• 0 Posts
  • 41 Comments
Joined 2 years ago
cake
Cake day: July 14th, 2023

help-circle















  • Lots of folks in the US don’t really have an understanding of religion as a separate thing from nationality.

    They think of “being Christian” as “being like the other white people in my neighborhood growing up”. End of thought.

    So drinking beer, watching football, and hating taxes are all “Christian things” to them.

    So when they say “Christians — and only Christians — died for this country”, they’re 100% correct, according to their understanding of “being a Christian”. Cuz to them it basically just means “being an American”.

    There’s really no way to convince them otherwise. It’s like telling someone that Velcro is really called “hook and loop”.


  • Depends on the use case, and what you mean by “external dependencies”.

    Black box remote services you’re invoking over HTTP, or source files that are available for inspection and locked by their hash so their contents don’t change without explicit approval?

    Cuz I’ll almost entirely agree on the former, but almost entirely disagree on the latter.

    In my career:

    I’ve seen multiple vulns introduced by devs hand-writing code that doesn’t follow best practices while there were packages available that did.

    I have not yet seen a supply chain attack make it to prod.

    The nice thing about supply chain attacks though: they get publicly disclosed. Your intern’s custom OAuth endpoint that leaks the secret? Nobody’s gonna tell you about that.


  • For thousands of years, we’ve looked at the apparent effort behind a communication as a decent proxy for its trustworthiness (as well as other things like signals for social status and interpersonal respect).

    We’re hacking very fundamental aspects of what was basically our first and most important invention. I think it’s a big mistake to blame user error.

    We’re not rational automatons. That’s just a fiction that the wealthy use to accumulate power. “A rational person wouldn’t get exploited by us, therefore our exploitation is beyond reproach.”