Here's the latest #curl hackerone issue I mentioned the other day: hackerone.com/reports/2871792 another one of those "we found a function call so therefore your program must be vulnerable".

Disclosed for educational purposes. Don't do this.

#curl

Welcome to Monday.
Daughter abed, off school with a migraine. The new preventatives are not yet living up to their names.

I did crack open the cream yesterday, which is one of the key moments in my personal march toward the holidays. So first coffee of the day this morn was a deliciously hot, strong jolt of 'Get your butt to work soon' with a spiral of creamy goodness. A busy day at work, and then a stupidly early start for a 5:21AM train tomorrow, so not sure how i'll be feeling about that when I get there.

I am sat warm and comfortable with coffee 2 while I fill in the school absence form and ponder my morning's schedule and tickets.

Ve avemo aumentato a pensione de €1,8 AR MESE (!!!) pe sta ar passo co l'inflazzione

Un segnio de gli ottimi risurtati de sto governo 🚀

Nun spendeteli tuttassieme 😉

open.online/2024/12/02/pension…

Back in 2021, we launched a series of stories documenting the key ways that the ultrawealthy — #billionaires like #ElonMusk, Jeff Bezos, and Peter Thiel — avoid #taxes. Here are 10 of their strategies.

#Finance #Law #Tech #Journalism

propub.li/4fQL3uY

Hi, @jcsteh. I'd like to report an issue. I would do it in Bugzilla, but it appears that I can't comment on closed bugs. bugzilla.mozilla.org/show_bug.… was marked as a duplicate of bugzilla.mozilla.org/show_bug.… which was marked as fixed 8 days ago. However, the issue from Bug 1927237 doesn't seem to be fixed in recent Nightlies.

Thanks for your time and all your hard work!!

TIL about #DecemberAdventure - what a lovely counterpoint to #AdventOfCode I tried the latter a couple of times, but found it stressful after a few days. This looks much more relaxing.

eli.li/december-adventure

New page on my website: My workouts.

Documenting my low-equipment at-home workout regiment. How I work out, why I work out, my workout split, my list of exercises, and advice I’m soliciting.

I figured that if I spend 5-6 hours a week doing something I care deeply about, I should probably mention it on my site.

I’m soliciting advice; see the “Current questions” section at the end!


#fitness #WeightLifting

Today I woke up at a silly time and started playing around with my old midi files, remembering that Foobar 2000 has a plug-in that can play them through sound fonts. It's fun to listen to my music from back then, rendered by instruments that I did not intend. Some of it still sounds decent. Here's a sample.

modulux reshared this.

看 #特斯拉 #TESLA 季營收趨勢圖

相比於 #NVDA 的季營收趨勢,特斯拉季營收趨勢更顯得維持時間很短就產生另一條趨勢線。確實如此!!

除了季營收趨勢持續時間短,產生多條趨勢線外,季營收扣除銷貨成本和營業費用所產生的指標差距也非常大銷貨成本占超過70%,營業費用也占了超過10%。

換句話說,特斯拉的季營收指標趨勢僅供參考,不能成為投資人的信任的指標。因為當你看著季營收,以為特斯拉很賺錢,其實扣除成本後........

總歸比台廠的毛三到四還要好很多 🤣

#經濟 #財經 #美國 #財報 #數據分析 #資料分析 #AI數據分析 #AI #MathAI

in reply to AI數字分析領航者 AI底層數據建模

當您指的是這家公司時,我們是否有機會鼓勵您關注 #NVIDIA 的趨勢? 我知道他們的 NASDAQ 句柄是什麼,但 #NVDA 作為我們製造的螢幕閱讀器的名稱更廣為人知,並且 #NVDA 主題標籤非常廣泛地用於螢幕閱讀器。 它將避免我們兩個社區互相污染對方的飼料。 如果您想了解有關螢幕閱讀器的更多信息,我們的網站是 nvaccess.org/ - 謝謝!
in reply to AI數字分析領航者 AI底層數據建模

Is there any chance we can encourage you to trend #NVIDIA when that's the company you mean, please? I know what their NASDAQ handle is, but #NVDA is much more widely known as the name of the screen reader we make and the #NVDA hashtag is very widely used for the screen reader. It will save both our communities polluting each other's feeds. If you'd like to find out more about the screen reader, our website is nvaccess.org/ - Thank you!

