3800+ entries in 0.263s
mod6: lol, i've not "formally" started it. I have however, looked through most of 1,
2, 3, and 4. Did the homework for ffa_calc. But again, not enough to say "I've done it. Lemme sign."
mircea_popescu: it's very solvable as stated, but not mechanically. "1. figure out v ;
2. press pehbot ; 3. say intelligent things about it." "intelligent according to whom ?" "intelligent according to me" "how am i supposed to cheat this ?!" "you aren't."
mircea_popescu: imo a fabulous textbook example of how the imperial vulnerability cycle goes. 1. make a bad spec, a la SMGL ;
2. implement some portions of it only, because
http://btcbase.org/log/2018-01-25#1776189 ; 3. discover the bad spec is vulnerable, issue "best practices" for people to "santize". obviously this will not be made by 1 if
2 wasn't, so... 4) implement slightly more of the spec, throw security in disarray.
☝︎ mircea_popescu: asciilifeform there's two fundamental items i can readily identify, maybe more. 1. i actually did plop an echo $_GET in there. is this just bad coding ? is it a legitimate assumption ?
2. he has a point, as long as it's on trilema.com, a script has powers OUTSIDE of its implicit scope, "steal cookies" whatever. is this ~actually~ bad systems design ?
douchebag: Well, I still have to wait until they patch them before they reward the bounty. They pay based on likelyhood/impact, now a friend of mine reported a vulnerability less serious than the one I found and he was rewarded $
2,000 total
mircea_popescu:
2 was not actually stated by anyone, i'm just saying for the record.
mircea_popescu: both 1 and
2 seem a rather "we'll fix the car by retrofitting horse carriage to it"
mircea_popescu: 1. the idea to have "changelog only" patches as a signature device is a major departure from how v worked previously, it semanticizes an item that we only recently even introduced ;
2. the idea to have patches that are deliberately non-compliant so "they won't be mainline" is a solution to what i thought an inexistend problem -- why not maintain special "experumental" keys for the purpose instead, l;ike sane people ?
mircea_popescu: shinohai basically it's "for as long as your secret service powered nonsense gets
2% of the vote, you can go jump in the lake". the (obviously transparent) implication being that secret services principally exist as usg influence agents these days, and are getting beheaded pretty much everywhere, from myanmar to galicia and from gdansk to bucharest.
deedbot: asciilifeform updated rating of danielpbarron from
2 to 3 << operates heathenbux-denominated FUCKGOATS dealership; trb experimenter; history of doing The Right Thing
deedbot: asciilifeform updated rating of apeloyee from
2 to 3 << A - N*floor(A*R/4^K) <
2*N and much more, inquire within
deedbot: asciilifeform updated rating of trinque from
2 to 4 << texas lisper; author and operator of deedbot ; experimental vtronics work
deedbot: asciilifeform updated rating of apocalyptic from
2 to -1 << went off to heathendom; apparently it's all the same to him
deedbot: mircea_popescu rated kreal
2 at 2011/07/26 00:08:44 << bought 60btc via pp, smooth.
spyked: (ftr, /me got his first ubuntu cd "for free" at a "computer conference" mid-2000s; fortunately, his first linux install was a red hat at a now defunct internet cafe in bucharest; to this day I have no idea why they wanted me to install that, 90% of the people went there for "counter strike", the other 10% for diablo
2)
a111: Logged on 2018-01-23 17:53 lobbes:
http://btcbase.org/log/2018-01-23#1774737 << btw, ty ben_vulpes for writing this article. After I get archive .zip delivery up and running I will be taking time to get my castle in order. This will include: 1) learning 'v'
2) get a working trb 3) testing my damn fgs already 4) ffa chapter 1 (at least)
ben_vulpes: relatedly, i discovered a computer in a
2.5y preschool classroom this am
lobbes:
http://btcbase.org/log/2018-01-23#1774737 << btw, ty ben_vulpes for writing this article. After I get archive .zip delivery up and running I will be taking time to get my castle in order. This will include: 1) learning 'v'
2) get a working trb 3) testing my damn fgs already 4) ffa chapter 1 (at least)
☝︎☟︎ mircea_popescu: in other news, it's so great that you can take a
2 year old article and it's actually fucking useful. but -- a point i think wasn't mentioned and it's a pity : i ~really~ like ben_vulpes code indentation style. those bars.
