Welcome to Incremental Social! Learn more about this project here!
Check out lemmyverse to find more communities to join from here!

Dran_Arcana

@Dran_Arcana@lemmy.world

This profile is from a federated server and may be incomplete. Browse more on the original instance.

Dran_Arcana ,

I believe google hangouts and xmpp would like to have a word with you. There was probably a universe where federated xmpp was as ubiquitous as sms, but in this universe, google federated, brought users over with cool features, and then defederated when they had all the users.

If you want another example from the same company in modern times, look at chrome and http/css/js. Google's chokehold on the web ecosystem with chrome means that whatever they do, everyone else has to follow suit or not be compatible with the browser that something like ~75-90% of users use

Dran_Arcana ,

Hangouts was built on xmpp, and used to allow federation. Yes xmpp still exists but it's functionally dead.

Dran_Arcana ,

Yes you are correct, I had the two reversed in my head.

Dran_Arcana ,

There are a multitude of established, studied, simple changes that could be made to make things safer for pedestrians with relatively little needed in the way of sacrifice from car designers

Can you share some of these? I had a small stint in the auto design industry and am genuinely curious.

Hello GPT-4o (openai.com)

GPT-4o (“o” for “omni”) is a step towards much more natural human-computer interaction—it accepts as input any combination of text, audio, and image and generates any combination of text, audio, and image outputs. It can respond to audio inputs in as little as 232 milliseconds, with an average of 320 milliseconds,...

Dran_Arcana ,

I have this running at home on a used r630 (CPU only). oobabooga/automatic1111 for LLM/SD backends, vosk + mimic3 for tts/stt. A little bit of custom python to tie it all together. I certainly don't have latency as low as theirs, but it's definitely conversational when my sentences are short enough.

Dran_Arcana ,

I am not joking lol but I do sometimes forget most people don't live in this space the same way I do. I think people use these names because the programs themselves are forked often and the software names are very unspecific otherwise. I meant to imply that I was using the main branches of these softwares.

https://github.com/oobabooga/text-generation-webui

https://github.com/AUTOMATIC1111/stable-diffusion-webui

Dran_Arcana ,

It is possible to both be anti-chinese government and also want comprehensive privacy laws in the US. Like, I absolutely buy that the Chinese government has access to tiktok data. I, however, don't think forcing a sale is the right way to deal with any of this. Comprehensive privacy and data collection laws would go much farther towards making it so it doesn't really matter who owns what.

Dran_Arcana ,

Small fediverse lol

Dran_Arcana ,

unless the bill has changed since the last time I read it, there were fines for hosting the service in US datacenters, and fines for companies allowing US data to exist in non-us datacenters. I don't think you could interpret the bill as imposing a civil penalty to a user using a vpn and accessing it.

Dran_Arcana ,

Not sure if you could get updates to the app over VPN though, that depends on how the stores handle regions.

Specifically, app stores would be required not to host it, so you'd likely have to do updates through some sort of side-loading

Dran_Arcana ,

I would guess that it goes off of the lowest common denominator between IP address geo-location & billing address. If either of those say US, google/apple would probably be required not to distribute it.

Dran_Arcana ,

costs only an email address and a promise to sign up for a 37% APY credit card.

Dran_Arcana ,

You would expose a single port to multiple vlans, and then bind multiple addresses to that single physical connected interface. Each service would then bind itself to the appropriate address, rather than "*"

Dran_Arcana ,

I thought tiktok came out of music.ly? I didn't think it had roots in vine.

Dran_Arcana ,

You should consider reversing the roles. There's no reason your homelab cannot be the client, and have your vps be the server. Once the wireguard virtual network exists, network traffic doesn't really care which was the client and which was the server. Saves you from opening a port to attackers on your home network.

Dran_Arcana ,

There is also the argument that it's more complicated under the hood and harder to troubleshoot, particularly because of it's inherent parallelism and dependency-tree design, whereas initv was inherently serial. It was much more straightforward to pick the order in which services started and shut down on an initv system.

For example, say I write a service and I want it to always be the first service stopped during a shutdown, and I want all other services to wait for it to stop before shutting down. That was trivial to do on an initv system, it's basically impossible on systemd.

