#ot1-perplexing-regexing
1 messages · Page 226 of 1
i could probably actually run it on AWS lambda
🤔
or i could just let it run overnight on our server
the options are endless
Is it special in some way?
is what special?
Lambda?
idk, i've never used it
it's like having tiny little instances that only create when they're required to
perform a really simple task
then despawn
serverless architecture etc
event driven
Oh that’s pretty cool
And they all have their own ip tho? Or they share the host ip?
You likely don't get to pick
It'd be via some kind of load balancer
The point is that you don't need to worry about that
Ok.... but will they have different ips?
depends how you configure it
i imagine if you left it unconfigured they'd just randomise it
if not you'd have to reserve a pool of IPs and as gdude said load balance them
So yes? (I feel like you’re over complicating this)
well you're not thinking of all the facets here
do you really think that nobody else had the idea to use lambda to bypass rate limits?
you're not getting your own unique IPs
hibp is a public api, there are no keys
do you really think that nobody else had the idea to use lambda to bypass rate limits?
Was a reply to this
No I didn’t think of that cuz none of my apis have been ip soecific
Public API,that means no rate limit,right?
no
it means you don't need an API key to access it
Rate limiting is at the discretion of who ever made the API
Troy Hunt clearly doesn't want people to be able to hammer the API in a short span of time
Damn,Google password creator is awesome.Recommended password was unique.
@gentle moss Oh,it'll be like Denial of Service.
it could end up in that type of situation, yeah
if someone has significant bandwidth and there's no rate limit
HIBP will rate limit you if you make too many requests per second and the API will hand you a value of how long you should wait before re-submitting
Good api 😃
No doubt.
Neat and clean as expected. @gentle moss
thanks
requests and json are life and time saver.
@sullen thorn, moth meme's doing good i see
ah u found it on reddit?
havent checked in a while, lemme check
oh wo
*wow!!
wow reddit sent a trending notification for the meme too
:D
that guy had a good idea
Moth has all the awesomness Steve Souders thaught you about fast websites, but fully integrated in your ASP.NET MVC project! - janjongboom/Moth
was the best i could find
wonder if anyone will gift me gold...
:P
:p
wow, weirdest cancellation process imaginable
Emailed Nublue "hey i'd like to cancel the account X"
They email back "Please send us an email from the email address registered to the account"
🤣
"Sorry, I can't do that. X@X.com is a non-sending shared mailbox."
"Since you referenced the email address don't worry, we'll cancel the account."
that's a little worrying
so i could just cancel an acc with the email? i gotta find someone who uses NuBlue and troll them
i mean we use organisation email addresses so the domains match
but that woudln't be so hard to spoof
Since when is Bisk a meme lord
since i gave him an idea, and he created a meme that got to the top of r/rpogrammerhumor
and its on the front page (for me) as well
go upvote NIx
No
pls?
It's already on the top
Mothra commands you to upvote !!
Denied
O_o
only godzilla can deny mothra - do not anger mothra
That link isn't opening,damn my ISP.
Ł Ä M P s only make mothra stronger tho
you cannot defeat him
(although you can wait for him to turn into a skeleton for spooky skeleton october)
it's just this meme i made robin
nothing special
see, you can teach an old dog new tricks
You said you don't understand memes
i don;t
So it is spedoal
:D
Speshal
Nix is special
Just saw.
i dont think you quite get memes either nix
Where are you getting that impression from
Look like memes aren't my types.
like your description is correct, it just sounds wrong
Also Bisk said to me he is an old man
Who isn't into memes at all
And doesn't understand meme culture
bisk is old? thought he was like 20
30
He's 30
hmmm
Lemon is also 30 and always says he is old
yeah but lemon is old cuz hes serious af
Oof
like every time he talks i think fuck, someone screwed up
hes like the boogeyman
pls dont tag him
Would you say you are scared when lemon types
Doodspav
sup
Would you say you are scared when lemon types
yes
Hopefully lemon is watching
He did some Viking music iirc
¯_(ツ)_/¯
yay my meme lording is official now
Congrats?
