log☇︎
224900+ entries in 0.083s
asciilifeform: i deliberately didn't even bring up the whole thing's (almost certain) reliance on tor and related idiocy
asciilifeform: arbitrators won't immediately run off and do whatever the fuck they like with the secret because... because what? magical drm goggles glued onto their skulls?
asciilifeform: no. why would they do that. we have l33t crypt0-d00dz now.
asciilifeform: what it actually takes in real life, to establish the kind of relationships needed
asciilifeform: 'slur' << i love how these nitwits show no symptoms whatsoever of having bothered to study how secrets were sold historically, from babylon to cold war, etc
asciilifeform: dreary usg (and useful-idiots) claptrap.
asciilifeform: lol!
asciilifeform: 'Fund with a credit card'
asciilifeform: d3m0cr4cy!!
asciilifeform: what a joke.
asciilifeform: and disputes settled by showing the actual secret to five randomly selected lusers
asciilifeform: and site has 'flash.' QED.
asciilifeform: Adlai: honeypot.
asciilifeform: and related pursuits.
asciilifeform: !s bitsquatting
asciilifeform: for aficionados of dram diddling,
asciilifeform: memory paper << snore. 1) serious folks using dram - use ecc dram. 2) serious folks do not allow opponent to execute arbitrary strange on their von neumann box 3) serious folks doing truly serious things use sram.
asciilifeform: !s official miser
asciilifeform: kakobrekla we know is a miser, but jurov ?
asciilifeform: jurov: why not going ?
asciilifeform: damn, who is !?
asciilifeform: jurov, kakobrekla not going !?
asciilifeform: lol, 'effective' ?
asciilifeform: decimation: department of state << try this gedankenexperiment. what could they possibly leak, that would have a measurable effect - with or without the cooperation of the state-controlled media
asciilifeform: not essential.
asciilifeform: !s maldoror
asciilifeform: shame.
asciilifeform: BingoBoingo: fan of 'song of maldoror' ?
asciilifeform: wake me up when a 'minuteman' is pwned and sent off on an unsanctioned joyride.
asciilifeform: the secure facilities (actual ones, vs. ordinary 'favourite son' golden toilet contracts) are used. by the folks who matter.
asciilifeform: because they (correctly!) believed that it simply does not matter.
asciilifeform: all that resulted was a leak, of facts which anglo media will never print - so it's almost as good, from their point of view, as 'never happened' ☟︎
asciilifeform: ukraine << so what. did even a single usg minion die from the intercepted phone ?
asciilifeform: decimation: usg 'leaders' think of themselves as being above such trivialities as secure communications << of what concern is what a muppet says to another muppet ?
asciilifeform: the original obamaphone!
asciilifeform: anything that does not conform to this principle, i argue is ipso facto not secure for any reasonable definition of the word.
asciilifeform: the principal thing-not-to-do is complexity that prevents fits-in-head
asciilifeform: !s antifeature
asciilifeform: !s lisp brick
asciilifeform: whereas it mainly consists of not-doing-things
asciilifeform: we're speaking of 'secure computing' as if it were an actual technology, like +ev fusion or whatnot
asciilifeform: decimation: but my sources believe they're under continuous bureaucratic siege to go 'standards compliant'
asciilifeform: decimation: usg did have a few 'parallel universes' of computing. there is, afaik, still a lab or two that use symbolics boxes, for example
asciilifeform: decimation: with own parallel universe, where neither 'microshit office' nor 'bash' nor 'openssl', nor any of the constituent parts, are in use ?
asciilifeform: because virtually all extant crapware falls in 'trojan' category.
asciilifeform: BingoBoingo: notice how the term 'trojan' has mostly faded from Official claptrap re: 'seekoority'
asciilifeform: decimation: this is about as thinkable to present-day academics - and turdware industrialist peddlers alike - as galois theory was to the romans
asciilifeform: BingoBoingo: actual exploit in the sense that no cooperation is needed from the luser
asciilifeform: BingoBoingo: occasionally actual exploit exists
asciilifeform: 'attacker' (via spammail or telephone) - 'can plz has password' sony clerk: 'aye, here'
asciilifeform: BingoBoingo: reading from only the official material, that is precisely the kind of 'attack' involved.
