BingoBoingo: http://gawker.com/this-could-be-a-baby-geep-a-rare-sheep-goat-hybrid-1560279115
ozbot: This Could Be a Baby Geep, a Rare Sheep-Goat Hybrid
mircea_popescu: BingoBoingo guy doesn't understand genetics.
mircea_popescu: black women happily married to black guys occasionally give birth to perfectly fair, blue eyed caucasian babies, doesn't automatically mean they've been porking the milkman.
BingoBoingo: Of course
cgcardona_: http://cdn.memegenerator.net/instances/500x/48257846.jpg
mircea_popescu: cgcardona_ lol
cgcardona_: :-]
BingoBoingo: http://www.bloomberg.com/news/2014-04-05/former-abn-banker-schmittmann-wife-daughter-found-dead-at-home.html
ozbot: Ex-ABN Banker Schmittmann, Wife, Daughter Found Dead at Home - Bloomberg
BingoBoingo: Cognitive Mining: http://valleywag.gawker.com/give-a-child-30-million-for-a-startup-keep-waiting-fo-1555561654/+sarah-hedgecock
steven-__: http://www.vice.com/read/the-tanzanian-albino-hunt
ozbot: The Fight to Stop Tanzania's Witch Doctors Butchering Albino People | VICE United States
asciilifeform: http://www.bloomberg.com/news/2014-04-07/silicon-valley-cooks-to-housekeepers-facing-home-eviction.html
ozbot: In Silicon Valley, a New Investment: Eviction - Bloomberg
asciilifeform: (re: politics of housing in usa, bezzle-dollars, etc.)
MGK: Anyone interested in a graded MS65 casacius 1BTC coin?
asciilifeform: 'One in four renters now spend more than half of their income on housing, up from one in five a decade ago, according to a 2013 .... '
asciilifeform: (usa)
mircea_popescu: MGK maybe nubbins`
nubbins`: mmm?
MGK: nubbins you interested in a graded MS65 casacius 1BTC coin?
nubbins`: what year and holo?
MGK: I can make a thread on btc talk and post pictures if you like, asking only 1.5
MGK: I believe its on 13
MGK: I have to be honest, Idont know much about them. I bought it off of NightOwl about 2 months ago
cgcardona_: pics?
MGK: 1min I will take some now
MGK: yes its 2013
MGK: brass
cgcardona_: I recently did some research on casasius coins http://www.reddit.com/r/Bitcoin/comments/21kryh/potentially_25101_unspent_casascius_coins/ and http://www.reddit.com/r/Bitcoin/comments/21nmck/sorted_25101_casascius_coins_by_denomination/
cgcardona_: *casascius
nubbins`: not too interested in the 2013 brass -- now if you could find me a 2011 series-2 1btc brass, on the other hand...
cgcardona_: high level summary—there are potentially 25101 unspent out of 65,000 ish
MGK: eh well ill save the time taking pics then.
cgcardona_: and then I ran a script to sort them by denomination as well.
MGK: Only have this one left, just sent out my .5 to blazedout this morning
cgcardona_: 6 1000+ unspent coins still out there.
cgcardona_: prob the gold bars I guess though I'm unsure if those were included in the masterlist
cgcardona_: here's the full list https://www.casascius.com/fulllist.txt
MGK: anyone a fan of pawn stars? I have an autographed old man 1oz silver coin lol
cgcardona_: is this what you're talking about but w/ 1 btc loaded on it?
cgcardona_: https://bitcointalk.org/index.php?topic=348631
ozbot: Casascius 2013 0.5 BTC brass coin BTC 0.69 with shipping
MGK: already sold the .5
cgcardona_: but you have a 1btc?
cgcardona_: and you're asking 1.5 btc?
mircea_popescu: cgcardona_ so few huh
cgcardona_: yea i imagine someone swimming around in Casasius coins like the scrooge mcduck of cryptos
MGK: yes, heres a pic of the 2 coins, if you like I can take another with my name on paper next to them.http://imgur.com/NNyBwbk
cgcardona_: wow +1 to the old man coin
MGK: The crack on the top is from my recliner , it fell in the it and I didnt notice, I reclined it and chipped the top but the coin is still locked in the case, wasnt damaged.
MGK: I like the old man coin too, I just got back from LV about 3 weeks ago and I had to buy a couple.
steven-__: who is that on the old man coin?
cgcardona_: It's a tough one for me because I've not ordered a casasius from anyone other than the source (and then only aluminum ones for promo material alas) so i'm just not sure what I'd do if it wasn't legit (and I promise I'm not calling you a scammer. Just thinking out loud)
MGK: Thats the old man himself!!
cgcardona_: the one and only old man!
cgcardona_: (from pawn stars the show on the history channel)
steven-__: oh I don
cgcardona_: how do transactions like this work? do people just go off of bitcointalk trust scores?
cgcardona_: i've ordered cold wallet kits in the past and went off of that
cgcardona_: *cold storage
MGK: No problem cgcard. I understand your concern and unfortunately theres not much I can do about that besides tell you I got the coin from NightOwl which is a reputable re-seller and was already graded. Ive never been able to actually touch this coin.
cgcardona_: sure—Caveat emptor and all.
cgcardona_: let me think about it. I'm def interested
mircea_popescu: cgcardona_ in general, wot scores.
mike_c: ;;ident MGK
gribble: Nick 'MGK', with hostmask 'MGK!42421ed3@gateway/web/freenode/ip.', is not identified.
cgcardona_: i want to add some casascius to my cold storage
mircea_popescu: ;;gettrust nubbins`
gribble: WARNING: Currently not authenticated. Trust relationship from user mircea_popescu to user nubbins`: Level 1: 2, Level 2: 3 via 3 connections. Graph: http://b-otc.com/stg?source=mircea_popescu&dest=nubbins%60 | WoT data: http://b-otc.com/vrd?nick=nubbins%60 | Rated since: Wed Oct 16 19:58:53 2013
MGK: Yes we would just go off of trust, I just sold a .5 on the forums he sent first and I shipped out this morning insured and tracking etc. Here is the link,https://bitcointalk.org/index.php?topic=557874.msg6112123#msg6112123
cgcardona_: mircea_popescu: oh cool
mircea_popescu: yeah, get in the wot both of ye.
MGK: I can respond to a PM on the forums to prove that is my account also
MGK: I have a few deals on there, 1 for over $10k with Goat
mircea_popescu: gpg works a lot better than forum pms.
cgcardona_: for realz
MGK: Ive heard of that but tbh its confusing, if youd like to walk me thru it I am willing to set it up
cgcardona_: yea let me watch that thread and once he confirms that he got it I'll think about it. thanks
MGK: No problem, he will have it Wednesday.
cgcardona_: cool
mircea_popescu: ;;google thedrinkingrecord gpg
gribble: PGP/GPG Guide | Bingo Blog: <http://www.thedrinkingrecord.com/pgpgpg-guide/>; Signature Thursday: Geany a GUI text editor for GPG tasks | Bingo ...: <http://www.thedrinkingrecord.com/2013/10/31/signature-thursday-geany-a-gui-text-editor-for-gpg-tasks/>; Bingo Blog | - of Bitcoin and Boingo: <http://www.thedrinkingrecord.com/>
mircea_popescu: firstthng there
MGK: Anyone interested in a cointerra 2TH/s also I am offering the best price on the forums. If you are in between NY and Denver I can deliver it face to face.
MGK: Alright I promise thats it lol
cgcardona_: that sounds nice. what are you asking for that?
cgcardona_: is it not legit to discuss deals here? sorry . don't want to spam the channel. still new here
BingoBoingo: http://www.vice.com/read/syria-deraa-USA-Jordan-FSA-regime-CIA
ozbot: I Learned to Fight Like an American at the FSA Training Camp in Jordan: America's Role in the Syrian
MGK: Im not sure, Ive been in this chat maybe 3 times. We can take it to private messages if you like.
mircea_popescu: MGK maybe give a look at the gribble maintained orderbook ?
MGK: I don't understand.
mircea_popescu: http://bitcoin-otc.com/vieworderbook.php
thestringpuller: ;;bids
gribble: (bids [--under] [--market <market>] [--currency XXX] <pricetarget>) -- Calculate the amount of bitcoin demanded at or over <pricetarget>. If '--under' option is given, find coins or at or under <pricetarget>. If market is supplied, uses that exchange. Default is Bitstamp. If --currency XXX is provided, converts to that fiat currency. Default is USD.
thestringpuller: ;;sell
gribble: (sell <amount> <thing> [at|@] <priceperunit> <otherthing> [<notes>]) -- Logs a sell order for <amount> units of <thing, at a price of <price> per unit, in units of <otherthing>. Use the optional <notes> field to put in any special notes. <price> may include an arithmetical expression, and {(mtgox|bitstamp)(ask|bid|last|high|low|avg)} to index price to mtgox ask, bid, last, high, (1 more message)
MGK: Ok I will over look that, thanks.
cgcardona_: yea I'm still waiting on my freaking piper wallet to arrive. It's been a month since I paid for it and they haven't even sent me a confirmation email. And I've contacted them twice since. :-|
cgcardona_: buyer beware indeed.
asciilifeform: lol at folks taking pre-orders for widgets that aren't baked yet
cgcardona_: yea I guess so.
cgcardona_: all the threads that I read say it's a legit product and that the person who got one was stoked.
cgcardona_: but my experience has been hella poor
cgcardona_: i ordered 500 aluminum casascius and they arrived in like 4 days and I got an email
cgcardona_: i ordered this https://bitcoinpaperwallet.com/
cgcardona_: and it arrived in like 3 days and I got a personal email from Canton.
asciilifeform: i still don't get, why collect money unless you're ready to hand a widget over
cgcardona_: nothing.at.all from the piper team
cgcardona_: well to take money from people like me I suppose
cgcardona_: hrm
asciilifeform: cgcardona_: isn't 'piper' just a 'raspberry' with bitcoind loaded?
asciilifeform: you could make it yourself
cgcardona_: yes you're right I can make it myself.
cgcardona_: i'm considering it of course.
asciilifeform: (i wouldn't. 'raspberry' is a terrible board)
cgcardona_: also I'm considering just taking their open source hardware and paying a team of people to churn them out and deliver them on time
cgcardona_: i'm sure there's a huge market for something that cool
jborkl: why would you pay for that?
cgcardona_: I think it's pretty cool.
cgcardona_: we'll see if/when it arrives
jborkl: a pi would not even run bitcoind worth a shit
asciilifeform: anyone who wants to can try this now
asciilifeform: (result is quite sad)
jborkl: it would be easier and cheaper to get a free instance on AWS and run bitcoind on it
jborkl: it you were so inclined
asciilifeform: for wallet?!
cgcardona_: not if you're trying to create cold storage from an air locked box
jborkl: no
asciilifeform: lol!
cgcardona_: heh
jborkl: but I would not put my wallet on a pi either?
cgcardona_: the wallets not on the pi
cgcardona_: it's spits out paper wallets
jborkl: so I did not think that applied
kakobrekla: you dont need a bitcoind on a pi
cgcardona_: did you see the video? http://piperwallet.com/
cgcardona_: it's only like 60 seconds
cgcardona_: i think it's a sweet concept
asciilifeform: anyone here own a 'FLIR' scope?
cgcardona_: easier than https://bitcoinpaperwallet.com/ which involves me having a dedicaded computer and printer
asciilifeform: and a 'piper'
cgcardona_: this just encapsulates it into one device
asciilifeform: do you see where i'm going with this?
asciilifeform: thermal printer.
asciilifeform: ;;google optical tempest
gribble: Information Leakage from Optical Emanations - applied-math.org: <http://www.applied-math.org/optical_tempest.pdf>; CRT Eavesdropping: Optical Tempest - Slashdot: <http://it.slashdot.org/story/02/03/09/199242/crt-eavesdropping-optical-tempest>; Optical Time-Domain Eavesdropping Risks of CRT Displays: <http://www.cl.cam.ac.uk/~mgk25/ieee02-optical.pdf>
cgcardona_: are you talking about candling?
asciilifeform: except now anyone can read your 'cold wallet' (as it is printed, naturally) from across the street.
cgcardona_: checking the links now
cgcardona_: interesting
asciilifeform: likewise the 'built in rng' is... raspberry's
jborkl: thermal paper tends to degrade over time
asciilifeform: or rather, broadcom's on-chip turd
cgcardona_: now i know why it's taking so damn long. THEY'RE SETTING UP A THERMAL CAMERA ACROSS THE STREET FROM MY HOUSE
cgcardona_: *sorry for the caps*
cgcardona_ snaps off caps lock key
mike_c: asciilifeform: what do you use to generate your wallet?
asciilifeform: thermal tape makes great one-time pads
asciilifeform: burn it with a butane lighter when finished.
mike_c: or, what do you recommend?
asciilifeform: mike_c: i've an analogue rng, feeding /dev/random myself.
mike_c: ah
cgcardona_: i turn on loud music and shake my booty to generate extra entropy myself
asciilifeform: this is not a heroic feat
asciilifeform: http://trilema.com/wp-content/uploads/2013/11/popul_top.jpg
asciilifeform: (yes mp some. not sure what he did with them)
cgcardona_: oh I see that's by my Bizarro world clone cgCARDANO - very nice
asciilifeform: for how it was plugged,
asciilifeform: http://trilema.com/2013/unsorted-collection-of-various-cardano-related-updates-spurious-pics/
ozbot: Unsorted collection of various Cardano related updates + spurious pics pe Trilema - Un blog de Mirce
jborkl: why not pull a brainwallet, put it on a pi and make your wallet out of a bible verse. They are everywhere and you only have to remember what you part you put in
asciilifeform: jborkl: do this, and let's see how long the contents last
cgcardona_: ha
mike_c: oh, of course. you have access to cardano guts :)
jborkl: ok, I will
cgcardona_: i figured just putting all of my btc behind a 'hello w0rld' brain wallet would be good to go
asciilifeform: how long does it take to move a sliding window across 'gutenberg' archive and bruteforce.
