mircea_popescu: https://www.oglaf.com/dream-lover/ bwahaha. they've been busy have they.
mircea_popescu: ohohoh found it! http://trilema.com/2018/the-rivers-of-blood-article-or-the-lordship-list-fifth-year/#footnote_0_77999
asciilifeform: http://btcbase.org/log/2018-08-09#1840596 >> e.g. http://phuctor.nosuchlabs.com/factor/5411 , http://phuctor.nosuchlabs.com/factor/5367 ☝︎☟︎
asciilifeform: for non-expert entomologists : the perps ( i dun distinguish b/w 'bug'-inserters and coverup-artists ) ~continue~ to spew the squid ink where the patch is disguised as 'for denial of service bug' rather than arbitrary r/w -- despite the cat being out of the bag for nearly whole day nao
asciilifeform: meanwhile, in heathendom, https://archive.is/aiaQH << linux 4.xx arbitrary r/w 0day
asciilifeform: http://btcbase.org/log/2018-08-06#1839921 << BingoBoingo i'm not aware of any other historically significant '.30's ( unless you count mauser/TT short .30 ) ☝︎
phf: asciilifeform: oh no i'm not about to start debugging the paste/webserver/download loop again
ben_vulpes: mod6: for what it's worth, i twice audited holdings while generating statements and they both came out correct. i suggest you use the statement generation process (combing through ledger/invoice output) to generate statements first, and audit against your personal accounts as a check.
asciilifeform: mircea_popescu: as i understand, the .ar/.uy folk thought they could jury-rig a sort of 'alt-europe'.
mircea_popescu: in which spirit, http://p.bvulpes.com/pastes/pwpgR/?raw=true being the fecal consistency of #freenode the past half hour. >2k users, 0 useful product.
ben_vulpes: BingoBoingo mod6 asciilifeform: http://p.bvulpes.com/pastes/6dB0R/?raw=true << detailed walkthrough of how i've been generating reports for pizarro, along with trial report for july. will doublecheck numbers tomorrow and finalize.
diana_coman: hanbot, http://p.bvulpes.com/pastes/qsnSR/?raw=true
mod6: BingoBoingo: are you in a position to be able to receive the $2050 or so per/month that you need for this from a bank wire?
asciilifeform: meanwhile, in resurrected vintage lulz, http://btcbase.org/log/2014-03-18#564709 >>> http://s3.eurecom.fr/tools/screaming_channels/ ( tldr -- public demo of seekrit bitz recovery from parasitic passthrough rf ) ☝︎
fromloper: Really I mean I wanted to make sure you weren't a guy I've got beef with on /r/lisp, because I would have to appologize.
deedbot: Get your OTP: http://p.bvulpes.com/pastes/dfaxR/?raw=true
jurov: in a sense, neither/both of us
trinque: diana_coman: glad to hear your success with it. what's left on my end is to smash the gentoo profile we're using into a single dir. you can find these at /usr/portage/profile , which weighs about 20mb iirc.
spykedbot: muddle things together/ up, to: a amesteca/ incurca lucrurile
ave1: And the whole thing affirms the power/status of the Lords. I.E. when an author goes against a Lords wishes or AWOL it is then in the power of that Lord to contact another author and give him the source etc. ☟︎
BingoBoingo: <Mocky> i've been meaning to learn spanish. they got cute girls there? << Here we have them in most colors except African/Asian/Indian. The taller ones usually show up December/January
mircea_popescu: the sticky issue of arbitrarily excluding some people from l1 in this sense is that why didn't you a) speak up during http://trilema.com/2018/the-rivers-of-blood-article-or-the-lordship-list-fifth-year/ and b) why wasn't whatever problem you saw remedied.