@sullen thorn are there people like PewDiePie but for programmer memes?
@sullen thorn killing the karma game
Ikr 😃 my idea and meme lord bisk’s implementation are a match made in heaven 😃
@gentle moss you’ve made me basically all of my karma
*post karma
;)
I still have no idea what's going on,lol.
Now, officially
Congratulations.
It’s a meme about moths
hey hey
Gotta go
Have to complete Limits and Continuity chapter today.
Hi @granite lake
Bye @granite lake
Ciao @granite lake
Haters will say it’s photoshop but I believe the moth really wanted to install lamp
Tweeting @ peta right now for animal abuse. Using moths to serve your agenda of lamp installs
Also hello Jason
wow i just realised i had the biggest brain fart earlier
good thing it didn't actually impact my code
i wrote some shit down on some paper and thought i'd divided it by 60 twice, not once
11 minutes, not 11 hours
fucking spanner
Hmm
Thought I was making progress on this plot, but the average of a lot of these points is in the middle of the ocean which won’t work
I want KVM with IP and domain name. All cheap and from trustworthy company. Without giving out any personal information(but email).
It's not for anything illegal. I just don't want to have my ID anywhere on internets.
Can someone recommend me something which fits my needs?
I really doubt you'll find something like that, it's a huge liability for companies to offer.
I have couple of sketchy enough services which provides something like that.
damn looks like i messed up somewhere in my math, bunch of swimming points
lmao
=[
Yeah.
But it does look alright.
You can totally swim in Pacific Ocean.
What about Atlantic though?
Why it is left out?
Incomplete data set
took first X places, just turned out to be most of the western points I guess
also there just might not be that many points in the atlanta
What do you mean?
I thought that Georgia has lots of lakes.
I've read about Jackson lake or something.
Savannah is in Georgia?
Nope.
These aren't lakes, they're approximations of the location of each Autonomous System serving the internet. I just need a new approach because many of them span multiple countries apparently, giving basically all of them in the ocean
took so long to setup
Lmao.
u know
just to be 100% safe
From what?
from paranoia
This is LAN address.
ye lol
And this is behind NAT for sure.
192.168.hac.ked
i dont want paranoia
Even the hackiest of the hackers can't hack this.
Or just ignorant? :P
maybe
thats no way to speak to the legendary hip hop artist imran khan
The only true rapper is Parappa.
https://www.youtube.com/watch?v=q6p6JKeMq2k i love this guys videos
HWmonitor for OSX: http://mac.softpedia.com/get/System-Utilities/HWMonitor.shtml What Apple has done to stop people from figuring out sensor issues: https://...
Yes, this is an actual stage in an actual game. Yes, we're rap-battling to get IN THE BATHROOM!
louis is cool
Tbh.
The funny thing.
Beats are sick in Parappa.
And some flows are really nice. Even though it's just a game for kids.
best soldering kit for like all around use? pref. something with the tiny heads too
Dr Meter has a nice one
pump, bunch of tools, different heads, adjustable heat, 60watt
yeah i did a successful r/programmerhumour meme
Memelord is a single word imo
I saw it and have no idea what it means
question for anyone who solders a lot
Hey guys, im aware that it isn't Python, but is anyone able to help me turn Python code into C++?
Any help would be appreciated.
doodspav is the real memelord then
yeah that's true
@rough sapphire Are you having trouble with a specific part?
so been watching rossman videos a lot lately, and sometimes he'll be soldering stuff with the board still covered in flux or whatever this stuff is, https://youtu.be/1UKywVwN1is?t=1757 , and then testing voltage. why isn't this a risk of shorting out stuff
👉 Find tools used, recording gear, repair guides, chip sources, & cryptocurrency donation links below: 👉 CHIPS & COMPONENTS: › http://bit.ly/2jaAOXM 👉 TOOLS ...
time stamp at a part of the video where its relevant
?
swipe right to see!!!! 😍😍😍😍😍
why the fuck do you have tinder
Oh my god I've had an idea
Tinder for linux users
you can choose your favourite RFC and favourite man page
Lol yeah but she’s not on tinder (I hope)
I justvhave the app, used it once as a joke
Also @bleak lintel pls make that a thing
😏
I will make it
Any chance u can make it for iOS too? Like i’ll pay for your license for the software u need
lol
Is “extracting source code” just decompiling?
