* Posts by IamAProton

152 publicly visible posts • joined 17 Apr 2021

Page:

Death to one-time text codes: Passkeys are the new hotness in MFA

IamAProton

Re: One dot login

I got sick of email 'leaks' and gov. offices building up their own personal address book joining together phones and emails so i signed up with proton mail and i get 10 alias that i can rotate once leaked or i simply get tired of it. Not really throw-away aliases since i use them to register here and there too, but it's a minor hassle to uodate few profiles ( or just delete/abandon) if an email address is compromised

Publishers say no to AI scrapers, block bots at server level

IamAProton

Re: Block behaviors

Need to keep in mind the recources/capabilities of the "baddies", with a bunch of source IPs they can avoid rate limitin; need to have a centralized blacklist so once a ip source is certainly related to a bot it can be blacklisted by everybody.

It's going to take time, but "honeypot pages" and tight rate limits (a human will not load more than few pages in a minute) should do the trick.

Seven years later, Airbus is still trying to kick its Microsoft habit

IamAProton

Re: 20 million cells?!

If they'll ever try to export that data into a database, without typing it by hand of course, they will realize how much of that data it's actually 'gone'

Microsoft's fix for slow File Explorer: load it before you need it

IamAProton

reminds me of Windows prefetch

i think it started with Win7 (perhaps Vista)

OS was preloading all the most used applications at startup, so the total waiting time was the same, but you were experiencing it at every system reboot, even if you just need to quickly check a text file.

MAde a littel sense if you go for a coffee every time while the computer boots.

Devs gripe about having AI shoved down their throats

IamAProton

I wouldn't mind having to use "AI" coding to some extent: I do use copilot as search engine for some stuff (with often poor results) and for what it is designed for: a draft generator (with much better results)

Vibe coding? no way, but i'd be OK with it if only for software that DOES NOT require 24/7 support because fixing shit code ain't fun.

Likely here AI is not a thing :)

Outdated Samsung handset linked to fatal emergency call failure in Australia

IamAProton

Similar VoLTE mess in Taiwan

Not sure about the emergency services, but with the 2g AND 3g shutdown, only Volte calls are left. Unfortunately the devices that are allowed to make phone calls are cherry picked by the mobile operators, so even new phones might not work if you are traveling there.

Not sure if it's entirely based on commercial agreements or it depends on real technical issues, but VoIP (wich is what colte is) has been areound for quite a while and it's appalling that a brand new device from a major manufacturer doesn't work when you cross the border but a 20 years old Nokia is dependable pretty much everywhere you go

Zoomers are officially worse at passwords than 80-year-olds

IamAProton

weird....

In Italy the 11th most common password (used 12798 times) is "Tettine4" (literally, "little b00bs 4")

That's cute, but not really plausible IMHO.

Fortinet finally cops to critical make-me-admin bug under active exploitation

IamAProton

exactly... we ahve a couple of FortiThings and the "FortiThis & FortiThat" way to name FortiEverything gets FortiOld FortiQuickly

Firefox adds AI Window, users want AI wall to keep it out

IamAProton

Am I the only one

Not seeing any "AI" in FF?

Got the latest version but i can't open any AI even if I wanted to.(not that i care to do it anyways)

UK asks cyberspies to probe whether Chinese buses can be switched off remotely

IamAProton

Re: Compliance

It's actually rather simple, do not accept anything that must be 'always connected' and apply software updates on your schedule.

The automatic update everything is a curse, mostly because software updates are not limited to bugfixes but more often than not they add half-baked non-requested changes or "features"

You'll never guess what the most common passwords are. Oh, wait, yes you will

IamAProton

Password fatigue

every **** thing requires logins and complicated passwords and password managers do not really help becasue, if you don't have the password manager handy, you are out of luck.

I have mixed feelings for 2FA with OTP that require an internet connection with the phone.

Sometimes theoretial higher security turns into actual lower security. Force me to write a long passphrase and let me be, the requirement for symbols, numbers etc. is often the reason users picks asdfgh123! as a secure password.

