33700+ entries in 0.269s
BingoBoingo: lol https://www.reddit.com/r/Bitcoin/comments/654yzl/goxxed_by_bitbetus_lost_16_btc/
mod6: <+mircea_popescu> asciilifeform a good half of police work in all times, interfacing with bored / insane middle aged women. << did alf just flip on his scanner?
mircea_popescu: meanwhile in home invasion news, http://68.media.tumblr.com/9142f815031afe4b548edd08528c563f/tumblr_oaz8rea7BC1uvwznco1_500.gif
mircea_popescu: meanwhile in "cheap and effective pet carrier" news, http://68.media.tumblr.com/6edd44baf2da5f6359ceb6379eef268f/tumblr_o3qp6oxFhq1tvpchzo1_1280.jpg
mircea_popescu: ben_vulpes old country stuff.
mircea_popescu: meanwhile at "what she should have been doing instead" ranch, http://68.media.tumblr.com/5bc80fc98bc47de87a0575b1a322db71/tumblr_o3hvmtIMT91uxdiqco1_1280.jpg
asciilifeform: mircea_popescu: 9/10 it means the lolcow 'libotr'
asciilifeform: mircea_popescu: believe or not, americans ~eat~ it
asciilifeform: mircea_popescu: with kcl ?! you'd have to stab somebody with it neh
BingoBoingo: <mircea_popescu> or wait, bile's green is it. << Black or neon yellow depending on saturation
mod6: Thanks Framedragger & pete_dushenski
pete_dushenski: mircea_popescu: somehow marketing must've just added to expenses!
a111: Logged on 2016-03-13 21:02 ben_vulpes: "I will simply consider the matter moot." << and keep bettor funds if no receiver steps forward?
mod6: Thanks ben_vulpes.
mod6: Thanks diana_coman
asciilifeform: http://media.mt.com/dam/ind/Line_Pages/WeighModules_LoadCell/High_Precision_Weigh_Modules/LP-WXS-Weigh-Module-USP2-1010x300.png/_jcr_content/renditions/cq5dam.web.1280.1280.png << is a good photo of what asciilifeform used it for
asciilifeform: ( http://www.mt.com/us/en/home/products/Industrial_Weighing_Solutions/AutomPrecision/High_Precision_Weigh_Modules/WX_Weigh_Modules/WXS_Weigh_Modules/WXS205SDU15_DualRange_Weighing_Module.html << the machine mentioned in earlier thread re subj. finally found the vendor link. )
asciilifeform: mircea_popescu: i don't know of any us-made electronic balance
a111: Logged on 2017-03-29 17:50 mircea_popescu: not for a fucking second. he is enabling the misbehaviour of 30yo children. i gotta do more work bitchlapping these idiot cunts into the ground because he buys them food and doesn't makle them pay for the shiot they break.
a111: Logged on 2015-06-05 18:36 mircea_popescu: "[Personal experience: I have taken on a recent high school grad (friend’s son) as an intern in my web development business. He was an above-average student in a Harvard University intro CS class and also completed AP Computer Science in high school plus an additional programming class. His current productivity is about 1/100th of a $25/hour Ukrainian or Filipino contract programmer so any wage+benefit package above
a111: Logged on 2017-04-13 17:19 Framedragger: asciilifeform: btw udp_recvmsg() is the kernel-internal function which is vulnerable. need to check callstack of recvfrom() vs recv(), possibly only recvfrom() is vulnerable (thereby reducing set of exposed programs greatly). otherwise even more funtimes.
asciilifeform: mircea_popescu: sorta the whole point in even having pediwikia -- so that they can have this.
asciilifeform: mircea_popescu: per the tards' internal logic -- 'we burned the vuln -- we own the tendrils'
asciilifeform: mircea_popescu: you'll also love how it is done because... prngs sometimes PASS when you do this (how ? idk)
a111: Logged on 2017-04-13 16:11 trinque: crypto/bio/bss_dgram.c has several invocations with recvmsg
asciilifeform: mircea_popescu: iirc it worked by cordoning off a portion of l0/1 caches to use as trace record
Framedragger: mircea_popescu: asciilifeform: ty
Framedragger: mircea_popescu: function call history for c proggy? i prolly am doing sth horribly wrong, tho
asciilifeform: mircea_popescu: he wasn't trying for ordinary trace
asciilifeform: mircea_popescu: asciilifeform can't possibly be the first to ever try to search inside a dir of tarballs. srsly, 0 support?!
asciilifeform: mircea_popescu: null result
mircea_popescu: tar xvfz cmake- --to-stdout | grep -H "MSG_PEEK" /dev/null > liquishit.txt
asciilifeform: mircea_popescu: it dun do any good for searching in tars.
a111: Logged on 2017-04-13 16:03 asciilifeform: (standard input):#ifdef MSG_PEEK
asciilifeform: y'know, it : http://apr.apache.org/docs/apr/1.5/group__apr__network__io.html
asciilifeform: there's a recvfrom(...MSG_PEEK...) in apr.