mircea_popescu: check out this beauty : dpkg -S /usr/lib/libGL.so.1 > dpkg: /usr/lib/libGL.so.1 not found. meanwhile $ ldd /usr/bin/glxinfo | grep "libGL" > libGL.so.1 => /usr/lib/mesa/libGL.so.1 (0x00007f129e644000) ☟︎
asciilifeform: mircea_popescu: he actually baked a patch, about same time as my aggression item, http://therealbitcoin.org/ml/btc-dev/2017-December/000282.html
asciilifeform: diana_coman: reporting block r/w times currently requires pressing with the little patch that takes the times. ( it is not part of 'flagship' trb )
ben_vulpes: (from /usr/src/linux on a gentoo)
esthlos: mircea_popescu: sbcl can call executables (shithub warning): https://github.com/sbcl/sbcl/blob/master/src/code/run-program.lisp
asciilifeform: http://blog.esthlos.com/esthlos-v-genesis-or-who-presses-the-pressor/ << subj
mircea_popescu: expect a whole lot of http://trilema.com/2018/and-in-todays-lulz-the-obnoxious-cocksucker/ of course ; but then again bear in mind sifting through the refuse pile of "western man" goes exactly like it goes : http://btcbase.org/log/2018-07-05#1831817 ☝︎
mircea_popescu: i want my own, wholly separate, universal charger/manager.
asciilifeform: e.g. jp has only handful of tenses, and lacks ( just as cn ) noun genders or distinction b/w singular/plural
asciilifeform: re irix boxen -- the last pre-intelization machines, e.g. 'octane', 'octane 2', were princely, errything-hotswappable, on rails, copper meshing against emp, redundant cpu/memory/power/etc, prolly eternal.
asciilifeform: mod6: a few yrs ago asciilifeform went ( or rather, was sent ) to a smaller/sadder version of said item, 'shmoocon', you wouldn't believe the sort of snake oil that was sold there ☟︎
mircea_popescu: could be that women are actually better drivers, if not fucked in the head by idiot mother/bf combo.
mircea_popescu: to recover/match the indices.
mircea_popescu: http://a57.foxnews.com/images.foxnews.com/content/fox-news/health/2018/04/13/doctors-lover-dies-after-ingesting-cocaine-while-performing-sex-act-report-says/_jcr_content/par/featured_image/media-0.img.jpg/931/524/1523653527588.jpg << looks like he needed it, too.
mircea_popescu: it's not "apple". it's google, it's "fiat bonds". what, you're gonna issue fiat bonds, well, "gotta import this here 2mn loc of inane bs / assorted strange". it will include "gotta use ssh/dns/tor/etc" just as it will include "gotta http://btcbase.org/log/2018-06-27#1830007 code of conduct" and so forth. ☝︎
mod6: the "latest client" linked in the article: http://blog.esthlos.com/esthlos-v-genesis-or-who-presses-the-pressor/ ☟︎
asciilifeform: (2) is the ro (sorta misnomer, it is upgradeable) rsa checker routine, it is very loosely based on the ancient published one seen in https://github.com/coreboot/chrome-ec/blob/b9f5a3d6baae84950f5ff0c4f7c588e55944818a/chip/g/loader/launch.c , but with a few twists
a111: Logged on 2017-12-23 20:42 asciilifeform: ACHTUNG, PANZERS! : http://therealbitcoin.org/ml/btc-dev/2017-December/000281.html
a111: Logged on 2018-06-24 19:02 PeterL: trinque: on http://trinque.org/2017/12/30/wip-cuntoo-installer/ the links seem to be broken, I tried to leave a comment but I think it got eaten?
