationEnabled: 1 (default: 0)
  • alwaysShowInstance: true (default: false)
  • shouldShowPageNumbers: true (default: false)
  • showFullVotes: true (default: false)
  • defaultPostSort: New (default: Active)
  • nsfwView: hide (default: blur)
  • cardType: list (default: card)
  • maxCacheSizeGB: 5 (default: 2)
 

Bug Report

Describe the issue: Click thumbnail for external link

Steps to reproduce:

  1. click all the post links!

Device Information

  • App Version: 1.0.318 (318)
  • Platform: android
  • OS Version: BP3A.251105.015

Modified Settings

The following settings have been changed from defaults:

  • isNotificationEnabled: 1 (default: 0)
  • alwaysShowInstance: true (default: false)
  • shouldPreloadImages: false (default: true)
  • shouldShowPageNumbers: true (default: false)
  • showFullVotes: true (default: false)
  • defaultPostSort: New (default: Active)
  • nsfwView: hide (default: blur)
  • cardType: list (default: card)
  • maxCacheSizeGB: 5 (default: 2)

 

Bug Report

Describe the issue: Lemmy doom scrolling gets super laggy over 400mb memory usage. App ram usage is estimated as I can only see temporary app cache through Android dev settings when the app gets kicked into the background. Memory usage will mostly self-clear, but it takes a bit.

Steps to reproduce:

  1. Doom scrolling FTW!

Device Information

  • App Version: 1.0.316 (316)
  • Platform: android
  • OS Version: BP3A.251105.015

Modified Settings

The following settings have been changed from defaults:

  • isNotificationEnabled: 1 (default: 0)
  • alwaysShowInstance: true (default: false)
  • shouldPreloadImages: false (default: true)
  • shouldShowPageNumbers: true (default: false)
  • showFullVotes: true (default: false)
  • defaultPostSort: New (default: Active)
  • nsfwView: hide (default: blur)
  • cardType: list (default: card)
  • maxCacheSizeGB: 5 (default: 2)

(Recommend moving nsfwView preference out of a public bug report. It's not a huge issue, but it could be a private setting for some people.)

 

My background: Long time IT security engineer here that can code when I need. For dev experience, I have worked with various languages over the years like assembly, C/C++, js, typescript, PERL, python, etc. When needed, I can hack out a specialized tool but I am absolutely not a professional developer.

My ask: I just want a simple web framework that I don't need to think about too much. There are a few ideas I have regarding security analyst workflow in a SIEM-type of environment and need a way to code simple tools as basic snap-ins to a central analysis console.

The ELK stack serves a inspiration (specifically Kibana). However, there is so much more I want to build into an security specific analysis console and building it one snap-in at a time seems manageable over time.

What is the current flavor of the day regarding Web app dev frameworks that might function how I want? What frameworks would be compatible with a broad audience over a long period of time? (I never liked open source applications that use super niche libraries or frameworks that become obsolete and stale after a few months.)

I hope I was able to describe clearly enough what I am looking for. I would google around for ideas, but I simply don't know the correct questions to ask about this kind of thing until I get more up-to-speed.

 

I turned off "Preload Images" and my feed hasn't hung since. There is still a tiny bit of wait time while the next group of posts gets cached in the feed (maybe < 1 second) and this is usually when post pre-loading would fail and hang the feed completely.

If for whatever reason, if an image can't be preloaded it'll hang the feed? Maybe if a post gets deleted on one instance and, because fediverse, it may still be listed by my home instance? A failed cross-instance image load does sound like an interesting theory for root cause.

 
  1. (Regression, I think.) Strike through markdown broken when used in combination with exclamation point (maybe with other special characters too?) Also affects large blocks text that is marked with a strike through

~~Strike~~

~~Strike! ~~

  1. Cannot select text from comment that you are replying to

  2. Selecting text on your comment is appended with multiple spaces if there is no punctuation.

  • to reproduce: create post or reply, press and hold the last word of the sentence with no ending punctuation
  1. Text selection can become "sticky". (Unknown cause) Moving cursor around on a comment in progress results in the text selection bar that cannot be turned off. Connect restart is required.

  2. Post cache is not always refreshed after edit. Requires Connect restart to see changes made to a post. (Post text is where the caching issue is, not generally comments.)

 

Single pull-down refresh breaks post alignment.

~~Multiple pull-down actions may cause the offset of the post to slowly creep up and I under the post menu and almost off the top of the screen. OR, when the post is opened, the post will load with proper alignment and then shift itself up.

This seems to happen within the first few actions on opening Connect and it may self-resolve if the post is opened again, but not always.~~

Edit: ~~There is something wrong with that specific post in the screenshots. Other posts work fine, that one does not.~~ Its happening on this post now too.

Post is fully scrolled down, post title gets covered:

Menu will self-hide and you can see how far up the post has been aligned: ~~

 

 

 

Not sure if it's a quiet night or not, but comment volume drops off about 3 hours ago as of this post.

view more: next ›