ben_vulpes: mircea_popescu: http://www.cbsnews.com/news/tap-water-in-neti-pots-behind-two-brain-eating-amoeba-deaths-in-2011-investigation-finds/
asciilifeform: recvfrom(....MSG_PEEK
a111: Logged on 2016-07-10 01:40 mircea_popescu: http://btcbase.org/log/2016-07-10#1500575 << let me guess, this is really the washington-thinktank-gendarmerie plan getting rid of those pesky washington-local-thinktanks ? plan proceeding according to plan ?
ben_vulpes: mircea_popescu: it is a thing ben_vulpes is baseline familiar with, believe it or not!
asciilifeform: mircea_popescu: not on running disk, they live on cd somewhere
mircea_popescu: ben_vulpes they're not plumbing lines. there is such a thing as brain-blood barrier.
asciilifeform: mircea_popescu: no shit it's in gcc. headers.
mircea_popescu: ben_vulpes nothing's "wired directly to brain" wtf are you on about.
asciilifeform: Framedragger, mircea_popescu , et al : http://wotpaste.cascadianhacker.com/pastes/N9Eir/?raw=true << zgrep -E 'recvfrom.*MSG_PEEK' ... ( and bzgrep ...) from several gentoo boxen here. i even found one with -- lol -- socat
Framedragger: mircea_popescu: i dare not say, it's more of an emergent effect, a piece from one, a piece of another, and you get a log full o' it
Framedragger: asciilifeform: btw udp_recvmsg() is the kernel-internal function which is vulnerable. need to check callstack of recvfrom() vs recv(), possibly only recvfrom() is vulnerable (thereby reducing set of exposed programs greatly). otherwise even more funtimes. ☟︎
asciilifeform: Framedragger et al : bzgrep -E 'recvfrom.*MSG_PEEK' /usr/portage/distfiles/*.tar.bz2; zgrep -E 'recvfrom.*MSG_PEEK' /usr/portage/distfiles/*.tar.gz; zgrep -E 'recvfrom.*MSG_PEEK' /usr/portage/distfiles/*.tgz
asciilifeform: mircea_popescu: see continuation of thread
Framedragger: asciilifeform: ah, only glibc etc if "recvfrom" in keywords, you're right. but if only "recv" (https://codesearch.debian.net/search?q=recv+.*+MSG_PEEK&page=1), then lots of results
Framedragger: via that HN post, https://codesearch.debian.net/search?q=recvfrom+.*+MSG_PEEK
asciilifeform: ( bzgrep MSG_PEEK ..... )
asciilifeform: mircea_popescu , trinque , Framedragger , et al : part 2 : the bz2 search : http://wotpaste.cascadianhacker.com/pastes/iJwoo/?raw=true
asciilifeform: i'ma guess that mircea_popescu was grepping compressed tarballs with plain grep and naturally found nothing.
trinque: crypto/bio/bss_dgram.c has several invocations with recvmsg ☟︎
asciilifeform: mircea_popescu , trinque , Framedragger , et al ^
asciilifeform: (standard input): (RECV_TYPE_ARG3)1, (RECV_TYPE_ARG4)MSG_PEEK) == 0) {
asciilifeform: (standard input):#ifdef MSG_PEEK ☟︎
asciilifeform: e.g., tar xvfz cmake- --to-stdout | grep -H MSG_PEEK > liquishit.txt
a111: Logged on 2015-01-12 19:41 pete_dushenski: so bitcoin_charlie what brings you by on this sunny day ?
a111: Logged on 2015-01-12 18:59 mircea_popescu: bitcoin_charlie didn't you make a plea bargain ?
Framedragger: i guess you could also do `recv(&one_byte_buffer)` and then later `recv(&larger_buffer)`, too; but their use at least makes some sense to me. imho.
Framedragger: it seems to use MSG_PEEK to check info on the connected peer (and drop it if need be), and by using this, it can avoid allocating additional memory to take in whole buffer
jhvh1: Framedragger: recv MSG_PEEK flag ignored · Issue #4586 · kripken/emscripten ...: <https://github.com/kripken/emscripten/issues/4586>; MSG_PEEK capability · Issue #551 · ARMmbed/mbedtls · GitHub: <https://github.com/ARMmbed/mbedtls/issues/551>; hiboma/ MSG_PEEK .md at master · hiboma/hiboma · GitHub: <https://github.com/hiboma/hiboma/blob/master/kernel/net/MSG_PEEK.md>
Framedragger: !~google site:github.com "MSG_PEEK"
Framedragger: maybe it is.. someone could be using it to get buffer length (folx exist who ask 'so how do i use MSG_PEEK for this...')
asciilifeform: anybody here have a massive gentoo tarball mirror ? try searching for MSG_PEEK ?
a111: Logged on 2016-02-05 21:55 ascii_butugychag: 'A post to a technical forum discovered that the non-prime parameter was introduced more than a year ago. A note in the commit indicates that Socat was not working in FIPS mode because it requires a 1024 Diffie-Hellman prime, and added that a developer named Zhiang Wang provided a patch with the new prime. The poster revealed that Wang works at Oracle and contributes to Socat.'
