trompete

joined 3 years ago
[–] trompete@hexbear.net 59 points 2 weeks ago

Even German media is now reporting that "Ukraine is currently losing ground faster than ever – except for the first few weeks of the war."

Source: Süddeutsche Zeitung (use Bypass Paywalls Clean browser extension to read whole article)

Of course there's also cope about how many soldiers Russia is losing and how they're going to run out of armored vehicles.

[–] trompete@hexbear.net 2 points 3 weeks ago

I'm on the 2nd chapter (?) of farewell, so right behind you (i.e. probably 5000 more deaths and 5 hours).

[–] trompete@hexbear.net 20 points 3 weeks ago

"Friedenspreis" aka peace price of the German book sellers actually.

[–] trompete@hexbear.net 13 points 3 weeks ago

Did he acknowledge the creators of that track which would be (British) Sea Power? Because dick move if he didn't.

[–] trompete@hexbear.net 2 points 1 month ago
[–] trompete@hexbear.net 1 points 1 month ago

Ffmpeg is used by everybody so you'd hope people are looking at it, but I'm sure there's security bugs in there, and probably plenty of them, since it's C parser/decoder code, probably the most dangerous kind of code. I think web browsers do some kind of sandboxing around ffmpeg, plus web browser restrict the kinds of formats they support, but ffmpeg (and peertube?) supports a lot more, many of which will not be audited/fuzzed to the same degree.

Ideally this would be sandboxed so much it can't call anything but read(2) and write(2). I have no idea if any of this software does any sandboxing at all.

Is this any more dangerous than BitTorrenting anime?

Maybe, depends on the what exactly you're worried about. There's potentially political actors that might be interested in fucking with tankie.tube, whereas you can't really target anyone specifically with bittorrent. Also the attacker knows exactly what software will be used to decode the videos, which makes this easier to exploit. I assume that videos can get uploaded to tankie.tube by basically anybody, and those videos would be sent out to be transcoded on random people's machines?

If you assume tankie.tube (maybe peertube in general) is just too small to be on anyone's radar, then that's probably fine.

[–] trompete@hexbear.net 10 points 1 month ago (2 children)

Ffmpeg is used by everybody so you'd hope people are looking at it, but I'm sure there's security bugs in there, and probably plenty of them, since it's C parser/decoder code, probably the most dangerous kind of code. I think web browsers do some kind of sandboxing around ffmpeg, plus web browser restrict the kinds of formats they support, but ffmpeg (and peertube?) supports a lot more, many of which will not be audited/fuzzed to the same degree.

Ideally this would be sandboxed so much it can't call anything but read(2) and write(2). I have no idea if any of this software does any sandboxing at all.

Is this any more dangerous than BitTorrenting anime?

Maybe, depends on the what exactly you're worried about. There's potentially political actors that might be interested in fucking with tankie.tube, whereas you can't really target anyone specifically with bittorrent. Also the attacker knows exactly what software will be used to decode the videos, which makes this easier to exploit. I assume that videos can get uploaded to tankie.tube by basically anybody, and those videos would be sent out to be transcoded on random people's machines?

If you assume tankie.tube (maybe peertube in general) is just too small to be on anyone's radar, then that's probably fine.

[–] trompete@hexbear.net 24 points 1 month ago (18 children)

Video decoders are all written in C and almost certainly full of exploitable bugs, thus people participating in this are making their personal computers vulnerable to attack via manipulated video files. You'd at least want this sandboxed as much as possible, and have it run as it's own user.

[–] trompete@hexbear.net 4 points 1 month ago

I've been replaying Celeste because last time I stopped in frustration at 5b. Now I'm on 7c and oh boy the last screen is something else. I've been stuck for two hours already.

[–] trompete@hexbear.net 15 points 1 month ago

School is deliberately set up to produce good and bad students. The working class is subdivided into higher-paying higher-status workers, precarious low-wage workers and the unemployed, and schools are tasked with reproducing and justifying these divisions. Pretty sure this can't be done without some pretty fucked up abusive bullying, and so here we are, most are more or less traumatized by school.

[–] trompete@hexbear.net 27 points 1 month ago (1 children)

Did he claim that though, I remember them campaigning on eat shit peasants.

view more: ‹ prev next ›