log☇︎
303900+ entries in 0.173s
asciilifeform: ^ strike yet another crypto lib off the list
mircea_popescu: this makes... how many by now ? 3rd major trend i killed, after "moore law" and so on ?
asciilifeform: last bit of lulz from this dig,
mircea_popescu: asciilifeform ah, by the reaction of fromphuctors i thought it was opaque
asciilifeform: (perhaps through not giving a fuck re shitlangs)
asciilifeform: http://seclists.org/oss-sec/2016/q1/89 << lulzy, for 'golang' aficionados. somehow i missed this
asciilifeform: speaking of the rsa-less.
asciilifeform: mircea_popescu: which, the eggog ?
mircea_popescu: punkman what'd you want, an acct and 5 or so tb ?
mircea_popescu: asciilifeform actually i want this archive anyway, feed the wot into the wot.
asciilifeform: re yesterday's thread re dlls and gpg4win:
mircea_popescu: would you download the thing and take out the keys ?
asciilifeform: will also look into what it'd take to real-time eat sks.
asciilifeform: i'ma saw apart a recent sks dump this weekend.
punkman: there are a couple companies that do comprehensive crawls of pastebins, could be worth looking into
asciilifeform: at the end of a werker run, all keys that were part of the run, are marked nonwaiting.
asciilifeform: mircea_popescu: there is still 3 or 4 days worth of old sks archive, being pumped in.
asciilifeform: http://seclists.org/oss-sec/2016/q2/34 << lel... 'systemd-journald from systemd v213 started creating world readable journals, allowing local users to read sensitive system log entries.'
mircea_popescu: asciilifeform what's the source for the currently waiting keys ?
asciilifeform: where's the priv
mircea_popescu: i tried one, we already had it.
asciilifeform: 2/3 of the remainder - homework
asciilifeform: about 1/2 of them trollage
asciilifeform: ^ seems to wurk
mircea_popescu: anyone wanna make his bot google ? trinque ? phf ? who else had bots ?
gribble: Error: We broke The Google!
asciilifeform: incidentally there are perennially privkeys floating on 'pastebin' etc.
mircea_popescu: (will be particularly useful to check/disprove shit coming from hanno bock, http://trilema.com/2016/psa-hanno-bock-still-a-deceitful-shitbag/ ) et all.
asciilifeform: this was part of my plan for the rewrite
mircea_popescu: sooner or later someone ELSE is going to report an actual factor.
mircea_popescu: and finally, you do have a knob to fill in factors into 8 ball manually ? if not add it in
mircea_popescu: asciilifeform anyway, just get the 8ball expander to work constantly, fill a core or something.
asciilifeform: with these people.
asciilifeform: srsly the modus operandi NEVER changes
asciilifeform: ''ImageMagick allows to process files with external libraries. This feature is called 'delegate'. It is implemented as a system() with command string ('command') from the config file delegates.xml with actual value for different params (input/output filenames etc). Due to insufficient %M param filtering it is possible to conduct shell command injection. One of the default delegate's command is used
asciilifeform: re imagemagic, this is gold:
asciilifeform: it is of pretty limited use tho, expanding 8ball from 1st mil primes to 10 mil yielded... what.. 2 pops ?
mircea_popescu: nice. so then let all these things converge. the server ssh keys ; the user ssh keys ; the pgp keys and the 8ball werker.
mircea_popescu: asciilifeform by the way, do you have any kind of werker to keep adding primes to the 8ball ?
mircea_popescu: asciilifeform the thing's been a blessing for hackers for many years now.
asciilifeform: 'There are multiple vulnerabilities in ImageMagick, a package commonly used by web services to process images. One of the vulnerabilities can lead to remote code execution (RCE) if you process user submitted images. The exploit for this vulnerability is being used in the wild. A number of image processing plugins depend on the ImageMagick library, including, but not limited to, PHP's imagick, Ruby's
asciilifeform: (and does it actually make sense to phuctor them ~together~ with pgp keyz?)
asciilifeform: i can throw them in as a specialcase.
asciilifeform: technically there is no need to convert them to pgp format
mircea_popescu: asciilifeform had she had the common sense to wot i would.
mircea_popescu: there already exists a "various ssh formats" conversion ; need to bolt on base16/10 number and pgp format.
asciilifeform: srsly that would be lulzy
mircea_popescu: anyone wanna write that ?
mircea_popescu: with the first half, yeah. we also need a general purpose multiconverter.
