The Official Status Thread
-
@PleegWat said in The Official Status Thread:
@Parody said in The Official Status Thread:
Usually you can't see the markings with the LEDs off, though you can at least set them to be steady white (or whatever). I've touch-typed for years, but I still want to be able to see them occasionally or if someone else needs to use the computer.
I use a corsair K70. While the default lighting is more a feature demo of keyboard backlighting than anything usable, it does turn off with a single button press on the keyboard, and the keycaps are still readable with the backlight disabled.
Good to know. I had been looking at the K95, but in the interim Corsair replaced it with the K100 that only comes with "gamer switches" that I could trigger accidentally by just putting my fingers on the keyboard.
-
Status: Is the purpose of every company decision to make my life more difficult?
I noticed today that shipping notifications from Container Store are now coming from "The Container Store <notifications@containerstore.narvar.com>"
This is bad because the way I had been screening out e-mails from Nigerian "Lowes" was by looking for Lowes and lowes.com in the address. The first one that fucked that up was Paramount. Now it's Container Store. Won't be long until it's everybody.
Why can't anybody send e-mails from their own fucking domain anymore?
-
@Zenith often because they insist on ramming it through “marketing services” that do shit like tracking how many people opened the mail.
Or in this case it seems like Narvar is a delivery & logistics partner for Lowes, whose website claims that 90% of US adults use them, so presumably they’re a middleman between Lowes and any actual shipping company, because a service used by 90% of American adults, you’d think either I’d have heard of it and/or it would have come up in the last year in a WTF Bites or something.
-
@Arantor Oh I've heard of Narvar before. Alot of stores use them for order tracking. God forbid they just send a USPS/FedEx/UPS tracking link directly. It's just recently that the e-mails are coming from them too.
-
Status: Snow overnight, but only just. It looks almost like frost except it is only on the top side things (bushes, etc).
-
@Arantor said in The Official Status Thread:
CADT
I had to ask auntie Google what that means. But I still succesfully manage to fail to falsely misunderstand its meaning....
- Complete CAD/CAM & ERP software solutions
- CADT - Cambodia Academy of Digital Technology
- Software and design services for the textile industry
- Let's call it the "Cascade of Attention-Deficit Teenagers" model, or "CADT" for short.
- Cloud Architect Design Tools (CADT)
- This project provides the Climate Action Data Trust (CADT) API that integrates with the Chia Blockchain.
-
@BernieTheBernie Cascade of Attention Deficit Teenagers
-
@Arantor said in The Official Status Thread:
often because they insist on ramming it through “marketing services” that do shit like tracking how many people opened the mail.
In the
Azure Bites
thread I mentioned that I did a Sendgrid integration: send my application log after each daily run by email to me.
Well, it works, but...
2024-01-15 15:30:02.949 [Information] Uploading from (some URL) to (some blob name)
did no more contain the original URL.
Sendgrid just replaced it with a tracking URL.
So I had to read up to get rid off it. In the end, I can set that as a default value in my account. I hope it won't change back to their preferred way just every now and then...
Because updatez.
-
@HardwareGeek said in The Official Status Thread:
@BernieTheBernie Cascade of Attention Deficit Teenagers
-
-
Status: Hello, {$name}
Did you just sign into Etsy from the following device and/or browser?
Yes, yes, I did. Could you kindly fuck off with this shit and the shit it fucked in on? I have 2FA ( ) for this reason.
-
@Applied-Mediocrity But they let you sign in. E.g. free mail provider
web.de
does not let me sign in via the web interface from a virtual machine hosted in Sweden when I just downloaded the emails with Thunderbird on my local machine in Germany...
-
Guess I'm forced to listen
https://www.youtube.com/watch?v=2atkj_KWLl0
and see if Jira is back at the end of the
-
Status: Some fuckery is afoot. Everything is slow as molasses.
It should be 50/10, but apparently uploads drops to basically nothing every now and then.
Router says the connection speed is just fine (20% higher than it should be, even) and the error counter doesn't really show anything either. 6 packet errors corrected in the last 15 minutes, 0 uncorrected errors. And yet ... where's my upload?
