Linux nerd and consultant. Sci-fi, comedy, and podcast author. Former Katsucon president, former roller derby bouncer. http://punkwalrus.net/

  • 0 Posts
  • 15 Comments
Joined 2 years ago
cake
Cake day: June 22nd, 2023

help-circle


  • These are two types of cartoon sounds when a character snores.

    The “Inside you there are two wolves” is the name of a proverb which began being parodied towards the end of 2018 and through the beginning of 2019. In the original proverb, a grandfather says there are two wolves fighting inside him, an evil one and a good one. His grandson asks, “who will win?” The grandfather replies, “The one you feed.” In parodies, the story is often simplified to “There are two wolves inside you. One is X. The other is X. You are X.” The proverb’s actual origins are murky. It has been attributed to Christian pastor Billy Graham in 1978, as well as the Cherokee Native American tribe.



  • Basic setup for me is scripted on a new system. In regards to ssh, I make sure:

    • Root account is disabled, sudo only
    • ssh only by keys
    • sshd blocks all users but a few, via AllowUsers
    • All ‘default usernames’ are removed, like ec2-user or ubuntu for AWS ec2 systems
    • The default ssh port moved if ssh has to be exposed to the Internet. No, this doesn’t make it “more secure” but damn, it reduces the script denials in my system logs, fight me.
    • Services are only allowed connections by an allow list of IPs or subnets. Internal, when possible.

    My systems are not “unhackable” but not low-hanging fruit, either. I assume everything I have out there can be hacked by someone SUPER determined, and have a vector of protection to mitigate backwash in case they gain full access.






  • I have a kaleidoscope for the blind.

    One of only 150 or 250 made (I forget which). The artist (Reinhold Marxhausen) got Alzheimer’s in his final years, and is probably dead now. It looks like a metal blob, but the inside is hollow and it has are springs that vibrate and make tones to the slightest touch and heat change. Just shake it and hold it to your ear. It makes different and unique sounds depending on who is holding it, the weather, the air temperature, and so on.

    I got it from a kaleidoscope collector, who sold it to me because the small handmade box it came in was damaged in shipping, and it wasn’t worth as much without the box. I keep it in a handmade suede bag.

    Edit: I made an Imgur post about it: https://imgur.com/gallery/kaleidoscope-blind-Ab8Xz


  • Not mine, but from a post: First, you’re never going to win a head-on battle with an adversary that’s got you outgunned. That’s not the point of the Resistance. The point is to create friction, make it hard for your adversary to operate, to increase transaction costs.

    Second, resistance doesn’t have to be a dramatic act. It can be a small act, like losing a sheet of paper, taking your time processing something, not serving someone in a restaurant. Small acts taken by thousands have big effects.

    Third, use your privilege and access if you’ve got it. He and his buddies stole weapons from the Nazis by driving up with a truck to the weapons depot, speaking German, acting like it was a routine pick up, and driving away.

    Fourth, part of the third point really, sometimes the best way to do things is right out in the open. Because no one will believe something like what you’re doing would be happening so blatantly. All good Social Engineers know this.

    Five, bide your time. But be ready for opportunity when it strikes. Again, your action need not be dramatic. Just a little sand in the gears helps.

    Six, and this is a no-brainer, operate in cells to limit damage to the resistance should they take you out. Limit the circulation of info to your cell, avoid writing things down and…

    Seven, be very careful with whom you trust. Snitches and compromised individuals are everywhere. My dad was arrested because of a snitch. His friends weren’t so lucky, the Gestapo machine gunned the cabin they were in without bothering to try and arrest them.

    Eight, use the skills you have to contribute. Dad was an electrical engineer. When the Nazis imposed the death penalty for owning a radio (the British sent coded messages to the Resistance after BBC shows) he said he became the most popular guy in town.


  • See, I think one of three scenarios might have happened:

    • Luigi didn’t do it. He was framed and set up because out of the hundreds of prank tips, this guy looked “close enough.”
    • Luigi did it, but the evidence was made up to make the case solid and the police look competent. Luigi wasn’t stupid, but he’s boned anyway.
    • Luigi did it, and he really was that stupid.

    As a writer, one of the aggravating tropes we have to follow is, “make the story believable,” when reality sometimes doesn’t align with “a good story.” Some criminals are really that stupid, and some armchair theory, based on decades of movies, books, and TV shows, you expect “hey, this is what they SHOULD have done is.” And they didn’t. It’s like when a chessmaster has to watch complete amateurs play chess. “Obvious strategies” are ignored, and basically both players are just not thinking past their last move.


  • This has been my experience as well with Aliexpress. I know there’s a huge caveat emptor going on, but it’s like you said about batteries and storage, be careful unless you know exactly what you’re buying. Like a 64TB SSD for $15.99 proooobably not the real thing. But I have gotten a lot of SBCs, some stuffed animals, and cheap costume jewelry for my wife (who knows it’s cheap, but doesn’t care). Weirdest “quality” purchase? My “gold colored” tungsten wedding ring was $10, comfort fit, and in 6 years still looks like the real thing. But didn’t dent like my original wedding ring (which is why I needed a replacement, got smashed in a door accident). I’d never buy anything that I knew might cause a fire (like batteries) or possibly poison me (like pills).

    Wish and Temu ripped me off in some of my first purchases. I was only out $30, and I know it was possible, so I just deleted my account and the apps.


  • This right here. I have worked with a dozen PMs in 30 years, only two were any damn good. One managed an IT team, and she didn’t know tech worth squat, but God damn, did she keep the flow going and know how to get shit done without being an ass about it.

    On the other hand, I faught with a PM once because he didn’t understand the concept of priorities or how to manage a crisis. “You want me to fix the outage or attend a meeting about it?” “Both.” “Pick one. You have a choice. I can fix the issue in the data center, or join a blame session in the meeting room. Which one?” “BOTH!” I got to the meeting room, and he demanded we put down our laptops and pay attention. He invited EVERYBODY regardless of whether they were needed or not. Twenty seven people all bitching about the outage and not a single person fixing it. No meeting moderation. Just chaos until he had a panic attack. Just useless.


  • A lot of outsourcers do this. Here’s my experience with a few companies.

    • The “team” you meet are competent, English speaking fronts. They are the demo models of the people who will work on your projects.
    • After the contract is signed, these people are swapped out with randos of varying competence.
    • In some cases, some of these randos are further hidden behind aliases: people with names that are actually more than one person sharing logins and passwords.
    • They will string you along, trying to charge maximum hours worked without regards to product or services delivered.
    • Most of these companies have a “bucket of crabs” mentality: the managers are horrible, the staff incompetent, and once the gain some skill, they leave for better companies. They backstab one another, hijack projects to fuck over coworkers, and lie and cover their tracks. Some of this is cultural, like a caste system, while some are just racist.

    At one time, these people were pretty good, but they realized they had skills and left for other countries for better pay and better working conditions. The bids got more and more competitive, cutting costs until they were literally filled with low-skilled labor who can’t be promoted or leave for economic or competence reasons.