• 0 Posts
  • 15 Comments
Joined 3 years ago
cake
Cake day: July 16th, 2023

help-circle
  • This is a pure marketing stunt, OpenAI saw that it worked with Mythos and wanted to do the same.

    Those instructions, according to OpenAI, called for using “complex attack paths” to test how well the AI could exploit a computer system. […] “It went off and did this hack all by itself, as far as we can tell,” said Colin Shea-Blymyer, a cybersecurity research fellow at Georgetown University’s Center for Security and Emerging Technology.

    Emphasis mine. So, the frontier model that has been tasked with attacking a system, did what it’s been told to, after its safeguards that will prevent you from opening chatgpt and doing the same have been turned off.

    OpenAI said the intrusion was caused by a combination of its AI models, including its newly released GPT‑5.6 Sol and an “even more capable” model that is still being tested internally.

    Oh my god, an “even more capable” model? Let me buy OpenAI stock immediately. This is such an obvious bait and Antrophic move they’re pulling off, it’s amazing.


  • People definitely choose which projects to use / buy depending on political leanings or affiliations by the creators / companies behind it, because a “political leaning” is nothing more than a stance on politics, just as there is a stance on FOSS, AI, Conduct, Project direction, yadda yadda.

    See Ukraine flags or calls for Palestine support, as an example of recent-ish political stances in software.

    It’s just that those stances always work both ways. You will have people choosing omarchy, because “finally an OS without the woke agenda!!!”, you will have people not touching it because fuck nazis, and in IT there’s always the third group of “I don’t know or care who the author is or what he does, the project is good, so I’m using it.”


  • The tech giant says the system only analyzes hand-movement points from a short video, does not record audio, and deletes the footage after verification.

    It’s just a short video guys, there’s even no audio! And they pinky promise to delete it.

    What a fucking shitshow that is. Like, honestly, I’m fine with regular captchas, even if they are the shitty ones. The newer (?) captchas that force you to do solve 5 bullshit “place this there” captchas are already reason enough for me to just leave the site. But if you force me to record a video of me throwing gang signs at the camera, probably several times again, because the movement was not correctly identified, I’m sure as fuck to never visit anything related to you ever again.

    I also love the irony that Google fights people bots, while they are scraping the whole internet and investing into AI automation massively.


  • I fully agree with you: it’s NOT easy. And you must understand what you do. It’s not just deploy a container and run happy.

    This is literally what you’ve called misinformation.

    Again, not everyone is self-hosting only for learning and experimentation only. Making a deliberate call that mailing infra might be too hard might be too hard, have too big of a knowledge gap, or is simply not worth the effort is something I’d call more serious than hardlining on “self host everything or stay on gmail”, especially in the case of mailing, where it’s pretty much impossible to self-host on your own hardware / network.

    Full instructions do not reduce any effort or resources involved or complexity of the problem. And the problem is that you’re suddenly moving from “I’m hosting a few services” to being balls deep in networking, dns, and a deceivingly easy protocol which blows up in complexity due to being federated and absolutely dominated by big providers at the same time, and all of the extensions for security.

    Except for learning, self-hosting serves a purpose. You might want privacy, you might not want to be dependent on corpo infra or external services at all, you might want to host something that offers something more or better than a SaaS solution - but first of all, it needs to work. For mail, you gain none of those. Self-hosting on your own hardware (or rather network) is pretty much impossible, so you’re reliant on a hosting provider at least. There is basically zero difference in functionality between mailing servers or providers. Sure, you’ll run into problems when copy pasting instructions, but those problems will break the service. Fucking up your DNS or networking will break your whole server. At the same time, while failing silently it will costs a magnitude of effort more than most other usually self-hosted services.


  • x1gma@lemmy.worldtoSelfhosted@lemmy.worldEmail ownership, I give up.
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    2
    ·
    2 months ago

    Because it works for you, doesn’t mean it’s easy. If you have the experience, and done it at least once successfully, it’s “easy”. Compared to the average self-hosted configure and run a docker image and reverse proxy it’s objectively harder to run.