jborkl: I will post up the adress tomorrow
asciilifeform: mike_c: you (and anyone) also have access to analogue rng. open a textbook and pick your favourite...
mircea_popescu: cgcardona_ the more formal objection would be that you're trying to construct a bridge through the process of "here are some bricks i found, i wonder which cool way i could stack them together"
mircea_popescu: whilke this approach often creates half-decent "art" (known in this space as lulz) it neve actually makes a bridge.
jborkl: and you assuming you know what I made the address out of, and you would not irl
jborkl: unless I beat it out of you, but that is a whole other story
cgcardona_: mircea_popescu: are you referring to my cold storage comments? (just trying to make the connection with what you're saying)
asciilifeform: beat it out << this is why any apparatus that doesn't include a scram zapper is sad.
mike_c: open a textbook and pick your favourite... << or wait a month and disassemble a cardano.
asciilifeform: mike_c: no need to disassemble. it comes in a clear chassis, with blueprints/sources
jborkl: what is a scram zapper?
mike_c: even better.
asciilifeform: jborkl: a special little gift for folks who want to take your keys by force.
mike_c: it is a countermeasure for rectothermal cryptoanalysis.
asciilifeform: partial countermeasure. like a rifle, it only works if fired.
asciilifeform: i can envision folks telling tales of adventure: '... and then i took my C off its safety...'
mircea_popescu: cgcardona_ nah, to your raspberi pi wallet
cgcardona_: yea that's what I thought you meant. Just wanted to clarify
mircea_popescu: well, "your". just this idle example you made up obivously.
danielpbarron: i have a piper
danielpbarron: but i got mine last year
danielpbarron: i have since ordered some more rolls of paper and I also have not recieved a confirmation email or shipment
cgcardona_: ok well I guess that's 'good' to hear that someone else hasn't received any confirmation recently.
cgcardona_: at least I know i'm not the only one left hanging.
danielpbarron: i heard the piper guy was at one of the conferences recently
danielpbarron: maybe he's too busy to fill orders
cgcardona_: supply != demand. I smell an opportunity.
danielpbarron: i use it to print 1 mBit slips to hand out
danielpbarron: i had to hack it a little to make it stop printing the ugly extra private key and url at the bottom
danielpbarron: but i'm almost out of paper :<
danielpbarron: it's more annoying to not have the paper than to be ripped off for a little coin
cgcardona_: i'm just erked cause I've been wanting to get my coins off of web wallets. I trust no one at this point pretty much.
danielpbarron: you shouldn't use piper to store large amounts
cgcardona_: blockchain.info is pretty good of course. Coinbase has been all kinds of screwy lately.
danielpbarron: yeah don't keep it on coinbase
danielpbarron: i have had sketchy stuff happen with coinbase recently too
cgcardona_: yea I've been having transactions just get stuck in 'pending' for hours cause of their off blockchain stuff.
danielpbarron: yeah
cgcardona_: the first time it happened I moved all my coins to blockchain.
cgcardona_: i was like 'sketch balls!'
danielpbarron: i accidently double sent a transaction, luckily to someone I knew irl
cgcardona_: wow. no way.
danielpbarron: it said it didn't go through the first time
danielpbarron: gave me an error
cgcardona_: ah I see
cgcardona_: gotcha
danielpbarron: wasn't showing up on the blockchain
danielpbarron: i sent a test transaction of 1 mBit and it showed up no problem, so i sent the original transaction again
danielpbarron: shared wallets are sketchy
cgcardona_: yep *cue the 'if you don't have the keys you don't have the btc* mantra
danielpbarron: is anybody familiar with ssss-split and ssss-combine ?
nubbins`: ;;view
gribble: #20222 Thu Mar 27 14:19:15 2014 nubbins` SELL 1.0 2013 1btc silver Casascius 1Ag1 @ 2.3 btc (None)
mike_c: half the btc and double the numismaticness. sounds like a deal!
ThickAsThieves: mp your pilot idea seems like it had some threads missing
ThickAsThieves: i do like the mood of it, though the more "adult" aspects feel a little out of place
ThickAsThieves: it otherwise feels like it could be filmed in the style of Pushing Daises or Better Off Ted
ThickAsThieves: http://www.imdb.com/title/tt0925266/
ThickAsThieves: your blog thinks i am not a human being
ThickAsThieves: i think it's just tricking me to spend more credits reloading!
B007: credits 18UjWu214iygVkA1umQLZaJ8DRtrpS4mFS anyone who sends me 1 btc gets 1000 btc back
danielpbarron: ;;ratingsystem getrating B007
gribble: This user has not yet been rated. WARNING: Currently not authenticated.
decimation: ascii - that sv story is full of lulz
asciilifeform: which
decimation: the woes of the rent controlled apartments in palo alto
asciilifeform: ah yes
decimation: This "U visa" amuses me. Someone foriegner commits a crime - and that suddenly qualifies the victem for a US green card??
decimation: the mind reels
decimation: s/victem/victim/
decimation: Not to mention, there are thousands of other localities where $12 an hour easily pays for housing
decimation: why does she have to living in the middle of SV? So that Elon can get a burrito for $6?
asciilifeform: decimation: these people want servants, but won't pay for the servants' quarters
asciilifeform: so they externalise the cost
decimation: just like Mr. Zuckerberg's campaign to import foreign engineer-slaves - who will beg to pay $100k to pay $100k
assbot: [HAVELOCK] [HMF] 78 @ 0.01 = 0.78 BTC [-] {4}
decimation: They beg to get $100k to pay $100k, in the best case
decimation: perhaps the system will be formalized in the future, when rich socialites will pay to have a position in Google, like the British Army
asciilifeform: mp spoke of this not long ago
decimation: wrt housing: USG pumps 30 year loans; forces banks to give them to everyone; USG is then horrified to find that house-prices have been bid into the sky with 30 year money
Mats_cd03: sounds like a great way to accelerate inequality and increase renting
decimation: the real problem is that it makes it impossible to differentiate talented managers of resources from fools who happen to be friends with the bezzle-kings
MisterE: "White House spokesman Jay Carney echoed that sentiment as well, saying, “There is strong evidence suggesting some of these [Eastern Ukrainian] demonstrators were paid.”"
decimation: is the fact that "demonstrators" were paid actually discredit something?
Mats_cd03: ;;later tell mirceau_popescu 'challenge and response' meaning encryption, but more specifically encrypted spread-spectrum signals. many consumer drones are equipped with just wifi or bluetooth, which are comparatively easy to attack
gribble: The operation succeeded.
Mats_cd03: i don't get it, because RC manufacturers have been doing just fine, and wifi/bt is just idiotic unless you live in the sticks and/or want more bandwidth from the unit
Mats_cd03: for... aerial photography, i guess
decimation: RC transmitters use analog FM, no encryption
decimation: nevermind, apparently in the last few years they have started to use 2.4 GHz DSSS and FHSS
decimation: you will never see rc transmitters with custom crypto because of the Wassenaar Arrangement http://en.wikipedia.org/wiki/Wassenaar_Arrangement
tg2: most don't use encryption, but some do.
asciilifeform: "Microprocessor microcircuits", "microcomputer microcircuits" and
asciilifeform: microcontroller microcircuits, manufactured from a compound
asciilifeform: semiconductor and operating at a clock frequency exceeding 40 MHz;
asciilifeform: (from wassenaar agreement)
asciilifeform: let's campaign to have this enforced!
asciilifeform: Electro-optical and "optical integrated circuits", designed for "signal
asciilifeform: processing" and having all of the following:
asciilifeform: a. One or more than one internal "laser" diode;
asciilifeform: b. One or more than one internal light detecting element; and
asciilifeform: c. Optical waveguides;
asciilifeform: ---- > your cdrom is banned.
asciilifeform: in fact, taking a laptop on an airplane probably qualifies you for an iternational tribunal as war criminal
asciilifeform: breaking at least 500 of these regulations
artifexd: asciilifeform Can you recommend a reasonably priced hardware rng or an acceptable software rng?
asciilifeform: artifexd: for what purpose?
artifexd: dice rolls. key generation.
asciilifeform: keys to something reasonably valuable?
artifexd: Not right now, but the hope is eventually, yeah.
kakobrekla: rng from cardano clearly.
asciilifeform: i'd be tempted to recommend... mine. but right now i've only a handful of them, and they aren't for sale yet.
asciilifeform: if you live and die by the key, it is worth your time to build your own
asciilifeform: and qualify it
decimation: ascii, of course the bureaucrats love the default to be that everyone is a criminal; you are exempt at their discretion
artifexd: reverse biased diode? geiger counter? Something like that?
asciilifeform: when building rng, consider what is to happen when it fails.
asciilifeform: (does it die silently? what happens to output?)
artifexd: My understanding is that they slowly start generating less random numbers.
asciilifeform: artifexd: rng must be periodically tested
asciilifeform: like any safety-critical system
decimation: nothing can replace analysis by a human brain
artifexd: Is there a standard test?
asciilifeform: there are many
asciilifeform: ;;google diehard rng tests
gribble: Diehard tests - Wikipedia, the free encyclopedia: <http://en.wikipedia.org/wiki/Diehard_tests>; The Marsaglia Random Number CDROM including the Diehard ...: <http://stat.fsu.edu/pub/diehard/>; Robert G. Brown's General Tools Page - Duke Physics: <http://www.phy.duke.edu/~rgb/General/dieharder.php>
decimation: http://csrc.nist.gov/groups/ST/toolkit/rng/index.html
ozbot: NIST.gov - Computer Security Division - Computer Security Resource Center
asciilifeform: don't be the schmuck who builds rng which throws away batches of bits that fail some test
asciilifeform: (as usg wants you to, see 'fips')
asciilifeform: no prizes for describing what this does to the output, statistically speaking
decimation: one cannot say that it makes the output less predictably, anway
artifexd: What kind of rng will the cardano use?
asciilifeform: the one other useful fact is that entropy of (bad rng) xor (better rng) is equal to that of (better rng)
asciilifeform: though, interestingly, this has not been proven rigoriously.
asciilifeform: *rigorously
asciilifeform: artifexd: http://www.loper-os.org/pub/rng/hob.png
asciilifeform: that one.
asciilifeform: based on johnson noise
asciilifeform: the ones in the pic haven't their shields yet.
decimation: ascii surely you aren't going to do all the soldering yourself? are you going to use a production house?
asciilifeform: decimation: for the production run - certainly
asciilifeform: did you actually think i would personally bake every unit ?
decimation: you do have a paranoid streak
asciilifeform: consider the purpose of the product.
Mats_cd03: the gold is nice
decimation: I suppose there is very little that an enemy could do to diddle with it
Mats_cd03: do you think theyll be available for purchase in three months
asciilifeform: decimation: (as i will detail at a later time) i am expecting the supply chain to be fucked with
decimation: thus, the encouragement for personal inspection & analysis, I presume?
asciilifeform: that. and we intend to switch part vendors liberally.
asciilifeform: Mats_cd03: how long it will take to go from blueprints to production line is not yet known to me
asciilifeform: three months sounds like a reasonably safe, pessimistic figure
decimation: what made you choose "hu bei gold phoenix" for the pcb house? cheap?
asciilifeform: i used a different house before
asciilifeform: american
asciilifeform: it was 35x the cost.
asciilifeform: for roughly the same quality.
decimation: wow
decimation: surely labor doesn't account for that difference
asciilifeform: it's 'the bezzle' again
asciilifeform: at this point nobody has pcbs made in usa except for military contractors
decimation: chinese bezzle is spent on its production industry
asciilifeform: (even they try to go chinese, when they can get away with it)
asciilifeform: don't believe? visit the web site of any u.s. pcb maker. they're all decorated with pictures of rockets, tanks, etc
decimation: I guess this is why it only costs $1 to ship anything from hong kong
asciilifeform: phoenix ships 'for free' (well, rolled into the price at any rate)
asciilifeform: everything seems to go on the very next flight, straight to where it is supposed to go.
asciilifeform: now, i hesitate to recommend them 'for everyone' - all i've had done there, is very simple boards.