PeterL: trinque: on http://trinque.org/2017/12/30/wip-cuntoo-installer/ the links seem to be broken, I tried to leave a comment but I think it got eaten? ☟︎
asciilifeform: !Q later tell phf http://btcbase.org/log/2018-06-22#1828933 >> http://btcbase.org/log/2018-06-23#1829007 >> https://github.com/coreboot/chrome-ec/blob/master/chip/g/signed_header.h >>>>> http://www.loper-os.org/pub/c101pa/ro_signature.txt ( not the only 1, but illustrative ) ☝︎☝︎
lobbes: snippet of access log for additional wtf >> http://p.bvulpes.com/pastes/DtslR/?raw=true
asciilifeform: https://github.com/coreboot/chrome-ec/blob/48d6891db8b5b2b0825136f6f9013a110b2a98da/util/signer/create_released_image.sh << moar re the layout of the fw. apologies for l0gz clutter.
asciilifeform: in particular, the '0xcafebabe' magicturd in https://github.com/coreboot/chrome-ec/blob/b9f5a3d6baae84950f5ff0c4f7c588e55944818a/chip/g/loader/main.c#L102 , dun appear at all in the bin
asciilifeform: this in turn , is found in 4 places in the rom , http://p.bvulpes.com/pastes/dqhNR/?raw=true ( labels mine , offsets preserved )
asciilifeform: 2) the RW key, corresponding to 'RW keyid: 0xde88588d(prod)' , appears , and is identical to what lives in https://chromium.googlesource.com/chromiumos/platform/ec/+/cr50_v3.4/util/signer/cr50_RW-prod.pem.pub
asciilifeform: 1) the pubs thrown earlier in phuctor ( seen in e.g. https://chromium.googlesource.com/chromiumos/platform/ec/+/cr50_v3.4/chip/g/loader/verify.c#17 ) dun appear anywhere in fw 3.4
ben_vulpes: http://btc.yt/lxr/satoshi/source/src/wallet.cpp?v=makefiles#0957 << next to look at
ben_vulpes: mircea_popescu: correct as always http://btc.yt/lxr/satoshi/source/src/main.h?v=makefiles#0035
ben_vulpes: alternatively, recompile with useful need/have numbers in http://btc.yt/lxr/satoshi/source/src/bitcoinrpc.cpp?v=makefiles#0914
mircea_popescu: KimuSan^ come back later/whatever with a diff key, and don't say things you shouldn't say which you can't possibly know in advance hence the "read logs" thing.
asciilifeform: mircea_popescu: http://trilema.com/2018/wood-impregnated-in-oil-a-metaphor/#comment-126055
deedbot: http://trilema.com/2018/wood-impregnated-in-oil-a-metaphor/ << Trilema - Wood impregnated in oil, a metaphor.
trinque: that process will amount to setting an environment variable to direct emerge to use the /cuntoo/portage tree (and to designate /usr/portage as an overlay, if you'll be porting ebuilds from classical gentoo into cuntoo)
asciilifeform: trinque: imho your approach is the correct one -- similar to http://therealbitcoin.org/ml/btc-dev/2014-October/000003.html , first pin down , then -- shaving.
BingoBoingo: douchebag: That is the case. The shares trade on the market so the price can move. Style guide is here: http://trilema.com/2015/lacessiveram-editor/
Mocky: trinque, this is the original post, correct? http://trinque.org/2017/12/30/wip-cuntoo-installer/
mircea_popescu: possible. in other similar lulz, juicy ads (whom, incidentally, i remember from the days the dood starting it was a junior/nobody with a "new project!!", 15+ years ago) refuses to deal with crypto because "we are respectable company".
