Sheogorath :si_blobfox: boosted

@climagic Even easier:

dnf provides '*/mod_rewrite.so'

List all packages (installed or available) that contain a mod_rewrite.so file.

For commands even `dnf provides <command>` works:

dnf provides htpasswd

@aral well, it inflicts change, breaking change, that's something people react quite negatively to, especially in the UNIX world where people pretend that things haven't changed since the late 80s.

So yes, it's not easy and I'm also not all happy with it, but I'm sure it'll come and it'll somehow work.

@glsbank Gibt es eigentlich eine Möglichkeit sich über solch eine Anforderung informieren zu lassen und dann im Zweifel nochmal einschreiten zu können?

Show thread

@aral there are already multiple projects working on this project, including systemd-homed which received the usual love and hate.

There are also some more manual approaches to it, by some Debian developers.

But yes, this is a problem and it needs a solution.

Man merkt wie hier systematisch Darkpattern ausgenutzt werden um, man kann es schön reden wie man will, Leute jeden Tag aufs neue übers Ohr zu hauen.

Endkunden wie B2B-Kunden. Das Bild vom "ehrlichen Geschäftsmann" es löst sich im Internet im Moment komplett auf.

Es ist einfach zum Mäuse melken. Die größte Plattform zum Austausch von Informationen aller Zeiten und wir haben nichts besseres damit zu tun, als Leute zum eigenen Vorteil nach allen Regeln der Kunst übern Tisch zu ziehen.

Show thread

Was zum…

Man setzt beim Kauf/Vertragsabschluss einen Haken "zur Bonitätsprüfung" und die SCHUFA nimmt das als Anlass sich von der Bank die Kontoauszüge der letzten 12 Monate kommen zu lassen.

tagesschau.de/investigativ/ndr

@amici well, our current trend towards K8s, Terraform, etc.

As projects all over the place proof, soon one needs templating and with templating soon there is a generator for the values of the templates and then more complex system are created, etc.

The essence of declarative approaches to providing infrastructure appreas to be, that everyone wants something else and therefore the declaration for setups beyond demos is complicated enough to require scripts to organise it.

Fantastic.

Sheogorath :si_blobfox: boosted

#BlackFriday oder #KaufNichtsTag

Wenn du heute etwas kaufen solltest, frag dich bitte:
- Brauche ich dieses Produkt wirklich?
- Kann ich auch eine nachhaltige Alternative kaufen?
- Gibt es kleine oder lokale Läden, die ich lieber unterstützen könnte?

#ShareDichDrum #GreenFriday

@amiloradovsky No, I would say it's generally speaking more useful for private situations. For example, some people enjoy mobile banking. For those people I would definitely recommend to using a fingerprint for authentication over Pins, because pins are easily observed by an attacker.

Also I would recommend using fingerprints for everyone who currently doesn't use any locking mechanism at all. The overhead is minimal, the defense is massive. Not perfect, but better than what you have otherwise.

@amiloradovsky while biometrics have various downsites, especially against motivated attackers, they have been proven to be efficient for every day attacks such as shoulder surfing.

And fact is, for most people things don't need to be bullet proof, it's enough when attackers don't make it to pick the lock.

Sheogorath :si_blobfox: boosted

̶̶P̶̶̶̶̶r̶̶̶̶̶o̶̶̶̶̶t̶̶̶̶̶e̶̶̶̶̶c̶̶̶̶̶t̶̶̶̶̶ ̶̶̶̶̶y̶̶̶̶̶o̶̶̶̶̶u̶̶̶̶̶r̶̶̶̶̶ ̶̶̶̶̶d̶̶̶̶̶a̶̶̶̶̶u̶̶̶̶̶g̶̶̶̶̶h̶̶̶̶̶t̶̶̶̶̶e̶̶̶̶̶r̶̶̶̶̶ ̶̶̶

RT @Murphys_Cat@twitter.com

Educate your son.

Sheogorath :si_blobfox: boosted

The German Federal Ministry of Health and the Robert Koch-Institut operate a web form which you have to fill out when you enter Germany from a COVID-19 high-risk area.
I had to submit my data, so I took a glimpse at what it does in the background.

@luna as @tindall already pointed out, you can't "simply do that" but there are ways to keep private data in the same repository as the public data.

shivering-isles.com/publish-yo

TL;DR: you create a separate branch that you never merge and that you never base your changes on, that contains all your private files. Then you merge the "public" branch into your "private"/deploy branch which contains your private files.

To prevent accidental pushing a dead remote could work.

@amolith some visa application pages. I once had the problem that it was impossible to upload my image or even make it anywhere on that site without a chromium browser.

But yes, I share similar thoughts.

@aral soon: "I wrote a feature for sitejs that allows you to register the word "git" as search engine trigger and run all git commands directly in the browser." :blobfoxinnocentpuppyeyes:

Not giving ideas here, not giving ideas!

@selea literally the main sources of spam mails that I see:

- gmail
- yahoo
- hotmail/outlook.com

Recently there are a few more phishing attempts, those often run from other sources but use the services above as contact addresses.

@kuketzblog Das eigentlich traurige ist, dass die Landesregierung hier vermutlich entgegen besseren Wissens aus Bequemlichkeit Office 365 dennoch (weiterhin?) einführen wird, unabhängig davon, wie Schutzverbände dagegen vorgehen wollen.

Wenn nicht ein Gericht oder aber der Protest der Eltern das verhindert, sehe ich da wenig Hoffnung.

Show more