• 0 Posts
  • 37 Comments
Joined 8M ago
cake
Cake day: Jan 24, 2024

help-circle
rss

None. Dashy’s authentication was famously literally security theatre even with Keycloak. You could just pause the load in browser and have full access to the config. Because it let you iframe whatever you could now do so with local services to enum. Somehow Jellyfin is unbustable though. So it’s a bit of a crapshoot. Look at past vulnerabilities. Stuff like XSS unless stored you don’t need to worry about, clickjacking, tab nabbing etc. On the other hand anything that’s arbitrary file read, SQLI, RCE, LFI, RFI, SSRF etc. I would look at seriously. E.g. don’t make your 13ft public because it can be used to literally enumerate your entire private network.


Yea. But to an extent it’s your choice to participate you can just not give a fuck about what’s not your problem or concern as long as you get paid.


Yes I host everything public with cloudflare tunnels. Everything more heavy is VPN with DDNS on invite basis to friends and fam. For the former it’s Hassle-free HTTPS, no reverse proxy, no firewall, no nonsense.


Tbf Devs are usually massive pieces of shit as well, thousands of over-inflated egos, cutthroat techbros and cynical asset-swappers who hate g*mers more than necessary out there for every one decent fella or lady who’s autistic about meshes or render pipelines, but prob works for a Chinese online casino optimizing animation timings for whale click-through.


Why would they go through all the trouble when they could simply join the channels by posing as people who belong?


You heard right. He never “sold” anything to any govt, he went to Dubai and hosted TG across like 50 different countries so glowies would be drowned in paperwork before they ever got a chance to submit a subpoena for anything, encrypted or otherwise, with it’s founder in a nation that basically gives zero fucks about international laws and affairs.

This is why TG was so trustworthy and had such a massive and brazen criminal element


Evidently it was.

Encryption shmencryption, there was a reason people used TG and not WhatsApp and it’s because the former just very clearly doesn’t glow and it’s why Durov was arrested and not Zuckerberg. The technicals are only a part of it, the politics are arguably far more a part of it.


I had the same issue just last week with a more recent copy of premiere I got. Just block all internet access in your firewall to Photoshop and it will go away.


That’s awesome. Glad we’re finally automating the most important things in life - internet arguments.




So basically you’re using Unix sockets on your LAN level between nginx and internal machines for finer grained access control and because you’re running out of ports. That’s really cool! I’ll have to read into this myself.



We need some sort of historical torrent indexer for lost/dead torrents, a wayback machine for magnet links that gathers/scrapes them automagically from the internet


Sweetie.

I can afford the hardware because I don’t pay for the software.


Yeah but that should be okay as long as he’s getting it from legitimate places (rarbg, official fitgirl site, cs.rin.ru, rutracker etc).

I’ve not had an AV for like 10+ years, had defender disabled with GPO as soon as I installed W10 and had no issues.

The best AV is your brain. Obviously if you download GTA_6 _(Brazil)_by_xP3tYa1337x.pdf.html with an embedded .hta directly from an IP address in Kamchatka and you have IE installed then yeah maybe you need to give things a manual scan pass with defender or malwarebytes (or just toss it in a VM) once in a while but otherwise you’re golden.

Even most vulns today labeled 0day are either unexploitable or require the user to be a dumb motherfucker.

Trust me.





Is there a way to do reverse tunnels, or something like it, so not opening any ports at all on the network, without cloudflare?

Closest to that XP I got was generating VPN keys and distributing them to close friends, running DDNS (no-ip) on my Pi with a pivpn server and then accessing JellyFin that way.





Okay I’ll bite:

How is AI anarchist

Running a local FOSS AI model that allows one to generate images, text, code and even video circumvents the power of the capitalists by giving the proletariat the means to produce themselves much more readily and with far fewer startup capital required, plus being able to train a model on the internet turns it into a trap for corporations who want their intellectual property to stay theirs, as now anyone can violate IP laws readily, similar to what the internet did to copyrighted media (paying for stuff being just a suggestion via the magic of P2P).

what do you mean by anarchism

For a good starter I’d suggest “The Conquest of Bread” and “Mutual Aid: A Factor in Evolution” by Peter Kropotkin.

how does this relate

There is no moral, and there’s no such thing as culture. These are spooks in your head. There is no “community” either, that’s a spook too.

There are wageslaves (proletariat or ‘working class’) who want a roof over their heads, their best chance is to slave for corporations who’s primary product of exploiting the proletariat labour ends up being technology of some kind, be that a toaster or a marketing tool, most workers have no choice or way to affect that.

Capitalists who own these enterprises are those who make the calls because they own the means of production.

It’s that simple. There are no other forces at play here.

You want to change that? Better start practicing communism, e.g. by working on foss AI projects or even foss in general.






Software engineering has no culture - shared or otherwise. It’s just a job, you clock in, you clock out, it’s the same prison as anything else but with the comfort of WFH. The only maybe cultural aspect is that people refuse to unionize, but that’s a different issue and a result of material pressures (far too much demand for jobs gives uneven bargaining power).

Bezos, musk, gates et al were never seen as heroes by those who don’t idolize capitalists and corpos to begin with, and are still seen that way by the rest.

The future is indeed tech solutions and always has been, not an-prim nonsense and tech will indeed save us (and already has from every problem tackled thus far in humanity’s history, every disease etc.), but those tech solutions have to be aligned with humanity’s interests, and to do that you need to remove the exploitation incentive and the way you do that is by changing economic systems to communism or anarchism.

Idk I don’t find it very frustrating, it’s very clean cut in my opinion.


The article says “software engineering circles” so yes it does mean coders absolutely and primarily.


Are you a moron? Because you sound like one. Are you really equating wageslaves working for Google instead of facilitating the sale of gazillions of far more unethical products at their local Walmart by being an associate customer success checkout wagie or smth to soldiers committing attrocities? Do you not even realize the “you hate prison, yet you participate in it - curious” levels of bullshit that view entails?

Because if you did that you’d be a moron. You are a moron.


“Tech industry” does not mean that, it could just as well mean “people in the tech industry” which means “people who work in the tech industry”. The author uses this because it’s the boogeyman du jour with Sam altman and such but his entire essay is dancing around the point that it’s capitalism and has nothing to do with tech or is even specific to it. They would’ve probably had more of an article if they tried to specifically tie it to Nestle than the Tech Industry but it wouldn’t get them those precious clicks.


Are you this ‘soatok’? I’ve never heard of you before doesn’t look like anyone else has either.


The tech industry understands consent just fine, the corpos will ignore the idea however if it means less revenue and can’t have that because capitalism.

I’m giving the benefit of the doubt to every one of these shitty clickbait article authors about “tech industry” and “software engineering circles” that the authors aren’t dense and know random code monkeys aren’t evil or too stupid to figure out opt-in is more ethical, they just work for corps that have to make money because capitalism, but they post their stupid garbage anyway because it gets clicks.

Don’t post it here.


Didn’t even know that was a thing ngl and I use qbit nox on my server. Kinda obsoletes the *arr suite


RARBG was so good for this, their releases were of such good consistent quality

If you search for ORARBG on therarbg site you can still find some OG releases and not random YIFY crap


VLC lets you set automatic audio preference matching, so that you type in “eng” in the settings, and it will try and pick an audio track that has “eng” in it’s title, great for multi-lang media but doesn’t work for stuff like commentary tracks rarely.