asciilifeform: in the wild.
asciilifeform: the nice thing about ssl and ssh pubkeys is that you can harvest them.
asciilifeform: iirc jurov was doing something with those.
mircea_popescu: first things first. the ssl keys thing - both github and search.
asciilifeform: i have a ~strong~ suspicion that there are q == nextprime(p) keys in there.
asciilifeform: i may have said this before, but,
asciilifeform: but >1/2 of the phucked
mircea_popescu: only 5% ish fo the pile of braindamage.
asciilifeform: dun think so
mircea_popescu: or your terminal being weird ?
mircea_popescu: somehow illiterate street urchins in all the large cities, 1916 as well as 2016 can master this basic concept before age 14. yet it eludes the byproducts of welfare state.
mircea_popescu: IF we ever want his political opinions on things, which is a very remote distant and unlikely if, WELL ASK FOR IT!
mircea_popescu: he can THANK YOU FOR IT, and he can HELP. that is it. exactly strictly and absolutely it, nothing more to no degree.
mircea_popescu: you can do whatever the fuck you want, including help yourself to a double serving of his wife
asciilifeform: perhaps a literate man should already know the theory..?
asciilifeform: by that logic, why did i bother to write 'theory' page on phuctor ?
mircea_popescu: really, he's going to trade his "giving a shit" for me doing more work on top of the work i did that he can't do in the first place ? in what fucking world!
mircea_popescu: (number one issue for the noob slaves, too, "it wasn't explained". bitch, i'm going to beat you into a pulp, what explain. figure it the fuck out, it's your ass.)
asciilifeform goes to fiddle with his terminal
asciilifeform: ;;later tell BingoBoingo http://qntra.net/2016/05/phuctor-factors-united-states-disa-key/#comment-56467 << plox fix me formatting
gribble: (later tell <nick> <text>) -- Tells <nick> <text> the next time <nick> is in seen. <nick> can contain wildcard characters, and the first matching nick will be given the note.
asciilifeform: ;;later tell BingoBoingo
mircea_popescu: doing that an' fmpif tomorrow
asciilifeform will mail in his ^ tonight, it is very short
mircea_popescu: which is worse, not better, than blinkenlichten
asciilifeform: that was in the bench, i almost sat on it!111111
mircea_popescu: you didn't notice the anal dildo. those things are "viscerally piloted".
mircea_popescu: oh, the thing with the steel wires ?
asciilifeform: it had fewer gauges than my car.
mircea_popescu: yeah well, maybe they only turn them on when airborne to save on headlamp fluid.
asciilifeform: on the dashboard.
mircea_popescu: in the air ?
asciilifeform: hey that bleuriot or what was it, that i sat down in, had 0 lights.
mircea_popescu: airplane is merely annoying to fly. too many blinkenlichten and shit.
asciilifeform: he has theorems.
mircea_popescu: think about it in these terms : 1. i can sail, and actually used to be / could be very good at it (right body type) ; 2. i could afford a yacht, what. 3. i don't either. ???
asciilifeform: at any rate, quite obviously not all 'yacht rats' take up sailing
asciilifeform: next thing mircea_popescu tells us fucking is work.
mircea_popescu: trust me. after the 9999th winch tick, it's against your will.
mircea_popescu: actually fuck that. you ever been on a yacht ? by been i mean > 6 hours.
phf: sometimes i still see these santa barbara americans though, old men with "silver hair" driving a Mercedes, or mostly on the metro here. they always look so lost and small, like they walked from the screen, "the last American hero" style. except instead of like punching the car window and discovering that it hurts, their credit card is denied or something, and they are like "what is that???"
mircea_popescu: then next thing you know, meta-nsa the yachting club.
asciilifeform: i mean, these kidz ~did~ have vacation houses, did end up in princetonyaleward, etc.
mircea_popescu: then this error compounds, because it's selective.
mircea_popescu: in the way where they make sense in your emulation in places they make no sense irl.
mircea_popescu: asciilifeform i suspect your chief problem is that you go to school with your own internally emulated versions of irl fuckers.
asciilifeform: saw them, alive.
asciilifeform: i went to school with the fuckers
mircea_popescu: phf i'm like the emperor-god xenomorph from the future, i go "what was that bullshit tv series from the early 90s with all the boats" and wihin minutes a woman pops the name. unfuckingbelivable.
phf: ahaha, how very true
mircea_popescu: that is the place where your "yacht rats" thing actually exists.