-
@Applied-Mediocrity said in The Official Status Thread:
Could you kindly fuck off with this shit
Approved
-
Status: I now have recruiters contacting me offering me “keyboard wizards” and “we don’t just find IT professionals, we find unicorns with keyboards”
I feel compelled to reply “how would a unicorn type in anything on a keyboard, seems like they wouldn’t make good programmers”
Apparently their developer candidates “have secret conversations with the algorithms. It’s like coding in Morse code, but cooler”.
The more of this I read, the cringier it gets. Might repost elsewhere in a bit in full.
-
@BernieTheBernie I don't believe that's a problem. They are geolimiting registration & admin access (but not POP/IMAP, presumably) to IPs from Germany, because the free service is for
those with correct ancenstrythose who reside in Germany. I know a bunch of hosting and similar services who do the same.
-
@topspin Your word length exceeds the MTU
-
@Applied-Mediocrity said in The Official Status Thread:
Yesterday I had to create an account with the online system of the DFG. It tells me I need a password that fulfills the security criteria standard of the BSI. Usually, I would have just had my password manager create a
correct horse battery staple
passphrase. But noooo, their requirements were (emphasis mine):- At least one lower case letter
- At least one upper case letter
- At least one digit
- At least one special character from the following list: [...]
- At least 8 characters
- At most 15 characters
- Some other bullshit about substrings of my email and name, etc.
At least no hieroglyphics or blood of a virgin. But also no white space. Fucking security cargo-cult. So instead I had my password manager generate a (worse) 12 character
Tr0ub4dor&3
-style password. Which didn't work, because it contained the character>
, which is not on the list of allowed special characters. So I removed that and the client side verification marked all requirements green. I submitted but it didn't work anyway. After messing around with it for some more, being convinced that (just like the client side verification says) my password is acceptable for their rules, I figured out that it doesn't work because it contained\
as a special character. Which is explicitly listed as allowed! But apparently their backend doesn't agree.
Absolute fuckers. My guess is somebody heard about escaping and injection attacks, but didn't actually understand it. ()Last week I wanted to sign up for some service with my bank, or bought something, I don't quite remember. In the process, I had to agree to no less than 4 fucking PDF documents with your usual incomprehensible legalese crap. One of them was 30 pages long. I didn't actually read all of that (), but I did at least skim through it to see what it's even about. So then I click accept on everything and
next
. Boom! Signed out. Because both this bank and the other one I have an account with think that for security they have to log me out every 5 minutes. 5 minutes! Because apparently that means I'm no longer doing what I was doing, instead of maybe reading their fucking 30 page document. I am 100% convinced none of the assholes who develop this ever actually ate their own dog-food and used this crap.But then, of course, people like come along and tell me "Why do you hate security? It's much safer if you get logged out after 3 microseconds! Stop whining, it's
Best Practice
"Because apparently I'm the idiot and not the security people who quite obviously are just cargo-culting.
-
@Zerosquare said in The Official Status Thread:
:smug_model_m_user:: Real keyboards have keycaps whose markings don't wear out, even after 30 years of use.
-
@Zecc said in The Official Status Thread:
@DogsB said in The Official Status Thread:
STATUS I think I might be addicted to command stripes.
STATUS Started skipping again. I think I'm getting a heart attack. It's doing this weird beating thing.
-
@Zerosquare said in The Official Status Thread:
Sharing a computer is like sharing a toothbrush
I had a girlfriend who thought this was okay. I overplayed my hand on that one and she would put cutlery into her mouth before giving it to me afterward. It's odd that I was the crazier one in that relationship.
-
Status: It's so cold the radio, the compass and the backup camera in my car wouldn't boot up until I ran the car for one minute. I didn't even know it's possible to have such a problem.
-
@BernieTheBernie said in The Official Status Thread:
@HardwareGeek said in The Official Status Thread:
@BernieTheBernie Cascade of Attention Deficit Teenagers
I switched over to a dedicated ip address from my vpn provider and now I'm blocked from reddit. To be honest it can only be a good thing.
-
@Arantor said in The Official Status Thread:
Status: I now have recruiters contacting me offering me “keyboard wizards” and “we don’t just find IT professionals, we find unicorns with keyboards”
I feel compelled to reply “how would a unicorn type in anything on a keyboard, seems like they wouldn’t make good programmers”
Apparently their developer candidates “have secret conversations with the algorithms. It’s like coding in Morse code, but cooler”.