Cuz not quite sure what i’m being asked to do
extracting source code suggest you have been given some sort of compressed file with the source in it
e.g. a gzipped tarball or a Burrows-Wheeler block sorted tarball
.tar.gz or .tar.bz2
Hmm It’s not exactly that, it’s more someone asked me “are you good at extracting source code”
And not sure what he means
in that context it sounds like reversing a binary into source code
So decompiling?
yeah
🐮
the rebels
that's why the Empirical fleet is chasing them
they built the empire off observable facts
They're the Empire
duh
Is obiwan in it?
Put him in it saying stuff about the high ground, and have his fight with grievous. And i’m sold
look, i spent 15 minutes trying to find a cow related high ground joke
it's just not in there man
"I have the High Moo"
haha
reminds me of https://www.youtube.com/watch?v=eUO9SNCBL6U
Official video for the second single from the album TIME TO TANGO. buy album @ Amazon: http://amzn.to/1hPqsJl download track @ Amazon: http://amzn.to/1GfIYqg...
errrrrr
That was not what I expected
Finest crossover.
yeaaaah
¯_(ツ)_/¯
Yeah but cmon it’s a really well known meme
doodspav is a reddit celebrity now
so he can do what he wants
I’d say it’s on the right side of the line
Eyyy lol
@gentle moss we reached 8k :)!!!!
"web phenomenon"
doodspav reached 8k
bisk reached 0k 😄
He gets paid for it
bisk is gonna banhammer dood 😄
😦
from what? :D
the internet
I’m gonna go to sleep now cuz I got another 3h train journey before lectures in the morning, and don’t wanna be later
*late
Gn 😴
night night
nn dood
Schubsetanz - das zweite Video aus dem neuen Album METHÄMMER! Hier bestellen: http://bit.ly/FSMHOrder Werte Ladies, werte Lords! Werter Pöbel, wertes Gesocks...
https://www.heraldchronicle.com/news/local/two-baxter-teenage-girls-detained-after-franklin-county-pursuit/article_7e03c56a-c585-11e8-8b24-f368356df9b9.html 👌 my hometown staying classy
@sullen thorn how's your popularity going
Alright. Potential user experience poll. I make a Discord music bot with a finite library, which knows various data about each song therein. You can type
play [n] <args>
to play the first n songs (or all songs, if n isn't provided) that meet the qualifications specified in args. Ideas on how args should be formatted? If the user wanted, say, songs with length <2:00 and genre Classical, what'd be the best way to have the user specify that? Command-line style (play -l <2:00 -g Classical)?
I wish I knew how to create videos
Would totally make a meme video about Hacktoberfest in the same style as a lot of the Fortnite and other such videos.
@tired osprey 8.5k upvoted - I think I peaked
Also fuck I overslept
It’s 8am, and just woke up - wanted to get the 7am train
@gentle moss how u feel about that?
Indifferent
I wonder if she saw it coming
It's not a smart idea to hang around on a golf course, but I think golfers are supposed to keep an eye out too
Have you guys read about the solid?
No? What is it?
BIRMINGHAM, England (Reuters) - A solution to providing frictionless trade across the Irish border after Britain leaves the European Union might be found using technology such as Blockchain, finance minister Phillip Hammond said on Monday```
@sand goblet
you couldn't make this fucking shit up
BLOCKCHAIN TO SOLVE INTERNATIONAL BORDER DISPUTES
maybe he's picturing "block-chain" as a fence....
Block chain might have some uses, but I don't understand why that gives value to cryptocoins
hmm?
it's similar arguments to the value of paper money
but wtf is a blockchain based solution to the Irish border?
