RuffLandings

60 Followers
1,017 Following
1.7K Posts
Dogs. Aviation. Cybersecurity. Not necessarily in that order.

Note how LastPass PR offloaded a ton of buzzwords here that don’t actually mean anything. They turned this kind of responses into an art. https://arstechnica.com/security/2026/02/password-managers-promise-that-they-cant-see-your-vaults-isnt-always-true/

Bitwarden at least admits that a fully compromised server isn’t part of their threat model. It’s the same for LastPass, and in the past they’ve rejected vulnerability submissions based on that – there are a number of very simple ways in which a compromised server is able to access your “secure” vault. But they won’t admit it, hoping instead that the message will drown in the noise they produce.

For the sake of completeness: Dashlane’s response is merely generic. 1Password’s response is correct from what I can tell: the “compromised server” scenario has been considered and the risks arising from it are documented, nothing new here.

#LastPass #infosec

Password managers' promise that they can't see your vaults isn't always true

Contrary to what password managers say, a server compromise can mean game over.

Ars Technica
@mason @mttaggart Found it! And can already think of 3 YouTubers I expect to be trying this out in <12 months: https://mastodon.social/@arstechnica/116093184760969864
@mason @mttaggart I’ve been trying my hardest to not look at *any* equipment prices. I’ve been failing, but trying!

If you aren't familiar with Modern Monetary Theory (MMT), I highly recommend you learn about it. It shouldn't take too long and it can change the way you think about social problems and grant you immunity from some of the right's most powerful, entrenched propaganda. The idea that we "can't afford" to address social problems like poverty and climate change, that trying to do so might "create a deficit" (all the while gleefully spending on things like tax cuts for billionaires and mining companies, the military and organisations like ICE).

Here are some videos I like about MMT:
- The Big Myth of Government Deficits, a TED talk by Stephani Kelton https://www.youtube.com/watch?v=FATQ0Yf0Fhc
- The Deficits Myth: The Biggest Lie in Politics https://www.youtube.com/watch?v=75udjh6hkOs

It's also worth searching around and reading and watching more about it until it feels intuitive.

You can develop a lot of confidence that when the talking heads say "the economy", they mean nothing more than "rich people's yacht money".

We can fix all the major problems with society if we have the will. We aren't constrained in the ways that they desperately want us to believe we are.

Stephanie Kelton: The big myth of government deficits | TED

YouTube
"The version of Christianity that Trump's most devout supporters embrace (and he pretends to) has no room for Christ’s actual teachings. Anyone who references Jesus’s declarations to aid the sick, poor, and vulnerable is quickly labeled a socialist and/or antifa."

https://www.publicnotice.co/p/trump-evangelical-support
Trump is clowning his evangelical base

He's not even bothering to pretend anymore.

Public Notice
@mttaggart I look forward to an upcoming glut of YouTube content discussing home tape library robots.

Disingenuous statement on the GitHub Blog on the flood of AI-generated slop "contributions" that have been overwhelming project maintainers with busy-work:

"At GitHub, we aren’t just watching this happen."

That's true. You actively pushed things to get us to this point.

#GitHub #slop

Welcome to the Eternal September of open source. Here's what we plan to do for maintainers.

As contribution friction drops, maintainers are adapting with new trust signals, triage approaches, and community-led solutions.

The GitHub Blog

RT: @Heccles94 The UK does not have a welfare problem.

It's got a corrupt politician and corrupt political elite problem.

It's got a billionaire problem.

Tax the rich.

You might think, "well if there are discrepancies, shouldn't they be investigated?"

The 2020 election in GA HAS been investigated. It's one of the most closely scrutinized elections in US history, and has been the subject of an almost endless stream of litigation and analysis. This case is not the only opportunity to find out about the GA election.

Also, this is a federal criminal investigation, a very powerful tool with the capacity to wreck people's lives. Not something to do frivolously.