MisterE: hope the delivered quality is acceptable
asciilifeform: nothing in this particular product is the least bit exotic.
decimation: so just like the us is willing to pay "abused" mexicans to live in palo alto, china is willing to pay to host your factory
MisterE: what are you making asciilifeform ?
asciilifeform: MisterE: http://trilema.com/2013/snsa-first-product-the-cardano
asciilifeform: MisterE: little widget, co-authored with mircea_popescu
MisterE: out of credits :/
MisterE: cool
decimation: what was your smallest trace pitch? 8 mil?
asciilifeform: yes
asciilifeform: as is traditional
MisterE: it's the super small micro traces that can be problemetic eh?
asciilifeform: not only
asciilifeform: there's the occasional 'via' that isn't
decimation: most board houses specify minimums
MisterE: some ICs requiretraces so close it looks insane
MisterE: ok
asciilifeform: the real bitch is assembly
MisterE: ahh yea
asciilifeform: one can trivially make boards by hand
MisterE: yep
asciilifeform: (i used to. 8 mil and smaller, easy. same process as b&w photography)
MisterE: component insertion is a bitch
asciilifeform: i'd have baked the rng pcbs personally, but on account of them being analogue devices, you can't really characterize them unless you use the same board materials as the final product.
decimation: well, surface mount is a bitch without solder mask
asciilifeform: that too
decimation: well, yeah and the drilling of the holes and inserting of vias would be very difficult by hand on your own board
asciilifeform: i've done it before, when younger and poorer
asciilifeform: but it isn't a good use of time
MisterE: same
MisterE: it's a bitch
decimation: impossible if it's more than 2 layers
decimation: unless you ghetto-stack the boards :)
decimation: did you use orcad or some free cad to design the board? are you a fan of eagle?
asciilifeform: http://cluborlov.blogspot.com/2014/04/business-as-usual.html
ozbot: ClubOrlov: Business as usual
asciilifeform: 'With small businesses and private enterprise made illegal, most people will be forced to resort to illegal activities, under the watchful eye of the NSA. But since putting even more people in jail will be prohibitively expensive, a new, streamlined process of dispensing justice will be put into place: the NSA and the Justice Department will link computer systems, and verdicts of fraud and suspended sentences
asciilifeform: will be issued by a computer program, in absentia. In keeping with current practice, both the charge and the evidence will be kept secret. The newly minted felons will be dropped from voter rolls, their passports cancelled, their bank accounts confiscated, and their employment (if any) terminated. They will receive form letters informing them of their sentence but most of them will be unable to read it because
asciilifeform: functional illiteracy rates will go from the current 40% to 80-90%.'
asciilifeform: pure gold.
decimation: ascii - secret electronic evidence is a perfect fit for the US confession-based legal system
asciilifeform: decimation: 'n strikes' warez users rule, precedent.
kakobrekla: https://bitcointalk.org/index.php?topic=560733.0;topicseen
ozbot: I am going to build a true random number generator ...
kakobrekla: artifexd , asciilifeform
kakobrekla: a well i might have jumped the gun, nothing particularly interesting except for the fact of recognizing the problem.
artifexd: I've learned that the raspberry pi has a hardware rng. My current plan is to build use that. I'll Von Neumann it if necessary. Regardless, as soon as I get one, I'll use the tools asciilifeform recommended to measure the entropy.
asciilifeform: artifexd: see if you can learn why the raspi rng is unsuitable for cryptography.
asciilifeform: (hint: same reason as intel's)
artifexd: Backdoored?
kakobrekla: i wonder what the numbers will show.
asciilifeform: the numbers will show... beautiful entropy
asciilifeform: just as the digits of pi, if run through 'diehard', would.
asciilifeform: no statistical test will reveal a malicious rng
asciilifeform: unless the malefactor is dumb as a brick
kakobrekla: how do you eval such result correctly then
asciilifeform: exercise: encipher a consecutive stream of nulls, with aes, using whatever you want as init vector
asciilifeform: run the result through 'diehard'
asciilifeform: you'll get 'better' stats than any genuine rng.
asciilifeform: kakobrekla: the statistical tests are for determining sources of 'natural' bias, not enemy action.
asciilifeform: e.g. a bit in a register that's stuck on
asciilifeform: or, when testing prng, any periodicity in the output
asciilifeform: this and related topics have been beaten to death elsewhere.
kakobrekla: and the diehard is exempt from this?
asciilifeform: 'diehard' is just a collection of statistical tests
asciilifeform: there is no mathematical test for 'evil'
asciilifeform: i cannot emphasize this enough
kakobrekla: so you are saying diehard will show a nice numbers on rpi as well
asciilifeform: it will!
asciilifeform: and on the digits of pi
asciilifeform: and 'e'
kakobrekla: thats what im asking.
asciilifeform: it will show beautiful numbers
asciilifeform: but rpi is still unsuitable for cryptography
kakobrekla: so how do you know, for the particular case of rpi, that it is indeed fucked?
asciilifeform: because you cannot, except at great expense, determine what is inside.
artifexd: Hence your recommendation to build my own?
kakobrekla: im not using it myself but i am curious
asciilifeform: correct
asciilifeform: i cannot in good conscience recommend anything that is presently available for sale
asciilifeform: (this will change soon)
asciilifeform: building rng is not hard, and is educational
kakobrekla: so as of now there is no direct evidence "look here rpi is fucked" just a general concern over all products on the shelfs
asciilifeform: how do you know ... that it is indeed fucked << all crypto hardware, especially of the single-chip variety, is to be thought of as 'guilty until proven innocent'
kakobrekla: but it is (near?) impossible to prove its good
kakobrekla: you might just not see the bug
asciilifeform: it is indeed impossible to prove, with mathematical rigour, damn near anything
kakobrekla: :D
asciilifeform: we don't even know (to this standard of proof) if a pill against rsa requires factoring
asciilifeform has to sleep
kakobrekla: good night
artifexd: Thanks for your expertise!
dub_: ;;later tell nubbins` whats a trusted canukistani buttcoin shop? hashtag lazyweb
gribble: The operation succeeded.
nubbins`: i know almost all of those words
nubbins`: you trying to exchange btc for cad?
dub: cad->btc yes
dub: not me, friend
nubbins`: cavirtex changed their verification rules recently, can't recall the details
nubbins`: they're the only place i've used in the past, but honestly i don't feel too great about them these days
nubbins`: vault of satoshi is another, but i think lower volume and they trade in doge, so...
dub: damn, if you think of somewhere gribble me, gotta go catch a boat, not sure when ill be back on-grid
nubbins`: no sweat. wish i could give ya better advice
nubbins`: meantime, it's somehow 4am, so i'm off
twizt: lol
twizt: everyday same shyt
twizt: mjr2
punkman: http://heartbleed.com/
ozbot: Heartbleed Bug
punkman: fucking openssl
bounce: hmm... wonder how those bugs ended up in openssl and gnutls.
bounce: asciilifeform: I forgot who mentioned to hook a 10k resistor to a mike in, turn up the gain, and feed that to the entropy pool. how suitable an entropy source is that in your opinion?
kakobrekla: its crappy unless you are fucking 5 hookers at same time to gather the noise
kakobrekla: was discussed before.
keonne: ThickAsThieves: missed opportunity to call it scAMEX
keonne: i lold
keonne: mircea_popescue: I actually havent met Dan Held in person, and my intel is lacking in the hot or not space
keonne: He has a very deep and masculine voice though.
keonne: omg if I see mpoe-pr at the conf, I so am going to get her autograph and ask hope she emasculates me
jurov: i *am* using rpi as a wallet (with electrum), however:
jurov: sd card is encrypted and i always use keyboard connected directly to rpi for passphrase
jurov: i don't connect it to switch, but with patch cable directly to notebook
keonne: ;;gpg info keonne
gribble: User 'keonne', with keyid 7EECABD58314C40C, fingerprint 1EECFCBA5A9A5470B2149FA37EECABD58314C40C, and bitcoin address None, registered on Tue Apr 8 05:18:18 2014, last authed on Tue Apr 8 05:18:18 2014. http://b-otc.com/vg?nick=keonne . Currently authenticated from hostmask keonne!~abdul@snugglenets.com .
kakobrekla: jurov over ethernet?
Guest45980: hey guys, do you know a chart of the hashpower of the whole altcoin space?
Guest45980: sum of all hashpowers of all altcoins
jurov: dexX7: there is much property leftovers from cold war
dexX7: ah
jurov: and it is certainly continuously maintained
jurov: the picture looks like koenigswarte hill here near bratislava
jurov: yea it definitely is. the photo is made from tourist lookout tower next to the installation
keonne: mircea_popescu: put in a good word for me
mircea_popescu: sec writing brb
keonne: np
jurov: CoinBr going under maintenance, brb in couple hours
bitesak: ;;ticker
gribble: Bitstamp BTCUSD ticker | Best bid: 449.0, Best ask: 450.95, Bid-ask spread: 1.95000, Last trade: 450.95, 24 hour volume: 8774.11284429, 24 hour low: 446.0, 24 hour high: 461.17, 24 hour vwap: 452.12891933
mircea_popescu: http://trilema.com/2014/gotta-love-that-negro-speak/
assbot: [MPEX] [S.MPOE] 9750 @ 0.00099756 = 9.7262 BTC [+]
mircea_popescu: ThickAsThieves obviously it's just a draft, i wouldn't expect to be filmed verbatim.
mircea_popescu: trilema looks for two things to find bots : whether you've actually loaded the page you're commenting on (which can throw it for a loop if the page you load gets expired while you try to comment, but this is indeed rare) and whether youve loaded it very recently (like a few seconds sort of recently).
mircea_popescu: decimation:
mircea_popescu: the real problem is that it makes it impossible to differentiate talented managers of resources from fools who happen to be friends with the bezzle-kings << HARDLY :)
mircea_popescu: this is like saying it's impossible to use the wot
mircea_popescu: in fact, exactly the same problem.
mircea_popescu: Mats_cd03 i imagined that's what you probably meant, but i discarded it because it made 0 sense. you don't care what the channel is like, you encrypt the message not the conduit.
mircea_popescu: i can somehow send you email perfectly safely by pastebining it. do the same, alter the firmware to use gpg signed packets.
mircea_popescu: you don't need new hardware for this in any snese.
punkman: you care what the channel is like, or it might just offer up DMA access to the other end
mircea_popescu: that's not the channel :)
mircea_popescu: but anyway, if the thing actually offers dma to all comers, idun see why you'd buy one
mircea_popescu: just you know, redirect as many as you need.
jurov: kakobrekla yes. if someone is in my machine *and* knows what i'm doing on the ethernet port, i'm having bigger problem that some warm wallet
mircea_popescu: asciilifeform orlov definitely has a point there. bnw style stratification is a definite future available.
mircea_popescu: kakobrekla maybe point out to him that cardano will likely beat him to market and it'll be cheaper to just wait ?
mircea_popescu: o wait, you're banned, i got no pr and gerald hasn't yet enough of a clue to be here.
mircea_popescu: i guess he gets to waste some more resources.
BingoBoingo: mircea_popescu: RE: Negro speak -> The sleeping bag luffa reference most likely refers to the sponges, as most american sleeping bags have cheap synthetic interiors and fillings
mircea_popescu: BingoBoingo yes, but does it feel like the warm comforting feminine touch of the mother, or of the wife ?
mircea_popescu: kakobrekla: so as of now there is no direct evidence "look here rpi is fucked" just a general concern over all products on the shelfs << all PROPRIETARY, closed products.
mircea_popescu: it can be chocolate truffles for all i care.
jurov: anything else on the shelf contains magnutide more close code than rpi
jurov: *magnitude
mircea_popescu: a not is enough.
mircea_popescu: i never heard of any practical classification of viruses by... size. what diff does it make, 2kb.
ThickAsThieves: http://www.bbc.com/news/health-26920521#sa-ns_mchannel=rss&ns_source=PublicRSS20-sa
ozbot: BBC News - Paralysed men move again with spinal stimulation
jurov: so what. imma gonna fucked someday one way or other
jurov: the openssl shit today... to be 100% sure one'd need to rebuild everything
dexX7: the guys in -dev said updating openssl only is fine
mircea_popescu: jurov wanna hear something funny ? i just paid the largest bonus today, of my entire history in bussiness
mircea_popescu: do you know to whom ? to the guy who nixed upgrade from 10.04 on all my ubuntu systems, because, he said, "meh".
mircea_popescu: guess who never run any broken openssh. possibly the.only.one.on.the.internet.
jurov: that' s just a luck
mircea_popescu: yeah, the first time people do this sort of shit i call it luck.
mircea_popescu: by the fifth or so the bonuses start coming out.
mircea_popescu: bounce: hmm... wonder how those bugs ended up in openssl and gnutls. << you needn't wonder. examine the matter plainly : for no appreciable reason, the usg muppets posing as "core devs" started work to meld pki into bitcoin protocol.
mircea_popescu: this was no coincidence, this has been a) deliberately inserted and b) widely and systematically exploited.
mircea_popescu: everyone involved is going to his grave with his tail attached.
mircea_popescu: s/his/this.
truffles: Apocalyptic i didnt think i gave a clear picture of how things went down so ill paste relevant lines
truffles: hmm many lines were exchanged heh
keonne: I think there are two K's in grokking mircea_popescu
keonne: also very glad im lazy and never update my shit, take your rolling releases and stuff them.
mircea_popescu: english has double k's ? what is this, wannabe-italian ?
keonne: definetely luck, and not smarts in my case.
keonne: im pretty sure Heinlein made up the word
keonne: back to reading brb
mircea_popescu: good for him but i ain't double k'ing
mircea_popescu: well unless it's moar dakka or something
keonne: fair enough, we all have principles we need to live by - i respect that
truffles: Apocalyptic i'll copy paste when ure around
mircea_popescu: http://tvtropes.org/pmwiki/pmwiki.php/Main/RainbowPimpGear
ozbot: Main/Rainbow Pimp Gear - Television Tropes & Idioms
mircea_popescu: lmao
dexX7: do you have any info about real cases were gpg contracts and similar were binding in a legal matter?
keonne: lol
mircea_popescu: dexX7 pgp per se no, but akc is commonly used.
punkman: dexX7: a contract is a contract, it doesn't matter what kind of paper you use, or how you scribble your signature
mircea_popescu: that aside, yes, the court is not at liberty to disconsider it anyway.
mircea_popescu: ie what punkman said.
dexX7: akc?
mircea_popescu: asymmetric key criptography
dexX7: ah
dexX7: punkman: but a contract is worthless, if it could be easily forged
mircea_popescu: that's repudiation, which is a different matter
mircea_popescu: (ie, to say "i did sign this but it should not bind me because it's a gpg contract" and to say "i never signed this" are different stands in court)
keonne: The point is valid, everyone who’s never tried it before imagines sex in the bushes is a great idea. I know better.
