Skip Navigation
Jump
Climate change deniers
  • There's a massive amount of ongoing research into lithium-free batteries. Sodium-ion has gotten a big boost recently and real solid-state batteries are starting to see commercialization.

    5
  • Jump
    Hackers may have leaked the Social Security Numbers of every American
  • Social Security Numbers were never intended to be used the way they are. They were expressly for identifying you to the Feds for the purpose of SSI. Business just looked at that and said "hey, that's a good way to identify people" and ignored the feds when they asked politely for them to fucking not.

    9
  • Jump
    Blinken: Overwhelming evidence Venezuela opposition won election
  • The internet is filled with Schrodinger's Asshole. How is anyone supposed to know if you meant it sarcastically originally or are just claiming it was sarcastic now that it hasn't landed?

    20
  • Jump
    How can i make myself poisonous to mosquitos?
  • The value of LD50 for a substance is the dose required to kill half the members of a tested population after a specified test duration

    This is, effectively, how oral flee/tick medications work in animals. It basically turns the animal's blood into a mild poison. The poison is mild enough that it doesn't affect the animal but it's enough to kill small insects like flees, ticks, or mosquitoes.

    35
  • Jump
    Evangelical Christian America believes their selectively myopic deity actually intervened to save Trump from the gunman, while leaving a heroic volunteer firefighter to take the bullet.
  • Most of the rest of the civilized world effectively banned individual ownership of guns. Aren't you more worried about getting stabbed?

    2
  • Jump
    CrowdStrike broke Debian and Rocky Linux months ago, but no one noticed
  • Canonical and Debian both target the professional server space. I've spent pretty much my entire career working on Debian-based distros.

    Hell, the one company I worked for that I expected to use RHEL used Ubuntu for everything, so 🤷‍♂️.

    9
  • Jump
    What is the functional difference between the President having immunity for “official acts” and the powers granted to the German President under Article 48 of the Weimar Constitution?
  • Impeachment proceedings are not judicial proceedings; they're political ones. Both processes use similar language because the process is similar, but they are not connected. Commission of a crime is not required for impeachment proceedings and being impeached by the House and convicted by the Senate conveys no criminal punishment.

    4
  • Jump
    Biden admits to taking drugs before the debate.
  • Just went ahead and Googled it and I can find no credible source that he actually said these words at any time. So, if you'd like to bandy out that source, I think we'd all appreciate it.

    6
  • Jump
    Cloudflare's recent blog regarding polyfill shows that Cloudflare never authorized Polyfill to use their name in their product
  • Direct linking via a specific CDN was the problem. This is solved by bundlers, not caused by it.

    The polyfill.js is a popular open source library to support older browsers. 100K+ sites embed it using the cdn.polyfill.io domain. ... However, in February this year, a Chinese company bought the domain and the Github account. Since then, this domain was caught injecting malware on mobile devices via any site that embeds cdn.polyfill.io.

    11
  • Jump
    The new Chinese owner of the popular Polyfill JS project injects malware into more than 100 thousand sites
  • In my experience, first-party JavaScript is more likely to be updated so rarely that bugs and exploits are more likely than supply chain attacks. If I heard about NPM getting attacked as often as I hear about CDNs getting attacked, I'd be more concerned.

    2
  • Jump
    The new Chinese owner of the popular Polyfill JS project injects malware into more than 100 thousand sites
  • I actively do this with uMatrix - granted, I only block non-first-party JavaScript. Most sites I visit only require a few domains to be enabled to function. The ones that don't are mostly ad-riddled news sites.

    There are a few exceptions to this - AWS and Atlassian come to mind - but the majority of what I see on the internet does actually work more or less fine when you block non-first-party JavaScript and some even when you do that. uMatrix also has handy bundles built-in for certain things like sites that embed YouTube, for example, that make this much easier.

    Blocking non-first-party like I do does actually solve this issue for the most part, since, according to the article, only bundles that come from the cdn.polyfill.io domain itself that were the problem.

    14
  • Jump
    Google, Cloudflare & Cisco Will Poison DNS to Stop Piracy Block Circumvention * TorrentFreak
  • A PiHole functions has a full DNS server. You can configure it to serve any arbitrary records you like - which is basically how it overrides ad domains to prevent them from loading.

    So, if you know the IP address that a particular domain is supposed to route to, you configure the PiHole to respond with that IP address for that domain. So, it doesn't matter that the major DNS servers return junk because your PiHole never asks them.

    11
  • Jump
    Fraudsters of Lemmy, how would you commit fraud if governments embrace cryptography
  • In this theoretical system, ideally it's illegal for anyone other than the person who's supposed to have the private key to have it - excepting some subset of legal reasons (e.g. parents for their children). So, the only business that would be asking for people's private keys are the kind that are already operating outside of the law.

    2
  • Jump
    Fraudsters of Lemmy, how would you commit fraud if governments embrace cryptography
  • This is no longer the case. Any SSN issued after 2011 is fully randomized

    Additionally, the following SSNs are always invalid:

    1. Any SSN with "000", "666", or "900"-"999" in the former area number
    2. Any SSN with "00" as the former group number
    3. Any SSN with "0000" in the former serial number.
    4
  • Jump
    Fraudsters of Lemmy, how would you commit fraud if governments embrace cryptography
  • That's kinda backwards, isn't it? If I want to verify my identity to a company, they would send me something that only I could decrypt. Some government agency provides all the public keys of all citizens, the company takes my public key, encrypts some secret with it, sends it to me, and asks me to decrypt and return it. If I'm able to do so, I must be who I say I am otherwise I would not be able to decrypt the secret.

    In an ideal world, the company (or, even better, the employee) would have a similar certificate that I could use to encrypt my response with.

    3
  • Jump
    Cannabis
  • I would, however, point out that the specific page on Cannabis sativa lists them as subspecies. So, it appears there isn't even consensus on Wikipedia.

    6
  • Jump
    Biden administration is sending $1 billion more in weapons, ammo to Israel, congressional aides say
  • Serious question, is the president allowed to do this kind of thing unilaterally? I feel like this is an "act of Congress" kind of thing that the president likely has little control over aside from causing delays - like he's already done. Is it really fair to lay this shit as Biden's feet?

    13