RuffLandings

60 Followers
1,017 Following
1.7K Posts
Dogs. Aviation. Cybersecurity. Not necessarily in that order.

Note how LastPass PR offloaded a ton of buzzwords here that don’t actually mean anything. They turned this kind of responses into an art. https://arstechnica.com/security/2026/02/password-managers-promise-that-they-cant-see-your-vaults-isnt-always-true/

Bitwarden at least admits that a fully compromised server isn’t part of their threat model. It’s the same for LastPass, and in the past they’ve rejected vulnerability submissions based on that – there are a number of very simple ways in which a compromised server is able to access your “secure” vault. But they won’t admit it, hoping instead that the message will drown in the noise they produce.

For the sake of completeness: Dashlane’s response is merely generic. 1Password’s response is correct from what I can tell: the “compromised server” scenario has been considered and the risks arising from it are documented, nothing new here.

#LastPass #infosec

Password managers' promise that they can't see your vaults isn't always true

Contrary to what password managers say, a server compromise can mean game over.

Ars Technica

If you aren't familiar with Modern Monetary Theory (MMT), I highly recommend you learn about it. It shouldn't take too long and it can change the way you think about social problems and grant you immunity from some of the right's most powerful, entrenched propaganda. The idea that we "can't afford" to address social problems like poverty and climate change, that trying to do so might "create a deficit" (all the while gleefully spending on things like tax cuts for billionaires and mining companies, the military and organisations like ICE).

Here are some videos I like about MMT:
- The Big Myth of Government Deficits, a TED talk by Stephani Kelton https://www.youtube.com/watch?v=FATQ0Yf0Fhc
- The Deficits Myth: The Biggest Lie in Politics https://www.youtube.com/watch?v=75udjh6hkOs

It's also worth searching around and reading and watching more about it until it feels intuitive.

You can develop a lot of confidence that when the talking heads say "the economy", they mean nothing more than "rich people's yacht money".

We can fix all the major problems with society if we have the will. We aren't constrained in the ways that they desperately want us to believe we are.

Stephanie Kelton: The big myth of government deficits | TED

YouTube
"The version of Christianity that Trump's most devout supporters embrace (and he pretends to) has no room for Christ’s actual teachings. Anyone who references Jesus’s declarations to aid the sick, poor, and vulnerable is quickly labeled a socialist and/or antifa."

https://www.publicnotice.co/p/trump-evangelical-support
Trump is clowning his evangelical base

He's not even bothering to pretend anymore.

Public Notice

Disingenuous statement on the GitHub Blog on the flood of AI-generated slop "contributions" that have been overwhelming project maintainers with busy-work:

"At GitHub, we aren’t just watching this happen."

That's true. You actively pushed things to get us to this point.

#GitHub #slop

Welcome to the Eternal September of open source. Here's what we plan to do for maintainers.

As contribution friction drops, maintainers are adapting with new trust signals, triage approaches, and community-led solutions.

The GitHub Blog

RT: @Heccles94 The UK does not have a welfare problem.

It's got a corrupt politician and corrupt political elite problem.

It's got a billionaire problem.

Tax the rich.

You might think, "well if there are discrepancies, shouldn't they be investigated?"

The 2020 election in GA HAS been investigated. It's one of the most closely scrutinized elections in US history, and has been the subject of an almost endless stream of litigation and analysis. This case is not the only opportunity to find out about the GA election.

Also, this is a federal criminal investigation, a very powerful tool with the capacity to wreck people's lives. Not something to do frivolously.

DC area aviation nerds: On Feb 28th (starting at 8am), a generator is scheduled for delivery to the roof of the new Georgetown hospital building via helicopter.

There will be road closures and pedestrian restrictions, but it should be possible to get close enough to see, if that's your thing.

The search and seizure warrant for Hannah Natanson explicitly authorized law enforcement personnel to use her fingers and face to attempt to unlock her phone. https://theintercept.com/2026/01/30/washington-post-hannah-natanson-fbi-biometrics-unlock-phone
Washington Post Raid Is a Frightening Reminder: Turn Off Your Phone’s Biometrics Now

The search warrant to raid a Washington Post reporter’s home shows how authorities can open your phone without your consent.

The Intercept

@HeavenlyPossum

By hoarding political power and ridiculing political ambition, while simultaneously and forcibly coupling all ambition/success with profit-seeking, the neofascists were incredibly successful in blunting and even eliminating civic ambition in the US.

"It's a fantasy" and "change is slow" and "perfect/enemy of good" and "baby with the bathwater" all swirled together with "you too can become a billionaire with this one simple trick: just be super ambitious!"

2/