keonne: so true
mircea_popescu: keonne and consider i have the benefit of slaves.
punkman: it's not that bad
punkman: sand is worse
mircea_popescu: "wanna get on your back so as to insulate me from all this shit ? " "sure!"
mircea_popescu: punkman possibly a normal average bath tub is the worst.
mircea_popescu: seawater's pretty bad too.
keonne: yes i lost my virginity on a beach
keonne: besides sand in undesirable locations, pretty sure we were being watched by those who made the beach their home.
truffles: ewww sand in privates
punkman: seawater is weird yeah, screws with the lubrication
keonne: in fact, I know were were being watched, because three came out of the dunes to watch.
keonne: water in general screws with the lubrication
keonne: plus coming in any kind of water is asking for trouble
truffles: not to mention all the parasites that could be in it
truffles: but for some ppl whats one more disease hehe
mircea_popescu: there's no cunt parasite
mircea_popescu: tho granted that'd be some scary shit.
keonne: the cunt I was with then was a parasite
mircea_popescu: now that's a different story :D
keonne: i really should not be using my real name on here...lol
truffles: thats pretty unique
punkman: I've spotted a nice glass elevaror that's begging for it, only goes 5 floors up though
punkman: *elevator
truffles: to buy or ???
punkman: to fuck in
keonne: ok well i finished the waterfall of an article
truffles: solo?
keonne: now to swim through the river of footnotes
truffles: i just thought its interesting what the house looks like if its 5 floors!
keonne: so is there like a class of people here who do nothing but connect and disconnect all day and never chat? or am I missing something.
truffles: lol
truffles: chat rooms are a new concept to some
ThickAsThieves: mjr1 probly uses an android app or something that wakes everytime he checks his phone
keonne: that makes sense ThickAsThieves i already ignored him though
truffles: lol
truffles: he's an interesting fellow
keonne: Does he contribute to chat? I dont want to miss anything
keonne: ah ok
truffles: creative mind imo
ThickAsThieves: well if it's the normal mjr, he pops in every couple mos
keonne: I unignored, perhaps I was a bit too hasty, and the android explination makes sense
truffles: he peaked at chatting last yr i guess
keonne: lol
truffles: ya he actually spoke a bunch before
truffles: only has 2 blog posts
keonne: seriously tho, learning to screen session is an important part of irc
truffles: some1 should nudge him to do a 3rd
keonne: god dammit my inbox is filled with heartbleed bullshit
truffles: heartbleed?
keonne: http://heartbleed.com/
ozbot: Heartbleed Bug
keonne: can I borrow your rock truffles ?
keonne: i'd like to hide under it
truffles: ha
ThickAsThieves: give an exploit a good name and everyone pays attention
truffles: im stingy
keonne: they even had a logo ready
keonne: lol
dexX7: + a nice landing page
keonne: is it running google analytics
keonne: nope, it would have been hilarious had it been
dexX7: haha yea
truffles: keonne what irc client do u use?
keonne: irssi
keonne: well i connect to a shell, and run irssi inside a screen session
truffles: i prefer mirc
truffles: looks weird
mircea_popescu: punkman make sure you place lookouts outside
mircea_popescu: you'll want the pics
mircea_popescu: keonne guy used to try and organise a ny central park bitcoin group buy thing.
keonne: 5 story elevator doesnt give much time really
keonne: mircea_popescu: mjr ?
mircea_popescu: yea
mircea_popescu: and the point of fucking is going up and down repeatedly, i thought.
keonne: i already unignored him, again i rather not miss interesting chats, i just havent seen anything but connect/dissconnect
keonne: oooh, that explains what im doing wrong
truffles: push the emergency button when reach 5th?
MisterE: hmm heartbleed is nasty
MisterE: truffles: floor 5 1/2?
truffles: i dont, but id watch :D
MisterE: What movie was that?
truffles: nooo
mircea_popescu: keonne in principle ytou can ignore part/join msgs
truffles: im just saying not something id do
MisterE: Being Mircea Popescu? :D
MisterE: Being John Malkovich I think :)
keonne: i could write a script for irrsi i suppose
keonne: but then mjr wins
truffles: i actually think mp sex would appear boring id skip that
bounce: a script to ignore joins/parts?
keonne: oh wait
keonne: even better
bounce: /ignore * CRAP already takes care of it. not a good idea if you're chanop, but if you're not, well, this is freenode. it's full of CRAP.
keonne: "/ignore -channels #chan1,#chan2,#chan3 * JOINS PARTS QUITS NICKS"
mircea_popescu thinks keonne may be a littrle bit dyslexic :D
keonne: mircea_popescu: highly likely
keonne: or just careless
keonne: lets see if I did that right..
keonne: someone say something ?
mircea_popescu: ;;echo hey keonne you broke the ircernets.
gribble: hey keonne you broke the ircernets.
keonne: mircea_popescu: im curious as to why you say that
mircea_popescu: <keonne> someone say something ? <<
keonne: my father and grandfather are dyslexic
MisterE: [20:58:07] MisterD is now known as MisterE
keonne: yeah i fucked somehting up
keonne: mircea_popescu: no i meant the dyslexic comment lol
mike_c: it feels nice to see somebody besides bitcoin getting a public whipping. thanks openssl!
assbot: [HAVELOCK] [AM1] 6 @ 0.6 = 3.6 BTC [-] {5}
assbot: [HAVELOCK] [AM100] 202 @ 0.00571026 = 1.1535 BTC [+] {15}
assbot: [HAVELOCK] [KCIM] 106 @ 0.00154721 = 0.164 BTC [+] {4}
MisterE: heh
MisterE: I'd rather it be something I dont care about like Java or Flash
BingoBoingo: MisterE: Java and Flash lack the utility to get hit this hard
assbot: [HAVELOCK] [B.SELL] 2 @ 0.052 = 0.104 BTC [-]
assbot: [HAVELOCK] [B.MINE] 8 @ 0.031 = 0.248 BTC [-]
assbot: [HAVELOCK] [B.SELL] 2 @ 0.05299999 = 0.106 BTC [+]
assbot: [HAVELOCK] [PETA] 4 @ 0.05400024 = 0.216 BTC [-]
asciilifeform: in other news, usa is tired of flying to orbit:
asciilifeform: http://www.cnn.com/2014/04/03/us/us-russia-relations-nasa
ozbot: NASA to end most activities with Russia - CNN.com
thestringpuller: ;;later tell mod6 I ptfoed. If/when you get this you aren't busy, pm me.
mike_c: http://pastebin.com/Ajx71rPe
ozbot: [Python] heartbleed ssl test - Pastebin.com
asciilifeform: remaining btc exchanges cleaned in 3, 2, 1...
danielpbarron: made my trilema credit payment back and then some by betting on MPOE :D
BingoBoingo: congrats danielpbarron
thestringpuller: who needs ssl when you have gpg?
assbot: [HAVELOCK] [B.SELL] 7 @ 0.04921785 = 0.3445 BTC [-] {4}
asciilifeform: re: openssl - perhaps time for repost:
asciilifeform: http://www.loper-os.org/?p=1299
ozbot: Loper OS » Don’t Blame the Mice.
keonne: Russia raises price on gas for Ukraine
keonne: See U.S., Russia crew lift off into space
keonne: Russia could invade 12 hours after order
keonne: "This has been a top priority of the Obama Administration's for the past five years"
keonne: how to math
keonne: if top priority over the last 5 years, why retire the fleet 3 years ago
keonne: wow http://www.journaldunet.com/ebusiness/commerce/patrick-oualid-oualid-monoprix-bitcoin.shtml
keonne: soon to buy stinky cheese and wine for bitcoin
Mats_cd03: "FBI says Russians Out to Steal Ideas From Tech Firms"
Mats_cd03: wut
keonne: monoprix is huge - if you read french i suggest reading that, that CEO knows whats going on
blackwhite: hey guys
Mats_cd03: http://translate.google.com/translate?sl=auto&tl=en&js=y&prev=_t&hl=en&ie=UTF-8&u=http%3A%2F%2Fwww.journaldunet.com%2Febusiness%2Fcommerce%2Fpatrick-oualid-oualid-monoprix-bitcoin.shtml&edit-text
keonne: he isnt CEO sorry, he is director of ecommerece
keonne: thanks Mats_cd03
Mats_cd03: the magic of technology, i dont has to read french
keonne: lol
BingoBoingo: I think the most terrifying prospect I could imagine for Bitcoin would be MP moving Trilema to French... So resistant to machine translation.
keonne: lol!
Mats_cd03: We do not yet understand the magnitude of the subject. Yet I am convinced that not to believe, it would be like not to believe in social networks there some time. Certainly there is no transaction in social networks, but there are relational in transactional ... and social networks contribute greatly. Do not believe the contribution of bitcoin in the
Mats_cd03: transaction, it is also a mistake.
Mats_cd03: any french speakers have a clue wat hes actually saying
assbot: [HAVELOCK] [B.SELL] 8 @ 0.04775 = 0.382 BTC [-] {4}
assbot: [HAVELOCK] [B.SELL] 11 @ 0.04622746 = 0.5085 BTC [-] {4}
assbot: [HAVELOCK] [B.MINE] 28 @ 0.032099 = 0.8988 BTC [+]
keonne: one second Mats_cd03
keonne: my french isnt good, but I am currently in France with a native speaker
BingoBoingo: Mats_cd03: You seem. It seems like a language where the vocabulary is statutorally restricted would be especially amenable to machine translation, but practice is different
Namworld: I can speak french too.
keonne: I think something along the lines of 'the french dont get it yet, they think its a thing for crooks and money launderers, but not believing in bitcoin is like not beliving in social networks a few years ago
keonne: and you cannot say that they are different because social networks too deal with transactions (though of a different kind), and indeed social networks will have a big impact on bitcoin
keonne: something along those lines anyway
Namworld: Wait, what is this about? Not translating apparently.
keonne: Namworld: http://www.journaldunet.com/ebusiness/commerce/patrick-oualid-oualid-monoprix-bitcoin.shtml
keonne: Monoprix to accept bitcoin end of 2014 apparently
Namworld: Ah
keonne: Namworld: please excuse if I butchered that, like I said, my french is garbage
keonne: give me it in esperanto and i'd be fine, lol
Namworld: idk why esperanto, seems counter productive. English is already so widely used (Not as native language but all combined)
Namworld: Although yes Mandarin is at the top, but not really used outside of China.
benkay: i'm testing a strategy for location selection over the next ten years: prefer big network pipe installations and electricity generation sites over pretty much anything. theory being that people with money invested in internet hardware will deploy capital to protect it, need lowly others to run the machines, and provide the armed convoys of food that the big cities won't be enjoying.
benkay: in my region this is Prineville and Bonneville.
Mats_cd03: im paying down a place in SLO, CA atm
benkay: hanky basis for investment thesis is that in the way rivers were important to US city site locations once upon a time internet and power will be bastions of order in mad-max future.
Mats_cd03: theres a 550w sol farm in the district
benkay: ugh but all that human flesh
Mats_cd03: mw, that is (we're on the same wavelength apparently)
keonne: Namworld: Its very useful to learn before learning other languages
keonne: especially if you are a native english speakers
Mats_cd03: theres no point to learning mandarin
keonne: you are quickly familiarised with different grammatical structures and sounds, while still being easily learned due to its entirely constructed base
keonne: Overall you are correct though, and almost no one speaks or understands it
thestringpuller: Mats_cd03: you really waiting for a cardano to get into WoT?
thestringpuller: lol
Mats_cd03: im not in a rush
keonne: What is a cardano?
Mats_cd03: http://trilema.com/2013/snsa-first-product-the-cardano/
ozbot: S.NSA first product - The Cardano pe Trilema - Un blog de Mircea Popescu.
keonne: thank you Mats_cd03
keonne: trilema is seriously the best thing I have ever spent money on, online.
keonne: oh i want
Mats_cd03: ascii is going to need a lot of units
robwhiz22: hi
Chris_Sabian: I can use a bit of help: can anyone get the raw transcation from this tx id: df74678b86bdf78656b92a1fd7da70aa35ecba12847decd684485fb0a79e728c
truffles: ho
Chris_Sabian: i know you can do it in bitcoinQT but I dont have access to it right noww
Chris_Sabian: and i dont know where it find it online
robwhiz22: Does anyone know when Mirceau tends to be online?
mike_c: you need to run with -txindex to get access to transactions not in your wallet
truffles: no
mike_c: and rescan the blockchain.
jurov: blockchain.info shows raw tx in advanced mode, no?
Chris_Sabian: so I need access to my wallet at the moment to do it?
mike_c: jurov: it shows the scripts, yeah. https://blockchain.info/tx/df74678b86bdf78656b92a1fd7da70aa35ecba12847decd684485fb0a79e728c?show_adv=true
dignork: Chris_Sabian, https://blockchain.info/tx/df74678b86bdf78656b92a1fd7da70aa35ecba12847decd684485fb0a79e728c
artifexd: Or https://blockchain.info/rawtx/df74678b86bdf78656b92a1fd7da70aa35ecba12847decd684485fb0a79e728c
dignork: lol
keonne: was just gonna link that mike_c :)
robwhiz22: I will be on later.
truffles: blocks spamme
keonne: robwhiz22: you decide to ask in chat instead of pm this time?
keonne: aw he left
truffles: bad idea to pm ppl
keonne: indeed
keonne: he asked first, Mircea said no, and then he complained about it
truffles: oh
truffles: more interesting ppl to pm though :D
Chris_Sabian: ok. so if im trying to manually push the transcation via https://blockchain.info/pushtx , were is the raw hex then??
artifexd: https://blockchain.info/rawtx/df74678b86bdf78656b92a1fd7da70aa35ecba12847decd684485fb0a79e728c?format=hex
truffles: keonne u were supposed to say right, i know ure a blast
mike_c: um. blockchain already saw it :)
mike_c: what is the point?
keonne: oh sorry truffles
keonne: i wouldn't know, i never pm'd you
keonne: unless you are also moiety
truffles: i acept all pms
truffles: dunno who that is
Chris_Sabian: ok then. just saw that. I guess that I was confused that blockchain didnt see it because it didn't confirm. :)
dexX7: blockchain.info tends to be broken for some time now
mike_c: well, it's not confirming because no tx fee.