For those wondering, yes I did run into this situation. My solution was clobbering the shutdown, poweroff, and restart binaries with scripts earlier in path search that stop my service, verify that they're stopped, and then hook back to systemd to do the power event.

Dran_Arcana ,

It's probably "blocked" by restricting DNS queries to the main site (e.g pornhub.com) but not to any of their CDNs because effort

Dran_Arcana ,

Did you ever get carbons working properly? (As in, mobile and desktop clients of the same user both getting messages and marking as read remotely between them)

Dran_Arcana ,

Sorry I should have said "carbons and carbons related qol extensions"

Dran_Arcana ,

*privacy from everyone except us, which conveniently makes our ad revenue line go up.

UK Trial: Pornhub's Chatbot Halts Millions from Accessing Child Abuse Content (www.wired.com)

A trial program conducted by Pornhub in collaboration with UK-based child protection organizations aimed to deter users from searching for child abuse material (CSAM) on its website. Whenever CSAM-related terms were searched, a warning message and a chatbot appeared, directing users to support services. The trial reported a...

Dran_Arcana ,

I'd think it's probably not a majority, but I do wonder what percentage it actually is. I do have distinct memories of being like 12 and trying to find porn of people my own age instead of "gross old people" and being confused why I couldn't find anything. Kids are stupid lol, that's why laws protecting them need to exist.

Also good god when I become a parent I am going to do proper network monitoring; in hindsight I should not have been left unattended on the internet at 12.

Dran_Arcana ,

Scam reviews or bot account creation would be my guess

Dran_Arcana ,

There are also full-suites like rancher which will abstract away a lot of the complexity

Dran_Arcana ,
UAP-AC-Lite-LR-BZ.6.6.55# which wpa_supplicant 
/usr/sbin/wpa_supplicant

UAP-AC-Lite-LR-BZ.6.6.55# /usr/sbin/wpa_supplicant -v
wpa_supplicant v2.10-devel
Copyright (c) 2003-2019, Jouni Malinen  and contributors`

Seems unifi devices are affected, no patch yet as far as I can tell.

Dran_Arcana ,

it's running wpa_supplicant, not iwd. It's vulnerable to the similar exploit in CVE-2023-52160 but the patch will likely have to come from unifi, as wpa_supplicant hasn't been updated in years as far as I know.

Dran_Arcana ,

I just verified personally that it was present on unifi devices, since their docs weren't clear. We are a mostly cisco/aruba shop where I work, but a lot of my colleagues at smaller businesses/universities use radius with unifi access points. I imagine they are vulnerable to this.

You are correct though in assessing that homelab users and very small enterprise users are probably safe.

Dran_Arcana ,

Would it still be illegal if it's based on time? Like I'll make this up but suppose their policy was men get 2 weeks paternity leave, but women get 2 months maternity. It might actually make sense then.

Dran_Arcana ,

If everyone gets the same time then yeah that's total horseshit

Dran_Arcana ,

I don't think it is unreasonable to tell a man or a woman that if you take 3-6 months off that someone else might take your role.

Dran_Arcana ,

No, but we are still in the era of mom has to physically annihilate her body in order to produce a child, and also in the era of mom requires actual physical recovery time before performing strenuous physical activity. I get the equity in offering dads extra leave to help take care of mom but it's disingenuous to suggest that they both have the same requirements.

Dran_Arcana ,

How has nobody in this thread said check_mk yet?

It's free, you host it yourself. It's built off of nagios, compatible with nagios plugins, supports snmp or agent based checks. It can email, SMS, slack or discord you when something breaks, you can write your own custom checks in any language that can output to a local console... I could never imagine even looking for something else.

andrew , to Technology
@andrew@andrew.masto.host avatar
Dran_Arcana ,

Vizio is fantastic if you’re using your own source, I wouldn’t rely on their smart stuff though.

I'd still refute that claim. I bought a vizio tv about ~7 years ago and it was perfect when I first bought it. A few software updates later and now the TV will switch to it's internal bullshit any time there isn't an input source for greater than ~3 seconds. It's infuriating that if my nvidia shield takes a second too long to push out a video signal the TV will just switch inputs on me. There is no way to disable this antifeature. The best part is after I noticed this behavior, I (at the network level) prevented all outgoing communication from this TV and it is still perfectly happy to just switch to a blank internal input whenever an external source takes slightly too long.

