* Posts by teknopaul

1574 publicly visible posts • joined 11 Mar 2011

Zig quits GitHub, says Microsoft's AI obsession has ruined the service

teknopaul

Actions was bad idea

IMHO Actions is a bad idea it the first place. Apart from being badly implemented.

It's tempting, because 2fa and general Microsoft lockin techniques make github painful to operate from outside.

But in the end imho you want to run build locally, it's not really something that you need to scale randomly to something you can't handle.

Security is an f-ing nightmare if you try CI/CD, so you might as weel do your builds locally too.

Microsoft exec finds AI cynicism 'mindblowing'

teknopaul

Re: Reality is an illusion ...

Hot out of the bit barns this month Copilot now convincingly tell you about it things are impossible when they are really really not.

Every month there is new thing AI does scandalously and irresponsibly wrong.

Hundreds of millions of business PCs are still on Windows 10 as D-Day nears

teknopaul

Re: OB Linus

Can you imagine having 550 million unhappy customers!

I mean. Out of the context of being employed by Microsoft. ;o)

The company I work for has essentially 100% similarly unhappy customers.

None of them want to upgrade to our 2.0.

They have working systems. The vast majority not connected to the Internet. And they want their code on these systems to continue working because their business has not changed and these forced upgrades are simply considered a rip off. Security, being touted as the reason the "have to" upgrade.

Despite happily running other systems of ours, sometimes 30 years past the managlement announcing official end of life.

They are right. Forced upgrades are a rip off. I wish out company would not do it. We have to look people we work with in the face at meetings while management tell this reoccurring lie. Our version 2.0s are as unwelcome as a new windows version on a working PC.

I think people should sue. It's a standard lie, but still it's fraud.

It not that they don't want to pay. They don't want to pay for 2.0 with "AI" support and 20gb of bundled bullshitware they do not need and only causes them headaches while hardware long out lasts the support contract and is still easily replacable with something faster and equivalent for their needs. .

Capitalism is failing us, because honesty is not a legal requirement.

Red Hat breach escalates as criminals collaborate on 'multi-terabyte' extortion plot

teknopaul

Re: :Sigh:

Who said it was cloud?

"The incident refers to Red Hat's self-managed instance of GitLab Community Edition... Customers who deploy free, self-managed instances on their own infrastructure"

Ie not in the cloud. It not like Redhat even wrote gitlab.

If you put up an apache with insecure CGI I can't see that Apache org would be paying you ransoms.

Tbh the extortionists are likely to get nothing from this one. Certainly not from ibm who it seems lost nothing.

Some consults look red in the face.

Gitlab/redhat customers who put shit on the Internet probably didn't care too much about the markdown text documents specified. No?

If they did, the bad guys wouldn't be trying to make a media drama out of it. They would be trying to extort the data owners.

GDPR has nothing to do with this. Redhat are neither data owner nor broker. They provided 3rd party os software to someone who used it insecurely.

US puts $10M bounty on three Russians accused of attacking critical infrastructure

teknopaul

Re: "Rewards for Justice" Program

Trying to get money out of Trumps govt for grassing on a Putin ally is not going to be fun.

I know for a fact that US govt prevents reporting on Russian cyber attacks publicly. Who you gonna turn to of they don't pay up?

Canonical dusts off TPM encryption for Ubuntu 25.10

teknopaul

News I'm waiting for

News I'm waiting for is "Linux de makes something really easy to hack at"

Eg drivers for hardware I have.

I'm never happy that something in my own pc got more secure or that the information I'm publishing on the Internet is now harder to get at.

Cybercrooks attached Raspberry Pi to bank network and drained ATM cash

teknopaul

Banks have zero security

I know how that's done...

X25 links have a protocol that works like this

Fromaccount\n

Toaccount\n

Amount\n

Datetoday\n

Literally that. The protocol has a name I thinks it's edi.

No security, no check sums.

No support for \r\n, so that stops Windows hackers ;o)

But literally, you can clamp crocodile clips on wires outside banks and shovel cash around.

I know people who have done it.

Wasp nest at US nuclear site tests ten times over safe radiation limit

teknopaul

Truth

Battlefield being Aiken, South Carolina

Microsoft is about to retire default outbound access for VMs in Azure

teknopaul

Re: This will shake out a few of the chancers ...

All PCs and phones come with outbound Internet working a d the world keeps on spinning.

Cloud operators blocking the cloud access by default seems preset nuts.

Obviously people will have to enable it in everything that uses an Api of any sorts.