Chris_Sabian: isn't there some room in blocks for 0 fee transcation though? but it would take a long time to confirm though?
keonne: dexX7: whats broken? besides some charts? anything I need to expedite?
keonne: API should be back, we moved over to bitcoinj, and overall things are a lot quicker now. If there is something specific please let me know
dexX7: transactions were missing. not like an unconfirmed as in this case, but also historical ones
keonne: still? I thought we fixed all those
dexX7: hm
dexX7: not sure, if this is still an issue
dexX7: but it was over the last weeks
keonne: I think it has been resolved.
dexX7: ah nice
keonne: yeah it was a major issue
keonne: not in terms of functionality or people losing btc, but in a scaring the shit out of people way
dexX7: and a strange one ;) blockhashes were all fine, but tx count was wrong and as mentioned, txs missing
keonne: yeah the database corrupted, it was a very bad week
keonne: none of us slept very much
keonne: again if you see anything weird, just ping me here and ill get eyes on it asap
dexX7: good to know
keonne: One good thing out of all that, I didn't realize that android wallet users PIN codes are stored on bchain servers. As a result during the outage people weren't able to get into their android wallet with PIN only password. That is totally incorrect, from now on, your PIN will never be sent to our servers, it is hashed and stored locally instead
keonne: or will be
mike_c: Chris_Sabian: yes. just takes longer.
keonne: with that being said, im off for a bit to grab some coffee, later
dexX7: cya
assbot: [HAVELOCK] [NEOBEEQ] 1509 @ 0.000135 = 0.2037 BTC [+]
assbot: [HAVELOCK] [COG] 10 @ 0.01700001 = 0.17 BTC [-] {2}
assbot: [HAVELOCK] [B.MINE] 5 @ 0.03199887 = 0.16 BTC [+] {3}
assbot: [HAVELOCK] [AM100] 38 @ 0.00580999 = 0.2208 BTC [+] {2}
truffles: some1 tell that guy coffee is bad for u
jurov: life is deadly anyway
truffles: is it though
benkay: keonne: you run blockchain.info?
BingoBoingo: truffles: Death is the only certain outcome of life
truffles: boingo for sure
truffles: no need to speed it up
BingoBoingo: No need to live to be 200 if you've never done anything either
truffles: sure could
truffles: just not things leading to possible bad times
thestringpuller: ;;gettrust keonne
gribble: WARNING: Currently not authenticated. Trust relationship from user thestringpuller to user keonne: Level 1: 0, Level 2: 0 via 0 connections. Graph: http://b-otc.com/stg?source=thestringpuller&dest=keonne | WoT data: http://b-otc.com/vrd?nick=keonne | Rated since: never
truffles: so why are nerds offended about being called nerds eh
cgcardona_: There is no such thing as strong coffee—only weak men.
truffles: 0.0
truffles: truth bombs
cgcardona_: top of tha mornin everyone
truffles: ive already made dinner ..
cgcardona_: heh. Around tha world—around tha world (daft punk theme)
truffles: nerd comment wasnt that random, other chat was qualifiying what it is to be one
cgcardona_: I don't think nerds are offended at being called nerds. I think true nerds/geeks/etc own that shit
truffles: id think its a good thing to be smart but u never know
cgcardona_: smart/clever/knowledgable/wise <---at some crossroads of those
benkay: can be a handicap, truffles. makes sucking at ones craft very painful when you start hitting that competence threshold that only lots of deliberate practice can get one over.
assbot: [HAVELOCK] [B.SELL] 4 @ 0.045 = 0.18 BTC [-]
truffles: well one cant know everything
benkay: in the same way men tell each other "smart/pretty/sane, pick two", managers are always looking for some combination of "smart/well-practiced/hard working".
danielpbarron: http://blockscan.com/address.aspx?q=1BGSqmCnkdyB7W2T15rSBS4qXBdY3LZn1t
cgcardona_: interesting insight
assbot: [HAVELOCK] [B.MINE] 6 @ 0.03209899 = 0.1926 BTC [+] {3}
benkay: well-practiced and hard working is super valuable, well-practiced and smart is super valuable, smart and hard working comes in at the bottom untempered by practice.
benkay: and of course just plain old smart is completely worthless.
truffles: i actually rank in reverse
cgcardona_: i'm just dumb and lazy
benkay: ;;google why i never hire brilliant men
gribble: From the Stacks: Why I Never Hire Brilliant Men | TaoYue.com: <http://taoyue.com/stacks/articles/brilliant-men.html>; The Joel on Software Discussion Group (CLOSED) - Why I Never Hire ...: <http://discuss.joelonsoftware.com/default.asp?joel.3.558118.24>; The Old Joel on Software Forum - Hiring superstars?: <http://discuss.fogcreek.com/joelonsoftware/?cmd=show&ixPost=17864>
truffles: slow pony
cgcardona_: oddly enough I had somehow never heard "smart/pretty/sane, pick two" until today
truffles: provided the brilliant doesnt come with lazi, id go brilliant every time
jurov: nonlazy brilliant eventually go crazy
cgcardona_: well there are meds for that...
truffles: we're all a lil crazy
cgcardona_: </partial joke>
benkay: funny how people go for the meds first and never think to go run in circles for thirty minutes...
truffles: i feel like any other option is purposely handicapping urself
cgcardona_: dude I just got an email from heroku about the ssl bug w/ this as my list of potentially affected apps: Here are your affected applications:
cgcardona_: {list of apps}
cgcardona_: the old variable in the email fail
cgcardona_: been a while since I seen that one
BingoBoingo: benkay: A jog can't do the things Lithium can though
truffles: how about drinking some tea, sitting doing a sudoku
benkay: most medicated people i've met don't jog 3 times a week, or even picking up heavy things until sweaty that many times a week. some variant of which is a prerequisite for stable mental chemistry.
benkay: <strike>ing</strike>
truffles: might take a lil more than that for the clincially insane
benkay: i'm not saying that mental health is purely a function of workout frequency. i've been larned better than that by the DSMi. it's just all too frequent that people resort to drugs without actually putting in the work to get their physical health dialed.
benkay: granted, it can be hard to get up in the morning much less work out when catatonically depressed.
Rick__: arij is here?
truffles: what would u suggest to the jocks then
los_pantalones: read a book
truffles: haha
asciilifeform: http://filippo.io/Heartbleed/#schneier.com
assbot: [HAVELOCK] [PETA] 18 @ 0.0523161 = 0.9417 BTC [-] {5}
BingoBoingo: http://filippo.io/Heartbleed/#trilema.com
BingoBoingo: MP > Scheier
asciilifeform: wait since when ssl on trilema?
mike_c: i checked trilema & coinbr this morning, both were clear.
Mats_cd03: trilema cpanel i guess?
BingoBoingo: Well, No SSL == NotHeartBleed
BingoBoingo: www.thedrinkingrecord.com/2014/04/08/the-big-rock-candy-foundation/
mike_c: trilema.com will do ssl connections, but you can't get the blog.
benkay: BingoBoingo: start urls with http:// for log url inclusion
BingoBoingo: http://www.thedrinkingrecord.com/
ozbot: Bingo Blog | - of Bitcoin and Boingo
TomServo: BingoBoingo: The title of that article is for some reason missing from the frontpage
BingoBoingo: www.thedrinkingrecord.com/2014/04/08/the-big-rock-candy-foundation/
BingoBoingo: TomServo: Yeah, I dunno why
mike_c: too much css
truffles: boingo u have blog also?
BingoBoingo: truffles: Where have you been since September
truffles: well if its random link without saying "in my blog ..." i dont click..
BingoBoingo: truffles: You also advertise how much you hate reading at all
truffles: u misunderstand
BingoBoingo: mike_c: Fixed, was actualy too much CSS
benkay: "Bingo Blog"
truffles: if its boring id rather not
benkay: how fucking hard is that?
benkay: being linked by BingoBoingo
truffles: ok ok i skimmed
BingoBoingo: Reading moar is the best prevention against getting buggered sore
truffles: i have small chat window so..
BingoBoingo: https://twitter.com/gavinandresen/status/453574888587268096
ozbot: Twitter / gavinandresen: Expect a 0.9.1 Bitcoin Core ...
mike_c: BingoBoingo: much better. good post. although not apples to apples, it is interesting to compare their activity #'s against http://stats.bitcoin-assets.com/
assbot: [HAVELOCK] [AM100] 63 @ 0.00555318 = 0.3499 BTC [-] {3}
truffles: oh oh i dont like ur writing style eeek
benkay: 48.) mjr___ 1023
danielpbarron: I got two irl contacts to join the WoT :D
benkay: which handles, danielpbarron ?
benkay: unless that's a rude question. is that a rude question?
truffles: tis rude
benkay: ;;gettrust truffles
gribble: WARNING: Currently not authenticated. Trust relationship from user benkay to user truffles: Level 1: 0, Level 2: 0 via 0 connections. Graph: http://b-otc.com/stg?source=benkay&dest=truffles | WoT data: http://b-otc.com/vrd?nick=truffles | Rated since: never
truffles: jk
benkay: you don't count in this conversation apparently.
truffles: ha
danielpbarron: one hasn't signed up yet, the other is 'againbackson'
benkay: ;;gettrust againbackson
gribble: WARNING: Currently not authenticated. Trust relationship from user benkay to user againbackson: Level 1: 0, Level 2: 0 via 0 connections. Graph: http://b-otc.com/stg?source=benkay&dest=againbackson | WoT data: http://b-otc.com/vrd?nick=againbackson | Rated since: Tue Apr 8 11:58:58 2014
danielpbarron: ;;gettrust againbackson
gribble: WARNING: Currently not authenticated. Trust relationship from user danielpbarron to user againbackson: Level 1: 1, Level 2: 0 via 0 connections. Graph: http://b-otc.com/stg?source=danielpbarron&dest=againbackson | WoT data: http://b-otc.com/vrd?nick=againbackson | Rated since: Tue Apr 8 11:58:58 2014
BingoBoingo: mike_c: Thx, Well I figure for all of the porn there is less unpleasant buggery happening here
truffles: doesnt seem like too many r authenticated
danielpbarron: he's not online now :p
truffles: monologue commence?
truffles: boingo what percent of the blog is about u vs btc?
truffles: oh id so crush u in fantasy sports :D
BingoBoingo: truffles: Only one way to find out the log's contents...
truffles: i have harsh comments that i will hold to myself
BingoBoingo: I dunno that your comments can be sharp enough to cut deep...
truffles: oh, feel like ppl get sensy on the nets though
benkay: projecting much?
truffles: no wai, im like toughest person itc
BingoBoingo: truffles: There is a difference between people and "ppl"
truffles: ppl do picky
BingoBoingo: truffles: I don't think your wit is sharp enough to draw meaningful offense.
truffles: ouch!
truffles: well i tend to push buttons instead :(
BingoBoingo: That isn't even a very good emoticon
truffles: whats a good one
BingoBoingo: >:- ]
BingoBoingo: The horns show its malevolence
truffles: lol
truffles: sure
BingoBoingo: And its square jaw shows it is strong
truffles: so guess we should all work out more
Mats_cd03: https://imgur.com/4nhUs
ozbot: Gay Seal - Imgur
MisterE: anyone understand chinese?
Mats_cd03: yes
MisterE: supposedly an interview with a Chinese bank manager that was taken with an iphone has been posted where he confirms PBOC will drop the hammer on RMB
MisterE: excellent, would you mind having a look if its credible Mats_cd03 ?
MisterE: http://video.sina.com.cn/v/b/130518221-3244140934.html
Mats_cd03: link it
MisterE: there's this too but not sure if related: https://www.fxbtc.com/news?id=3
Mats_cd03: sounds like thats what theyre talking about
MisterE: does it sound like they are who they are?
MisterE: and any date mentioned?
MisterE: err rather does it sound like they are credible?
Mats_cd03: the bank they're referring to is
BingoBoingo: http://gawker.com/star-trek-captain-narrates-insane-documentary-about-geo-1560832782
ozbot: Star Trek Captain Narrates Insane Documentary About Geocentrism
Mats_cd03: and my pinyin (romanization) is rough here...
MisterE: yea it's not easy
Mats_cd03: lingyun (inaudible) agricultural bank
MisterE: hmm
Mats_cd03: lingyun (inaudible) branch agricultural bank of china
truffles: kaku is in every modern doc!
Mats_cd03: oh and its by the 15
Mats_cd03: of this month
MisterE: well that's inline with rumors
MisterE: hmm agbank is massive https://en.wikipedia.org/wiki/Agricultural_Bank_of_China
assbot: [HAVELOCK] [AM1] 6 @ 0.590984 = 3.5459 BTC [-] {3}
assbot: [HAVELOCK] [AM1] 6 @ 0.59 = 3.54 BTC [-]
mike_c: PBOC will drop the hammer on RMB << what do you mean by this? will let the exchange rate float more?