The more of this I read, the cringier it gets. Might repost elsewhere in a bit in full.
Repost it, I haven't seen that shit yet and I accidentally mentioned my contract is up in April.
-
@izzion said in The Official Status Thread:
@Zerosquare said in The Official Status Thread:
Sharing a computer is like sharing a toothbrush
At least they invented incognito mode for sharing a computer
Having incognito mode is one thing. The real problem is teaching everyone how to use it and why they should use it. So far I'm 1 to 4 on that one.
-
@Gustav said in The Official Status Thread:
I didn't even know it's possible to have such a problem.
-
@Gustav said in The Official Status Thread:
and why they should use it
Well, you can always just start name and shaming people for their midget porn habits
-
@izzion I'm more worried about logging out of all my Google accounts because they had to check one email.
Granted, it wouldn't be a problem if Google allowed logging out of ONE account, instead of all at once. Also, re-logging in would be much less annoying if URLs weren't dependent on login order (and I have quite a few bookmarks).
-
@Gustav said in The Official Status Thread:
@izzion I'm more worried about logging out of all my Google accounts because they had to check one email.
Granted, it wouldn't be a problem if Google allowed logging out of ONE account, instead of all at once. Also, re-logging in would be much less annoying if URLs weren't dependent on login order (and I have quite a few bookmarks).
This sounds like a you problem, for not setting up a separate user profile to contain your own credentials
-
@izzion should that separate profile with my credentials be the default one (so it still is the one that opens up when someone casually uses my computer) or a non-default one (so I'm adding extra steps every time I want to use my own computer)?
-
@Gustav said in The Official Status Thread:
@izzion should that separate profile with my credentials be the default one (so it still is the one that opens up when someone casually uses my computer) or a non-default one (so I'm adding extra steps every time I want to use my own computer)?
Well, I mean, you're the
complaining roommateone with the security concern, so it would make sense to me that you should have your own, password protected profile and then you let the guests fight it out in the public profile.
-
@izzion security concerns? No. They're entirely convenience problems. If I cared about security, I'd put up a password and set up guest profile. I used to do that in the past, but stopped doing it because it's huge PITA to maintain and the benefits are marginal. You wouldn't believe how many programs stop working because they half-install in Program Files and half-install in AppData.
I was just pointing out incognito mode is not a solution to the "other people use my computer" problem. It's a solution to the exact opposite, "I use other people's computer" problem.
-
@DogsB said in The Official Status Thread:
she would put cutlery into her mouth before giving it to me afterward.
: It's like kissing you, but delayed!
-
@topspin said in The Official Status Thread:
@Gustav said in The Official Status Thread:
I didn't even know it's possible to have such a problem.
I can commiserate. If it's cold enough sensors may not detect that it's too cold and thus won't activate shiver routines.
Shit is weird, yo!
-
@topspin I give you 5/10 blakeys
The first thing is definitely moronic.
But then, of course, people like come along and tell me "Why do you hate security? It's much safer if you get logged out after 3 microseconds! Stop whining, it's Best Practice"
But it is! I've said before that 5 minutes is too low. My bank has it set to 10, for example. It's less important today when even homeless beggars have some kind of iPhoon, but for those on shared computers, believe me, people never log out. On their own computers most people definitely don't. And you'd say "well, it's their problem", but that's how things work - stupid peoples' problems become everyone's problems. Contents may be hot, and all that.
I'd say is twofold: 4 fucking PDF documents and not making the terms available before contacting the bank. There's fuck all use on you accepting them when you've already begun the process, at which point you've implicitly accepted them (views of consumer protection and may differ)
-
Status: Trying to remote into a network to check on the configuration because it seems one of the port forwards rules died for no reason.
I can SSH in just fine. Great, now to add a tunnel and... Hrm. Connection refused.
No jiggering or config files or restarts (that I can do, don't want to do the router itself yet as then I'd be up a frozen shit creek instead of just a normal shit creek) is helping.It's times like these that I almost wish I could actually read a log or two telling me which part of the Rube Goldberg machine is falling flat...
-
STATUS Every fucking time I connect to this guy's call he has to get his headphones and fiddle with the settings so that I can hear him talk. Every time. And he's always the one to call me.