"Don't break userland"

They could ask and announce it over one year for example.

Secbods consider access denied to be fully functioning security.

Businesses consider sales and operating to be their security.

Microsoft's on-prem Exchange and Skype for Business Server go subscription-only

teknopaul

Subscription only

All this is fine while your customers are afloat and growing.

But when times are hard. Forced payments like this will send people out of business. They won't be able to tick over and not invest in the hard times. They will be more likely to shut down. You cannot exist without email these days.

It's starting to happen in the US. These bastards obviously don't care. But they might after it affects their bottom line and after the human impact is un recoverable.

Adobe behaviour is more significant to small agencies. But there are eplent of struggling SMEs at the moment. Microsoft _should_ care about keeping them afloat

Deutsche Bahn train hits 405 km/h without falling to bits

teknopaul

Re: F0rk high speed rail

Space has both. Fast intercity and slow trams inside the city, and lots in-between.

At least while we hold of the sabotage by the Trump/Putin alliance

teknopaul

Re: 400kph is hilarious compared to internet traffic

I understand this is the register but there are other reasons to travel that the reset button.

I shall be travelling by train to meet my mum coming out of hospital.

Terrible tales of opsec oversights: How cybercrooks get themselves caught

teknopaul

Ulbricht

Trump's pardon of Ulbricht is just nuts. He was found guilty of attempting to murder people.

I don't believe in life in prisonment ever. But that's for professional parole agents to work out.

Trump seems to have done it simply because he likes evil. He sides with the bad guy because he is one. And has no shame.

Peep show: 40K IoT cameras worldwide stream secrets to anyone with a browser

teknopaul

Re: It all wears rather thin

The idea of a camera, is often to make public, a place that's otherwise dark & dingy where criminals can lurk.

E.g they used to put mirrors on atms. Now they put cameras.

The idea that cameras are necessarily "insecure" because people generally can use them, is debatable.

I think publically accesible camera of public spaces _should_ be open to public viewing, and if they were, security in public spaces & scrutiny of security forces would be improved.

Security bods often mixup irl and oti security. It bugs me. They get paid to winge.

Does more stronger security forces make you more secure. Or do more eyes?

Forked-off Xlibre tells Wayland display protocol to DEI in a fire

teknopaul

Re: Code talks

Being anti dei is simply Racism.

iLike "all lives matter" it denies there is an issue to resolve.

And there is.

Call it out as racism. It affects you too, unless you haven't got any friends on the butt end of it.

AI's the end of the Shell as we know it and I feel fine … but insecure

teknopaul

a tool with such a dizzying array of options you do actually need an AI to get across them.*

Nooo, you need a simple bash script. Quite literally that is what the cli is good for.

Bash is so poorly understood it pains me.

What you might find aí usefulfor is working out what the best compression settings might be for a given video, reducing the trial and error and retry loop.

I know/hope it was sarcasm, but still.

Attack on LexisNexis Risk Solutions exposes data on 300k +

teknopaul

3rd party soft dev platform

Gotta be github no?

Recent ou mished breaches in github actions perhaps?

I don't like gh actions. Running up a Linux build box is not a hard task. It would be hard to build an in house system less flaky, less safe or that required less maintenance hours by your devs than github.

Actions is great for open source projects that want to support Apple but don't want to pay 1000 buck for the ability to give apple stuff for free.

I'll bet this problem was doing CI/CD on a github or similar. Prod data in the build seems like it's already got security architecture problems. Whatever the "dev platform."

AI can't replace devs until it understands office politics

teknopaul

Re: This is what I keep saying

Dry.

If that's what you are doing: all good advice is to stop.

Oracle's $40B Nvidia hardware haul may be too hot for OpenAI's Abilene, Texas DC to handle

teknopaul

Re: What?

I really hope that ai eats itself. Throwing more data from already aí generated Internet may make this big beasts get worse. And Deepseek has shown a bit if intelligence goes a long way.

USA immediately banned the power cheap option because of national security, ahem.

But if more intelligence works, even in the medium term. All this spend might kill a few of the big boys.

Not only do they have to pay off the investment, but they have to pay a huge power bill and persuade people output is better than "intelligent AI", when it's starting to look like it really isn't.

Clever language, doesn't make up for brains.

If Google is forced to give up Chrome, what happens next?

teknopaul

What do we think is the real reason?

Interesting takes some far.

But what do people think the real reason Trump and the AG are interested in Chromium for?

