* Posts by sabroni

4138 publicly visible posts • joined 11 May 2007

RIAA DMCAs GitHub into nuking popular YouTube video download tool, says it's used to slurp music

sabroni Silver badge

re: I think music studios can get royalties from legit. videos on every play

For a given miniscule value of "royalties".....

sabroni Silver badge

re: as much as I would like to visit a "covid-secure" chain pub

Why's that, are you immune?

OnePlus 8T: Solid performance and a great screen make this 5G sub-flagship a delight

sabroni Silver badge

Re: Fast charging vs wireless

It's too inefficient. I'm avoiding it until it's as good as plugging in.

The fact that you like wireless because it's easier, like plugging a phone charger cable in is an effort, amazes me.

JavaScript-based address bar spoofing vulns patched in Safari, Yandex, Opera

sabroni Silver badge

Re: HTML5 is frankly quite disappointing

What specifically were you looking for?

Ubuntu 20.10 goes full Raspberry Pi, from desktop to micro clouds: Full fat desktop on a Pi is usable

sabroni Silver badge

I'd like to use a pi as my local Netflix and YouTube client

But Firefox video decoding seems to run in software on raspbian so it's unwatchable. The device is capable of decoding these streams in real time.

Anyone know if Firefox on Ubuntu would use hardware decoding?

Run Windows on a Chromebook: All the details. Not so fast, home user...

sabroni Silver badge

Re: the user can't then run Chromebook software

Standardise on browser based software then. Picking another OS to lock yourself to seems pretty short sighted when the whole point of Chromebooks is "you just need a browser to run this".

Love Minecraft: Java? You'll have to learn to love your Microsoft account as well – it will be required next year

sabroni Silver badge
Meh

Who knows what we'll do next?

Well i guess this still counts as Extend so....

Iran sent threatening pro-Trump emails to American Democrats, Russia close behind, says US intelligence

sabroni Silver badge

It's not tricky.

They don't care who wins, they just want to destabalise America.

sabroni Silver badge
Facepalm

Re: Why would anything to do with the proud boys make people vote Trump.

Uhm, Stand back and stand by?

Top tip, everyone: Chinese hackers are hitting these 25 vulns, so make sure you patch them ASAP, says NSA

sabroni Silver badge
Thumb Up

Re: =====>

No security vulns in Linux! Many eyes make sure of that!

What does everyone make of today's Google antitrust action? Only the stock market is happy with the status quo

sabroni Silver badge
Facepalm

Re: you just stop them being evil.

Oh, is that all it needs!

Cool.

Piece of piss!!

When you tell Chrome to wipe private data about you, it spares two websites from the purge: Google.com, YouTube

sabroni Silver badge

Re: What's "site data"?

A cookie belongs to a domain and is always sent when a browser sends a request to that domain.

localStorage belongs to a domain but isn't sent when the browser sends a request. It is available to code served from the domain so gives a site a way of accumulating state without bulking up the http requests.

sabroni Silver badge
Facepalm

Re: When much of the argument is based on a hypothetical premise to support its doomsaying

Good grief, so many words to say:

"I knew about this already, I found out six years ago.

They haven't stored cookies in local storage and they could have. You should investigate that."

Postulate my arse.

Linux 5.10 to make Year 2038 problem the Year 2486 problem

sabroni Silver badge

Imagine the noise in here...

...if it was Windows that couldn't see past 2038 and not your beloved Linux.

When you gaze long enough into the bork, the bork will gaze back into you

sabroni Silver badge

re: That's a very odd form of bork

I thought it was implied in the article that it's crashed mid-transition. It was doing a fancy animation to slide the columns on and froze.

It's that time of the year when Apple convinces you last year's iPhones weren't quite magical enough, so buy this new 5G iPhone 12 instead

sabroni Silver badge
Happy

Re: swift (which i used to dislike) makes it pretty hard to write in dumb bugs.

Stick at it! You'll get there!!

Morgan Stanley hit with $60m penalty for failing to properly decommission old kit hosting 'wealth management' data

sabroni Silver badge

Re: punishment should be proportional to the crime

The purpose of the fine is to act as a detterent. If the figure is insignificant to the offender then it won't deter them at all. Besides which, if the fine is "A weeks money" that's perfectly proprotional.