"If I can't track you, fuck you I'll make your TV basically unusable"

Dran_Arcana ,

I connected it because it was in that like 2 year span where they had that a small android tablet as a remote. Legitimately cool feature but I should have known better than to let it update.

Dran_Arcana ,

factory reset went back to the shitty upgrade version I upgraded to :(. But I will say that I haven't let it update since that initial terrible upgrade assuming it might get worse. Maybe I should try upgrading it once more and then lock it off if the next version is decent?

Dran_Arcana ,

has xmpp figured out carbons yet between multiple clients? also are there any good mobile clients?

Dran_Arcana ,

I'm glad I wasn't the only one wondering that.

5E Player Character builder

As far as I’m aware, the only self hosted player character builder is the charactermancer in plutonium, the patreon-accessible Foundry VTT plugin made by the 5e.tools folks — but man. My kingdom for a dndbeyond alternative, something self hosted that can take open 5th edition content and allow my players to build and save...

Dran_Arcana ,

If one doesn't exist, it would seem to be a fairly straightforward (if not a smidge tedious) thing to implement. Ever thought about learning web development?

Dran_Arcana ,

It's like they think V for Vendetta was a blueprint for how to run a utopia.

Dran_Arcana ,

That's a good word. I always love learning new words. Thank you!

Stop wearing Vision Pro goggles while driving your Tesla: U.S. transportation officials, Calif. police (www.nytimes.com)

Stop wearing Vision Pro goggles while driving your Tesla: U.S. transportation officials, Calif. police::Videos, many of them stunts or jokes, of people wearing Apple’s new virtual reality headset while driving Teslas in Autopilot mode prompted officials to issue warnings.

Dran_Arcana ,

It is slightly different, but in a way that's worse.

AR uses a transparent overlay over reality perceived through a translucent surface, or at most a small subset of your vision is replaced. Think sunglasses with a screen you can see through, or a small corner of your vision is blocked by a tiny screen.

In Apple's "spatial computing" cameras recreate and alter reality, nothing you see is with your own eyes because no part of the display is transparent.

Dran_Arcana ,

Just because developers name libraries things doesn't make them accurate. Generally when something is misnamed it's because of backwards/intercomaptibility or just design decisions that differ from original implementations and it's no longer feasible/reasonable to refactor to a different name.

Examples:
windows 7 was version 6.1, windows 8 was version 6.2, windows 8.1 was version 6.3
Java 5 was versioned as 1.5, continuing the convention from previous releases 1.2-1.4
Hell, where I work we use an automation workflow with functions called stuff like "create_and_assign_citrix_security_groups_to_static_containers" that has long since been adapted to work with vmware and other non-virtualization platforms like k8s. Refactoring those functions would mean refactoring any external automation that uses these libraries, just like refactoring versioning schemas would break compatibility with any external software that relies on an assumption that windows >xp would be 6.X.

Dran_Arcana ,

No hate if you disagree, your reasoning is sound. I just think that naming, especially in the new tech space, goes beyond pedantry. We have words that are specific enough to describe two similar technologies, but we only retain shared understanding of those words if we collectively use them. It may be the case that AR evolves to be commonly understood as encompassing both technologies but they are fundamentally different in how they work, whatever we choose to call them.

Dran_Arcana ,

I have to imagine that most of these data brokers don't have automated ways to remove information, it's probably designed to be as annoying as possible to prevent people from doing it en-masse. If someone on mozilla's end has to fill out a form and mail it and deal with ~200 brokers worth of constant intentional subtle constant changes (designed to break automation) to try and make services like this harder, the $9/mo seems almost reasonable.

Dran_Arcana ,

It's a fair analogy about the erosion of ownership

Dran_Arcana ,

If they don't matter currently for moderation I have to imagine they'll be part of a moderation toolkit eventually. Leveraging community voting to detect spam would be decently effective, especially for fresh accounts.

Dran_Arcana , (edited )

you know what? I like this argument. Software/Streaming services are "too complex and costly to work in practice" therefore my viewership/participation "could not exist" if I were forced to pay for them.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • incremental_games
  • meta
  • All magazines