369 karma · joined October 31, 2022
Do you believe there exists such a thing as depression?
Is it just me?
for e.g. the form of communication used by bees is very well known now, it involves not just spatial movements but also "buzzing" which is totally similar tot he sounds we make, they just lack vocal cords.
I am more on the side of seeing maths as a precision language we utilize and extend as needed, especially because it can describe physically non-existent things e.g. perfect circles.
btw does anyone know if places like Fermi lab, CERN receive donations from the super-wealthy?
Is it the fear of fines? That never deters them from collecting more data though.
- https://www.interface-eu.org/events/background-talk-with-byr...
Mostly in such cases, direct involvement and paying dollars is a clear no-go for the intelligence agencies. They could instead be paying the ad agencies.
Also note that we are talking pre-Let's encrypt and TLS everywhere world, a lot of this traffic was also just plain text making it much easier to harvest.
Some interesting insights from this piece: https://web.archive.org/web/20180719081149/https://theinterc...
- Rovio sold data to ad companies (ad companies primarily based in the US)
- They used AWS (to which of course NSA has legal access)
- Data is not end to end encrypted, all metadata sits on servers in plain text and within AWS even moves from server to server in plain text
How much insight metadata can grant to someone like NSA is still wildly underrated.
- https://www.propublica.org/article/spy-agencies-probe-angry-...
Technically it might not be a "data leak", but it very well could result in one if arbitrary content (including js?) can be uploaded to these webpages?
This is sad to see, these tools are forced down so many companies in name of "compliance" while totally not worth the maintenance and cost overhead. Apparently they haven't got any better in the last decade.
> Strong proficiency in Go or Scala. Familiarity with Ruby and JavaScript is a plus
Also this time, I see companies hiring "security engineers" with "Strong proficiency in Go or Scala". It is not like they are willing to offer much higher salaries for people who are both security engineers and full-stack software develpers, they just want it for the same market avg. salary ranges.
Nah, in this case they simply had no official bug bounty program/platform.
I would guess that a big factor is mindset and tech culture across different companies or having a bad head of something who doesn't get the point of bug bounty / promoting responsible disclosure.
In this particular case, they did say they will consider a reward for a severe bug (it was severe, DNS hijack) and then once I shared details, the next day I checked, they had fixed it and never wrote back.
But even in 2025, I have come across companies who do not at all care about rewarding good security researchers who report issues. Hell, I have even been ghosted after reporting the bug which they promptly fixed and did not even write back to say a "thank you". Has anyone else also encountered this behavior from tech companies? (not talking about a non profit, hospital or gov agency here)
I don't think this has been a basis for denying entry to people in past?
What has always been going on: people overstay their visa, depending on the scale and country, people get treated badly almost always in these cases.
What is happening now: people being critical of Trump are being rejected, legal visa holders are being detained because of the scale of the abuse.
These are clearly very different things and very much a fault of specifically Trump administration. Searching phones and messages to look for Trump critical messages .. unbelievable and totally new stuff is going on here: https://www.theguardian.com/us-news/2025/mar/19/trump-musk-f...