asciilifeform: is this 'an attack' ?
asciilifeform: BingoBoingo: let's say you want some idiot dead. you bring him a loaded pistol, and say 'here. please put in mouth, here's the trigger.' he does.
asciilifeform: decimation: only if it sells the right agenda.
asciilifeform: in fact, discountable on account of mere mention by usg.
asciilifeform: 'best' korea << not even a necessary hypothesis
asciilifeform: aka the snowden censors.
asciilifeform: and the whole greenwald/poitras/etc shitgnome gang
asciilifeform: annoy snowden << annoys sony.
asciilifeform: http://villageundertaker.files.wordpress.com/2013/01/att000022.jpg << 'usg divided against itself'
asciilifeform: JESUS ALSO CAUSED 13 15
asciilifeform: BingoBoingo: he has a good chance. just needs a few sympathetic apparatchik judges.
asciilifeform: if he wins.
asciilifeform: cazalla: or is this one turd somehow different
asciilifeform: cazalla: seems like just the kind of organized begging that site is famous for, no ?
asciilifeform: nanotube: thx!
asciilifeform: but no worky.
asciilifeform: http://pool.sks-keyservers.net:11371/pks/lookup?op=vindex&search=0x17215D118B7239507FAFED98B98228A001ABFFC7 << appears
asciilifeform: nanotube around? yesterday i updated my key (new exp date, same fingerprint); still getting 'Error: Problem creating encrypted OTP file.' from gribble.
asciilifeform spends his evenings debugging an entirely other rom to which he does have source. and disagrees, seeing how there is plenty of sport in it.
asciilifeform: ben_vulpes: so you think your day job is painful. go debug a rom, for an evil embedded cpu arch, to which you haven't source.
asciilifeform: nm, fixed
asciilifeform: anyone else getting 'Error: Problem creating encrypted OTP file.' from gribble today ?
asciilifeform: that was how i read this thread at first glance.
asciilifeform: (piece of dynamite in boot, in glove; etc)
asciilifeform: carpal tunnel brick << in russian work camps, inmates found many creative ways to self-mutilate in effort to avoid work
asciilifeform: which, it turns out, the systemd pushers reflexively defended as a feature. ☟︎
asciilifeform: somebody admits, it appears, that this was actually a bug in systemd
asciilifeform: ^ mega-lol
asciilifeform: https://lists.debian.org/debian-user/2014/12/msg00349.html
asciilifeform: inverse in the sense that things turn to shit, not gold.
asciilifeform: jurov: and, like an inverse king midas, once they touch something - it stays touched.
asciilifeform: jurov: only a matter of time
asciilifeform: check out where the fuckers say 'grub [bootloader] should detect an impending fsck' - because it is the responsibility of the entire planet, they think, to compensate for their idiocy
asciilifeform: ( https://lists.debian.org/debian-user/2014/12/msg00327.html )
asciilifeform: 'Please could we stick to the technical aspects of this problem. Attempts to apportion responsibilty rarely lead anywhere.'
asciilifeform: and here's pure shitgnome gold:
asciilifeform: thestringpuller: that was a quote
asciilifeform: 'My experience of running Linux on my personal local interactive (rather than server) systems over the past eighteen years leads me to believe that the long-term benefit of *prophylactic* fsck invocations triggered by mount-count or interval-since-check is approximately zero, since *those* invocations of fsck have never discovered FS corruption on my systems.'
asciilifeform: jurov: nah this one's further in the thread
asciilifeform: fsck << see also https://lists.debian.org/debian-user/2014/12/msg00329.html
asciilifeform: 'little' being the size.
asciilifeform: the best place to hide a little malice is a gigantic pile of incompetence. ☟︎
asciilifeform: as they have in fact been demonstrated to do on many past occasions.
asciilifeform: decimation: another thing is that intel et. al. are not honest actors and there would be every reason to suspect the physical product and documentation to diverge in arbitrarily malicious ways.
asciilifeform: doesn't matter how thoroughly the thing is published.
asciilifeform: think of, e.g., openssl.
asciilifeform: decimation: there is a good reason to doubt that a sufficiently gnarly turd can ever be considered 'open'
asciilifeform: !s from ore
asciilifeform: 'the sleep of reason produces monsters.'