log☇︎
125700+ entries in 0.023s
asciilifeform: mega-argument.
asciilifeform: or, more pointedly, the long and quite unpleasant surgery involved in undoing the idiocies of 'satoshi' derp, by no means complete even now
asciilifeform: (e.g., the case of pgp)
asciilifeform: before stomping a scorpion, i do not need to buy a new scorpion. but before shooting horse, i gotta buy a new horse.
asciilifeform: point finger != cleaned up.
asciilifeform: cleaning up the mess from the circle jerk will take 10,001 man-year of people of whom not even 100 are alive.
asciilifeform: which it, by and large, is not.
asciilifeform: that makes it sound like harmless fun
asciilifeform: the activity as now extant resembles, more than anything, the building of the pyramids.
asciilifeform: even if the shoes - are real.
asciilifeform: arguably making shoes for these selfsame people is likewise countereconomic.
asciilifeform: the mere fact of the absence of the slave ship does not tell us why.
asciilifeform: then again, lawyers or stock traders are likewise not yet on the ship.
asciilifeform: that this was not yet done to programmers illustrates the 'nobody needs 'software industry' for very much, it would not cover the diesel' hypothesis.
asciilifeform: i suppose on the boat they cannot go to the pub etc.
asciilifeform: and on land they can leave ?
asciilifeform: vs only the shoes
asciilifeform: what's the win from hosting the shoemakers on the ship per se ?
asciilifeform: where are the sad flotillas full of captive programmers etc.
asciilifeform: incidentally, if this is a thing, how come nobody afaik uses old cargo ship as office space.
asciilifeform: neato.
asciilifeform: *moor
asciilifeform: i suppose when you're mircea_popescu, you can just moore your dirigible to it.
asciilifeform: ?
asciilifeform: and never walk off for supplies, etc
asciilifeform: let's run with this concept. say i buy. where to park it ?
asciilifeform: until the day when no new ones are available at any price.
asciilifeform: that doesn't sound good.
asciilifeform: for 'failure' being 'not repairable outside of dry dock'
asciilifeform: what's the mtbf on these things ?
asciilifeform: these ships have exactly all of the appeal of driving a ww2 panther tank around town.
asciilifeform: 'folks charging $1000 per container could not afford the diesel. i know great idea! i'll buy one and carry 0 containers, charging $0 !'
asciilifeform: lel
asciilifeform: ntainers because there were no guarantees that tugboat pilots or stevedores would be paid.'
asciilifeform: 'The bankruptcy of the Hanjin shipping line has thrown ports and retailers around the world into confusion, with giant container ships marooned and merchants worrying whether tons of goods will reach their shelves. The South Korean giant filed for bankruptcy protection on Wednesday and stopped accepting new cargo. With its assets being frozen, ships from China to Canada found themselves refused permission to offload or take aboard co
asciilifeform: http://www.usnews.com/news/business/articles/2016-09-02/hanjin-bankruptcy-causes-global-shipping-chaos-retail-fears << moar lelz.
asciilifeform: mircea_popescu: idea was that only gpg2 knows how to talk to the 'wks' crapolade.
asciilifeform: the abortion discussed in the recent rng thread.
asciilifeform: (i can only assume, as this is where he was)
asciilifeform: unveiled at the 'pgp conference', no less.
asciilifeform: he is pushing a new, gpg2-only thing.
asciilifeform: that was the whole lul in subj link.
asciilifeform: ('wks')
asciilifeform: neither does koch's not-sks.
asciilifeform: mircea_popescu: best part, now 'mailer can do encryption without user interaction' !11111
asciilifeform: mircea_popescu: https://gnupg.org/blog/20160830-web-key-service.html << koch grunts again to push folks to gpg2. this time, by 'obsoleting' sks.
asciilifeform: https://archive.is/3eUpF << see also.
asciilifeform: when did these folks ever have shame.
asciilifeform: 'Yesterday, we announced HONR 378Q, and many of you are interested in the course. Unfortunately, as you may already know, AUAF was attacked by terrorists 10 days ago and they are in the process of recover. So we are unable to offer the course this semester; but we are hopeful that we will be able to offer it in the future.'
asciilifeform: in epic spam noose, 'HONR378Q Honors Seminar: Islamic Radicalization Drivers of Youth in the United States and Afghanistan Omar Samad, former Afghanistan Ambassador to France. This is a Global Classroom seminar: Using teleconferencing technology UMD Honors students will be conducting research with their Afghan peers at the American University of Afghanistan in Kabul.' --- then, 24 hrs later,
asciilifeform: it is quite conceivable, given the popping rate, that some large fraction of extant rsa keys have somewhere between 24 and 64 bits of actual entropy.
asciilifeform: aha.
asciilifeform: mircea_popescu: correct.
