73900+ entries in 0.479s

mircea_popescu: but something tells me there's going to be left very little of andressen's "nice going team" after
a coupla years' worth of headwind.
mircea_popescu: time to find out exactly how much fat the "incubator that produced
a hundred billion in new companies" actually has on the bones.
mircea_popescu: the fact that he failed to understand something (and failed SILENTLY!11)
a mere five minutes prior gives him no pause, much like any other socialist retard, "trust me, i'm
a good guy" with blood and guts all over.
mircea_popescu:
http://btcbase.org/log/2017-02-01#1610795 << prety lulzy how the delusion of "independence" and "in control of self and own destiny" works in retards, too. this schmuck actually imagines himself in
a position to... recognize, by himself, for himself, when he didn't understand something.
☝︎ mircea_popescu: and yet again passing silently over noob's failure to respond to "who are you" turns out to have been
a stupid move.
Framedragger: fromsiphnos: you'll need to learn things, this is not
a (completely) trivial hacker-kiddo thing, in the sense of finding
a list of "hackable" IPs on
a forum and then trying user/pass pairs. :) you'd need to be understand how public key based authentication works, and what the distinction between
a server ssh key and
a client ssh key is.
Framedragger: fromsiphnos: no, not user/pass, though one could try
a bit of that, too, but as in, generate small set of "debianized" ssh client keys, and try all of'em. much smaller set. see logs above
a111: Logged on 2016-11-17 16:02 Framedragger: in fact.. due to
https://hdm.io/tools/debian-openssl/ correctly pointing out that "This flaw is ugly because even systems that do not use the Debian software need to be audited in case any key is being used that was created on
a Debian system.", someone should attempt botnet-brute-login to all 13M+ (i forget lol) ssh hosts with rng-fucked client keys.
Framedragger: but good news, as asciilifeform et al. have pointed out before,
a lot of client keys get generated on ssh servers. if random number generation or other things are broken on the latter, you can *derive* the (set of) the former, in some cases :)
Framedragger: fromsiphnos: what do you mean by access? connect to, and get
a login challenge from server? yes. access as in "hack da system" login access? no - this is *server* ssh key, not client
Framedragger: (the siphnos datadrop (
http://siphnos.mkj.lt/datadrop/) gives the banners ("banners" folder) and keys (in various formats), including raw ssh-keyscan output (*_scan.tar.bz2), as e,N,IP CSVs (e-N-IP*),
a.k.
a. tmsr format, and converted openpgp (rfc4880) format.)
Framedragger: i suppose it's not documented anywhere properly as of yet, hm! fromsiphnos, are you by chance familiar with the `ssh-keyscan` tool (bundled in by default in the openssh package). it's basically output from that tool, plus
a list of all IP addresses which can be connected to on port 22.
Framedragger: yes, *some*. but not enough automation, apparently; and not enough falsification in this case, as is very much apparent :/ should have been an obvious catch by either automated test or at least manual test. was (very shamefully)
a wee bit too lazy with this last command.
mircea_popescu: "this is
a nuanced patient" "yes but why nuances of dark purple".
trinque: aha, I saw
a bentley the other day that had only two seats
Framedragger: (re. "contains", since it's
a.. nuanced bot, it was actually meant to work correctly, i.e. did not confuse "contains" with "starts with", so.. need to look at it to understand wtf.)
ben_vulpes: you take that back
a turbocharger is not
a rev bump
ben_vulpes: hard to even get excited about even
a brand new mercedes
mircea_popescu: ben_vulpes and i saw
a rich "sv culture" dork and
a talented madonna.
ben_vulpes: heinous abuse of capital equipment, but it beats
a prius
ben_vulpes: hey i saw
a mercedes with an uber and lyft sticker yesterday
mircea_popescu: lyft is
a cab in the sense urban slum dwellings are homes.
Framedragger: ^ oh, that's
a bug, should only be one of those.
fromdeedbot: trinque: i was actually looking around online to see what you were up to these days. its been
a while
a111: Logged on 2017-02-01 15:49 mircea_popescu: asciilifeform i didn't before understand that i fully agree with you, x86 / x64 is
a doomed technology.
aseriousgogetta: he is
a loving alcoholic & he works sun-up to sun-down doing all he can. i love my dad.
mircea_popescu: asciilifeform i didn't before understand that i fully agree with you, x86 / x64 is
a doomed technology.
☟︎ shinohai: It's hard to find interesting ideas for camgirl that refuses to use
a dildo or other penetrative props
mircea_popescu: and, amusingly enough, wikipedia thinks alla kushnir is
a mediocre russian-jewish chess player from before the war.
mircea_popescu kinda loves the mutation of the advertising copy into
a fake problems narrative, also. "oh there are problems but the valiant soviets!"
BingoBoingo: "SEA delivered
a counter-offer on December 12. It was
a 15-year contract, which Wright admits was
a stretch. He has since been lampooned for this ask in Crains Business."
mod6:
a few months back, i actually said it was "October" when it was in fact, November. No one said anything though. Every now and again, one sneaks by me.
ben_vulpes: nevertheless,
a man in my wot republished it and so i did not have to go looking for it myself when the time came.
BingoBoingo: <mircea_popescu> also, amendments to the constitution aren't made by congress. << I think they are referring to section 4 of the 25th amendment, tis
a mess
mircea_popescu: bad example, seeing how senescent senility is
a fine excuse, but anyway
mircea_popescu: the best thing you can do for
a pianist in general is take
a hammer to the fingers of the "most talented piano player of his generation" so he can never as much as open
a can of tuna with his own hands ever again.
mircea_popescu: dude are you kidding me ; anything in javascript is
a 2-500% slowdown over everything else.
mircea_popescu: " Ive heard that this results in
a 5-10% slowdown for basically all JavaScript code."
mircea_popescu: multi-wire bus delivers
a specified amount of buckshot each fire.
mircea_popescu: myeah. but if i ever make
a chip myself, there's not going to be fucking carry speshul bit.
mircea_popescu: ie, origin ally the philosophical minds prevailed, and
a special wire was added (the carry). but then ww2 ended and saner minds prevailed ; thus double sized results on the same bus and the world went back to the peace and prosperity of everything in band.
mircea_popescu: incidentally this whole thing with mul add etc is
a fine working example for the in band / out of band discussion.
mircea_popescu: so basically, what my mind has strained from this convo, is that ada implements bound checking badly ; in that it (wrongly) assumes that it can always source
a larget item to compare to, like < size+1.
mircea_popescu: that's
a part of the thing. consider, why isn't "the whole notion of fixnum" that if you b = size+1 then b = 0 ?
mircea_popescu: seems like
a strange sort of fencing error. vaguely reminiscent of the whole "is 1 inch pipe 1 inch outside or inside ?" debacle for apprentice plumbers
mircea_popescu: asciilifeform i don't think "zero surprise compilation on all machines" is
a notable or even desirable concern.