Mats_cd03: seems more like theyre trying to restrict btc institutions from peddling to the masses
MisterE: yes
MisterE: stopping rmb from being used to buy crypto
Mats_cd03: an amusing effort
MisterE: Mats_cd03: what is your impression of the people's credibility? Do they seem like a branch manager of one of the biggest Chinese banks?
MisterE: their language, is it proper formal business?
Mats_cd03: yeah
MisterE: thanks for doing that
MisterE: oh anything about that post / notice? https://www.fxbtc.com/news?id=3
MisterE: I guess I can just plug it into google translate
Mats_cd03: they're shutting down due to the accounts being blocked (or something)
Mats_cd03: and some other things about pursuing legal action if dudes keep accusing them of running with the money
Apocalyptic: what are they shutting down ?
Mats_cd03: the bank received a directive to shut down fxbtc's bank account
MisterE: intersting
Mats_cd03: so the funds are frozen i imagine
MisterE: I didnt get that from google translate heh
MisterE: so their customers' funds are too
MisterE: Are you Chinese or live in China Mats_cd03? I recall one regular here at least lives there
Mats_cd03: i'm an .hk expat
MisterE: ahh ok yes it's you
MisterE: I'm in SE Asia also expat
Mats_cd03: i live in the us now
MisterE: mostly BKK / .sg pbased
Mats_cd03: is nice
MisterE: ahh nice to be back :)
MisterE: green grass and open space!
Mats_cd03: what is the living standard like there
MisterE: well like everything depends on money
Mats_cd03: well i lived in hk back when it was still green and open
MisterE: business opportunity abounds in Singapore but it's expensive as hell
MisterE: English is excellent there
assbot: [HAVELOCK] [AM1] 6 @ 0.6 = 3.6 BTC [+] {2}
MisterE: most of the multis that dont want to go intot he emerging markets in SE Asia service them from .sg
Mats_cd03: i left just as some of the high speed rails were being built
MisterE: wow thats a wile ago
MisterE: I imagine is sucked a bit before then heh
Mats_cd03: in tsuen wan
MisterE: country so damn big
Mats_cd03: literally two months after i completed a purchase on a number of properties
MisterE: oh yea that will make you move
MisterE: I was in real estate in the US
MisterE: commercial zoning plannign and permitting
MisterE: worked inland SF bay area
MisterE: and Seattle
MisterE: did a lot of 1031 exchanges
Mats_cd03: ive lived in san jose
Mats_cd03: is nice
MisterE: Oh yea we built a datacenter build there, it is nice area
MisterE: perfect weather for me, best in US
Mats_cd03: san diego has the best weather
assbot: [MPEX] [S.MPOE] 24092 @ 0.00100306 = 24.1657 BTC [+] {2}
Mats_cd03: when i lived there the temperature fluctuated 20 degrees at most
Mats_cd03: 90% of days were 60-80F
Mats_cd03: id still be there if it wasnt ungodly expensive
bounce: waitwaitwait, bitcoind is vulnerable to heartbleed?
Namworld: What nonsense is this?
Mats_cd03: 'heartbleed', who knew security researchers had a flair for the dramatic
MisterE: www.heartbleed.com
Namworld: lel, what? "The Heartbleed bug allows anyone on the Internet to read the memory of the systems protected by the vulnerable versions of the OpenSSL software. This compromises the secret keys used to identify the service providers and to encrypt the traffic, the names and passwords of the users and the actual content."
midnightmagic: bounce: Only if you've allowed rpc connections from random douches, have turned on ssl, aren't limiting it based on IP, *and* they have your wallet.dat already and have been able to query your bitcoind constantly over time and caught you using the rpc command that unlocks your wallet.
Apocalyptic: it is bounca
Apocalyptic: *bounce
bounce: "the industry" is made up out of at least 90% deliberate FUDmongering
Apocalyptic: midnightmagic only describe the scenario when they would have all your privkeys
midnightmagic: Apocalyptic: Or your encrypted wallet and access to query your rpcssl port arbitrarily.
Apocalyptic: but yes bitcoind with rpcssl is vulnerable to memory leak of some memspace
midnightmagic: (and did so in between your wallet passphrase rpc command, and whatever you typed next)
Apocalyptic: right
midnightmagic: the leak is minimal
midnightmagic: (so far as we currently know)
midnightmagic: "we"
Namworld: What kind of bug allows anyone to just read the memory?
midnightmagic: it's not just any memory, it's a specific chunk
Namworld: yes, yes, still
midnightmagic: and the answer is, "One that needs patching immediately. If you're on ubuntu: apt-get update ; apt-get install openssl"
bounce: not all of your assumptions are going to be reasonable, actually. ssl is fairly logical when enabling rpc ("instant security" amirite or amirite), but restricting IPaddresses only so if either you have enough clue or someone in your vicinity does. similarly, plenty reasons why you'd leave the wallet unlocked.
assbot: [HAVELOCK] [CBTC] 800 @ 0.00014994 = 0.12 BTC [+]
midnightmagic: You have to specifically turn on rpcbind access to the outside world. You have to have specifically taken an action to expose yourself.
midnightmagic: and even if your wallet is unlocked, your privkeys aren't vulnerable. Only (so far) the last rpc command used in the server.
assbot: [HAVELOCK] [CBTC] 700 @ 0.00014995 = 0.105 BTC [+]
bounce: AFAIK you get a random 64k block back, so whatever's in there you can get
bounce: s/AFAIK/AIUI/ but anyway
assbot: [HAVELOCK] [CBTC] 700 @ 0.00014995 = 0.105 BTC [+]
thestringpuller: cron job yoyo
assbot: [HAVELOCK] [SFI] 1000 @ 0.00081495 = 0.815 BTC [-] {4}
assbot: [MPEX] [S.MPOE] 14050 @ 0.00100503 = 14.1207 BTC [+] {2}
asciilifeform: which one of you folks runs btcalpha.com ?
thestringpuller: what is that?
Apocalyptic: asciilifeform, mike_c does
asciilifeform: thx
mike_c: now i'm nervous..
asciilifeform: stumbled across it by accident.
thestringpuller: ;;gettrust mike_c
gribble: WARNING: Currently not authenticated. Trust relationship from user thestringpuller to user mike_c: Level 1: 0, Level 2: 4 via 2 connections. Graph: http://b-otc.com/stg?source=thestringpuller&dest=mike_c | WoT data: http://b-otc.com/vrd?nick=mike_c | Rated since: Sun Nov 24 21:18:22 2013
thestringpuller: nice btcalpha is pretty good
MisterE: bounce: it is not a random 64k block and you can continue requesting them until you get all the info you want
MisterE: www.heartbleed.com
midnightmagic: bounce: No, it's not a random 64k block. It's the same block each time you run the attack.
midnightmagic: MisterE: It's just a chunk of the heap. to get different data, the heap contents must change in between attacks. That is, you can't just dump the process' entire memory space.
mike_c: "There is no total of 64 kilobytes limitation to the attack, that limit applies only to a single heartbeat. Attacker can either keep reconnecting or during an active TLS connection keep requesting arbitrary number of 64 kilobyte chunks of memory content until enough secrets are revealed."
assbot: [MPEX] [S.MPOE] 48000 @ 0.00100609 = 48.2923 BTC [+]
taub: http://puu.sh/8189e.jpg fascinating and true
Apocalyptic: mike_c, is that django btw ?
mike_c: yeah
mike_c: how did you guess? what am i leaking?
assbot: [HAVELOCK] [PETA] 2 @ 0.05499193 = 0.11 BTC [-]
assbot: [HAVELOCK] [PETA] 4 @ 0.05499195 = 0.22 BTC [+]
assbot: [HAVELOCK] [PETA] 2 @ 0.05499195 = 0.11 BTC [+]
jurov: some douche filed "illegal intrusion report" against simpleshell.com
jurov: just cause it "exceeded connection attempt threshold to tcp:22 81 times in a 30 minute period"
jurov: as if they fear two login attempts per minute
jurov: guess i'll axe it for now
mike_c: filed it with who?
jurov: with amazon
thestringpuller: ;;ticker
gribble: Bitstamp BTCUSD ticker | Best bid: 454.55, Best ask: 455.5, Bid-ask spread: 0.95000, Last trade: 455.88, 24 hour volume: 5617.14157162, 24 hour low: 446.24, 24 hour high: 459.8, 24 hour vwap: 453.022093956
benkay: Apocalyptic: how'd you run down that mike_c's running django? i too am curious.
assbot: [HAVELOCK] [CBTC] 1000 @ 0.00014576 = 0.1458 BTC [-] {3}
mircea_popescu: mike_c: it is pretty horrible to run this against one of your servers and watch its memory get dumped to screen. << now imagine if hearn & co had their way and openssl was bundled in every "reference" bitcoin client.
asciilifeform: lol!!
mircea_popescu: someone actually downloaded 0.9.1 ?
mircea_popescu: i mean other than to point and laugh.
mike_c: it's not released yet. it is the fix for 0.9, which is vulnerable
mircea_popescu: o o i c.
mircea_popescu: keonne wtf is it with dyslexics and esperanto
mircea_popescu: it's like goth music and fat girls for crying out loud
mircea_popescu: Chris_Sabian it's unconfirmed as of yet and i can't conveniently see it. you dun goofed ?
mircea_popescu: and .9 was the fix for .8.x, which was... broken.
mircea_popescu: then when i say satoshi quit mostly because he didn't want to be involved with these fucktards anymore people act as if this is somehow controversial.
bounce: well, there's a new chief developer guy now. everything gonna be better now, right?
mircea_popescu: no.
mircea_popescu: an' im working on the killshot as we speak.
bounce: so we're how many years on and I haven't looked but am I to understand there's still not much of a protocol spec? looks like the foundation sure set some useful priorities.
ThickAsThieves: i spoke with the reporter today about the Narcotic Checkpoint issue, went pretty well, she's gonna do more research
benkay: HeySteve2 was having epic problems with 0.9 and a wallet.
ThickAsThieves: offered to have me get a Letter to the Editor published
ThickAsThieves: we'll see
thestringpuller: mircea_popescu: goth music and fat girls...wow that's very astute, i thought it was just an american phenonmenon
benkay: ;;gettrust thestringpuller
gribble: WARNING: Currently not authenticated. Trust relationship from user benkay to user thestringpuller: Level 1: 1, Level 2: 3 via 3 connections. Graph: http://b-otc.com/stg?source=benkay&dest=thestringpuller | WoT data: http://b-otc.com/vrd?nick=thestringpuller | Rated since: Mon Oct 15 18:46:37 2012
mircea_popescu: http://trilema.com/2014/the-sins-of-the-group-of-posers-behind-the-so-called-bitcoin-foundation/
ozbot: The sins of the group of posers behind the so called “Bitcoin Foundation” pe Trilema - Un blog d
mircea_popescu: now someone dump that on reddit, let's have some fun here.
benkay: http://www.buenosairesherald.com/article/156262/lynchings-a-collective-mental-condition
ozbot: Lynchings: a collective mental condition - BuenosAiresHerald.com
mircea_popescu: benkay either that or a good idea.
benkay: you're a fan of the lynching?
mircea_popescu: i know for a fact that upon lynching a legal system can be built.
mircea_popescu: upon the derpage fashionable in the us today, no legal system can be built.
mircea_popescu: kalifornia at most. and that's really not good enough.
ThickAsThieves: typo: "on the othe rhand"
mircea_popescu: ty
ThickAsThieves: i'm tempted to get picky with your often-missing commas and hyphens, but it reads okay so whatever
mircea_popescu: i have my own (admittedly nutty) comma scheme
jurov: http://www.reddit.com/r/Bitcoin/comments/22jv9k/the_sins_of_the_group_of_posers_behind_the_so/
mircea_popescu: cheers.
Naphex: upboat ^^
ThickAsThieves: Karpeles is a fugitive now?
mircea_popescu: not exactly keeping office hours is he ?
mircea_popescu: same deal as danny.
mircea_popescu: Naphex say what ?
ThickAsThieves: i thought Mark was cooperating n all that jazz
mircea_popescu: why ?
ThickAsThieves: i havent been following lately though
ThickAsThieves: cuz he was appearing in public and filing bankruptcies and finding coins in his couch, etc
mircea_popescu: he did not personally file anything,
mircea_popescu: and w/e, irc appearances in public ? hardly counts.
mircea_popescu: judge ordered him to show up in court if he intends to ask the court to protect him from his creditors.
mircea_popescu: the message there's pretty much this : civil court does not protect fugitives. ancient principle, too.
ThickAsThieves looks up definition of "fugitive"
ThickAsThieves: 4. being of transient interest
mircea_popescu: well it doesn't reduce to car chases :p
ThickAsThieves: hehe
thestringpuller: so why do fat girls love goth music?
thestringpuller: i'm still intrigued by this phenomenon
Naphex: mircea_popescu: upboat for the reddit post ;]
ThickAsThieves: because they are sad
ThickAsThieves: duh
mircea_popescu: a ty.
thestringpuller: sad because guys don't want to touch them?
ThickAsThieves: all the reasons that come with being fat
mircea_popescu: thestringpuller maybe because they resonate with people inconvenienced by reality, being themselves inconvenienced by same ?
mircea_popescu: Naphex you like the only other romanian in here ?
mircea_popescu: o nm, cads sorta counts too
assbot: [MPEX] [S.MPOE] 41208 @ 0.00100189 = 41.2859 BTC [-] {2}
ThickAsThieves: maybe it's too options for the morbidly obese, outward depression, or a carreer in comedy
ThickAsThieves: two
ThickAsThieves: career
mircea_popescu: hardly. name a fat woman that was ever funny.
