What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0

윤석열 전 대통령이 12·3 비상계엄 선포 사흘 뒤 극우 유튜버 고성국씨에게 다섯 차례나 전화를 건 사실이 드러나면서 두 사람의 관계에 관심이 쏠리고 있습니다. 고씨는 윤 전 대통령이 ‘윤석열-김건희 공천개입’ 의혹의 핵심 인물인 명태균씨와 대화할 때도 등장한 바 있습니다.

윤석열, 계엄 실패 뒤 고성국에 전화 걸어 뭘 상담했을...

0
0
0
0
0
0
1
0

Incredible (but predictable) : has blocked the International Criminal Court's access () to its services on the orders of the mafia.

Read that carefully : an international organisation that has no presence in the United States and no US legal rights has had its work tools blocked simply because it disagrees with the Trump administration. 🚩

Get the hell out of it right now.

apnews.com/article/icc-trump-s

0
0
0
1
0
0

보수콘크리트 깨는게 어려워서 어떻게든 민주당 뽑아도 바로 다음에 국힘 뽑는 나라가 한국임
'최악보단 차악' '민주주의가 깔려있어야 그 다음 단계로 나아갈 수 있음'… 매 대선마다 이런 이유로 뽑아뒀더니 아직까지 차별금지법 제정 못 해 자꾸 사회적 합의가 안 됨 따위의 이유로 계속 후순위로 밀리는 소수자들의 심정을 이해할 마음 따위 쥐뿔도 없으면서 비난하면 그게 곱게 들리겠습니까?

계엄으로 인해 다들 예민해졌고 공포감이 전에 비해 더 강해진 거 알겠고, 그 공포감에 일정 부분 공감하는 바인데 언제나 후순위로 밀려왔던 소수자들이 자신의 생존과 직결된 문제들을 그 어떤 대통령 후보보다도 적극적인 방식으로 다가와 함께 하는 사람에게 마음이 가는 건 당연한 거 아님?

보수도 아닌 파시스트 집단의 해체를 위하여 설득하고 회유하는 것도 민주당 하는 꼬라지보면 회의적인데, 여기서 권영국 지지하는 사람들을 향해 생각이 부족하고(지능 관련 비하 발언까지 써가면서) 비난하는 것만 계속 보다보면 까놓고 말해 님 존나 기득권적이시네요 같은 말 밖에 못 하죠 진짜 짜증나게 굴어

1

Sky Q boxes are "down" across the entire nation leaving people unable to watch TV, because the Sky account servers are down

but how can this be? a lot of people still get TV through satellite with Sky, which shouldn't be affected by an internet-based outage... except Comcast/Sky DRM-ing the boxes

the main report i'm seeing (and experiencing) is after 5-10 minutes the box just completely turns off and can't be turned on again. that's an *insanely weird* failure case, which makes me suspect that because the authentication is failing, it thinks you're stealing - the box isn't yours according to your contract, after all

0
1
0
0
0
1
0
0
0
0
0
1
0
2
0
0

윤석열 전 대통령이 12·3 비상계엄 선포 사흘 뒤 극우 유튜버 고성국씨에게 다섯 차례나 전화를 건 사실이 드러나면서 두 사람의 관계에 관심이 쏠리고 있습니다. 고씨는 윤 전 대통령이 ‘윤석열-김건희 공천개입’ 의혹의 핵심 인물인 명태균씨와 대화할 때도 등장한 바 있습니다.

윤석열, 계엄 실패 뒤 고성국에 전화 걸어 뭘 상담했을...

0
0

가덕도 신공항 무산

https://m.busan.com/view/busan/view.php?code=2025051518192076698

부산일보는 여전히 정신 못차리고 밀어붙이면 될 거라고 주장 중.

현건이 10조짜리 사업인데 돈 벌기 싫어서 안 하는 거겠냐... 기간 12년에 공사비 15조는 보고 가야하는 사업인데 동력은 떨어졌으니 못 하는 거지.

0

近くの事務職の人が若手に「労働組合とはとりあえずゴネて騒いで事を大きくして金をむしり取る集団(ざっくり)」という説明をしていてモヤってる。
法的にアウトなら金は取れないんですけど…そんなに不当なことしてないと思いますが…
普通の日本人てこれかぁ。

0
1
0
0
0
0
0
0
0
0
0
0
0

ふと思い出して気になったので、ケンブリッジ大学コピペをAIに解釈させてみたよ。

ケブンッリジ だがいく

ってメチャクチャな順番で書いてあっても読めちゃうっていうアレね。

完璧に見えるけど、 はのうん だけ読めてないわ。

Rawlinson, G. E. (1976) The significance of letter position in word recognition. Unpublished PhD Thesis, Psychology Department, University of Nottingham, Nottingham UK.

0

Good morning! ☕

Now that I can't find any other bugs in any more, I'm thinking again about how I could improve it.

Would anyone consider deploying it on a busy site right now? Either as a replacement for (proof-of-work against bots), or for simple non-federated , or maybe even both?

I'm currently not sure how well it would scale. The reason is the design with server-side sessions, which is simple and very light-weight "on the wire", but needs server-side RAM for each and every client. It's hard to guess how this would turn out on very busy sites.

So, I'm thinking about moving to a stateless design. The obvious technical choice for that would be to issue a signed (Json Web Token), just like Anubis does it as well. This would have a few consequences though:

* OpenSSL/LibreSSL would be a hard build dependency. Right now, it's only needed if the proof-of-work checker and/or TLS support is enabled.
* You'd need an X509 certificate in any case to operate swad, even without TLS, just for signing the JWTs.
* My current CSRF-protection would stop working (it's based on random tokens stored in the session). Probably not THAT bad, the login itself doesn't need it at all, and once logged in, the only action swad supports is logout, which then COULD be spoofed, but that's more an annoyance than a security threat... 🤔
* I would *still* need some server-side RAM for each and every client to implement the rate-limits for failed logins. At least, that's not as much RAM as currently.

Any thoughts? Should I work on going (almost) "stateless"?

0
0
0
1

I'm so fed up* with articles about the widespread use of LLM chatbots by university students that only interview students who use them intensively and teachers who have no idea how to encourage students to think by themselves.

Aren't there any stories out there of students who refuse to use them because they realize how detrimental to learning this can be (I'm less interested in those who refuse out of ethical/environmental/geopolitical concerns, not that those aren't valid) or of educators who have found how to effectively encourage students to do their own work, because the point is not the final product but the process?

(Yeah, my Introduction to Data Science course is starting in a few weeks and I'm not looking forward to the time we're going to waste on grading projects written by an algorithm.)

* by which I mean, excessively upset and having difficulty sleeping at night. The despair they induce has even been seeping into some of my dreams.

0