    The issue is not running the individual components or servers, but that there’s infrastructure and to some extent crypto involved, which is just outside of the comfort zone for many. You tried to host it like any other thing on your homelab? Nope. Has your VPS been involved in spam? Enjoy the blacklist you’ll never find out about and the debugging why it doesn’t work. No experience in managing your DNS? Have fun getting DMARC/DKIM/SPF to work.

    Theres just way more stuff that needs to be done, and a lot of it will fail silently.


  • Use at your own risk.

    What an amazing conclusion, and the best part is, no matter what you’ve been waffling about before - it’s always right. Can we stop calling random things AI slop and telling to be careful bEcAuSe iTs Ai sLoP, and go back to being cautious until something has been reviewed properly? Being careful with random stuff from GitHub you install and run in your private network?

    Your whole comment may have been AI slop as well. “From a quick glance at the repo”, you should be careful! Thanks, Sherlock.


  • But these things fly and hit targets precisely. Now with jet engines too. Your dismissive tone is inappropriate in this case.

    Any 50 dollar drone from Amazon flies precisely too.

    https://isis-online.org/isis-reports/monthly-analysis-of-russian-shahed-136-deployment-against-ukraine

    No idea how credible that source is, it’s the first one I’ve found and the estimates seem plausible.

    Overall the hit rate is at its lowest point of 8.2%, shaheds specifically 12.66% in March 2026, steadily dropping, despite the launch volume increasing, which corresponds to the quality of the drones lacking in Russian production. The strike effectiveness is estimated at around 5%. That’s for a 48k$ production cost. So no, the dismissive tone is pretty much appropriate. It doesn’t seem that the Russian “customizations” are working out for them. Slapping a more powerful engine and a nearly doubled payload on a drone doesn’t make it more effective in some magical way. It runs out of spec, and is produced using an untrained workforce in some quickly rigged up factory.

    It’s a plain volume weapon used to saturate air defences, and the occasional hit is a nice to have. The only reason they still have a payload is because if they would only launch decoys Ukrainian air defences would avoid shooting at them at all.



  • Personal opinion: Came over when the API changes went live, simply because being forced to their official “app”, which was a pile of garbage in all aspects for me, was too much. And since that started the exodus, I couldn’t be arsed to mess around with 3rd party apps to make them work again, because I was too lazy and it simply didn’t feel like it’s worth it anymore. Made a lemmy account, lurked mostly as I did on reddit, content for doom scrolling was lacking quantity mostly. For me there’s now enough content for the daily scrolling session, where quality posts end about as I start to get bored or need to get my ass up, so it’s a win win here.

    It really just feels that more people are here. What I’m missing are a few more different users, because it kinda feels that most people here are very similar in their views, but that also would probably pave the way for more defederation drama.

    Since I’m mostly lurking and liberally use the block instance/community feature to simply hide the content I’m not interested in, for me personally it only got better, so I jump in, get my daily fix of memes, news and other random interesting things, comment occasionally and get back to whatever. I’m honestly lacking an alternative, so it’s as good as it gets for now, and I’m happy with that.


  • Give your head a wobble mate, you’re literally out here justifying the murder of press in war zones.

    They won’t get it, the good-vs-bad is so rooted so deeply in their thought process that they don’t even realize it. At this point it’s just cheering for every death of a “bad guy”. It was bad when it started with celebrating the deaths of “terrorists”, then collateral damages started to be fine as well, as long as the target died too, and somehow we ended up here, where full on war crimes and genocides against civilians are okay, as long as they are the so-called bad guys or in the way of a mission against them.

    It’s honestly sickening. They are all human beings, and we all bleed all the same. Just because someone’s been born in a Hezbollah-controlled shithole, or is working for an irrelevant Russian TV outlet, they don’t deserve to die, and it doesn’t make their death acceptable.