I really don't understand this blockchain thing
1.why do people keep using it for things (eg above)
2. why are they using it wrong (eg above)
pff
basically
it's a linked chain of blocks and each block contains transactional information that is verified between different peers
using cryptography
it doesn't have to be distributed
The main benefit of the blockchain is that it's immutable
^
since each block contains a hash of the previous block, you can't go fucking with it
if any one block is fecked with the whole chain is kaput
if a previous block gets changed the ones after it don't check out anymore
reminder: there is an Australian National Blockchain
but i have no idea how you can apply it to a border dispute
maybe keeping transactional records of uhhh
people and goods moving across the border?
i'm not at all sure how this helps anyone
me neither
perhaps he sees a world where the travel history of a truck and its goods are stored in a blockchain
for proof of you know
what i really want is signing important contracts with cryptography
what's in it and where it's been
signing with something like pgp
We already kinda have this just without the blockchain
Estonia gives their citizens a key at birth
and they use it for all their encounters with government stuff
i think it was Estonia
@stark prawn Signing contracts is basically what the australian national blockchain was made for
wouldn't that make the contracts public
doesn't have to be the details of the contract just that two parties signed it and it's verified i guess
Blockchain is a distributed ledger technology that enables permissioned sharing of an immutable record among parties to create consensus and trust. It empowers multiple trading partners to collaborate and establish a single shared view of a contract without compromising details, privacy or confidentiality
i guess not
cough
i also like
"Superior quality steel connections plated in 24 karat gold"
nice job, real nice.
RCE?
remote code execution
Oh
but maybe we could have some anti-virus cat5e and protect ourselves from the hackers
Isn’t that just false advertising tho? Like illegal?
Fortnite not allowed in society
I agree with that
But I will admit the new battle royale version of battlerite seems fun
even worse 😮
no, it's not illegal advertising
since technically it's "true"
it's a gaming router, fortnite is a game, it's fortnite optimised
@gentle moss Got a problem? Blockchain!
Need a car? Blockchain!
Slaves smuggled across the border? Blockchain!
Need to match regulatory compliance with a land border nation? Blockchain!
Blockchain
It's like that monorail song from the simpsons
I don't know either of these tbh
Monorail song was great
All rights reserved to the creators of the Simpsons. Watch this awesome song clip of The Springfield Monorail!!!!!! It's very catchy and maybe there will be ...
1m55s
not too long
bisk i meant the hdmi cable with virus protection
oh yeah that's TOTALLY not up to UK ASA standards
There is an HDMI cable with virus protection?
look up
i posted a picture that i saw troy hunt post when he went HDMI cable shopping
yeah, that picture i literally posted up a bit
that bottom one is just as funny though
"Superior quality steel connections plated with 24 karat gold"
rofl
Also why aren't you a meme lord anymore
because i only did that as a dumb joke
can i be meme lord then?
do you own land?
@sullen thorn speaking of that hdmi cable
bbl, site trip
uhhh... maybe
What
i dont but it sounds ridiculous
Why
lol did u buy it?
Erhm.
I wonder. Where's the connection between streamed music sounding better and platinum plated cable?
in your wallet
Not really.
monster cables vs coat hangers
It's plating.
Totally
Not the cable itself.
The aura of the metal is making the music better
We music snobs just need something to feel superior about
Plating something with gold?
gold is more conductive than silver iirc, but for the sound it shouldn't matter
Oh, right.
Viruses are afraid of knowledge
I've forgot.
I mean... If you want something to be as noiseless as possible you have to do whole cable out of gold.
Glass fiber
gold plated coat hanger
Hat stand.
As the glass is already shiny enough because it lets light through
Virus protection using gold is not a problem here
Today was the tax day.
I have a small business and had to pay taxes.
Bureaucracy rekt me hard.
So... There were one type of report for my kind of businesses. I did it. Printed and came to submit it.
I was told that this report is wrong and I have to do the other one.
I came back. Began to do another one. And in the middle of it. I've found out that this new report isn't valid yet, because the law about it is fresh out of the senate.
The US still uses physical paper for that?
I wasted 3 hours of driving back and forth just to submit the one I did in the first place.
