log☇︎
800000+ entries in 0.612s
nubbins`: yeah, shrug. i think post2 is specifically for the preview page
kakobrekla: the problem might be the request uri
nubbins`: let me think on this for a bit
nubbins`: once the preview appears, you've lost the ability to inject
mircea_popescu: so it goes to preview then it posts
nubbins`: probably trivial but it's been a while since i've done this stuff
nubbins`: yeah, i can't figure that one out
kakobrekla: funny why it goes to preview
nubbins`: regardless, yes, you can get logged-in users to submit forms just by luring them to a website
nubbins`: nah, it triggers the Preview button instead of the Post button
Apocalyptic: nubbins`, so you confirm the CSRF is working for posting new topics ?
benkay: why do you need a input telling you what kind of request you're getting?
nubbins`: http://dpaste.com/1567894/ <--triggers "preview" instead of "post", honestly can't be fucked to figure out why
nubbins`: nah just too lazy to type out document.selectelementdfgdsfgfger blah blah
Apocalyptic: nubbins`, seriously you need jquery to submit a form ?
nubbins`: you can also hide the buttons and textboxes for stealth
nubbins`: PoC, someone else can try it out
Apocalyptic: 14Bn, that's some serious hashrate
mircea_popescu: the king is dead, long live the king
kakobrekla: its not specific to rating system
mircea_popescu: Apocalyptic yeah i guess. gotta polish up on my web terminology
Apocalyptic: bitcoin-24 had that flaw too btw
nubbins`: what the fuck is it with bitcoin and CSRF?
Apocalyptic: yeah that's CSRF
mircea_popescu: and see what happens when you visit that page logged into btctalk
mircea_popescu: kakobrekla no, more like, see what you're POST ing, load it in a page with a js autopost when someone loads the page
kakobrekla: but that has nothing to do with not refreshing the page after posting
kakobrekla: it just doenst refresh the page
mircea_popescu: so it'd seem bitcointalk has a xss vuln in the trust rating system, because mpoe-pr just managed to spam trust three times by simply refreshing the page.
mircea_popescu: stuff happens fast these days
mircea_popescu: "“I think there will be a global currency that will take on [J.P. Morgan CEO] Jamie Dimon and the other banks and other currencies."
nubbins`: "Memecoin: a plug-and-play alt that YOU can pre-mine!"
nubbins`: someone buy that man some sunblock
nubbins`: "Several local residents told the media Thursday there were no sprinklers in the portion of the building that was destroyed"
TATontehroad: they weren't allowed to pitch duringnormal ceremonies
nubbins`: public humiliation does indeed lead to butthurt
TATontehroad: Since I did so with the crowd listening
TATontehroad: he was prettybutthurt the whole day
mircea_popescu: TATontehroad yeah but i doubt they picked that up.
TATontehroad: I was there to pass on the yer-retarded msg tho
nubbins`: i designed a logo for him, and after delivering final proofs, he said "lel i don't like it, didn't want to hurt your feelings... you can keep the deposit tho"
nubbins`: that guy tried to skeet me out of some money
jcpham: ditched that first otc identity
mircea_popescu: nubbins` yeah, rg = rapegost. i guess meanwhile this became a mystery of times past
nubbins`: i guess that answers the question of what "rg" stands for
TATontehroad: joradh is jordan ash who did indeed partnerwith vitalik on the quantum mining thing
nubbins`: "Rapeghost's friendly guide to #Bitcoin-OTC"
jcpham: nubbins` feel free to be as libelous as you'd like my friend
mircea_popescu: and her thighs
nubbins`: you can tell she's comfortable because of the way she's holding her arms
mircea_popescu: she's like... "i hope they're too retarded to notice me natch"
mircea_popescu: check out the very comfortable token female / token black person
nubbins`: altho the cups can have those
mircea_popescu: pankkake http://25.media.tumblr.com/0c3026a17f609ca810f316c912d3994b/tumblr_mmtzapEDzW1ru15g3o1_1280.jpg there's a conspiracy
nubbins`: oh wait, why did i just do that
jcpham: you can type away
pankkake: nubbins`: there is #bitcoin-conspiracy but nothing ever get said
nubbins`: web is dead, i'd be printing on thinly-sliced trees
mircea_popescu: this is the sort of thing where you can post even monthly, just as long as each post is worshippable.
mircea_popescu: just make sure you do a thorough ass job on each article.
mircea_popescu: not like you'll run out of material too soon.
nubbins`: mircea_popescu, this would actually be a fun project
ozbot: 1815 jorash> So I'm with a Toronto company, founded in 2009 called noospheer. - Pastebin.com
nubbins`: land on a tabletop!
mircea_popescu: where you debunk in detail idiotic notions in the space
nubbins`: maybe a "paranoiac of the week" on the last page
nubbins`: start accepting articles about how the man is keeping quantum mining hush-hush
mircea_popescu: (this is unrelated to vitalik buterin, who's just an enthusiastic kid that's been exploited for a while by the bitcoin magazine assholes and is now looking for a new rapist)
pankkake: jorash… I still have the window open :o
mircea_popescu: pankkake what was the guy's nick ? i forget
pankkake: he kept PMing me after I told him I was poor
simlay: He's the kid from bitocin magazine and founde/or something of ethereum.
mircea_popescu: and was bothering people around btc. some of them didn't immediately go "you are a fucking retard kill yourself"
nubbins`: and i'll just keep saying things that make sense
pankkake: well, he wanted *investments* more than actually succeeding I think
mircea_popescu: he had pestered a number of respectable academia people, collected all the bits of their responses that weren't "you are a fucking retard kill yourself"
nubbins`: y'know, we'll just emulate non-determinism on these deterministic machines
mircea_popescu: Apocalyptic there was some nut a few months ago, truely a thing to behold. he was going to "emulate" qc on plain old computers.
Apocalyptic: who's that vitalik ?
nubbins`: he had to apologize to canada on behalf of scout leaders who molested kids a while back
nubbins`: see the guy on the right-hand side of the picture?
pankkake: time spent communicating about a project is usually inversely correlated to the advancement of the project
nubbins`: he wanted to do [random word] [random bitcoin term]
rattaTATpow: 4mos ago he wanted to do quantum mining
simlay: rattaTATpow: The awkward founder kid?
rattaTATpow: the dude is a tinkerer, he'll never follow through
mircea_popescu: the more speaking he does the less he's being useful.
rattaTATpow: its why etherium cant work too
mircea_popescu: if you plot rms' output and his public speaking, the results are pretty sad.
nubbins`: it's truly a rare person who is both a leader in their field and able to communicate with the public at their level
nubbins`: ^ with rare exceptions, this is true
mircea_popescu: engineers do not belong outside of the basement. let people do what they're good at ffs.
mircea_popescu: this entire fucking "presentation" bullshit has been the worst idea ever.
simlay: I saw rms at uc berkeley a couple months back. He didn't wear shoes throughout the whole talk.
nubbins`: a fat bearded wild-man slapping a laptop and chanting "join us" to a bunch of ecuadorians
nubbins`: replace the B with a FSF logo and that's essentially him
nubbins`: i guess the beard just started my wishful thinking
nubbins`: i attended a talk by Rolf Heuer from CERN a while back, was slightly disappointed to not see him freak out
nubbins`: yeah that's from 2012 i think
pankkake: no that's the same one