看輝達 #NVIDIA 的季營收趨勢圖
清楚的三條趨勢線,很穩定。最新趨勢上升速度非常快,代表產能穩定擴張並且快速擴張。

這可以說是製造業的特性,穩定,如果訂單滿員,那麼就看產能擴張速度。所以這樣的季營收趨勢其實是產能擴張速度。

#經濟 #財經 #AI數據分析 #資料分析 #AI #MathAI #NVDA #英偉達

in reply to AI數字分析領航者 AI底層數據建模

不,我試圖將 #NVDA 標籤的主要用途(用於名為 NVDA 的螢幕閱讀器)與應使用 #NVIDIA 標籤的 AI 金融內容區分開來:) / No, I was trying to separate the main use of the #NVDA hashtag - which is for the screen reader called NVDA, from your AI finance stuff which should use the #NVIDIA hashtag :)

TIL the Brave browser is a literal crypto scam. They claim to compensate website owners and content creators with their BAT token, but if you don't or can't claim the rewards within 90 days they pocket the tokens themselves. Apparently it's extremely difficult to signup and claim your BAT tokens...
news.ycombinator.com/item?id=1…

#cryptoscam #bravebrowser #bravebrowserisbad

I spent the last two days playing BG3 and learning Godot and I now have a working player for text adventures written in Ink. 🎉

Ink is a scripting (as in code) language for writing scripts (as in story) for narrative-driven games. It's built as middleware for game engines, but it can *mostly* be used on its own for text based interactive fiction: inklestudios.com/ink/

I say "mostly" because while there's a web-based engine for running ink games, the feature-set is understandably limited.

Another great episode of the #2Bobs #pocast - Questions, Not Answers.

Blair Enns and David C. Baker cover some interesting territory. Being able to ask good questions, listen to what is said (and not said), then incorporate that into more questions is powerful. Being curious about people and their problems is such a critical part of being able to help others. This is true as a consultant or as a friend.

2bobs.com/podcast/questions-no…

Another great podcast episode by @drvolts -
Dan Savage on blue America in the age of Trump - it was an interesting reflection of urban politics. volts.wtf/p/dan-savage-on-blue…

"Despite the fact that Threads users can’t follow or see mentions from people on other instances, Threads has already opted to block a slew of instances where gay & leather people congregate.... If Threads were a taxi service, it wouldn’t take you South of Market."

aphyr.com/posts/371-threads-wo…

This entry was edited (1 year ago)

Carlos Tavares, le patron de Stellantis (Peugeot, Fiat et plein d’autres marques) vient d’être viré. J’aurais fait une petite danse de la joie, mais il a été viré pour les mauvaises raisons, comme expliqué dans l’article.

Stellantis annonce la démission « avec effet immédiat » de son patron Carlos Tavares

lemonde.fr/economie/article/20…

#AndroidAppRain at apt.izzysoft.de/fdroid today with 15 updated and 2 added apps:

* Photos: a no non-sense, smooth, and performant gallery app
* KeePassDX Libre: on special request, the "Libre" variant of this well-known and great FOSS Password Safe was added here in addition to the "Free" one.

Enjoy your #free #Android #apps with the #IzzyOnDroid repo :awesome:

Here's a recent and interesting lecture from the LSE on social media regulation.
lse.ac.uk/lse-player?id=464a16…
#liberalism #constitutionalism #SocialMedia

In my opinion, Visual Studio Code is not in the same category of text editors as Emacs or Vim, especially for keyboard-intensive users. However, it has some highly attractive features and extensions. One such extension uses the languagetool spelling and grammar checker to create a tree widget populated by errors and warnings from languagetool and other sources, including markup validation.
The original Ltex extension for using languagetool no longer seems to be maintained, but this fork is.
ltex-plus.github.io/ltex-plus/
#TextEditing #VSCode #MarkupLanguages

The world’s 280 million electric bikes and mopeds are cutting demand for oil far more than electric cars
theconversation.com/the-worlds…

They also use massively fewer materials to achieve the same ends, " ...In the United States, a staggering 60% of all car trips cover less than 10km."