a111: Logged on 2016-02-05 21:54 ascii_butugychag: '“I cannot for sure rule out the possibility of a backdoor,” said Gerhard Rieger, a Socat maintainer. “But personally I do not believe that the contributor has a backdoor because he uses an email address at a well known and reputated company, and if someone wants to install such a backdoor he would not use a parameter that can easily be proven as non prime.”'
asciilifeform: http://btcbase.org/log/2017-04-13#1642778 << who the fuck sets MSG_PEEK flag and why ☝︎
Framedragger: mircea_popescu: i don't think so, and i thought about linking this, too heh (need to update/patch kernels if they are < 4.5)
mircea_popescu: "* A race condition flaw was found in the N_HLDC Linux kernel driver when accessing n_hdlc.tbuf list that can lead to double free. A local, unprivileged user able to set the HDLC line discipline on the tty device could use this flaw to increase their privileges on the system. (CVE-2017-2636, Important)"
ben_vulpes: nobody listens to dumb ol visual memory ben_vulpes
mircea_popescu: o wahdda ya know, did the wrong one. meant http://68.media.tumblr.com/6b5224a3c09c29b874920d9160afac8c/tumblr_n66asqTtw81sma9e2o1_1280.jpg
a111: Logged on 2017-04-12 19:34 mircea_popescu: and in other hot hos, http://68.media.tumblr.com/0b3817c0153c0d491c757468369d371f/tumblr_omsphpjKId1tgc11ao1_1280.jpg
mircea_popescu: anyway, http://68.media.tumblr.com/0b3817c0153c0d491c757468369d371f/tumblr_omsphpjKId1tgc11ao1_1280.jpg << owlgirl sez wut?!
ben_vulpes: mircea_popescu: burger king triggered the "google home" devices' voice recognition, got them to blather about burger king products after the ad roll
mircea_popescu: in other real news, ttp://68.media.tumblr.com/0b3817c0153c0d491c757468369d371f/tumblr_omsphpjKId1tgc11ao1_1280.jpg
mircea_popescu: ben_vulpes can has summary ?
asciilifeform: mircea_popescu: as proclaimed in https://ria.ru/syria/20170411/1491967099.html ( linked mainly for the lulpic )
a111: Logged on 2017-04-12 17:13 ben_vulpes: also this mouthwash thing, does one really want to nuke the commensal population regularly?
mircea_popescu: and in other hot hos, http://68.media.tumblr.com/0b3817c0153c0d491c757468369d371f/tumblr_omsphpjKId1tgc11ao1_1280.jpg ☟︎
lobbesbot: mircea_popescu: mircea_popescu was last seen in #trilema 38 seconds ago: <mircea_popescu> !Qseen deedbot
mircea_popescu: !Qseen mircea_popescu
lobbesbot: mircea_popescu: deedbot was last seen in #trilema 53 minutes and 52 seconds ago: <deedbot> http://phuctor.nosuchlabs.com/gpgkey/4697629D1A4C3B182613EA1F8F99412543368AE3E053FAD018995B3A337BDD93 << Recent Phuctorings. - Phuctored: 1653...9817 divides RSA Moduli belonging to ' (ssh-rsa key from (13-14 June 2016 extraction) for Phuctor import. Ask asciilifeform or framedragger on Freenode, or (1 more message)
lobbesbot: mircea_popescu: I have not seen Skydragon.
lobbesbot: mircea_popescu: lobbes was last seen in #trilema 1 minute and 33 seconds ago: <lobbes> Well, redundancy anyways
mircea_popescu: meanwhile on social sciences campus, http://68.media.tumblr.com/a41ea9e4fb9c8c1ec3142213a0ba584a/tumblr_omrhr96ZN41ucoif3o1_400.gif
ben_vulpes: anyways, anyone playing along with c11quest may consider the following CXXFLAGS: -std=cxx11 -DBOOST_NO_CXX11_SCOPED_ENUMS
ben_vulpes: lol mircea_popescu had story about discovering this the hard way, yes?
asciilifeform: ben_vulpes: aha, one time went on business without it
asciilifeform: ben_vulpes: i've been using'em for decade+ but still nfi if 'works' or 'gives feeling of power'
asciilifeform: ben_vulpes: ooh the brain liquifier!
asciilifeform: mircea_popescu: my problem is that the period in which it 'does not recall' is 1) random 2) unknown.
asciilifeform: not 'divinity', mircea_popescu , but meeting bare minimal state of art. i.e. no less functional than ye olde gribble.
asciilifeform: does mircea_popescu keep broken chairs at his house ?
asciilifeform: mircea_popescu: if it reboots tonight, it will think it has never seen whoever. silent failure is Wrong Thing
jhvh1: mircea_popescu: doppler was last seen in #trilema 13 hours, 49 minutes, and 33 seconds ago: <doppler> neat
jhvh1: mircea_popescu: asciilifeform was last seen in #trilema 54 seconds ago: <asciilifeform> but looks like we haven't a 'seen' tool any moar in-chan.
mircea_popescu: meanwhile at weirdo motel, http://68.media.tumblr.com/d0529eae014a9eab8ac440f54da3a0f1/tumblr_oj0izxZ2871ue0rjuo1_400.gif