[-] th3raid0r@tucson.social 10 points 1 month ago

Eh, it's more like the pregnancy announcement. Imo the v0.01 release on Sep 17th is a "Birthday".

But then again I'm biased on this. 🙃

[-] th3raid0r@tucson.social 10 points 9 months ago

I liked it just fine!

I know there are a lot of Asimov diehards that found it disappointing. I don't know why. The iRobot book wasn't even really a book, it was a collection of short stories. Not exactly an easy thing to adapt to a movie.

[-] th3raid0r@tucson.social 11 points 1 year ago* (last edited 1 year ago)

Well, seeing that Insurgency: Sandstorm was on a sale, I just picked it up for him (and myself). Seems to have a lot in the map making scene, and that's a really important factor for him.

It also helps that the prior Insurgency game has the most hours on his profile, by far. Gave me a good hint that he should enjoy this one.

Thanks so much!

EDIT: My dad just got back to me, and loves the gift. Apparently that's where most of his online buddies went and still are. Nailed it!

[-] th3raid0r@tucson.social 9 points 2 years ago

I guess I didn't really see the pressure that they were under.

I hope they heal! But it's a bummer that such an excellent resource will be taken down.

I wish more creators were willing to hand their creations to someone who wishes to continue it. But oftentimes, I fear that it's far too entwined with a person's identity for that to be common occurrence.

[-] th3raid0r@tucson.social 7 points 2 years ago

As a man who grew up with one foot firmly planted in yeehaw and the other in yuppie, I think this is brilliant!

[-] th3raid0r@tucson.social 10 points 2 years ago

I don't get it either. My brother-in-law is like this. And he refused to take his kids to see Buzz Lightyear because of its "political" nature. I was a dumbfounded when I heard that. To think that representation is just some nebulous political aim.

At this rate, we should just consider any media with a kiss in it "political media."

And I even grew up with this dude in the early 2000s. He didn't seem like this before.

I try to forget about the guy, but it's kind of hard because he won't let me see the nieces because I'm too "liberal".

[-] th3raid0r@tucson.social 9 points 2 years ago

Fun fact, I purposefully goaded the bots into attacking my instance.

Turns out they aren't even using the web form, they're going straight to the register api endpoint with python. The api endpoint lives at a different place from the signup page and putting a captcha in front of that page was useless in stopping the bots. Now, we can't just challenge requests going to the API endpoint since it's not an interactive session - it would break registration for normal users as well.

The in-built captcha was part of the API form in a way that prevented this attack where the standard Cloudflare rules are either too weak (providing no protection) or too strong (breaking functionality).

In my case I had to create some special rules to exclude python clients and other bots while making sure to keep valid browser attempts working. It was kind of a pain, actually. There's a lot of Lemmy that seems to trip the optional OWASP managed rules so there's a lot of "artisanally crafted" exclusions to keep the site functional.

Anyways, I guess my point is form interaction is just one way to spam sites, but this particular attacker is using the backend API and forgoing the sign-up page entirely. Hidden fields wouldn't be useful here, IMO.

[-] th3raid0r@tucson.social 11 points 2 years ago

It looks like they decided to bring it back in time for the next release! - https://github.com/LemmyNet/lemmy/issues/3200#issuecomment-1600505757

They specifically mentioned the feedback in the ticket and it goes to show how collective action can work.

Despite how others felt that I was trying to start a "brigade" - I was only trying to raise awareness by being collectively vocal. I never asked folks to abuse devs or "force" them to do something. I asked them to make their concerns known and let the devs choose. It's just that when I posted there were far less comments, and if I were the developer I wouldn't know that this issue is important to a lot of people - at least just looking at the github issues anyways.

[-] th3raid0r@tucson.social 9 points 2 years ago

No, I was around when SysV Init was "replaced" by Systemd and how that impacted the Debian project (and other distros).

But you know what, sure, let's stick to your bad faith, insulting interpretation, after all it is more becoming of an internet troll. I'm sure it'll get you lots of updoots from similarly trollish individuals.

Personally, I believe in something called collective responsibility, and that does including expecting community members to do their fair share. But it sounds like you envision federations as mini fiefdoms.

[-] th3raid0r@tucson.social 8 points 2 years ago

Everyone is impacted, but especially moderators and admins. Moderators will see more spam if Capcha is removed, even if their own instance isn't on v0.18 - they will exist in a fediverse with instances that are on v0.18.

Admins are impacted because Captcha served as a decent way, when coupled with email validation, to combating spam account sign ups.

[-] th3raid0r@tucson.social 8 points 2 years ago

So what you're saying is that a poorly constructed door is better than none at all? Huh. That was my exact point.

[-] th3raid0r@tucson.social 9 points 2 years ago

Okay, so do you mind explaining why the servers onboarding the most spam users are the ones without Captchas?

If they are so ineffective, why are they effective now?

view more: ‹ prev next ›

th3raid0r

joined 2 years ago