Just wait until one of these companies demands an email from the registered email address of your account!
3,253 karma · joined May 22, 2021
https://www.linkedin.com/in/joshua-alexander-rogers/
https://github.com/megamansec
Security, hacking, travel, lulz, vodka.
Just wait until one of these companies demands an email from the registered email address of your account!
こすり箸 Kosuribashi:
To rub waribashi (disposable chopsticks) together to remove splinters.
I don't know about Japan, but everybody does this in Taiwan.Any system with Trivy 0.69.4 on it (and being run) can be assumed to be compromised.
Of course, it doesn't work though. I reported this to their bug bounty, they paid me a bounty, and told me "we won't be fixing it": https://joshua.hu/2025-bug-bounty-stories-fail#githubs-utf-f...
The exact quote is "Thanks for the submission! We have reviewed your report and validated your findings. After internally assessing your report based on factors including the complexity of successfully exploiting the vulnerability, the potential data and information exposure, as well as the systems and users that would be impacted, we have determined that they do not present a significant security risk to be eligible under our rewards structure." The funny thing is, they actually gave me $500 and a lifetime GitHub Pro for the submission.
An LLM can try to do that, yes. But LLMs are lossy compression. RSS feeds are accurate, predictable, and follow a pre-defined structure. Using LLMs to ingest data which can easily be turned into an parseable data structure seems strange: use the LLM to do the "next part" of the formula (comprehension, decision making, etc)
There is also LLMs.txt https://llmstxt.org/ eg https://joshua.hu/llms.txt / https://joshua.hu/llms-full.txt
Please consider reading.
You are focusing on 5 words out of a 1000-word post. Get a grip lol.
In a world of usual, I like to be unusual.
You can run the following and try it for yourself. Don't forget to highlight some text before right-clicking an image (e.g. https://en.wikipedia.org/wiki/The_World_Factbook)
TMPPROF="$(mktemp -d /tmp/ff-tmp.XXXXXX)"
/Applications/Firefox.app/Contents/MacOS/firefox -no-remote -profile "$TMPPROF"The greyed out options have no point because 99.99% of the links I click are already clean. Like so many of the other privacy enhancing options, just provide an option to "clean links automatically."
I think that's a good workaround, but I'll have to re-enable it when I actually need to print something.
dom.text-recognition.enabled
browser.search.visualSearch.featureGate
extensions.formautofill.addresses.enabled
extensions.formautofill.creditCards.enabled
widget.macos.native-context-menus
The last one removes the "Services" option when right-clicking an image or highlighted text.`privacy.query_stripping.strip_on_share.enabled` to remove "Copy clean link". I would rather it just did that clean link thing automatically, but I don't actually care about clean links -- it's just annoying having two "copy link" next to each other (especially with one which is greyed out 99% of the time!)
browser.translations.select.enable
dom.text_fragments.enabled
privacy.query_stripping.strip_on_share.enabled
devtools.accessibility.enabled
Now if only I could get rid of "Print selection" and "Services" when right-clicking, too (on MacOS)It's interesting reading them as a native speaker, as there's so few that I could even begin to guess what they mean.
[0]: https://www.telelib.com/authors/O/OrwellGeorge/prose/Downand...
If CAs don't want hostility from browser companies for using https certificate for non-http/browser applications, they should build their own thing.