✨ 62% OFF! Black Friday & Cyber Monday Deal ✨

⏳ Last Chance to Save BIG! ⏳

Get a full year of Legend for just €36 (down from €96/year)

📅 Get your end-to-end mailbox here: tuta.com/black-friday

#BlackFriday #CyberMonday #LastChance

Ancora sulla fine del modello tedesco
@anarchia
Dopo il gruppo Wolkswagen tocca a Thyssen, storico nome della siderurgia tedesca tristemente nota qui a Torino per una strage di operai (morirono bruciati in 7), annunciare un drastico piano di tagli, si parla di 11000 esuberi e un drastico...

Vedi l'articolo

rivoluzioneanarchica.it/ancora…

google’s latest fuckery: if you write online, read this


The Google app for iOS now adds THEIR links to YOUR posts from YOUR website unless you opt-out.

Their links lead people away from your site and back to Google. Because that’s definitely what you want, right? That’s why you have a blog or portal or web site or whatever. You want people to leave your site and go back to Google.

Oh, it’s not?

If you don’t like it, you can “Opt out.” Opting out is a pain in the ass. Here’s where you go to do it. You have to enter every variation of each of your domains or it won’t work. It will take up to 30 days, during which time Google will continue to pollute your work and your writing and your website with their modifications and their added links to take people away from your site and back to themselves.

For example, here’s the list of what I need to opt-out just for this one blog:
solarbird.nethttp://solarbird.nethttps://solarbird.netwww.solarbird.nethttp://www.solarbird.nethttps://www.solarbird.netweb.solarbird.nethttp://web.solarbird.nethttps://web.solarbird.net
Yes, you explicitly have to file no prefix, http:, and https: variants separately. They say so.

Making it difficult like this is 100% intentional and entirely designed to make it as annoying as possible, and also, to make sure you slip up if at all possible and forget one or more combinations.

(Tho’ I am just going to depreciate web. as a prefix right now, to bring down the load a little. Still gonna list ’em, though, because spite is why.)

Right now it’s only in the Google app for iOS and it’s probably a test to see whether they can get away with it without complaint, and how much revenue it generates. Let’s make that a combination of no and as close to zero as possible. Because otherwise they’ll roll it out everywhere, and probably derank you if you don’t go along.

Fucking hell, Google. Fuck you. Just… fuck you.

#art #t0000000000bs_ #writing

This entry was edited (1 year ago)

reshared this

in reply to solarbird

I agree wholeheartedly with Google's Page Annotations being an absolutely awful antifeature, and recommend that others opt-out and/or protest the feature. I want to make a clarification that doesn't invalidate your main points:

Clicking annotations doesn't navigate away from your site to a Google search; it triggers an overlay with infoboxes about the term you selected. It's similar to the iOS "Look Up" option for selected text. It's wrong to do because this obfuscates what is and isn't a link the author placed on the page. Inserting what appears to be links into the page crosses the line from user-agent interventions, such as adblocking or turning off certain unsafe features (acceptable) to editing an author's words in a way that isn't required for people to read them (unacceptable).

Editing page contents is fine if it's necessary for people to read them, e.g. translations or the WAI-Adapt standards. Both ideally inform the user that the page has been modified. Page Annotations go well beyond that.


Originally posted on seirdy.one: See Original (POSSE).

Accessible Android Investigates: Do Google Apps for Android Have Accessibility Actions? accessibleandroid.com/accessib… #Android #A11y #Google
in reply to Accessible Android

Thank you so much for this very informative article. After having read the whole article, I am feeling very disappointed with Google as a company who claimed to care about accessibility but in reality, they seem to forget about us and we are pushed to the side. It is like standing in a checkout line trying to reach the front of the queue but people keep pushing you backwards. There’s nothing we can do because whenever you file accessibility feedback with Google, it is completely ignored and we are treated like second class citizens who do not matter to Google. What are the other frustrating points I wish to make is with the phone app. I really do not like the Phone app on the pixel eight device especially when trying to access the keypad and then if you do nothing with the keypad for awhile, that window goes away and you have to locate the keypad button again. It is a very clunky experience compared to the phone app on iOS. Sorry however, long live iOS in this instance.

Did you know that ISO27001 requires you to do threat modeling? A 8.27 Requires you to "regularly update threat models to reflect changes in the system and external threat landscape." see: www.isms.online/iso-27001/ch... Why not try out threat modeling at copi.owasp.org#appsec #cybersec #owasp

Copi · Play Cornucopia O...