-
@Applied-Mediocrity said in The Official Status Thread:
But it is! I've said before that 5 minutes is too low. My bank has it set to 10, for example. It's less important today when even homeless beggars have some kind of iPhoon, but for those on shared computers, believe me, people never log out.
So what? If you decide to share tooth brushes, as above, and don't mind sharing computers on a single account instead of sharing computers with different user accounts, then apparently you don't mind sharing bank accounts. And if for some absolutely retarded reason you do, this "your wife is the attacker" scenario is exactly where 5 minutes of log out piss me off by logging me out while I'm using it but don't protect you because your wife, sharing your living space, can still catch that 5 minute window. Lose lose.
And if you're talking about a scenario were people still use "internet cafes", if such a thing still exists, then again 5 minutes is too long. (Even though nothing can be achieved anyway, see below.)On their own computers most people definitely don't.
And that's not a problem either. Fine, set it to 1h then. But it doesn't solve anything anyway. There's no attack scenario which is addressed by my own computer (which is password locked and which has a 5 minute screen lock, which is sensible, unlike the bank shit) in my own home (which is locked by a door) logging me out of that thing while I'm using it. Nobody besides me has access to it, and all of the interesting things you can do while logged in require 2FA anyway. The only horrendous thing you can do in the non-existing attack scenario is read my account balance. You can't steal a single cent.
And you'd say "well, it's their problem", but that's how things work - stupid peoples' problems become everyone's problems. Contents may be hot, and all that.
Yes, stupid security people become my problem.
-
@topspin said in The Official Status Thread:
"your wife is the attacker"
We folk without one don't quite get it, but I'm told they can be quite vicious
And if you're talking about a scenario were people still use "internet cafes"
They still exist in shithole countries, yes. And in public libraries, mostly for old people, who definitely don't give a damn. Not that library IT staff gives a damn to only allow guest sessions, so logins can't be saved (because, of course, people click yes - that's the fastest way to make strange things go away!), but that's an orthogonal problem.
There's no attack scenario which is addressed by my own computer
Laptop caste, man, leaving their shit wherever.
which is password locked
On Windows nobody does that either (unless corporate AD, or these days forced to use MS account). PASSWORDS GET IN THE WAY! GODDAMN SECURITY POEPLE!
You can't steal a single cent.
All the accessible information like transfer history is still personal information
-
@topspin said in The Official Status Thread:
I am 100% convinced none of the assholes who develop this ever actually ate their own dog-food and used this crap.
They use a different bank. Because they know the code at this one.
-
@Gustav said in The Official Status Thread:
when someone casually uses my computer
-
@Arantor said in The Official Status Thread:
It’s like coding in Morse code, but cooler
So, brainfuck?
-
@Applied-Mediocrity said in The Official Status Thread:
All the accessible information like transfer history is still personal information
Which doesn't matter because there's no attack scenario where this would ever apply!
Ceterum censeo:
@topspin said in The Official Status Thread:I am 100% convinced none of the assholes who develop this ever actually ate their own dog-food and used this crap.
-
@Gustav said in The Official Status Thread:
I didn't even know it's possible to have such a problem.
I see you've never been to
-
Status: Desktop computer SSD status: poorly to dead. Damn you, WD!
-
@topspin said in The Official Status Thread:
@Applied-Mediocrity said in The Official Status Thread:
All the accessible information like transfer history is still personal information
Which doesn't matter because there's no attack scenario where this would ever apply!
Ceterum censeo:
@topspin said in The Official Status Thread:I am 100% convinced none of the assholes who develop this ever actually ate their own dog-food and used this crap.
Ok, you've convinced me*. Clikc the following link to claim your prize
-
@Applied-Mediocrity said in The Official Status Thread:
Clikc the following link to claim your prize
Okay, go ahead and steal my money now.
Filed under: challenge accepted
-
@topspin Please install the latest phishing updates for your system
@topspin said in The Official Status Thread:
@Applied-Mediocrity said in The Official Status Thread:
Clikc the following link to claim your prize
Okay, go ahead and steal my money now.
Filed under: challenge accepted
Please install the latest phishing updates for your computer!
Filed under: Albanian virus
-