asciilifeform: so we have 0 useful info re subj.
asciilifeform: soooo, turns out that the 'publickey' thing is displayed whether or not it is actually enabled.
asciilifeform: trinque: well that was the q. didja try it ?
asciilifeform: and the tube is only seeing a microscopic fraction of the photons.
asciilifeform: yes, there IS some nonzero probability of it happening 'at random', but chances are that someone was served polonium tea.
asciilifeform: think of it as a geiger that rattled all day long at 1000x the familiar background for the room.
asciilifeform: well other working hypothesis is that it is ~not~ tiny fraction, but a tip of the 'birthday theorem' iceberg. ☟︎
asciilifeform: do you still see a 'debug1: Authentications that can continue: publickey,password' ?
asciilifeform: trinque: try a ssh -v ipaddrgoeshere -l root on one of these
asciilifeform: (as typical router/modem/etc.)
asciilifeform: but instead shipped with a script that generates keys on first boot
asciilifeform: trinque: current working hypothesis is that ~none of the affected boxes are operated by 'people'
asciilifeform: mircea_popescu: typically the key used for actually logging in is generated on same box. with same braindamaged rng. hopefully i dun need to draw a picture, it makes sense
asciilifeform: https://archive.is/jJPoN << quite related.
asciilifeform: mircea_popescu: didja ever notice that ~all of the Framedragger boxes support publickey auth on ssh ?
asciilifeform: soooo, i suppose ~everyone recalls https://archive.is/L4C3X . and naturally nobody cancelled it : https://pbs.twimg.com/media/CrWvP7BVMAAFsVC.jpg
asciilifeform: 'Last week, a defense lawyer argued that the FBI drastically improved the performance of a dark web child pornography site in the process of investigating it. On Thursday, the Department of Justice responded, denying those claims.'
asciilifeform: meanwhile, in the monkey house, https://archive.is/0Afgw
asciilifeform: mircea_popescu: eh, betcha hanno boeck et al are already nearly done cooking up a 'we've been surveying bad ssh keygen for 111 years' crock of shit
asciilifeform: it could be good use of somebody ~else~
asciilifeform: but to take one of the routers discussed in the netcat thread and actually see how it shits out key
asciilifeform: eh i wasn't suggesting ~asking~ them.
asciilifeform: http://btcbase.org/log/2016-08-17#1523076 << ☝︎
asciilifeform: hasimir ?
asciilifeform: or even to take 1 known pair of key and what-made-it, and work backwards.
asciilifeform: given as what we're seeing is 'birthday paradox.'
asciilifeform: and could potentially blow considerably (say, 100,000x) moar, if we knew the mechanism (e.g. 'marsaglia rng seeded with last 16 bits of time stamp at first boot) which produced them.
asciilifeform: mircea_popescu: the major point re the Framedragger keyz, is that if going by the usual braindamaged-rng hypothesis, we are uncovering a small % of phuctorables.
asciilifeform: the latter typically do not allow for remote access (this is a major sticking point, they dun like incoming)
asciilifeform: incidentally i suspect the 'cellular' ips are not modems.
asciilifeform: mircea_popescu sits on fnargl throne, aha, and trails long wire behind him on occasions when he is carried.
asciilifeform: (this was some years ago.)
asciilifeform: sent it back, the claimed coverage area was a fiction.
asciilifeform: btw i once bought a 'clear wireless' modem thing.
asciilifeform: aaaaaaaaand now we have another idiotmodem.
asciilifeform: SSH-2.0-OpenSSH_5.2
asciilifeform: $ timeout -k 0m 3s nc 66.233.213.117 22
asciilifeform: SSH-2.0-OpenSSH_5.2
asciilifeform: $ timeout -k 0m 3s nc 96.24.7.172 22
asciilifeform: and Rochester, New York, same.
asciilifeform: ^ Chicago, Illinois, US. 'CLEAR WIRELESS LLC'.
asciilifeform: s inability and to provide a remedy. An indicator of the seriousness of the Board's concern is the PMC been requested to report to the Board every month, starting in August, rather than quarterly, the normal case. One option for remedy that must be considered is retirement of the project. The request is for the PMC's consideration among other possible options." '
asciilifeform: 'Outgoing Apache OpenOffice project management committee (PMC) chair Dennis Hamilton has begun the discussion of a possible (note possible at this point) shutdown of the project. "In the case of Apache OpenOffice, needing to disclose security vulnerabilities for which there is no mitigation in an update has become a serious issue. In responses to concerns raised in June, the PMC is currently tasked by the ASF Board to account for thi
asciilifeform: in other lulz, https://lwn.net/Articles/699047
asciilifeform: what's that ?
asciilifeform: object in background
asciilifeform: such bakelite.