Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)O
Posts
87
Comments
1426
Joined
3 yr. ago

  • Bug bounties. Depending on your response to this, I'll go out and find more links to substantiate claims.

    I misremembered the first one as there was a lot of negative news regarding the security program. Here it is: from 2020 [We Hacked Apple for 3 Months: Here’s What We Found] (https://samcurry.net/hacking-apple)

    Here are the negative reports:

    The last one is about the community uproar regarding the nerfs to their bug bounty program. That's probably the most relevant right now.

  • I'm traveling now. Will respond later.

  • I'm on a phone right now, but look up any of those claims.

    But from what I'm getting is no matter what claims I substantiate, you will deny deny deny. So, let's not kid ourselves, you aren't here to have your eyes opened, you're here to defend the fruit store at all costs. If I'm wrong, look up one claim I made and if they're true and you admit it, we can continue and I'll look for proof of the others.

  • I'm still amazed people use and browse the septic tank of the internet. Xitter just won't stop.

  • Ay yo!

  • Just like hotkinkyjo

  • Tax em and their wealth. That'll hurt em.

  • Fruity mobiles have been hacked multiple times. The Israelis routinely do so. Pegasus might right a bell. Jeff Bezos was even a victim.

    Also, the fruit store's App Store still has malware despite the 30% they steal from developers in the name of "security".

    The company also sells ads and ad placements BTW. If that isn't an indication of their goals...

    Regarding bounties, they have regularly snubbed white hats and pentesters. They are one of the most wealthy companies in the world and hate paying bounties. The one I remember clearly is a dude finding exploits in their supply chain, which could've led to the attacker sending phones anywhere they wanted and emptying warehouses or adding unnecessary stock. They for nothing, yet the bugs were quietly resolved. Any adversary could thus do what the Israelis did and reroute shipments to modify material before it reaches its destination.

    And let's not forget the incident where people started seeing photos on their phones from other people's iCloud, or employees repeatedly snooping on iCloud accounts, especially of celebrities, despite the data being "encrypted".

    Or that time Macs couldn't function because some server somewhere was getting DDOSed?

    Finally, it's a US company. The CLOUD Act and Patriot Act force(d) them to so what was decided in secret courts, without ever being given the right to expose it.

    There's more, you just have to care to look for it. They are masters of marketing. That's their entire thing and you are falling for it. Remember that corps aren't here dlr you. They are here for the money. Especially big companies like that.

  • mobile numbers require government identification in many countries

    Yes and all they will know is "person A has installed signal". Nothing more. If you haven't degoogled tour phone or use one with a fruity logo, the government knows that you have the app already. It won't need phone number.

  • Boy... We are going to get spammed.

    I never understood the "phone numbers are evil" people, whining about signal requiring them. As soon as this arrives, they will find another thing to whine about.

    Hopefully Signal will make it possible to block any and all communications from people wohtout a phone number, unless I reach out to them. And that that feature also be introduced to groups. Because otherwise maintaining public groups is going to be turboshit.

  • Don't buy shit from the fruit store and degoogle your phone if it's an Android. Maybe in the future we will have a fully featured linux phone that the masses can buy, but we aren't there yet. Until then, degoogled android is all we realistically have for the normies.

    Aldo, Snowden? Hadn't seen that name in a while. It's a pity no country besides Russia gave him amnesty.

  • What's up with the other post about the UK becoming a police state then? Is that old news?

  • I'm waiting for a real European search engine that is also digitally sovereign i.e uses its own index. The EU funded one sub index but it was promptly ignored by every single european bing frontend (Ecosia, qwant, startpage, etc.). Why, I don't know.

    Until then, the only search engine that seems to be doing any good with ad money is Ecosia.

  • Don't inference providers also provide APIs for cost checking? I imagine you'd need to have a cost-checking service that cancels any CI jobs running an agent. If possible, I'd chain the CI jobs so that one job creates a token with metadata and triggers a new job which runs the agent. The cost-checking service could then trackspending and call the CI API with a kill command for the job whose API token has crossed the limit.

    Maybe the inference platforms even allow calling webhooks on certain events. You would still need to identify which CI job to kill, hence my suggestion to create tokens per job, that would allow you to target the job using that token.

    Alternatively, you have a second process running in the CI job that pings the inference providers API and kills the agent when a certain condition is met.

  • Nice, thanks!

  • How did you do that? Is there a configuration option in the GUI?

  • For ripping, get "handbrake"

  • What about Muhammed?

  • Big tent is coming for big tech!

  • Rust @programming.dev

    Rust is now a government conspiracy

  • Opensource @programming.dev

    NLnet is funding Blitz - a modular web renderer

    nlnet.nl /project/Blitz/
  • Opensource @programming.dev

    Could "pay or it's low priority" be a way to fund opensource projects?

  • Rust @programming.dev

    Rust is the New C

  • Lemmy @lemmy.ml

    How can we contribute to Lemmy code from outside github?

  • Selfhosted @lemmy.world

    How can I host an IMAP connected to thirdparty POP?

  • Linux @programming.dev

    Is there a way to fund linux kernel development as a community?

  • Rust @programming.dev

    How can I keep cargo build artifacts in RAM?

  • Linux @programming.dev

    Is there an easier way forward for rust in linux?

  • Programming @programming.dev

    Why hasn't gradle been adopted for C/C++ projects?

  • Linux @programming.dev

    systemd: BindReadOnlyPaths alternative allowing user to read it

  • Programmer Humor @programming.dev

    Who needs newfangled stuff like forums? 🤢

  • Programming @programming.dev

    What kind of music do you listen to?

  • Linux @programming.dev

    Linux 6.13 Hits A "Tipping Point" With More Rust Drivers Expected Soon

    www.phoronix.com /news/Linux-6.13-char-misc-More-Rust
  • Programming @programming.dev

    Rant: I wish more people stopped using Github

  • Opensource @programming.dev

    How can we help FSF with their "Upgrade From Windows" campaign?

    upgradefromwindows.com
  • Programming @programming.dev

    How could digitial age verification be possibly implemented with privacy in mind?

  • Linux @programming.dev

    Snapdragon 8 Elite arrives with Linux support, potentially unlocking PC gaming on phones and tablets

    www.techspot.com /news/105355-snapdragon-8-elite-arrives-linux-support-potentially-unlocking.html
  • Linux @programming.dev

    What if somebody wrote a virus that infected windows computers to replace the OS with linux?

  • Git @programming.dev

    Radicle 1.0 released

    radicle.xyz /2024/09/10/radicle-1.0.html