brrt
@brrt@sh.itjust.works
- Comment on We are so cooked 2 days ago:
Ah cmon now, stop spreading conspiracy theories. They probably just couldn’t prove citizenship and were deported.
- Comment on The Switch 2 Nintendo Direct Will Be 60 Minutes Long, Nintendo Confirms 2 days ago:
Why is this commentworthy?
- Comment on The fediverse has a bullying problem 5 days ago:
I appreciate your reply and understand your perspective. I still don’t fully agree, it might be a matter of the point of view from which you look at this issue. But I think in essence we are on the same page.
Thanks for not abandoning the discussion!
- Comment on The fediverse has a bullying problem 5 days ago:
I’m genuinely curious what you would call this and what distinguishes it from a vulnerability.
Leaving aside responsibility, the system could have been set up in a way that wouldn’t have exposed user data but wasn’t. This is now fixed and user data isn’t exposed via this method any longer. What is the right word for what it was at the moment this flaw was discovered?
- Comment on The fediverse has a bullying problem 6 days ago:
I’d argue that it is still a vulnerability in this scenario. But point taken, it’s always important to find the root cause and not just put blame on the person who stumbled into the trap.
- Comment on The fediverse has a bullying problem 6 days ago:
It sounds like she’s very upset that Dansup made it explicit that he was fixing this issue, thinking that even exposing it in commit comments (which as we know get way more readership than blog posts) would mean people knew about it, and the less people that knew about it, the safer her partner’s information would be since she is continuing to do this apparently. You will not be surprised to discover that I think that type of thinking is also a mistake.
I agreed with you at first because from your description it sounded like she was saying security through obscurity was a good thing. But that’s not the case.
What she’s saying in the blog post is that this a 0-day and should be handled according to the best practices for 0-day disclosure.
You have to decide if you want to
- publish the findings before the fix -> more people will know and exploit the vulnerability but users might be aware and may or may not be able to mitigate sharing even more
- publish the findings after the fix -> the opposite
I don’t pretend to know enough to judge which option is the best. But I can’t fault the blog author for pointing out that Dansup didn’t follow best practices.
- Comment on X88B88 is the word "voodoo" with a reflection. 1 week ago:
The reflection of d would not make a B. The reflection of D would.
- Comment on Brother denies using firmware updates to brick printers with third-party ink 4 weeks ago:
Where were you when I was being called a pedant? 😅
- Comment on 8BitDo Has Announced The Successor To Its Ultimate Wireless Controller | Time Extension 4 weeks ago:
Strange that all their controllers work wired and wireless but they have specific ones for Xbox. Is that a license/driver issue?
- Comment on Vo1d malware botnet grows to 1.6 million Android TVs worldwide 4 weeks ago:
Why are they even connected to your router in the first place?
- Comment on OLED displays with up to five times better lifespan may be on their way sooner than you think, thanks to a manufacturing breakthrough 3 months ago:
Oh sure, totally depends on the circumstances.
I’d say wait for a few months after the new ones were released. Usually prices drop pretty quickly and then it might be a way better deal. I bought an LG C1 about 8 months after release and it was around 40% cheaper by that point.
- Comment on OLED displays with up to five times better lifespan may be on their way sooner than you think, thanks to a manufacturing breakthrough 3 months ago:
Wouldn’t it have to be 5x cheaper to make up for the lost lifespan? (If you’d use it until it dies)
- Comment on Ghost of Tsushima - I've heard it's a nice game, but it overstays its welcome. Do you agree? 4 months ago:
I 100%ed it and had a blast. But you don’t have to 100% a game if you don’t have fun anymore. You can easily just finish up the story and be happy with what you got.
I think this is more a fault on the person playing the game than the game itself. If it was any less expansive then I’m sure there would be people wishing there was more to do in the game they like.
- Comment on Whenever I see someone walking around in clothes with big, visible branding, I can’t help but think they paid a fortune to wear an advertisement. 5 months ago:
Damn, I think I just remembered one too. There’s a certain Tool song…
- Comment on Whenever I see someone walking around in clothes with big, visible branding, I can’t help but think they paid a fortune to wear an advertisement. 5 months ago:
You’re probably talking about pop/rap? Because I’m pretty sure that there isn’t a single song in my music library that mentions products/brands.
- Comment on Japanese firm demos tech that makes any object a capacitive touch surface — stuffed cat on display, works with wood, ceramic, and plasterboard, too 5 months ago:
You know, I have one simple request. And that is to have mice with frickin’ laser beams attached to their crotches!
- Comment on Amazon will “ramp up” Prime Video ads in 2025 5 months ago:
Amazon as a company sucks enough on its own. No need to make shit up.
See? You can’t do it.
I can. I can even name multiple really good shows. But you don’t want to hear them. You want to fabricate a narrative.
- Comment on Starfield's first DLC is one of the worst Bethesda and DLCs of all time 5 months ago:
Glad I didn’t buy the DLC and decided I’ll wait for some sort of definitive edition to play Starfield again. I hope by that point it will be a better overall game and have enough new things to make it worth the time.