UK agri dept spent hundreds of millions upgrading to Windows 10 – just in time for end of support

IamAProton

Re: Ha, ha, ha

actually they are suporting it already (LTSC versions)

Some applications are available only on NON-LTSC versions, but they can make a tool to remove those and make the LTSC security updates available to any win 10 that has been "converted" to LTSC

Europe preps Digital Euro to enter circulation in 2029

IamAProton

Re: "the bloc needs a digital version of the Euro"

You never use cash and complain about " new Big Brother scheme"? uhm

NHS left with sick PCs as suppliers resist Windows 11 treatment

IamAProton

LTSC

WHY those devices aren't running the LTSB/LTSC version of Windows 10 which has security updates up to 2029 (possibly later) and it's actually the most appropriate version for a work environment anyways?

This security hole can crash billions of Chromium browsers, and Google hasn't patched it yet

IamAProton

That's actually counting Vivaldi

because of poorly coded websites Vivaldi since a while identifies as Chrome in the User Agent string

EY exposes 4TB+ SQL database to open internet for who knows how long

IamAProton

And that's why encrypted backups are good, you have an extra layer of protection in case you/a colleague/the cloud provider end up screwing something up.

Perhaps they just uploaded it as a secondary backup copy and didn't want to do an encrypted db backup just for that... not a good excuse anyways.

Google's dev registration plan 'will end the F-Droid project'

IamAProton

Re: Android is dead to me.

Try changing browser user agent, if it works tell them they are silly

IamAProton

Re: Alternate ROM Images

Search for the supported devices first, then buy used.

Once installed a clean Rom performances are way better, so a phone that's few years old is no issue.

That's what i did, bought dirt cheap a "phablet" (ugh, "phone" with big screen to use as a tablet) with a shot battery. Changed it myself for cheap, installed custom ROM. Profit!

IamAProton

Re: Android is dead to me.

I think it was called Project Palladium (or somethihg like that) few years ago

IamAProton

Re: Android is dead to me.

I know in some countries you have to use a smartphone, but the application should be also available outside of the playstore if it's mandatory to use it to access certain govt. services.

For example, last time i checked in Hong Kong the govt apps are available on Google Play store, Huawei store and as APK.

I know it's a pain, but you might file a formal complain if you must use a certain app but you cannot do it without a google account.

For the banks it's easier, pick a banck that doesn't require an app or do not use their app (you probably shouldn't anyways)

IamAProton

Re: Android is dead to me.

well, there are alternatives, not just as cool or as convenient.

LineageOS or other flavours of Android can be installed without depending on google.

I use one and t's not a big deal...Of course if your main iemail account is Gmail it's inconvenient.

Use proton mail as your main account and install their mail/calendar application. Use openstreetmap instead of google maps. Aurorastore (or other 'tools' like apk pure) to get the apps that are only available in play store etc.

As for VW, if my memory serves, on Passat at least, the spy module should be located under passenger seat, can be disconnected. I'm fairly sure the other sensors can be 'manipulated' in a way that stops the nagging (check with your insurance if that's ok/ what kind of 'manipulation' is acceptable).

UK to roll out mandatory digital ID for right to work by 2029

IamAProton

held on people's phones...yeah

Hopefully no need to carry it around at all times like an ID card.

I can't even imagine how bad this is, given the usual lack of support for "phone's" OS that are not Google android or IOS (recent version only and not rooted, for your safety of course)

EU starting registration of fingerprints and faces for short-stay foreigners

IamAProton

"In the last quarter of 2026, the EU will also introduce a €20 three-year visa waiver [...] This will cover most citizens of visa-exempt countries [...]."

So it's a visitor tax since there is already no need for a visa, the 3 year validity it just to make it look like it's a deal since most traveler will need it only once.

Is GitHub a social network that endangers children? Australia wants to know

IamAProton
Trollface

git and by extension github are harmful but to productivity.

Can be argued that they are harmful to delevoper's health too, but for now it's a bit of a stretch.

Brussels faces privacy crossroads over encryption backdoors

IamAProton

I doubt it will pass but...

if it does we just need to have some innocent 'false positives', make them go viral and then let the fun begin.

With all the muppets addicted to socials, some adversarial pictures can be shared on regular bases by millions without them even knowing.

