Tim Hergert

@cjust@infosec.exchange
545 Followers
1.2K Following
8.8K Posts

I do stuff, I have opinions. These are not necessarily my employers opinions. I think I'm funny.

I, like Mark Twain, believe that "Under certain circumstances, profanity provides a relief denied even to prayer."

I also believe that "Profanity is the crutch of the inarticulate motherfucker."

#fedi22 #infosec #shitposter #captainjustice

Searchable via tootfinder.ch

Webhttps://captain-justice.com
Pronounshe/him
Just My Tootshttps://justmytoots.com/@cjust@infosec.exchange
Signalcjust.17

McDonald's uses an AI chatbot called "Olivia" for hiring. A pair of hackers found they could access every conversation job applicants had with it—including all the personal info they shared—by exploiting security vulnerabilities as basic as using the password "123456".

https://www.wired.com/story/mcdonalds-ai-hiring-chat-bot-paradoxai/

McDonald’s AI Hiring Bot Exposed Millions of Applicants' Data to Hackers Using the Password ‘123456’

Basic security flaws left the personal info of tens of millions of McDonald’s job-seekers vulnerable on the “McHire” site built by AI software firm Paradox.ai.

WIRED

If you post a job opening on the Fediverse, please make sure it includes the salary range and location.

Salary ranges are mandatory by law to be shared with job posts in some jurisdictions.

Also, we're way past that bizarre game to waste everyone's time by trying to guess what each other is willing to pay and work for.

This is just silly and unprofessional.
Advertise your salary range.

#Jobs #FediHire

when the NTP servers go down
I have a Quake 1 server going on here 9front.club is the server, default port. I leave it up most of the time. Feel free to use it. #Quake #Quake1
@JessTheUnstill hell yes. right now as we speak, we're starting an engagment for a phishing exercise, and im doing a shitload of dns recon by taking dns brute output, then xargsing it into an openssl command to tear out subject alternative names in ssl certs. same deal! one bash pipeline, fuckloads of juicy output! i often refer to this sorta stuff as 'swordsmanship' :D

I kinda wish that shell scripts weren't quite so looked down on as "not real programs".
They're lightweight
They don't require packaging or recompiling for different architectures or operating systems (assuming the device at least has bash and the standard POSIX compliant tools)
You don't have to maintain a separate source code or ci/cd or whatever
They're tiny and can be sent in a .txt even if someone's email security software is on crazy overdrive or they require code signing or whatever else.

I've replaced a whole BUNCH of "real programs" over the years with "run this shell script, and answer the prompts it gives back". Or take this 15 step workflow that someone needed to go across 4 different tools (that probably require having a license to the software), copy and paste and find and sort and whatever else with "run this script and the .csv is right there".

I don't know why, I just really like shell scripts. They make me happy as such handy little all purpose multi tools.

But then because it's some "silly script" that runs in a command shell, it's kinda like "there there, thanks, but we want a Real Program" to do this...

Hey masto admins! The era of AI-powered spammers has arrived.

I had 2 registrations a few minutes apart, from adjacent IPs in a netblock famous for forum spammers, with improbably ideal introductions.

They’re not coming. They’re here.

An ancient Nokia device was found in an archaeological dig with 17% power.
That’s one of those headlines that wouldn’t make sense to someone from 2010.
×

Software development methodologies compared.

#software #development #agile #waterfall #ai #developer

@mookie

Does Jira exist for AI? Does it write its own tickets?

@mookie Does it participate in stand-up? Does it do stand-up?

@darth_hideout

Jira has AI now that helps write JQL. lol.

@mookie AI jokes aside, waterfall is not represented here.
@mookie read: scrummasters are a dying breed
@gary_alderson @mookie Why were they a breed at all, we shall never know. (I never had a dedicated scrummaster anywhere, but the entire agile methodology appears to me as some kind of attempt to turn software development into a religion)
@mookie heads up there's a typo in the alt text and it calls the cat motorcycle a car motorcycle lol

@raphaelmorgan

LOL! Oops! Silly auto correct in iOS always thinking it knows more than me. Fixed. Thank you for the heads up!

@mookie as someone who knows nothing about tech, this just looks like an undeserved compliment towards AI, the horrible city-ruining car becomes a lovely duck

@compost_funeral @mookie

There’s a bit of a narrative though.

