• 0 Posts
  • 118 Comments
Joined 3 years ago
cake
Cake day: June 19th, 2023

help-circle







    1. Actually text me the one-time passcode, rather than saying you sent it to me while instead texting it to the molten core of the earth.

    Uhhh… how about NO??

    In fact, as a casual security professional (it’s not a core part of my job, but I know a lot more than most ppl), I openly advocate making SMS and eMail illegal for transmitting one-time passcodes.

    Why? Because both are critically insecure, cannot be adequately secured outside of laboratory or highly restrictive environments, and can be trivially hijacked.

    The only one-time passcode that should be used are one-time password generators (TOTP) such as Google Authenticator or any other such method.

    Yes, this requires a little more effort on the part of the site owner, but it’s worlds better than SMS or eMail, and far more user-friendly than forcing the user to open the company’s app just to receive the code (looking at you, Canadian banks and other businesses like Telus).






  • So first they get devs hooked on AI.

    Then they watch and wait as dev skills degrade. Like, the actual skills to get the work done without AI.

    Then, once devs are unable to be productive without AI anymore, they turn down the screws, pulling profit from those who cannot do without anymore.

    It’s a tactic of capitalism that is as old as time. But I think it’s been done too quickly this time, as there are still plenty of devs which have sat on the sidelines, waiting for things to shake out, and who haven’t had their skills erode away from AI usage because they just haven’t been relying on it or even using it.



  • Oh no! Forbidden

    Error: access denied: denied by administrative rule fa68ec4c0b694396d50ce50a8cf4cb6b/81a4d3ff51d16981b7d8

    Why am I seeing this?
    If you have any issues contact the site administrator and provide the following Request ID along with your browser details, specially like the User-Agent: fa68ec4c0b694396d50ce50a8cf4cb6b

    Protected by go-away :: Request Id fa68ec4c0b694396d50ce50a8cf4cb6b

    Just some basic browser protections, and I get this. Is this enshittified Cloudflare v2.0?





  • Coffee house dates are realistic. Many places are open well into the evening, especially chains. And while privacy isn’t high, neither is the cost.

    And the point of a first date is not to spend money, but to gauge compatibility and interest.

    Any guy that spends big bucks on the first date is setting himself up for failure by putting up a high bar that the woman is loathe to go beneath in the future. He will be caught in the “dancing monkey” trap, forced to implement ever more expensive displays just to stay above that bar.

    By keeping the bar low in the beginning, a man filters for quality and substance and against being treated like an ATM. Those women who are just foodies or who have unrealistic expectations self-select themselves out of contention, leaving only the serious, well-adjusted, pragmatic, and realistic women still at the table.


  • Enrolment in CS degrees is already crashing as people hear about how horrific the job market is from new graduates. My bet is that this will persist for at least 5-8 years, if not longer, as negative impressions remains resident in the population for a lot longer than actual conditions.

    By the time companies realize that they have starved the employee channel of new talent, they will be handing out $150k+ jobs to anyone who can fog up a mirror, and anyone having demonstrable senior-level skills will make an average of triple that.