Doesn't really fixex teh problem if the goal is backdooring encryption for 'general use' though

Google kneecaps indie Android devs, forces them to register

IamAProton

I have a google-free android device (not used as a phone, mind you, I use a 'dumb' phone)

I don't like google position and I have no problem quitting entirely the 'smartphone', but i do not accept a bank that 'requires' and app, nor any other service.

Not sure for how long I can hold my position because 'people' but at least I feel like I'm more part of the solution rather than part of the problem...

The Unix Epochalypse might be sooner than you think

IamAProton

Re: Attitude problem

My car doesn't know the date :)

AI crawlers and fetchers are blowing up websites, with Meta and OpenAI the worst offenders

IamAProton

Bot might be able to detect gibberish

Need to be plausible content for the bot and obviously wrong for the average user, the goal is to make them feel the damage so it needs to be wrong enough to be spotted also by average Joe once it gets force-fed with the "AI summary" or the equivalent slop.

No more Blocktoberfest? German court throws book at ad blockers

IamAProton

The usual, fundamental misunnderstanding on how website works

The markup is the info, the styling is a suggested way of rendering it, depending also on the device, the (sadly) omnipresent Javascript is also optional (many sites work even without it).

Altering the way the information is presented (or not) on the client side is one of the main point of HTML/browser/websites. Sure, now we have those stupid websites that must have JS on because 'special effects', but how is disabling JS or blocking some domains a violation of copyright?

Imagine a book publisher suing people because they read books in a Duffy Duck's voice, or skip a sentence here and there. Indeed skipping a sentence make 'your version ' of the book very similar to the copyrighted one, so you gotta pay royalties!!!1!1

No more 'Sanity Checks.' Inclusive language guide bans problematic tech terms

IamAProton

Actually 'non-white' sounds really derogatory

Seems like we can't refer to non-whites in any way that isn't triggering somebody ¯\_(ツ)_/¯

IamAProton

yeah, I never got it why calling a black 'black' (which is totally fine according to the black people i know) is an issue while calling a white 'white' is not.

And don't get me started with the 'person of color', 'person of size' etc BS. I do have a size and a color too.

Atlassian's Trello redesign may be 'worst in tech history' say frustrated users

IamAProton

Re: I love when they change software interface for the sake of changing it

IIRC Triumph had some "left handed" kit for motorbikes (swap accelerator, front brake and clutch) but you could have it only if you provide a medical certificate proving you are left-handed.

Can't quickly find references, except for the 'switchcubes' available on ebay

IamAProton

I love when they change software interface for the sake of changing it

Imagine a car company swapping pedals position because some UI evangelist said it's more ergonomic... or the gereas positions in the gearbox... not a single muppet in the world would do that.

With software we still have a very long way to go before it will become a well understood tool people can rely on

Microsoft promises to eventually make WinUI 'truly open source'

IamAProton

The damage the evangelists HAVE CAUSED

What's the difference between an "evengelist" and an experienced, responsible software engineer?

I'd say the former "gamble" with a "vision" rather than sticking with what works unless the benefit of a new thing is really big.

If the gamble is sucessful take the credit otherwise blame MS?

Not a fan of MS lately, but as a business they have to try new things and see what sticks.

Selling your digital soul to use Bluesky's DMs isn't just a bad idea, it's the law*

IamAProton

Devil's advocate here

I agree with Bluesky choice of using the worst provider for age verification (I'm assuming 'better' ways are available')

Users will either suck it up or make a fuss about it once they realize what 'age verification' actually means, either way it's a win for BS (pun intended?)

Vibe coding service Replit deleted user’s production database, faked data, told fibs galore

IamAProton

yup. Didn't do his math right. You can probably outsource that work to somebody that can actually write half decent code for less than 8k

Suspected Chinese cybersnoop grounded in Italy after US tipoff

IamAProton
Alert

The image is wrong

in italian it's POLIZIA not POLICIA

Exif marks the spot as fresh version of PNG image standard arrives

IamAProton

Re: Still relevant?

JPG Lossy, good for "natural images"

PNG Lossless, high compression for 'artificial' images.

Jpg sucks for images with clean shapes, eg a chessboard.

Do you trust Xi with your 'private' browsing data? Apple, Google stores still offer China-based VPNs, report says

IamAProton

Re: What 'private' browsing data?