ThickAsThieves: lol
mircea_popescu: i mean, fat guys, i get it, it can happen.
Naphex: mircea_popescu: might as well be two, chilling around. might as well check this place out. has entertaining discussions from what i figured from chat logs
ThickAsThieves: the girl on SNL isnt that bad
Naphex: :p
ThickAsThieves: roseanne?
ThickAsThieves: that fat girl in the movies now is horribl ethough
ThickAsThieves: but yeah
ThickAsThieves: it's much more common in men
ThickAsThieves: fat guys can be a good time (no homo)
mircea_popescu: which is kinda weird, i always thought fat kinda goes with jolly
ThickAsThieves: i picked up jogging again, all this bitcoining made me buy new clothes
ThickAsThieves: i always do this, gain enough to buy new clothes, then that triggers me losing the weight so those dont fit either
ThickAsThieves: i got a system!
cazalla: hey me too, legs are killing me from doms, had to take a few days break lol
ThickAsThieves: most i ever ran was a half-marathon, which gave me my knee injury
ThickAsThieves: goes to the point of that 50-mile bitcoin runner guy being absolutely delusional or scamming
cazalla: i use to do 10km every morning but then i got fat and lazy when it was no longer a challenge
mircea_popescu: hmm, anyone know andre renard ? i find it quite palatable
mircea_popescu: cazalla so now it's a challenge again, see ? nature fixes all.
bounce: heartbleed, not beedingheart, and a plurality mismatch in the last paragraph or so
mircea_popescu: bounce i was trying for a libertard jab.
mircea_popescu: doesn't work huh
bounce didn't get it. doesn't mean others won't.
mircea_popescu: cause bleeding heart liberal see
bounce: clearly not american enough to appreciate that as a style figure
bounce: brb, there's a tree here as needs hugging
mircea_popescu: well im not either, so... you know. shootin' in the darklo;
ThickAsThieves: so now Texas has a bill to edit IRS to call bitcoin currency?
ThickAsThieves: can we just make it it's own thing?
mircea_popescu: i msta missed that one ?
TomServo: mircea_popescu | hardly. name a fat woman that was ever funny. << Lisa Lampanelli has some good stuff, but it's basically a female version of Don Rickles act
ThickAsThieves: if neither shoe fits, maybe it doesnt where shoes
ThickAsThieves: http://newsbtc.com/2014/04/08/congressman-stockman-seeks-introduce-bill-congress-declaring-bitcoin-currency-property/
Naphex: mircea_popescu: http://newsbtc.com/2014/04/08/congressman-stockman-seeks-introduce-bill-congress-declaring-bitcoin-currency-property/ some congressman wants some bitcoin donations
mircea_popescu: TomServo minus the funny. and btw, rickles was fat his whole life.
ThickAsThieves: you me a coke!
Naphex: beat me to it
ThickAsThieves: owe
mircea_popescu: oh, well. "seeks to introduce you know ?
mircea_popescu: that's the garbage bin of parliaments.
ThickAsThieves: it's written up, seems itll be introduced
mircea_popescu: ThickAsThieves "where shoes" ?!
ThickAsThieves: where what?
mircea_popescu: dude you wanna correct MY commas ?
ThickAsThieves: wear shoes
mircea_popescu: <ThickAsThieves> if neither shoe fits, maybe it doesnt where shoes <<
ThickAsThieves: lol
mircea_popescu: lol
ThickAsThieves: i'm super retarded today
mircea_popescu: have a drink, have a straw.
ThickAsThieves: funny thing is when you said that, i didnt check "where", i checked the comma
ThickAsThieves: :)
mircea_popescu: keonne so what are the details re the right hash but wrong block composition thing ? cause yeah it got me scratching my head.
ThickAsThieves: ugh "Actually, what is needed is to leave it as property but add an exemption for the first $X0,000 of gain, which is what other countries are doing, particularly in Europe. That way it can effectively function as a currency, but investors who go long also get favorable tax treatment."
ThickAsThieves: apply this law to specifically what i want plz
ThickAsThieves: wtf does US care whether people go long on bitcoin
mircea_popescu: actually the us needs people long on bitcoin. many of them.
ThickAsThieves: you mena in the same way that a child needs to be slapped sometimes
mircea_popescu: more like in the way a poor farmer with 13 kids needs one in school.
ThickAsThieves: but encouraging people to go long on it, means it eats away at its own financial system, no?
mircea_popescu: so ?
mircea_popescu: upgrading is the only economically rational form of cannibalism.
ThickAsThieves: well i agree, but i doubt the USG would intentionally do encourage it
mircea_popescu: that system is getting et. best you be doin' most of the etin'.
mircea_popescu: who knows, it's like an earthworm. it sorta slugs away but not as a direct result of any of the ganglions.
ThickAsThieves: i can see that much i guess
mircea_popescu: anyway, just sayin'. who's to know really. in point of fact, you can probably find a *state* senator trying to put in a bill on any given topic.
ThickAsThieves: nonetheless, i doubt any of the intent of these IRS rulings or bills is to get people to go long
mircea_popescu: there's probably some trying to put in bills to make women wear burkas
fluffypony: or give ponies an actual place in office
mircea_popescu: i doubt any of this shit can really HAVe an intent in the first place. people, esp on the forum, keep ascribing intent to large organisational actors
fluffypony: I'd vote for that if I was American
mircea_popescu: if it fucking worked that way...
ThickAsThieves: if there's no intent, wtf is a bill?
mircea_popescu: what's el nino's intent you know ?
mircea_popescu: a bill is a product. of a system. like snail trails.
ThickAsThieves: a bill is built, not shat
ThickAsThieves: more like a web than a trail
mircea_popescu: benkay smart hardworking isn't as bad as you think.
mike_c: the intent of a bill with no chance of passing is PR.
mircea_popescu: ThickAsThieves i'd say the converse. a bill is shat, not anything else.
ThickAsThieves: mike_c i can see that
mircea_popescu: that's solid too, yeah.
fluffypony needs to watch more House of Cards
ThickAsThieves: but i think bitcoin bills have chances still
mircea_popescu: maybe someone should talk to him, i guess. anyone in his district ?
ThickAsThieves: Ukyo might be
ThickAsThieves: :)
benkay: mircea_popescu: more of a comment on myself than the world
benkay: but you know, any of the two are great to have around, right?
ThickAsThieves: i could see a bill being passed as being closer to "shat"
ThickAsThieves: maybe bills are more like cumshots
mircea_popescu: ThickAsThieves i guess i was thinking more about "passed"
mircea_popescu: otherwise, we two could write a bill in that sense, right now. what of it.
ThickAsThieves: well we were speaking of intent
mircea_popescu: a but unrelatedly, as the possibility of intent in large institutional actors.
ThickAsThieves: but i'll write a bill with you anytime baby. I'll hold your commas, and you can diddle my phonetic abortions
mircea_popescu: there's no such thing, a government/agency/etc is quite incapable of intent.
ThickAsThieves: yeah it
mircea_popescu: supreme court peering into "the intent of congress" is perhaps the largest inside joke in the us legal profession.
ThickAsThieves: 's frustrating
fluffypony: ok so I have a question that has nothing to do with bills
mircea_popescu: fluffypony shoot
fluffypony: if I'm looking to raise BTC-denominated funds privately as a company (angel investing, really) and don't want to go the IPO route in order to at least somewhat stave off the general discovery of trade secrets (for want of a better term), is there a generally accepted way of doing so? proposal has been drawn up already, just not really sure how one goes about finding BTC angel investor types
ThickAsThieves: coins, bills, what's the difference?
mircea_popescu: fluffypony one first gets into the wot.
fluffypony: mircea_popescu: already there
mircea_popescu: then that one establishes his credibility, over time.
mircea_popescu: then it just sorta happens by itself.
mircea_popescu: http://www.reddit.com/r/Bitcoin/comments/22jv9k/the_sins_of_the_group_of_posers_behind_the_so/ << lol angry redditoars.
nubbins`: ;;gettrust fluffypony
gribble: WARNING: Currently not authenticated. Trust relationship from user nubbins` to user fluffypony: Level 1: 0, Level 2: 0 via 1 connections. Graph: http://b-otc.com/stg?source=nubbins%60&dest=fluffypony | WoT data: http://b-otc.com/vrd?nick=fluffypony | Rated since: Sat Apr 6 08:20:32 2013
mircea_popescu: im not a psychopath! i'm just an asshole!
mircea_popescu: fluffypony a cool, look at that.
fluffypony: lol
fluffypony: well rg's positive rating on my wot profile still stands
fluffypony: but because everyone's changed their rating of him to a negative
fluffypony: it means the trust graphs to me are all unhappy pandas
fluffypony: thanks a lot, rg
fluffypony: :-P
mircea_popescu: lol not exactly how it works.
benkay: http://www.reddit.com/r/Bitcoin/comments/22ib8o/heartbleed_bitstamp_api_hash_on_key_only/
ozbot: Heartbleed + Bitstamp API (hash on key only) : Bitcoin
mircea_popescu: anyway, stick around, no rush
Naphex: wot schmot, fluffypony , go do your thing make some money, things will happen ;]
mircea_popescu: "so if you were to perform the request over an unsecured network, you could easily intercept and send a different payload without having to generate a new signature"
mircea_popescu: holy hell batman
mircea_popescu: WHO WROTE THIS CODE
fluffypony: Naphex: the company is already making money, just not enough for the next lot of things we're doing :)
mircea_popescu: kakobrekla i hold you personally responsible!
mircea_popescu: why didn't you warn us in time!
mircea_popescu: fluffypony well what company is it ?
fluffypony: mircea_popescu: https://openrigs.com
mircea_popescu: o so you make rigs ? that's a pretty cool idea!
fluffypony: mircea_popescu: well, frames for rigs
fluffypony: but yes, peripheral services for miners is the primary aim of the business
mircea_popescu: yes yes is what i meant, metal rig frames
BCB: mircea_popescu, tells us how you really feel about the BCF
mircea_popescu: BCB no need to, because gavin did the right thing and quit.
mircea_popescu: rage partially averted.
Naphex: mircea_popescu: i'm guessing any decent programmer that implemented the bitstamp API noticed that they do HMAC all wrong, also the guy who posted that, total douche imho :)
mircea_popescu: Naphex bit of an inside joke :p
Naphex: mircea_popescu: guy probably had a short on bitfinex trololol
mircea_popescu: fluffypony so what are you planning to expand into ?
BCB: mircea_popescu, he's still being paid by them
fluffypony: mircea_popescu: I'll gladly send you the proposal if you have a bit of time to take a glance at it, just not too keen on sharing it publicly for all and sundry;)
mircea_popescu: a well then no need.
mircea_popescu: just curious if you wanted to say anything in public.
assbot: [HAVELOCK] [B.SELL] 8 @ 0.04512574 = 0.361 BTC [-] {4}
assbot: [HAVELOCK] [B.MINE] 11 @ 0.03219009 = 0.3541 BTC [+] {2}
mircea_popescu: fluffypony how much did you sell so far ?
mircea_popescu: kinda curious because the appalling situation of mining rig arrangements is a bit of a historical lolpoint
mircea_popescu: if you ever read buttcoin.org etc
fluffypony: mircea_popescu:1500 orders, 3000 frames
fluffypony: since Nov 2013
fluffypony: but we've also had customers that aren't miners
mircea_popescu: o hey. so 3k frames closer to sanity, that's a public service.
fluffypony: OCLHashCat users and the GPGPU/GPUGrid crowd
mircea_popescu: do you build them in your garage like ? or got a little warehouse somewhere ?
nubbins`: my square cc reader showed up in the mail today, woo
fluffypony: got a fabrication facility, and then it's packed and shipped from a picking/qc floor
Aquent: Why you saying Mark Karpels is a fugitive?
mircea_popescu: pretty cool.
mircea_popescu: Aquent because that's what you call people who avoid showing up in court.
Aquent: no you dont
Aquent: thats what you call people who avoid criminal law
Aquent: not civil
nubbins`: ^ he got ya on a technicality
Aquent: anyway, do you have any info where he is?
nubbins`: rumor has it he committed seppuku
fluffypony: !seen MagicalTux
mircea_popescu: i do not.
fluffypony: :-P
Aquent: some article is saying he's gone to taiwan
mircea_popescu: a situation eerily similar to that of a fugitive.
Aquent: is that what you were refering to or....
fluffypony: I bet he'll turn up in a StarBucks somewhere
bounce: went on a hike with that neobee guy?
nubbins`: hike?!
danielpbarron: http://blockscan.com/assetInfo.aspx?q=MEAT
mircea_popescu: they are visiting meta-graceland, for a party hosted by elvis
Aquent: lol
bounce: starbucks crawl, whatever
mircea_popescu: the crispy mille
fluffypony: lol
Aquent: right ok I would kindly and very respectfully ask you to change the wording
Aquent: fugitive creates panic
Aquent: especially considering some other rumours
mircea_popescu: panic about what ?!
ThickAsThieves: lol
ThickAsThieves: Aquent is Mark?
Aquent: its just a suggestion - take it or leave it is of course entirely your choice
benkay: ;;gettrust Aquent
gribble: WARNING: Currently not authenticated. Trust relationship from user benkay to user Aquent: Level 1: 0, Level 2: 0 via 0 connections. Graph: http://b-otc.com/stg?source=benkay&dest=Aquent | WoT data: http://b-otc.com/vrd?nick=Aquent | Rated since: never
mircea_popescu: ThickAsThieves no it's really me. you know how it goes, everyone's me.
