| website | https://goncalor.com |
| GitHub | https://github.com/goncalor |
| website | https://goncalor.com |
| GitHub | https://github.com/goncalor |
Amazing how many headlines parrot the corporate framing that Meta's new Hyperion data center would "deliver gigawatts of power" -
"AI data center ... will deliver five gigawatts of computational power to fuel the company's new AI" ❌
"[data center will] supply its new AI lab with five gigawatts of computational power" ❌
No. NO. Don't do that. Hyperion will *consume* 5GW of power, including three NEW new gas-turbine power plants, in order to run giant toxic content sludge generators. 💩 ✔
For many people, the #Linux vs #Windows vs #Mac debate is a privilege — it assumes you can choose. But working with the Computer Upcycle Project, I've seen the real choice is often Linux vs no computer at all.
~95% of donated computers are "too old" for Windows 11 or macOS. Linux installs on them anyway, adding 10+ years of life to machines #Microsoft and #Apple called trash.
This isn't Linux vs Windows. It's Linux vs e-waste.
Physical security and cryptography can learn from each other, part 11367:
Hotels wisely don't put the room number on guest keycards so if someone finds your card, they'd have to exhaustively search the hotel to find the room it opens.
Some hotels now have elevators programmed to only let you call the floor for which your keycard is coded, preventing guests from wandering to other floors.
But it also means the elevator can be used as an efficient oracle to determine the floor of a found key.
EU Chat Control vote fails again
In today's episode of "Can It Run Doom": DNS fucking TXT records.
Some absolute madlad (cough Adam Rice cough) compressed the entire shareware DOOM WAD, split it into around 1,964 chunks, shoved them into Cloudflare TXT records, and wrote a PowerShell script that reassembles and runs the whole goddamn game from DNS queries alone. Nothing touches disk. The DLLs are in DNS. THE FUCKING DLLS ARE IN DNS.
RFC 1035 was written in 1987. Those engineers are spinning in their graves fast enough to generate municipal power.
Bonus: this is a fully functional globally-distributed covert data exfil channel that your NGFW will never fucking see if you're not doing deep DNS inspection. Sleep well.
blog: https://blog.rice.is/post/doom-over-dns/
repo: https://github.com/resumex/doom-over-dns
Also lmao @ every blue team that has never once looked at their DNS query volume. How's that DLP policy working out for you.
It was always DNS.
We have enabled Encrypted Client Hello (ECH) on curl on Debian Experimental, for maximum privacy!
https://samueloph.dev/blog/i-use-curl-with-ech-btw-in-debian/