spyked: revisiting the allwinner arm blobulism discussion for a moment (re. http://btcbase.org/log/2018-06-08#1821639 and maybe other threads). I've looked at the olimex shithub repo ( https://github.com/OLIMEX/DIY-LAPTOP/tree/master/SOFTWARE/A64-TERES ) and there are indeed some binaries that I can't trace to any source, namely: the kbd firmware and the 'scp.bin' blob. olimex also include a boot0.bin (no idea why, since this is also generated ☝︎
asciilifeform: soo they ~did~ put oddball crypto logic in the fpga, e.g. https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/dcrypto/dcrypto_runtime.c#40 drives it
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/board/cr50/board.c#1453 << subj, ftr
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/hw_regdefs.h << register list ( warning: coupla MB ! )
swiftgeek: asciilifeform: https://fccid.io/UAY-W8997-M1216/Letter/Modular-Approval-Request-3270024
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/ << starting point re console functionality ( locked and unlocked )
a111: Logged on 2018-06-08 17:15 asciilifeform: i was able to flash in the https://gsdview.appspot.com/chromeos-localmirror/distfiles/cr50.r0.0.10.w0.3.4.tbz2 image ; it supports a few moar commands, including 'rma open' returned-to-factory unlocker thing. but result was , unsurprisingly, 'with notes from hitler only' : http://www.loper-os.org/pub/c101pa/c101pa_unlock_nodice.txt
asciilifeform: swiftgeek: see https://chromium.googlesource.com/chromiumos/platform/ec/+/master/board/cr50/gpio.inc ( what is known of the pin functions )
mircea_popescu: http://trilema.com/2017/the-lordship-list-fourth-year/#comment-121713 << ahahah trinque has like the CUTEST avatar!
mircea_popescu: http://btcbase.org/log/2018-06-11#1822183 << hooker/maid that usg criminal org specifically paid to lie in court would never lie in court, best arrest foreign diplomat!!! ☝︎
asciilifeform: elsewhere in heathendom, https://www.reddit.com/r/programming/comments/8pyaec/the_google_h1_fritz_chip/ << usg brigade out in force, 'this is just a tpm, cannot reflash fw' etc 'say it 3 times, it'll be true'isms
mircea_popescu: https://www.google.com/chromeos/partner/console/cr50reset?challenge=ABXFGCMDADUJFPQ7J8MQUUSTGXGTRTVJ6Z548PWC8AGMGT2QJ4BT3TW4HJVU4XLPASB4GE78RSBKYEHC&hwid=BOB <<< ahahaha roflmao.
phf: heh they are also using gentoo for their stuff.. https://chromium.googlesource.com/chromiumos/overlays/chromiumos-overlay/+/master/chromeos-base/chromeos-cr50-scripts/
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/common/rma_auth.c#254 << the magic moment where answer is checked.
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/common/rma_auth.c#176 << mechanism, for the curious.
asciilifeform: i was able to flash in the https://gsdview.appspot.com/chromeos-localmirror/distfiles/cr50.r0.0.10.w0.3.4.tbz2 image ; it supports a few moar commands, including 'rma open' returned-to-factory unlocker thing. but result was , unsurprisingly, 'with notes from hitler only' : http://www.loper-os.org/pub/c101pa/c101pa_unlock_nodice.txt ☟︎
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/config_chip.h#139 << implies that google does not actually hold all of the privkeys
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/rdd.c#20 << as i suspected, thing drives the receiving end of the debug snake ( the http://www.loper-os.org/?p=2415 item )
asciilifeform: more interestingly, https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/loader/verify.c << there ~is~ an rsa key embedded, apparently one variant for fw update
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/chip/g/ << support crapola for the chip, apparently.
asciilifeform: in other noose, i found the vendor binary for my particular box's cr50 (all ver strings match) : https://gsdview.appspot.com/chromeos-localmirror/distfiles/cr50.r0.0.10.w0.3.0.tbz2
asciilifeform: it's a pretty plain boobytrap, wants magic sig to r/w the 'h1' firmware, or to unlock the console (which gives rootkit access to whole ram, cpu, ec, etc via the usb jack)
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/extra/cr50_rma_open/cr50_rma_open.py << last piece of lulz, for nao: claims to be 'tester's' defuse for the boobytrap. however dun work with my box, it has the 'ccd' console command locked out
asciilifeform: https://github.com/coreboot/chrome-ec/blob/master/board/cr50/tpm2/rsa.c#L651 << magic pubkeyz in the rom
asciilifeform: https://chromium.googlesource.com/chromiumos/platform/ec/+/master/board/cr50/gpio.inc << claims to be the i/o mapping .