ThickAsThieves: it's not easy being you
ThickAsThieves: i should know!
mircea_popescu: lol
benkay: fascinating, danielpbarron
mircea_popescu: just promise me you don't come up with this nutty ritual of eating "my flesh and blood" later on.
fluffypony: Aquent: because all the mtgox bagholders might panic and sell their coins on mtgox?
Duffer1: change the wording to what though? "a situation eerily similar to that of a fugitive" how is that different?
fluffypony: oh...wait...
ThickAsThieves: i'm vegan, so we're good
mircea_popescu: ThickAsThieves you mean we're god.
mircea_popescu: harharhar
ThickAsThieves: :)
BCB: mircea_popescu, how many ipo have you done
ThickAsThieves: kinda a weird question
mircea_popescu: bout a dozen give or take
mircea_popescu: and contrary to whatever you may have heard, ive done in fewer than that.
mircea_popescu: ThickAsThieves better larger number.
mike_c: forum lulz @ neobee: "The financial report that you all have been waiting for is ready. Total revenue from date of incorporation to date: ZERO."
nubbins`: ha
mircea_popescu: mike_c is this also me posting ?
nubbins`: is that you, john wayne?
mike_c: undoubtably
nubbins`: is this me?
mircea_popescu: hello this is you.
mircea_popescu: i have no idea what you are doing.
mircea_popescu: wait dudes! do you realise god spelled backwards is dog, and so the black lab meme and the bitcoin jesus meme just came together in a total and complete
mircea_popescu: MEMPOCALYPSE ?!?!
mircea_popescu: http://www.pbs.org/newshour/updates/massive-gas-cloud-collide-black-hole-get-watch-live/
ozbot: A gas cloud collides with the black hole at the center of our galaxy, and we get to watch | PBS News
nubbins`: apocaleme
nubbins`: please keep all gods on a leash
BCB: mircea_popescu, you have any numbers posted market caps, exits (beisdes the very suspicious satoshi dice)
mircea_popescu: http://trilema.com/2013/the-list-of-discontinued-assets-on-mpex/
ozbot: The list of discontinued assets on MPEx pe Trilema - Un blog de Mircea Popescu.
mircea_popescu: there's that.
mircea_popescu: the rest's on teh exchange.
BCB: mircea_popescu, what was the kluge scam?
mircea_popescu: ;;google trilema kludge the musical
gribble: Bitcoin Lolcows, the musical. Today, Kludge pe Trilema - Un blog de ...: <http://trilema.com/2012/bitcoin-lolcows-the-musical-today-kludge/>; How does one list on MPEx ? pe Trilema - Un blog de Mircea ...: <http://trilema.com/how-does-one-list-on-mpex>; Bitcoin pe Trilema - Un blog de Mircea Popescu.: <http://trilema.com/category/bitcoin/>
mircea_popescu: first one
assbot: [HAVELOCK] [RENT] 100 @ 0.0075 = 0.75 BTC [+]
mircea_popescu: BingoBoingo: benkay: A jog can't do the things Lithium can though <<< actually, afaik it does.
mircea_popescu: oldest and still strongest remedy for all mental issues is exhaustion.
mircea_popescu: BingoBoingo: MP > Scheier << lol
mircea_popescu: asciilifeform https://trilema.com/2014/the-sins-of-the-group-of-posers-behind-the-so-called-bitcoin-foundation/ neh ? works if you want it, just, doesn't default to it. compatibility ftw.
ThickAsThieves: jogging produces cannabinoids
ThickAsThieves: free high!
mircea_popescu: coolabuttoids too
asciilifeform: ahahaa
mircea_popescu: an' for the record, just in case : http://trilema.com/2014/the-sins-of-the-group-of-posers-behind-the-so-called-bitcoin-foundation/#comment-98933
mircea_popescu: 1.) assbot 228202 2.) mircea_popescu 72397
mircea_popescu: so take that!
asciilifeform: mircea_popescu: beautiful piece - but the fact that the phoundation will still be revered and fellated in the world media tomorrow tells us how firmly the buggers are still in control.
Naphex: i heard BlockChains.info CoinJoin has been stealthing some BTC's lately
mircea_popescu: asciilifeform a meta-nsa may or may not exist. a meta-media definitely does exist.
asciilifeform: 'bob the bridge builder' fucks goat after goat, has done a whole herd, but remains listed in the phone book under 'bridge builder'
mircea_popescu: Naphex keonne was sayin' earlier they got it fixed, waiting for him to pop back in cause i wanted to grill him a little
Naphex: i heard it around 'town'
mircea_popescu: asciilifeform and by bob you mean bruce ?
Naphex: messing up their TX tables and getting bitcoins locked in addresses
mircea_popescu: MisterE that bank shutdown/issue seems by and large unrelated to btc in any sense. just part and parcel of larger fin sector chinese woes.
tg2: benkayyyyyyyyyyyyyyyyyyyyyy
tg2: http://bitcoinexpo.ca/
mircea_popescu: midnightmagic actually, it's pretty much all the memory. in 64k chunks, yes, but trivial to map it all out.
asciilifeform: process memory
asciilifeform: (unless poor chumper ran with 'root' privs)
mircea_popescu: all process memory, yes
mircea_popescu: let's not even go into what exactly "process memory" means on windows
tg2: is it only the process space for the webserver?
mircea_popescu: or into how things such as the vidcard can be leveraged for this purpose./
benkay: cavirtex is sponsoring the caconf
benkay: nice
mircea_popescu: tg2 the process memory for the process running the openssl code
mike_c: it is the process space for whatever is handling ssl connections.. so all ur keyz belong to us
benkay: scamhavior universal
asciilifeform: the basics of priv elevation on common os variants is a subject beaten to death elsewhere on the net
asciilifeform: no need to re-tell it here.
tg2: inb4 noobs not using perfect forward
asciilifeform: unless, of course, someone wants
mircea_popescu: exactly. i just include it by reference.
tg2: out of bounds and native c go hand in hand
mircea_popescu: tg2 afaik pfs is so rare you might as well call it exotic
tg2: pfs is pretty easy to set up
tg2: and it has been around for a while
mircea_popescu: nevertheless.
mircea_popescu: nevertheless.
midnightmagic: mircea_popescu: No; that doesn't appear to be accurate. Ask whoever it is who is telling you that to describe how to target specific memory regions, because I'm fairly sure they're wrong.
mircea_popescu just keeps on pasting "nevertheless"
tg2: i'm sure it's adoption will increase in light recent events ;)
tg2: benkay, what was your site
tg2: candiansomething?
mircea_popescu: midnightmagic "There is no total of 64 kilobytes limitation to the attack, that limit applies only to a single heartbeat. Attacker can either keep reconnecting or during an active TLS connection keep requesting arbitrary number of 64 kilobyte chunks of memory content until enough secrets are revealed."
mircea_popescu: http://heartbleed.com/
ozbot: Heartbleed Bug
mircea_popescu: some of teh doods that reported it.
mircea_popescu: tg2 yeah. or maybe it won't.
midnightmagic: mircea_popescu: That is from the heartbleed site. It implies more information is available, but it's information which is sitting in that specific area. It's a busy area, but it's just that specific area.
bounce: and named it, and registered a domain for the name
midnightmagic: It's an abitrary number of 64k chunks, but it's not arbitrary *locations*.
mircea_popescu: midnightmagic this, ~as far as we know~ is probably true.
mircea_popescu: nevertheless.
bounce: if there's multiple code paths you can get there it gets more interesting still
Naphex: gn o/
mircea_popescu: ^
midnightmagic: mircea_popescu: Well the wording in that section is slippery. My current understanding is to vary the information requires being able to manipulate program execution in other areas of the program.
mircea_popescu: at this stage i don't see how any negative statements can really be made.
midnightmagic: The attack is just a heartbeat with a size modifier different; it's an overrun read-only flaw. Unless the attack is expanded to something else, there is no targetting. It's "whatever's sitting 64k behind the heap."
mircea_popescu: but since you can in principle repeat it indefinitely it's in principle anything.
asciilifeform: i specifically mentioned 'openssl' in 'don't blame the mice.' well, nobody want to read a crackpot blog, they will have to learn the lesson on their own arse.
mircea_popescu: asciilifeform you know you're in the footnotes for that reason :)
asciilifeform: and when people realize the actual root of the problem (as eventually must) they will piss themselves.
fluffypony: before I patched our local server this morning (not behind CloudFlare as CloudFlare don't have a node in South Africa) I played around with it
fluffypony: it bleeds tons of cookies from the httpd's memory space
fluffypony: some of them are broken, but enough weren't
mircea_popescu: fluffypony mike_c was liveircing wowmoments with it earlier too
fluffypony: mircea_popescu: I still maintain that the damage from something like this could be reduced by mitigating session hijacking
mircea_popescu: asciilifeform: stumbled across it by accident. << haha mike_c you be famous nao.
mircea_popescu: fluffypony there's many ways to mitigate a known attack, by the very definition of "known".
fluffypony: but locking a session to an IP is also fraught with issues, so that's not a good technique
mircea_popescu: the point here is that this attack spent most of the past two years unknown.
fluffypony: yeah I'm not talking about mitigating the heartbleed attack
fluffypony: just mitigating session hijacking
fluffypony: if POST/GET vars bleed that's one thing
Naphex: mircea_popescu: you can basically sniff whole SSL trafic with Heartbleed.
bounce recalls an irc discussion going on 15 years back, where someone speculated that a nsa backdoor might look like "int foo;" instead of "long foo;". and you just can't tell. well, here we have such an innocuous thingy. and you never can tell. but spectacular, that the effects certainly are.
mircea_popescu: Naphex all the poor souls arguing with me over tor's safety a few months ago. awww.
Naphex: just write some code and point it
asciilifeform: ;;google underhanded c contest
gribble: The Underhanded C Contest: <http://underhanded.xcott.com/>; The Underhanded C Contest » This Year: <http://underhanded.xcott.com/?page_id=5>; The Underhanded C Contest » About: <http://underhanded.xcott.com/?page_id=2>
mircea_popescu: bounce indeed.
mircea_popescu: im still trying to discern how they got it in.
fluffypony: on that HIGH note, it's bed time here, well as close to bed time as 1:15am is when the wife is fast asleep next to you
fluffypony: cheers all
mircea_popescu: later.
Naphex: imo, definitely a planted bug.
mircea_popescu: no question about it.
bounce hasn't checked the repo, if any. probably should.
mircea_popescu: question is who were the idiots and who were the patsies.
asciilifeform: still trying to discern how they got it in << this is by far the least surprising part. next, what, ask how the roaches got in the kitchen?
Naphex: i got screwed cause i had to compile from source to get ECDH.
mircea_popescu: bounce maybe you're the last guy on the internet that hasn't made copies.
bounce: there was also that = vs == in a linux syscall a while back
mircea_popescu: asciilifeform yes. i'm exactly that sorta guy.
Naphex: so you go compile from source to get ECDH, to avoid stupid encryption restrictions
Naphex: then you get sniffed for all you have
Naphex: i'm guessing that was the logic behind it
bounce: probably not, but last in this channel, possibly
mircea_popescu: anyway, this suddenly makes tor significantly more useful. at least for a few weeks.
Naphex: until 12.00 GMT+2 mostly everything was vulnerable, and as the sploit went public everyone started sniffing everything.
Naphex: atleast that went right.
bounce: when did they move to git from cvs?
mircea_popescu: 2012 ?
mircea_popescu: whoa.
mircea_popescu: actually... they moved just with 1.0.1 didn't they ?
asciilifeform: herr mole couldn't be bothered to learn cvs.
asciilifeform: so, to be kind to him, git, which he was accustomed to.
mircea_popescu: this is fucking it is it ?!
mircea_popescu: holy cow no way.
bounce: apparently 2012-12-30 last cvs entries says timeline
mircea_popescu: this is promising. ty chan, and let it become part of the permanent record : more has been ruined by convenience than by any other sin.
asciilifeform: like germans who carried captured russian 'limonka' grenades by their rings.
asciilifeform: (german grenade had a convenient, almost identical ring that wasn't attached to the pin)
asciilifeform: very convenient.
Naphex: https://web.archive.org/web/20130202155024/http://www.openssl.org/source/repos.html - move to git
ozbot: OpenSSL: Source, Repository
Naphex: https://web.archive.org/web/20130102200332/http://www.openssl.org/source/repos.html - still cvs
mircea_popescu: talk about a product that owns its market. the french f1
ozbot: OpenSSL: Source, Repository
mircea_popescu: well this has been quite the day hasn't it.
bounce: bug introduced in 201112 says heartbleed.com, so in cvs
mircea_popescu: bounce they may not be exactly right. this will take a lot of work.
Naphex: http://cvs.openssl.org/timeline?d=30&e=2012-03-14&c=2&px=&s=1&dt=1&x=1&m=1&w=0 - Timeline
ozbot: OpenSSL: CVS Web Interface
Naphex: for the bug
Naphex: the checkins for 14 Marhc
Naphex: march even
Naphex: http://cvs.openssl.org/chngview?cn=22271 - and this is the changeview
ozbot: OpenSSL: CVS Web Interface
bounce: I got http://cvs.openssl.org/chngview?cn=21898
Naphex: pretty sneaky boundary check bug ;o
bounce: that code looks familiar when comparing the attached patch to http://lists.freebsd.org/pipermail/freebsd-security/2014-April/007405.html
bounce: the guy's an academic with a bunch of publications and two rfcs to his name. time to send in some tin foil hats to check all that, too.
Naphex: who, steve?:)
assbot: [HAVELOCK] [RENT] 35 @ 0.0075 = 0.2625 BTC [+]
dexX7: http://i.imgur.com/5PHeaHu.png << this is what a vulnerable webwallet returns