Mark Zuckerberg, 36, decides that having people on his website deny the deaths of six million Jews is a bad thing

sabroni Silver badge
Happy

Re: Self awareness isn't your strongpoint, is it?

"I'm aware that I'm always right!"

AWS cooks up Extensions API for Lambda serverless platform: Useful for monitoring, alerting

sabroni Silver badge

Re: that in a few years cloud services could be using about 6% of global electricity production

You're comparing oranges with nothing.

If computing uses 10% of global electricity resources when everyone has their own racks and 6% when we all share cloud resources then cloud is more efficient. Without that comparison your point is pointless.

The seven deadly sins letting hackers hijack America's govt networks: These unpatched bugs leave systems open

sabroni Silver badge

Re: Microsoft is partly at fault...

What do you mean 'partly'?

On this site MS are responsible for fucking everything up, whoever wrote the code.

Google contractor HCL America accused of retaliating against unionized techies by shifting US jobs to Poland

sabroni Silver badge
WTF?

Re: What you read in the press is what the unions want you to hear

How does that work then? Which union is it that exerts editorial control over the UK press?

EFF off: Privacy Badger disables by default anti-tracking safeguard that can be abused to track you online

sabroni Silver badge
Meh

Re: NoScript stops trackers dead.

Not really. It stops them running code in your browser to track you but it doesn't block all http requests so tracking is still a distinct possibility. Browser sniffing and other fingerprinting techniques allow servers to single out user agents without running scripts.

NoScript is awesome but I suggest adding UBlock origin or something similar to stop your browser connecting to those endpoints in the first place.

Git your ass to the cloud! Gitpod hooks up with GitLab to take on GitHub Codespaces

sabroni Silver badge

Re: Not everyone is a webdev, some of us write serious programs

Could you contemplate getting over yourself for a second?

Teracube whips out cheap, fixable phone with removable battery and four-year warranty

sabroni Silver badge

Re: Will it run Linux?

No, it's:

But can I wipe it and put a PROPER linux on there.

GitLab scans its customers' source code, finds it's as fragile as you'd expect

sabroni Silver badge
Boffin

But still not as bad as the way most websites run

I can put together a node app using npm and I have to depend on other people's code. Like I do when I work in any language. I have a tool that pulls the dependencies in and reports known vulnerabilites to me. It's my problem, I control the payload that's delivered to the customer and can audit as I see fit.

When I visit theregister.com, for example, it tries to pull in scripts from theregister.com, doublick.net, google-analytics.com and jwplayer.com. (I have a sneaky suspicion that if I allowed those I'd get some more domains listed but the site works fine without them so they don't get run on my machine.)

How does a site developer take responsibility for the scripts delivered by other domains? I can audit the code I pulled from npm but I have no control over what a third party domain serves. How could I?

So the much more fundamental issue with modern JS development isn't that we build using code from lots of people we can't trust, it's that we build services that pull code from domains we don't control. In that situation we can never audit the code and be confident it is secure.

sabroni Silver badge
Thumb Up

Re: And NO rapid/radical direction changes.

Smashing! Good to see competitors spend months delivering something that we've already tried and found the customers don't like.

sabroni Silver badge
Thumb Up

Re: Cook your own

Cool story bro!

Microsoft: After we said we'll try to promote more Black people, the US govt accused us of discrimination

sabroni Silver badge

Re: Here's a radical idea...

I'm fine with the current system because it benefits me.

Not what I'd call radical.

TalkTalk marches OneTel users into a brave new email world

sabroni Silver badge

Re: Can't imagine why anyone ever used an ISP email account.

You can't imagine a lazy person who just uses what they're given?

You have a shit imagination.

If the Samsung Galaxy S20 Fan Edition doesn't make you a fan, we don't know what will

sabroni Silver badge
Facepalm

Re: Within 30 seconds of using it the phone was showing me ads

And your response to that is to decide on a fucking Google phone instead?

I'll have some of what you're on.

sabroni Silver badge

Re: Too small

Music can disappear from streaming services. This used to be a massive problem with Spotify and less popular artists.

Doesn't happen with an sd card.

But Spotify is fine if you like popular music.....

Microsoft says bug, sorry, 'a latent defect' in Safe Deployment Process system downed Azure Active Directory

sabroni Silver badge

Re: Outage Notifications

So this 15 minute turn around will be helpful then.

What a bunch of bastards!