Trump is not thinking "hmm too much power in the hands of the few".

Trump has no problem with monopoly power abuse.

A search engine that no longer finds facts or figures and answers with weighted AI generated responses that make no pretence to be based on fact, is a powerful tool n the hands of the post truth government.

I would happily pay to not have that on my desktop.

What else would Trump be doing here?

Trump's corruption is no longer conspiracy theory.

teknopaul

Re: This is madness

If I steal your bike the police on not guilty of letting me do it.

teknopaul

Re: This is madness

Re "Regulators can't act on abuses that haven't happened yet "

Yes the bloody can! Sensible anti-trust regulation can and should be simple laws.

People act like it's only illegal if you get caught and us companies act like there is no right or wrong in business. Just the outcome of court cases. This os wrong in so many senses.

Regulators can and should make sane laws and punish to prevent them being broken in the future. Companies are not humans, you can kill them as punishment. And prevent wrong doing starting new ones.

USA is very very corrupt now. But don't pretend to yourself no other world is possible.

Vector search is the new black for enterprise databases

teknopaul

LLM for mangle ment twaddle

Had anyone invented a management twaddle LLM yet?

What I'm lookin for is something that can automatically answer

Have you finished yet?

With

"Coding phase is close to termination. We started the métrics gathering to assess completenes and help triage the requirements signoffs. Obviously we need to prioritise reliability and redundancy technical workflows...."

And about 500 words more.

Different each time they ask.

I dont have time to write that shit.

Input from me being simply: 1 or 0

NTT creates a drone that triggers and catches lightning – then keeps flying

teknopaul

Re: Captain Shakespeare

Just read the book, never knew they made a film. I imagine one of the last they will make of Niel Gaiman's works.

teknopaul

Re: Why?

It's portable and goes 300 m up.

America's cyber defenses are being dismantled from the inside

teknopaul

Re: Two things:

I have faith that he is wrong and will be proven to be wrong at every turn.

He has wasted huge amounts of effort and 10 trillion dollars on tariffs. In 3 months.

Al his steps will be missteps. All his effort will be in denying, blaming others, vindictivness, and recovering from his own gaffs.

He won't have time to hurt anyone but his own.

That is exactly what happened last time. This time it will be more exaggerated.

Pillow guy lost millions. Elon Musk has lost hundreds of billions.

That will continue.

Just take one step back and give him a pistol.

teknopaul

Re: Not buying anything from or via the US

In the UK it's hard.

Soon you won't be able to go to the doctors without buying from us companies.

Fight that.

Oracle Cloud says it's not true someone broke into its login servers and stole data

teknopaul

Re: Encrypted passwords?

But only if you can detect success. If you hash an md5 twice and the input is binary, or noone knows you hash twice (or 12348 times)? Md5 is as good as a barrel shift.

It bugs me that people think any use of xxx algo is "insecure", because Ive have had to rewrite chksums that use sha1: it was impossible to explain to security bods and managers what a chksum is.

teknopaul

Re: Encrypted passwords?

I read files available meaning salts are available with the data. So it's just a dictionary attack that s needed. Requires compute, but maybe much.

Ukraine's techies a 'pillar of support' for national economy after Russian invasion

teknopaul

Re: Legal or illegal?

Dark times.

Techies there are doing a sterling job: I wish I could say my contribution to the economy was as important.

teknopaul

Re: Legal or illegal?

Citation needed. I work with Ukrainian techies writing code for all the e wallet and financial transfers of one of our big customers.

We were on conf calls when bombs were dropping.

Nice folk, top tech, intelligent, well spoken fluent English.

Everyone worls from home since covid, natch.

All reported business is legal business, you cant count the black market so your presumptions are slightly rude to a people fighting for their lives, their independence, a hope of joining Europe economic union, and being treated decently by neighbours.

They are much better at using tech and brains for war, than their invaders, which are just throwing scared kids with guns at them. That has been widely reported and I believe it to be true.

Eight charged with corruption, money laundering, in case linked to Huawei lobbying

teknopaul

Re: Pot meet kettle

And the loyalists have it 6 to 3.

Off with his head.

teknopaul

Re: Pot meet kettle

Oh and don't forget the litteral king. Who is above the laws and signs all new ones. Owns personally one 3rd of the land and pay no inheritance tax.

Beheaded his unfaithful wife and ostracised his bastard son because he married a black girl.

That is what the UK looks like from the outside. And brits think thats just how it is and wave flags when ever he passes.