a111: Logged on 2018-01-23 03:40 mircea_popescu: and in general if this current trend continues of 1. i ask for something ;
2. you deliver something entirely else ; 3. i point this out ; 4. nothing happens we're going to have a serious problem. how did you figure these are wire details, what, you never in your life saw a wire ? wtf is "Beneficiario Final: (Razón Social o Nombre Completo del Cliente y N° de Cuenta en Montevideo)" ?
mircea_popescu: and in general if this current trend continues of 1. i ask for something ;
2. you deliver something entirely else ; 3. i point this out ; 4. nothing happens we're going to have a serious problem. how did you figure these are wire details, what, you never in your life saw a wire ? wtf is "Beneficiario Final: (Razón Social o Nombre Completo del Cliente y N° de Cuenta en Montevideo)" ?
☟︎ mircea_popescu:
http://btcbase.org/log/2018-01-22#1774399 << entirely separate concerns. as to 1, yes, we all have repeated conversations with alf in this vein, i dunno what exactly to do about it ;
2. the quality of your killshot was poor, and it is my theory that this is because the sort of topic would greatly benefit from the cohesive power of an article ; nothing to do with log not being canon, but a matter of collected convenience.
☝︎ a111: Logged on 2017-11-29 01:38 asciilifeform yet again, for 3rd time in
2 yrs, attempted and failed to build a 'zero foot print runtime' for gnat -- to abolish the 3MB of liquishit it shits into every executable.
a111: Logged on 2018-01-22 14:23 caaddr: GNATMAKE 4.9.
2 is the answer to the now redundant question. I'll use adacore instead. I had avoided this because it contains precompiled binaries, with no independent reproducible build certification
a111: Logged on 2018-01-22 14:22 asciilifeform: this would seem to create the unpleasant situation of having just 1 adatron. but it is not clear to me that there ever were
2. there was only adacore and broken-adacore (aka gcc-gnat)
caaddr: GNATMAKE 4.9.
2 is the answer to the now redundant question. I'll use adacore instead. I had avoided this because it contains precompiled binaries, with no independent reproducible build certification
☟︎ a111: Logged on 2018-01-11 06:25 lobbes: Top three things I need to do next: 1) set up automated updating of the reporting database the thing sits on (currently 'stale' data).
2) set up lobbesbot to similarly search via IRC commands 3) Zip distribution system!
mircea_popescu: aaand holy shit! "Предлагаем нашим покупателям удивительное средство для похудения сироп Мангустина. С его помощью можно избавиться от 10 kg за
2 недели."
mircea_popescu: anyway; game gold 1, viagra
2, pron 1, russki weird 1, pretty balanced.
mircea_popescu: in fact, let's look here : cheap Path of Exile currency on 2018/01/21 at 4:03 p.m. soehakef on 2018/01/21 at
2:30 a.m. kenyaso60 on 2018/01/20 at 11:44 p.m. zunepudaz on 2018/01/20 at 4:00 a.m. CraigSmild on 2018/01/19 at
2:41 p.m.
mircea_popescu:
2. if i upload items, i'd very much like to use the already extant uploader ; but that thing puts everything in year/month directories. tho i think this is actually a good thing, tell people "do not link item directly, link the code shelf itself".
a111: Logged on 2017-11-10 10:14 diana_coman: for the curious there are in fact
2 prolific-stamped documents describing pl2303 and pl2303x; pl2303x seems to be a sort of upgrade to 64bits but why couldn't it be properly identified as distinct I don't know
shinohai: dmesg gives me [1919018.574318] usb
2-
2: new full-speed USB device number 5 using xhci_hcd
deedbot: asciilifeform rated spyked
2 << maths; reader
BingoBoingo: asciilifeform: That is the same provider. In the numbers they are sending me 700 is 1/
2 rack and no connectivity.
a111: Logged on 2018-01-18 14:57 asciilifeform: 'The United States federal government has paid approximately half a million dollars to a private corporation to help various agencies conduct surveillance on the Bitcoin blockchain' << pretty lulzy, that's, e.g., 3 janitors,
2 clerks, 1 intern, for 1yr
deedbot: shinohai updated rating of mats from
2 to 3 << #trilema - Never has let me go into battle with an empty war-chest.