Ring glitch results in global ding dong ditch: Doorbell bling flings out random pings but they're not the real thing

sabroni Silver badge
Thumb Up

Re: Ignorance is bliss

Sometimes i love this forum!

sabroni Silver badge
Happy

Re: You're better off with knockers.

FNARRRR!

The perils of building a career on YouTube: Guitar teacher's channel nearly deleted after music publisher complains

sabroni Silver badge

This!

"He decided to build a career on a 3rd-party platform he has no control over whose terms & conditions he agreed to in advance."

And he got the support he paid for.

Not Particularly Mortifying: IEEE eggheads probe npm registry, say JavaScript libs not as insecure as feared

sabroni Silver badge

Re: So how exactly does one check?

npm automatically checks dependent libraries for known vulnerabilities when it's installing. If it finds vulnerable packages it prompts you to examine them (with "npm audit") and suggests you try fixing them (with "npm audit fix").

The problem isn't that it's difficult to check for vulnerabilities, it's that it's easier not to.

Microsoft's OS joins macOS and Linux at the Flutter party, but guess which one performs best? Hint: It's not Windows

sabroni Silver badge

Re: take a look at JUCE - written in C++

Great! Memory management is for wimps, I need something that hides lots of obscure buffer overflow vulnerabilities!

Microservices guru says think serverless, not Kubernetes: You don't want to manage 'a towering edifice of stuff'

sabroni Silver badge

Re: you have to capacity manage memory at function level

Surprised there's no "auto inflate if I get into trouble" option on that, the cloud's ability to automtically scale stuff up is one of it's main selling points......

sabroni Silver badge
Thumb Up

Re: Cloud or not

Well yeah, if you're going to be sensible and pragmatic about it.

We're not getting back with Galileo, UK govt tells The Reg, as question marks sprout above its BS*

sabroni Silver badge
WTF?

Re: Is that covid, brexit, global recession of 2008

I think someone may have swapped your code with some proper heroin....

sabroni Silver badge

re: What does that even mean?

It means "I have no argument so I've resorted to name calling"

Another reminder that bias, testing, diversity is needed in machine learning: Twitter's image-crop AI may favor white men, women's chests

sabroni Silver badge

re: that “racism” brigade

Oh, the woke brigade. Those who don't like to watch police slowly suffocate black people to death.

Fucking liberals.

sabroni Silver badge

Re: No one wrote code to exactly identify this.

So the humans responsible can wash their hands of it?

The fact it doesn't do what they built it to do isn't something to be proud of.

Das Keyboard 4C TKL: Plucky mechanical contender strikes happy medium between typing feel and clackety-clack joy

sabroni Silver badge

Re: Witchcraft, if you ask me.

There's two little ridges on the f and j keys, if you put your first finger of your left hand on f and the first finger of your right hand on j then you can reach all the keys without moving your hands. It's called touch typing. It's easy to get a computer to teach you, that's how I learnt (though I learnt on a dedicated word processor with an A4 sized green screen!)

sabroni Silver badge
Boffin

Because anyone who pulls "that shit" is automatically considered a bastard.

Imagine working for GitHub and writing a command-line interface for the platform, then GitHub makes an 'official' one

sabroni Silver badge

Re: but I really wish it was developed by an actual C or C++ developer.

The people responsible for ALL the buffer overflow vulnerabilites in the past decade? Oh, yes please!

None of you fuckers can do a good enough job. At least the Go programmers realise there's a problem that needs addressing.

sabroni Silver badge
Facepalm

Re: "feelings" are SO overrated.

Here I come with my calm, rational shouty posts to explain in a very agitated way why other people's feelings shouldn't inconvenience me!

Without a fucking shred of irony.

sabroni Silver badge

Re: Microsoft GitHub

Now is the time to look around and see who is naive enough to fall for the "Microsoft are still the problem" nonsense again.

And then you know exactly who's opinion to completely disregard in future.

See? There is a good side to all this. It is an entry level "stuck in the past test".

sabroni Silver badge

Re: once you start replacing cli tools with proprietary ones

But they haven't, the old hub client is carrying on so it's behaviour doesn't change. The new one is gitHub specific so if you use github features you can interact with them from the command line.

The alternative was to change an existing, generic client into one that specifically worked with github.

But it really doesn't matter what they do, does it? You can't let it go, even while FaceBook, Twitter and Google are destroying functioning democracies around the world you have to keep carping on about MS.