I am no yank.
I wear addidas and listen to hardbass.
Vodka and bears included.
In Russland you have electronic tax report... But... my oh my.
They only work with IE.
And require special FSB accepted security tokens.
It's way too faken poor to use.
here the netherlands the business tax site if often overloaded on the last day of the deadline
Do you have to have security tokens or smth to submit tax reports?
You need an account with 2FA
At least for personal ones
there may be more for business ones
It's so funny though what our government do with electronic electronic document management.
This year they've introduced centralized revenue accounting system.
If you work with money you have to have this device which sends all of your operations to tax service.
And now hold on. You're about to cringe a lot.
Internet stores have to have this device too.
Even if they work with internet acquiring and all the data passes through banks and business accounts they have to have this device.

Cost of that device is about monthly profit of a small town grocery store.
You have to pay 6-month or 1-year subscription for it.
You've bought it.
And you're paying for it to work.
damn, payment processing already is expensive as it is without it
And yeah.
-6% of every transaction with cards because it's only allowed with this devices.
On top of that this thing...
Attention.
Now you're going to fall from your chair.
This thing stores all the checks that passing through it.
Like..
Not only it sends data it also stores it.
Ah, yeah.
This device isn't connected to any GSM service you have to pay for this yourself too.
What they do doesn't make any sense at all.
this seems like a troll
No it's all real.
I am telling you.
Ah, one more thing.
Guess who owns company that "produces"(buys them in China) those devices.
some politician
Yeah.
And he hasn't been prosecuted yet/
Corruption is illegal here
Lucky you.
In Russia you can start business with 150 euros as an initial capitalisation.
it's 50 here, doable
But there are no good loan rates and no perspectives.
Had to find a way to abandon this sinking ship until it's too late.
great target for #496432022961520650
[14:04] Grote: 24 karat gold plating.
[14:05] Grote: That seems very fragile
gold plating is used as an anti-corrosion solution
that's why seeing it on normal consumer level stuff is quite funny
#496432022961520650 did someone purged it?
Oh, as you say sir.
well, probably
different people report different amounts of visible messages, it might also be a temporary Discord hickup.
We're investigating.
Oh.
Is there a downside to using someone’s username as the salt for their pw?
its very easy to figure out?
that it's publically knowable?
So?
in the context of a breach it'd be information the attacker might have
I use the word "salt" for my salt
the only thing making it "secure" is the fact they don't know you're doing it
which isn't security
Also.... Was the Facebook data leak just hash and salted info?
no idea, scope hasn't been published yet i think
Ok
But I thought u store the salt with the hash... so wouldn’t an attacked get the salt in a breach anyway?
Salting means they can’t use rainbow tables to quickly guess common password
So basically just to be slightly more annoying
And they can’t hash a password and then test it against everyone’s password (cuz everyone has a different salt)
To hack?
Yeah - but not slightly, like wayyy more annoying
Well eh
sorry i was thinking of a nonce
So can I use username as a salt? If all usernames are unique?
the point is that it's random thoooouuughhhh
Is a username not random? I think it’s random, just not very long
😜
Lol
A random person in the world has to choose a string of characters that no one else can have already chosen... is that not random enough?
if you just had a table of users + hashed passwords from your thing
but we knew the username = the salt
But wouldn’t the table also contain the salt?
Yeah, how do they store hashes Vs salts?
So like another server/dB?
could store the salt as a plain text file if you really wanted, doesn't matter so much
just keep the salt safe
the spice must flow
i'm not joking btw, it's fine to keep salts in plaintext
Anyone here actually set BIOS passwords?
yes
we full disk encrypt all laptops
Yeah but that's OTT for me :^)
it's a way to stop someone doing something to it
but with physical access a bios reset isn't too hard
Setting a bios password on my personal pc is just a headache waiting to happen
@sullen thorn
Here's the trick.
The salted password takes time to compute.
By having random salts, you randomize the salted password resulting hash.
You effectively cost attackers more time/energy to try and have precomputed tables.