Outside the UK that is called systemic corruption by a family, that for 1000 years, has never had to face a court of law.

Brits call it simply "history" ;)

teknopaul

Pot meet kettle

I don't think you realise how corrupt the West is and UK in particular. Nigel Farage has a private company for a party. Tories rinsed billions, openly. Torys peers swanning a round in stolen yachts. Met police have done murders. UK banks run massive laundering operations for the world...

All normalised and never called " corruption " by the press which is told what to say and when.

This is all taken for granted in the UK that they will get away with it. China has the death penalty goes for guys at the top with these pseudo death penalty things where they don't kill you but they jail you without communication to the outside world for a year.

Samsung trumps USA's tariffs by making displays in Mexico, and elsewhere if needed

teknopaul

Re: Make the tea?

Samsung own all audio tech companies these days. It's as hard to avoid Samsung as it it to Boycott Nestle for the baby killing thing.

teknopaul

Re: Make the tea?

Be great if my Samsung TV could tell my Samsung washing machine that now is not the time to play 60 seconds of screeching folk music to celebrate finishing a load.

Anyone know where the speaker is located for a fortunate accident with hot glue?

Is it too much to ask that appliances deaf and dumb.

Ripple NPM supply chain attack hunts for private keys

teknopaul

Just sayin

Is it me or is it often Npm caught in supply chain attacks?

Rarely Debian.

Apple makes the list...

shareware.com winrar.exe releases seemed to fair better.

<snark/>

teknopaul

Redacted

You are not allowed to sell your own projects on el reg (understandably) but this problem bagged me years so I wrote my own nom, simpler better And safer.

Can't tell you anything about it,but I cane be smug.

How to stay on Windows 10 instead of installing Linux

teknopaul

Exclude Ubuntu from that.

Those buggers force major updates. And deliberately make life difficult if you don't.

It's the worst nagware.

Debian is easy Ubuntu make it hard and every 2 years force you to risk loosing everything, and every 4 years you do loose some stuff.

teknopaul

Top tip

You dont need to scrap devices because they have no security updates.

Just don't put your bank details there. There are plenty of low risk use cases for devices.

Procter & Gamble study finds AI could help make Pringles tastier, spice up Old Spice, sharpen Gillette

teknopaul

Re: Placebo benefits

Incautious meaning put their code in github.

teknopaul

Re: It could...

These are the people who make razors that deliberately go blunt quick so you have to buy a new one.

They are not looking to us AI to make the world a better place.

Americans set to pay more on all imports: Trump activates blanket tariffs

teknopaul

Re: Trump is easy to model

Millenials are getting shafted no matter what. Even if this crazy plan make money (which it won't) none is getting redistruted differently.

There is no plan to tax the rich or make corps pay higher wages.

This is solely because evil comes as standard in the US

Microsoft ducks politico questions on Copilot bundling and lack of consent

teknopaul

Aí features

Customers have become accustomed to excel randomly interpreting data incorrectly, and now expect that across all our products.

There are 10,000 reasons to doubt Oracle Cloud's security breach denial

teknopaul

Re: The problem is the actual victims here aren't Oracle

It took me a while to get off that DNS service too.

I block all @oracle.com emails.

Thoughts and prayers to the poor sods forced into Oracle's cloud.

Apple hallucinated Siri's future AI features, lawsuit claims

teknopaul

Re: Given this....

If its any consolation: Microsoft has taken to pop up adds in it OS about its AI software offerings too.

Microsoft tastes the unexpected consequences of tariffs on time

teknopaul

Aí will benefit everyone

Ai is very good at translating between languages.

UK has a huge advantage from speaking English and AI will undoubtedly _reduce_ that advantage.

Human written code is written in more or less English. So are code docs, blogs and manuals. Aí written code does not require native English input. Understanding and correcting /debugging aí written code is easier than writing it.

Not sure the English hemegomony it it will last much longer. Especially if the Chinese are forced to develop on their own.

NASA rewrites Moon mission goals in quiet DEI retreat

teknopaul

Make America The 50's again.:(

Everyone should watch the film Hidden figures

101 fun things to do with a locked Kindle e-reader

teknopaul

I am that important

Old Bill have phoned me up to say my private phone conversations will be used in court for a crime I was nothing to do with

teknopaul

Amazon already has a history of burning e-books.

I have copies of every ebook I have backed up on and off site like all my other data.

It is important now, and will become more so given US book burning policy.

Having your own copy is equivalent to keeping books in print for future generations.