a111: Logged on 2018-01-17 13:09 esthlos:
http://btcbase.org/log/2018-01-16#1771055 << My thought was to scrap the current client in favor of a customized one, with eucrypt protocol as the backbone. Is this 1. not what you want, or
2. a bad idea?
a111: 2017-09-13 <apeloyee> would O(N^
2) modular multiplication be too slow?
a111: Logged on 2018-01-17 19:31 apeloyee: a vpatch's purpose is twofold. 1) to provide a way to construct some files based on some antedecent files, whose hashes are given.
2) to take some responsibility about the entire tree. but the signature on a vpatch doesn't fix the state of the tree; it is defined implicitly by antedecent patches, which are liable to change at any time ("regrinding") and thereby change some files not...
apeloyee: a vpatch's purpose is twofold. 1) to provide a way to construct some files based on some antedecent files, whose hashes are given.
2) to take some responsibility about the entire tree. but the signature on a vpatch doesn't fix the state of the tree; it is defined implicitly by antedecent patches, which are liable to change at any time ("regrinding") and thereby change some files not...
☟︎ apeloyee: "1) ugly" << can't see that.; "
2) ... it relies on type ranges for good chunk of the proofolade"<< if you really want, can explicitly declare a subtype of Stack_Positions, omitting 0 from it
apeloyee: Hear, hear! If asciilifeform would agree to take discussion of why 1+1=
2 elsewhere, I'll do.
BingoBoingo: If you sell an Argentine peso you get 1.
2 Uruguayan pesos. To buy Argentine pesos requires 1.8 Uruguayan pesos.
BingoBoingo: Not really anymore. Only if you hit the exact middle of the buy/sell spread. Compra 1.
2 Venta 1.8
ave1: mine doesn't: echo $(seq 00 13) --> 0 1
2 3 4 5 6 7 8 9 10 11 12 13
mircea_popescu: "i went into math so as not to have to do this damn it, if i wanted lab equipment in the house i'd have gone into physics" was very much heard by me with own ears
2-3 decades ago.
mircea_popescu: so now... you sell 500 boards for 76 bux each, that's $3800! if the margin on that shit is
2% you're doing fucking great, so the whole charade was organised for a whopping $75! which is half what a fucking steak costs.
esthlos: mircea_popescu: i'm thinking more 1. select thread to view,
2. insert/import/select decryption key, 3. enter pass, 4. show thread
jhvh1: BingoBoingo: Bitstamp BTCUSD last: 14260.3, vol: 8220.87242097 | Bitfinex BTCUSD last: 14221.0, vol: 38106.54999817 | Kraken BTCUSD last: 14331.
2, vol: 3344.98844706 | Volume-weighted last average: 14234.9251951
BingoBoingo: And that guy from Australia/girl from New Zealand, when you go to the boondocks of Brasil in
2 weeks you will no find this much of your mom's language
jhvh1: shinohai: Bitstamp BTCUSD last: 14424.98, vol: 10396.34266163 | Bitfinex BTCUSD last: 14468.0, vol: 29678.61768851 | Kraken BTCUSD last: 14200.
2, vol: 44.6251823 | Volume-weighted last average: 14456.5541867
a111: Logged on 2018-01-12 20:53 BingoBoingo: mircea_popescu: Because of the my passport handicap up to three days will be lost to FACTA. After that another
2-5 business days and they I should be banked.
BingoBoingo: mircea_popescu: Because of the my passport handicap up to three days will be lost to FACTA. After that another
2-5 business days and they I should be banked.
☟︎ organdnor: Terminator
2 scared the living shit out of me when I was a fucking young un
phf: joke (?) re blender was that the original blender "consumer came to expect" was the rewrite of the NaN's idiosyncratic gui into slightly less idiosyncratic gui that current version of blender has. i think happened around
2.03
a111: Logged on 2018-01-11 16:45 phf: diana_coman: yeah, i remember the python
2/3 rants in logs here too. i take it s.mg at this point mails CDs of prefab player AND developer environments
BingoBoingo: Apparently takes weeks. Anecdote from datacenter folk suggests
2-3 months of bandaids not uncommon.