See, they alreadh have password1234 => sha256
but they don't have. password1234+SALT => sha256
nor, password1234+SALT2 => sha256
you make it harder for them to guess passwords in an attack called "rainbow tables"
yeah, he's already aware of that
he's just missing the point that you don't store the salt in the same place as the hash
*salts
can't keep salts in the same table or db as the users/hashes because wtf is the point
Guys
Anybody suggest me a good web browser? Except firefox or chromium
I heard of vivaldi, did anybody experienced it?
My midterm 👌
Looks like it’ll be pretty straight forward
First time getting an outline like that though
@steel fox looks somewhat legit.
I'd probably take that class and not slam my head against th wall.
(has literally done that in class)
Mmmm. Math.
tasty
I just never go because she speaks really quietly and instead watch the lecture videos she uploads
.E.
Clay I can be at that station in 72h - I have a season ticket - but not gonna STAY there for 72h 😂
Select * from * where @bleak lintel = Glorious_Leader
No you have to stay for 72 business hours
eh, would you look at "most used weapons" or "most efficient weapons"
big difference between "this has killed 2 billion over time" and "this can kill 2 billion by opening a jar of gas"
a couple friends of mine worked on a stockbot that used machine learning algorithms
the problem with using historical data is that it learns trends that are out of date
so the joke is valid if the dataset consists of all battles and try and predict the winning weapon without considering technological advance
because the general trend of things is that there's more history than relevant info
It's not accurate. The goal is to learn the most effective weapon. If it's getting the one that wins more purely number wise, then that's a fault on the programmer for being a moron. You don't need ML to predict which weapon has won the most
Do u define effective or does the ML define effective?
You define effective. ML is just a maths model. You have to give it a value to optimise
If the result is bad after training, it's because you chose a model that can't represent the situation or because you gave it the wrong thing to optimise
Or maybe you're unlucky with your initial parameters but whatevs
gradient descent produces a set of values that minimize loss in a pretty alien way
Can u teach me ML raggy?
e.g. it's remarkably hard to reverse engineer a 5 layer network to get any meaningful results
there are lots of methods that people use nowadays to try and reveal why a decision was made in networks, tho.
It's not mathematically alien, it's just hard to interpret a complicated function. Choosing a model that is as interpretable as you need is your job. If you want something more interpretable, go for decision trees or something instead of a 20 layer Deep NN
He’s not pissed off, this is cool for him
^
neat
if len(identifier) == 3: # 3+ chars for 'f' and beyond
if not identifier[0].isalnum():
# this is only reached if the 1st char of the string is not alpha numeric
if not identifier[2].isalnum():
# this is only reached if the last char if the string is not alpha numeric
if identifier[1].isalpha():
print(f"char \t \t {identifier[1]}")
``` when you can't use regex 
or don't know about the word and
why can't?
just roll your own
yes
Well, if by "Python's regular expression library" they mean re, just pip install regex and use that. It's more powerful anyway 😉
Oh wat?
no @tulip palm but you could create a MagicString class
and use that with an added method
lame
Fucking magic string 😂😂😂
r8 my code
Have u done anything on compilers?
This class
How does an obfuscator work? Like I thought the job of a compiler was to make the code as efficient as possible, so wouldn’t this also remove any attempts at obfuscation?
Can u answer that?
Obfuscators don't change functionality they just change variable names and move code around to make it harder to follow
Ok... but wouldn’t the compiler just move it back?
Sure but you can't read machine code
And I thought in general compilers remove variable names anyway
output by the compiler
Yeah but u can decompile it no?
Sure and then its a garbled mess whether obfuscated or not
Oh
most of the time, depend son the language
I think python decompiles almost 1:1 the original source for example, but i've never tried it.
Just saw a SO post on it
@bleak lintel do you like my code porn
delete it
tru
I keep getting like
cant unpack non iterable nonetype
so i threw the line in a try block
foo = lambda x: return ((len(x) < 2) && (x.isalpha()))
less chars then == 1
hes golfing
But could be len(0)
""
^^
poggers
ye
Hmmm
that too
Fine
Couldn’t I just not include the check for len(1) then?