In Waterfall, you tend to build the pieces, then build up, but may not have anything functional until the end.

In Agile, you focus on building something basic & working first, then iterate, improving it but keeping it functional through your iterations.

The last one (AI) is a non-sequitur pile of unrelated nonsense.

I think that’s a big part of the tech joke.

@darth_hideout @mookie thank you for explaining the joke to someone who had 0 context!

@darth_hideout

Waterfall & Agile 👍

I think the AI iterations are not unrelated, but are meant to show the deterioration in the process of prompting. Like:

Prompt 1: Build me a car.
-> AI produces the car lookalike.

P2: That doesn't look like a cat¹ and it should have one more wheel.
-> AI produces a cat tricycle.

P3: Damn, not a cat, btw. animals don't have wheels.
-> AI produces a duckling (not a cat) w/o wheels.

😅
@compost_funeral @mookie

¹ typo intended (via ALT hint by @raphaelmorgan)

@mookie i see the subtle agile critique.

@ivorytusk

Hehe. I noticed that too.

@mookie the intermediate stages of Agile are closer to AI than you’d think.
@mookie Honestly, the duck's feet would probably be merging into one another.
@mookie Not gonna lie, that cat bike looks cool though ))

@mookie the thing is: With waterfall you may end up with the car as planned but than you realize, you needed a truck instead.

And with agile you actually end up with a car that has teeny tiny skateboard wheels and a wooden frame because that's how you started and replacing it would be to expensive.

So AI is the only approach that is consistent all the way. You start with crap, the in-between is crap and the end result is crap.

@feyter @mookie garbage in garbage out as usual ^^
@f4grx @feyter @mookie no worries, recently I am seeing narratives about “algorithmic management” what can go wrong.
@f4grx @feyter @mookie the most strange part was, when they say AI is not taking sides and makes perfect decisions, well that depends on what are the values. And I highly doubt AI can and ever will be able to weight between different values case by case. And I would like to see sensible human being willing to be managed by AI. Next scary thing is AI crap in HR departments now being renamed to PeopleOps.
@mookie careful as this may actually heavily promote AI

New entry on cv:

VibeScript, strongly duck-typed

🤓😂

You can have a versatile car in a year.

A golf cart in a month.

Or a duck in a day.

🤓😬🥹

@mookie ironically this image itself I believe to be “AI” generated
@mookie I think this is a little exaggerated.
The duck should have at least some wheels.
I don't know how many and where they are, though ...
@mookie
And when you touch the duck car alarms blare. It honks instead of quake and there are wheels and gears inside it instead of organs. Also it goes the speed of pebble by rotating its legs like they are wheels.
@mookie I don't think this is accurate; AI never produced anything as cute as that cat-bike or that duck
@mookie ... but the cat and duck are so cute 🥺
@mookie note that none of these end up with trains and public transit like they should

the analogy is correct in this also
@mookie so this is why my new web portal keeps quacking.
ΘΔ•ZFM🐊🦊🐺:flag_genderfluid: (@zfm@eldritch.cafe)

Attached: 1 image Because fuck AI and those using it, here's my version of this meme which is about how we create things, with a car as an example. It took me 20min, I added some personnality and even added my special intererests into the mix. This is what the internet should be.

Eldritch Café
@mookie "Agile" as a Software Development Methodology is what you get when you put a baby MBA hooked on energy drinks in charge of a software project.
@mookie @BRicker I would totally drive (ride?) that cat with wheels.
@mookie This is accurate because in the Agile model somebody forgot to make the back window and nobody noticed until we shipped.
@mookie these humorous pictures never challenged their underlying assumption. Most customers and users don’t actually know what they want and are unable to articulate it well at any point in the development process this picture assumes the customer needs a car to solve their problem and that they need that specific kind of a car by the end of the development process. CC:@lproven

@bexelbie @mookie @lproven

I don't think that was the point at all

@peribotsarah @mookie @lproven sure, it wasn’t their point. But since this other idea doesn’t validate their priors they ignore it. Of the people I’ve met who preach the point this comic tries to make, they don’t actually want waterfall, instead they’re upset about something the other method do (meetings, hallucinations, whatever). But praising waterfall implies a desire for waterfall in all its glory. Also these aren’t equals to compare.