Processing is mostly automated.

Once they figure out you are into "my little ponies" they might blackmail you, even if you will never go to china.

Low chance? sure, but why take the risk?

What will UK government workers do with an extra 26 minutes a day?

IamAProton

Talking about "time savings" in bureaucracy-related jobs is a tough topic.

Microsoft is opening Windows Update to third-party apps

IamAProton

Re: I can't wait

Exactly.

The drivers and bios updated delivered through WU are already a curse. Got several computer ruined because of that and there is no way to disable only that evil functionality.

Now you can't even keep an older version of an application you use/like if you have windows updates on.

Looks like we go back to the Win98 era, when the recommended thing was to disable the updates right after installing the OS

AROS turns any PC into an Amiga with USB-bootable distro

IamAProton

Re: I have a LOT of Amiga games

I will definitely try to download a working image for those games i can find, I'm not going to waste time trying to read 30 years old floppies and perhaps end up with partially working games.

This is one of the games that i have to get: https://www.myabandonware.com/game/p-p-hammer-and-his-pneumatic-weapon-67c

I remember I got stuck in a certain level (perhaps 18?), so that's a 30+ years old open issue that needs to be addressed :)

IamAProton

Re: I have a LOT of Amiga games

can't watch video now, Do you mean that the Pimiga 'package' has many games images already included so i can just run those in winuae/aros?

My goal is to save/play those games on emulator (if still readable). ll keep the amiga hardware for the time being, is not gonna be trashed but will not be used either.

IamAProton

Re: I have a LOT of Amiga games

In the past I used some software ( can't remember what) and connected the amiga with a null modem cable and i remember i managed to make a working image of 1 floppy, but I think i did't keep going with the rest because it was taking way too much time /the process was too complicated to repeat it for hundreds of floppies.

I'm ok to buy some hardware if reasonably priced. will look into this Greaseweazle and see if the process is streamlined enough that my lack of time/patience does not become a show-stopper :)

IamAProton
Pint

I have a LOT of Amiga games

Still on floppy disks, hundreds, unused give or take since 25 years

Does anybody know a straightforward) way to image these floppies into usable games for this emulator?

It takes one click to join Uber One, but quitting might need 32 actions

IamAProton

Sadly, very often is "cost of doing business"

If the fine is less than what a company earns with these shady tricks, why should they stop?

Start with 5X the estimated revenue and a note front and center in all their websites/apps and in every email sent from them for a couple of months, then maybe something will change

Apps-from-prompts Firebase Studio is a great example – of why AI can't replace devs

IamAProton

Re: A different poin of view

Exactly, so let's try to avoid to be in the position to say "we were better off when we were worse off" and let's cheer AI vibe coding as the 'future of coding'.

I'd love to see how AI will handle git as source control :D

IamAProton

A different poin of view

I got mildly sick of IT in general and the direction towards 'digital everything'.

The last thing I want in my future is that every bureaucrat (whether form govt. or private companies) is able to write custom software to collect, analyze, cross reference any sort of data, so - downvote me all you want - I think if this 'vibe coding' bs gets a hold of the market it might be beneficial in some ways (slow down the digital-everything by creating trainwrecks).

EU: These are scary times – let's backdoor encryption!

IamAProton

Re: Good news everybody

they can get a warrant and, exactly, i do not have to help them.

If I have encrypted my data they will have to find something else, same story if an 'analog citizen' shredded the papers with all his travel expenses. I am against criminals as much as I am pro privacy and, sadly, seems that the meaning of criminal is expanding while the privacy is shrinking.

Are they going to also ban cursive because it might be too hard to read?

IamAProton

Re: Good news everybody

Police shouldn't have access to any of the digital data, same as it is for the 'analog' data.

They can access mandatory financial docs that companies must keep and 'data' that alleged criminals left accessible.

It's the same in digital and 'analog' world. They cannot access paper documents that have been burnt or hidden in the same way they cannot access encrypted data.

Sure, all that sweet data is a juicy target, but it's not their data whether it's useful to them or not.

On the other end we, citizens and salary payers for those unelected bureaucrats, should have much greater visibility on their data since it seems that once they are elected they tend to forget who are they working for...

Page: