Just your normal everyday casual software dev. Nothing to see here.

People can share differing opinions without immediately being on the reverse side. Avoid looking at things as black and white. You can like both waffles and pancakes, just like you can hate both waffles and pancakes.

  • 0 Posts
  • 619 Comments
Joined 2 years ago
cake
Cake day: August 15th, 2023

help-circle

  • while docker does have a non-root installer, the default installer for docker is docker as root, containers as non-root, but since in order to manage docker as a whole it would need access to the socket, if docker has root the container by extension has root.

    Even so, if docker was installed in a root-less environment then a compromised manager container would still compromise everything on that docker system, as a core requirement for these types of containers are access to the docker socket which still isn’t great but is still better than full root access.

    To answer the question: No it doesn’t require it to function, but the default configuration is root, and even in rootless environment a compromise of the management container that is meant to control other containers will result in full compromise of the docker environment.


  • man, arcane looks amazing, I ended up deciding off it though as their pull requests look like they use copilot for a lot of code for new features. Not that I personally have an issue with this but, I’ve seen enough issues where copilot or various AI agents add security vulnerabilities by mistake and they aren’t caught, so I would rather stray away from those types of projects at least until that issue becomes less common/frequent.

    For something as detrimental as a management console to a program that runs as root on most systems, and would provide access to potentially high secure locations, I would not want such a program having security vulnerabilities.


  • yea you have it yes, if they have confirmation that you had said evidence, and they were seizing the device to collect more evidence regarding it then it would be obstruction of justice and destroying evidence, but they need to be able to prove that claim. Unless they can prove that claim then it’s an unlawful search (excluding port authority specific laws regarding searches because checkpoints generally have reduced restrictions on lawful searches)


  • The exact circumstances around the search—such as why CBP wanted to search the phone in the first place—are not known

    until this isn’t an unknown it’s impossible to voice opinion on the legality of this action. If they had evidence that there was something incriminating or against the law on the device and can prove the user intentionally destroyed the info to impede the investigation(honestly this last part is fairly easy as long as the first part can happen) then yea what he did would defo break the law, but until those aspects can be determined this seems like a massive abuse of that persons 1st(due to activism), 4th (due to the seizure of private property without a lawful search), and 5th(again private property) amendment rights.









  • Pika@sh.itjust.workstoGames@lemmy.worldGaming Pet Peeves
    link
    fedilink
    English
    arrow-up
    127
    arrow-down
    1
    ·
    edit-2
    20 days ago

    unpausable cutscenes. Nothing bugs me more than getting interrupted in the middle of a cutscene and not being able to press escape to pause the cutscene. You’re forced to try to split your attention between what interrupted you and the cutscene or restart and see the cutscene from the beginning again.

    Extra annoyance points if escape immediately skips the cutscene without any indication it’s going to.





  • I saw a lot of Silksong and peak; BF6, blue prince, nightrein and there was a passing glance at split fiction I also had 1 creator I follow play death stranding 2 and KD2 one just started e33 last week so I been watching that. The rest fell out of my circle of 40 or 50 streamers.

    Note: I technically saw at least 4 people playing silent hill F but didn’t count it as I never saw anyone stream it that wasn’t sponsored so I didn’t feel it was a good representation if it

    I decided to go through and mark what I didn’t see

    • Dk bomanza (surprisingly as many were Nintendo fans)
    • .Indiana jones
    • ghost of yotai (surprising because I watch a few souls streamers)
    • hades 2
    • ninja gaiden 4
    • sinobi art of vengence
    • Lego voyagers
    • sonic racing
    • all the fighter category
    • all the vr category
    • abaolum
    • all the mobile games (makes sense)
    • ff14 dawntrail
    • avowed
    • f1 25
    • tempest rising
    • ff tactics (probally cause port)
    • two point museum
    • all the impact category

    So looking back, I guess I did see a few of them more than I thought I had, but there was still a good chunk that just never appeared on the creators I followed.


  • ooo thats a cool website. Just for the funnies I just threw the top 35 (as shown by fediverse observer) into it.

    Lemmy Filtered

    lemmy.world(Active Users: 14512): Cloudflare? Yes(dns,proxy,cname)

    sh.itjust.works(Active Users: 2509): Cloudflare? Yes(dns,proxy,cname)

    lemmy.ml(Active Users: 2087): Cloudflare? No

    lemmy.zip(Active Users: 1704): Cloudflare? Yes(dns,proxy,cname)

    lemmy.dbzer0.com(Active Users: 1444): Cloudflare? No

    lemmy.ca(Active Users: 1381): Cloudflare? Yes(dns,proxy,cname)

    lemmygrad.ml(Active Users: 972): Cloudflare? No

    lemmy.blahaj.zone(Active Users: 956): Cloudflare? No

    programming.dev(Active Users: 929): Cloudflare? Yes(dns,proxy,cname)

    discuss.tchncs.de(Active Users: 778): Cloudflare? No

    sopuli.xyz(Active Users: 596): Cloudflare? No

    slrpnk.net(Active Users: 371): Cloudflare? No

    infosec.pub(Active Users: 331): Cloudflare? No

    lemmy.today(Active Users: 314): Cloudflare? No

    midwest.social(Active Users: 307): Cloudflare? No

    reddthat.com(Active Users: 292): Cloudflare? Yes(dns,proxy,cname)

    feddit.nl(Active Users: 290): Cloudflare? No

    pawb.social(Active Users: 243): Cloudflare? Yes(dns,proxy,cname)

    forum.guncadindex.com(Active Users: 234): Cloudflare? No

    mander.xyz(Active Users: 194): Cloudflare? No

    lemmings.world(Active Users: 177): Cloudflare? No

    ani.social(Active Users: 173): Cloudflare? Yes(dns,proxy,cname)

    feddit.it(Active Users: 158): Cloudflare? No

    startrek.website(Active Users: 156): Cloudflare? No

    feddit.dk(Active Users: 151): Cloudflare? Yes(dns,cname)

    leminal.space(Active Users: 126): Cloudflare? Yes(dns,proxy,cname)

    ttrpg.network(Active Users: 125): Cloudflare? No

    szmer.info(Active Users: 116): Cloudflare? No

    lemmy.eco.br(Active Users: 99): Cloudflare? Yes(dns,proxy,cname)

    lemy.lol(Active Users: 97): Cloudflare? Yes(dns,cname)

    awful.systems(Active Users: 90): Cloudflare? No

    Fediverse as a whole

    mastodon.social(Active Users: 255517): Cloudflare? No

    pixelfed.social(Active Users: 61361): Cloudflare? Yes(dns,proxy,cname)

    community.sketchucation.com(Active Users: 33551): Cloudflare? No

    pawoo.net(Active Users: 17637): Cloudflare? No

    lemmy.world(Active Users: 14505): Cloudflare? Yes(dns,proxy,cname)

    mstdn.jp(Active Users: 12531): Cloudflare? Yes(dns,proxy,cname)

    infosec.exchange(Active Users: 11773): Cloudflare? No

    mstdn.social(Active Users: 11589): Cloudflare? No

    mas.to(Active Users: 10344): Cloudflare? Yes(dns,proxy,cname)

    planet.moe(Active Users: 9918): Cloudflare? Yes(dns,cname)

    mastodon.online(Active Users: 8493): Cloudflare? No

    phijkchu.com(Active Users: 8463): Cloudflare? Yes(cname)

    fosstodon.org(Active Users: 8403): Cloudflare? No

    hachyderm.io(Active Users: 8302): Cloudflare? No

    mastodon.world(Active Users: 7941): Cloudflare? No

    piaille.fr(Active Users: 7934): Cloudflare? No

    fedibird.com(Active Users: 7840): Cloudflare? Yes(dns,cname)

    social.vivaldi.net(Active Users: 6561): Cloudflare? Yes(dns,proxy,cname)

    m.cmx.im(Active Users: 6109): Cloudflare? Yes(dns,proxy,cname)

    micro.blog(Active Users: 6067): Cloudflare? No

    pixelfed.uno(Active Users: 6027): Cloudflare? Yes(dns,cname)

    troet.cafe(Active Users: 6016): Cloudflare? No

    chaos.social(Active Users: 5995): Cloudflare? No

    mastodon.uno(Active Users: 5554): Cloudflare? Yes(dns,cname)

    st.fdel.moe(Active Users: 5136): Cloudflare? Yes(dns,proxy,cname)

    mastodon.gamedev.place(Active Users: 4556): Cloudflare? No

    techhub.social(Active Users: 4532): Cloudflare? Yes(dns,proxy,cname)

    mastodon.art(Active Users: 3848): Cloudflare? No

    pixelfed.de(Active Users: 3806): Cloudflare? No

    social.tchncs.de(Active Users: 3556): Cloudflare? No

    mastodon.nl(Active Users: 3537): Cloudflare? No

    wxw.moe(Active Users: 3237): Cloudflare? Yes(dns,proxy,cname)

    wxw.ooo(Active Users: 3237): Cloudflare? No

    norden.social(Active Users: 3206): Cloudflare? No



  • Pika@sh.itjust.workstoSelfhosted@lemmy.worldPSA syncthing-fork has changed owners
    link
    fedilink
    English
    arrow-up
    26
    arrow-down
    1
    ·
    edit-2
    25 days ago

    this entire thing has made me really rethink whether I want to swap to the new repo or not.

    Why was there no communication about it. The gplay repo maintainer wasn’t informed of anything, no public notice to anyone was given, just a transfer of the repo and a status issue here explaining it.

    Obviously the act is genuine as they were able to keep the original keys but like, this entire system seemed really sketchy.

    I’m also not happy with the fact that it seems the first thing they added was removing checksums, but that might be a temp thing.

    I also just noticed that it looks like they removed the entire public key for it, which if they had the original private keys using the existing public keys shouldn’t be an issue right?