• 0 Posts
  • 7 Comments
Joined 2 years ago
cake
Cake day: July 16th, 2023

help-circle
  • On the other hand, detrimental reliance is a tort and if someone is relying on an app for a specific safety function, the app could be civilly liable if it fails it’s function in some way.

    Yes, if the app would be any kind of official tool.

    Imagine if you had this attitude about an insulin use tracker/calculator, that sometimes gave wildly wrong insulin dose numbers.

    Yes, and that’s why regulations for those kinds of things exist, that prevent those things. There is no regulation for the ice tracker.

    Maybe down the road, it’s decided that aiding and abetting ICE is a crime, and providing misinformation intentionally or unintentionally is a criminal act. App developer dude could be criminally liable if he knew or ought to have known he had vulnerabilities. You know, in your New Nuremberg trials that you are going to get sometime in the next decade or so.

    If down the road a regulation would happen for, app developer dude would be forced to either comply or to stop operations.



  • Honestly, apart from the report being potentially wrong, the researcher seems pretty entitled as well. Like good intentions and all that, but he’s given him a week to fix the issue, usual practice in responsible disclosure are 90 days. We’re not talking about a company here, it’s some single random dude providing the app.

    This really sounds like some personal issue written down for public drama, while making himself ridiculous for not knowing his own shit properly.


  • Unless there are those who need certain words for their jobs, I can kinda understand why Microsoft wouldn’t want emails from work addresses to go out with political agendas… for either side.

    Sure. Then block both sides, and not only the one not bringing you money.

    Work emails should just be about work. Too many people use their work emails like a personal email… with their banking, shopping, etc. That’s what personal email addresses are for.

    No one uses their company email for their personal banking, simply for the reason because if you’d leave, you’d lose your access, and since most companies run behind firewalls, vpns, 2fa tokens and similar additional credentials, it’s simply harder to use.

    This policy should go for many non-work related topics too. IT can unblock the words for certain users who need to use them for their job.

    Of course, let’s waste resources to maintain idiotic blocklists that are out of date the moment they are rolled out, and additional resources to make the blocklist actually work. Palestine, p4lestine, pale s tine, p a l e s t i n e, paleztine. Need more?

    You’re not at work for someone with this kind of unhinged mentality watching you working for 8 hours a day straight with no breaks and no distractions. You’re there to get your work done. In my current team, we’ve had the best ideas talking about our problems at the coffee machine. I personally focus best when I have music on. We’re doing sports together once a week on a company fitness incentive, which boosted our team dynamic massively. None of this would be possible in such a controlled environment.


  • Quality journalism:

    Yesterday, we reported on actors using Russian IP addresses to breach the National Labor Relations Board immediately after DOGE engineers obtained “God-tier” access. According to whistleblower Daniel Berulis the intruders used newly created DOGE credentials and techniques “consistent with sophisticated Russian intelligence operations.”

    Shocking, if inexperienced, young idiots get to do whatever they want in critical systems, shits gonna hit the fan.

    Any IT system DOGE touched should be considered compromised, not because of “sophisticated” state agents, but because you’ve had those idiots touching it.

    Remember the first days of post-Musk twitter? Yeah, now imagine that with older, more brittle systems, way less experience in the staff, more AI slop, less time and way more god complex.

    Also, still waiting for the day those “journalists” will learn that an IPs geolocation does not have to be the actual source…