  • At what point did I say it was ok? Please please show me where I stated what Israel is doing is ok?

    Your initial post was “they fired warning shots, he still went there it’s his fault”, I called you out on that. You doubled down with:

    Are…are you ok? You do know how wars work, legitimate or not ones. You target infrastructure, that’s what Israel was doing here. This idiot knows where they were going to be bombing, and set up near it. This isn’t journalism.

    You are literally dismissing any argument with “They targeted infrastructure, which is fine, and the journalist is at fault for being there”

    and it’s quite hilarious that you’re simping for RT… assuming you got a little tankie in you.

    Let’s go, you also need to call me a snowflake for your retard bingo card. Should’ve thought you’re a fucking American. Saying a journalist is a human being and has his human rights is simping for RT and being a tankie. You have lost any respect and value of a human life, like most of the US unfortunately.

    I’m fucking done wasting time with this bipolar shit. You’re doubling and tripling down into points claiming that you’re not making those points, and you’re not interested in anything else than making your own point anyways, so whatever lol


  • Are…are you ok? You do know how wars work, legitimate or not ones. You target infrastructure, that’s what Israel was doing here. This idiot knows where they were going to be bombing, and set up near it. This isn’t journalism.

    Again, fuck you and your arrogance. You know who’s mouthpiecing for who, what strikes have been called where and by whom, and seemingly everything else. Obviously, there isn’t a chance that Israel could’ve lied about that and deliberately striking this guy as claimed, since the Israeli government and IDF have proven to not misreport anything and they have never deliberately targeted civilians, journalists, medical personnel, or other persons of interests. Even the OHCHR stated concerns about the excessive bombings on infrastructure in Lebanon and the impact on civilians, potentially considering those as a war crime. Israeli officials threatened to do the same razing to Lebanon as they did in Gaza, and already started to do the same mass displacement orders (also a war crime btw), but they are just warning them to fuck off before they bomb the shit out of them, so that’s all fine, right?

    And what is journalism then? Broadcasting from a luxury hotel far away claiming all is well? Those people risk their life to show what’s actually happening, and that’s exactly why they are protected.

    So yeah, I seem to be more okay than you, at least I’m not excusing war crimes and accepting civilian casualties.

    Get off your podium kid, nothing I have ever said has been in support for Israel or the US wars.

    And yet you’re excusing obvious fucking war crimes. Keep lying to yourself and get back to that delicious boot.


  • Oh, my bad, right. Ignoring collateral civilians isn’t a war crime, because obviously they’ve been warned to fuck off. This is an amazing concept for journalism, you just tell any journalist that is uncomfortable for you to get away or they die, and if they don’t, you just kill them. Isn’t that great?

    Civilians are not a legitimate target, without exceptions.

    as much as Israel can go fuck itself, they literally told people they were targeting the bridge and finishing up the road destruction"

    “Fuck israel, but actually no”. If the same clip would’ve been from the Ukraine with a Russian shell in the background, you would be protesting the fucking ICC already.

    You’re a bootlicking asshole, excusing war crimes with pathetic double standards. Fuck you, and everyone coming up with that unhinged argument of “It’s not a crime if the good guys done it”, “it’s not a crime if the victim was a bad guy”, or both at the same time. Fuck you, and your moral pseudo hight ground. People like you are part of the reason that the US and their Israeli buddies can invade, genocide and cripple whole countries with close to zero backlash and with zero consequences.



  • x1gma@lemmy.worldtoSelfhosted@lemmy.worldCertificates...ugh
    link
    fedilink
    English
    arrow-up
    5
    ·
    6 months ago

    The easiest way would be to set up caddy to use acme on the servers, and never care about certificates again. See https://caddyserver.com/docs/automatic-https.

    If you insist on your centralized solution, which is perfectly fine imo, just place the certificates to a directory properly accessible to caddy, and make sure to keep the permissions minimal, so that the keys are only accessible by authorized users.

    If the certificates are only for caddy, there’s no reason to mess around in system folders.