Clay why aren’t u just using isalpha?
Oh nvm it works on full strings too
why aren't you just using isalpha
sure but you can't add a method into a built in object
Is that not what he did there?
Ye but you can’t do it with like str.foo I don’t believe
Try
you can do it if you edit Objects/strobject.c (i think) in python's source
might be unicodeobject now or something
can't do that
Can’t do mine or his?
either
okie
ncurses is kinda co-operating with me which is nice https://i.seph.club/9knuo.png
I wonder how I can figure out which arrow keys are being pressed
idk how tf to make this not read like shit
@bleak lintel You writing an editor?
yeye
#ot2-snappin-with-bisk
Why do ppl use yaml over json? Like what’s the difference between the 2?
It's way more human-friendly
yaml is better
And yaml can be extended with richer types and such
Also, like many of these technologies, neither is "better"
json is just ugly aesthetically even, imo. although that is at the end of the list for YAML vs JSON
They have different uses
just flat config text ultimately, syntaxed in whatever manner
And when did databases get native yaml support?
well i'd be glad to use YAML if it was the industry standard, forget web dev - json is already here to stay
Saltstack actually does support yaml in its APIs but that's more of a coincidence than something you'll need
see what happens when webdev gets shoved away a bit? 😉
even if JSON weren't the standard, I'd prefer it over YAML, because JavaScript syntax
consistency between the lang and the formatting of its communication can really simply the thought process
that's why you use TOML
TOML doesn't look like JS!
or Python, with those section headers
yeah, don't think I like the look of TOML or YAML for API transport
I dont care about API transport, I was thinking more configuration and stuff
JSON is fine for API
You're usually interacting with it from the language which means it doesnt matter too much how it looks
Configs are also edited by humans
I've been thinking about toml
It's supposed to be the be all and end all of config languages
I heard it supports file inheritance
I like that it looks somewhat like INI but I haven't asked anyone why it's supposed to be better than YAML
definite sections, I guess?
YAML is kind of clumsy, not seen toml before though
clumsy?
The syntax was a lot less obvious than something like JSON in my opinion.
Toml looks pretty nice
as far as how it's represented in language structures, perhaps. but YAML's minimalism and readability seems a marked advantage in many cases
And tabs vs spaces thingy
it forbids tabs, is that what you mean?
Yeah, probably
Rust community has welcomed TOML. I didn't think about it too much but I've come to like it a lot
It seems fine, but I'd like to make sure it does what I need
file inheritance is the main thing I don't want to have to do myself
uughguhgugh
work site is on a PHP older than 5.4
how am I supposed to work with this
very carefully
it's just wordpress but none of the plugins I want support this version
I just want sharing buttons dammit
Security vulnerabilities of PHP PHP version 5.4.0
List of cve security vulnerabilities related to this exact version.
You can filter results by cvss scores, years and months. This page provides a sortable list of security vulnerabilities.
yikes, 53 CVEs
wordpress running on 5.4 is old wordpress too
bots constantly crawl the web looking for outdated wordpress sites to take over
xmlrpc etc
it's not on 5.4
it's on older than 5.4
I dunno what it's on
it's wordpress 4.9.8
seems to be up to date
well that's what this plugin says
woot woot i got a fun case to investigate
one of our clients sent bank details for a payment to one of their customers
👀
the customer said they received a pdf document with bank details in and paid to that account. that document looks nothing like the one our client provides
Phishing 🙃
yeaaaah
but also this customer is in numerous breaches
the false bank detail document contained the correct name and address of the company, just a different sort code / account num and no branding
the customer says she never got the email from our client
so the customer is flipping her shit
SpearPhising
SpearPhishing + Account compromise is my thoughts
i'm just gathering proof because that customer is a craaaaaaaazy sounding person
literally already threatening legal action
@gentle moss
I had a bitcoin person try to offer proof of funds by doctoring their name onto a company account printout
The sort code / account number are for a small pop up / easy banking with little ID proof type bank too
just take it to the bank, ask them to "verify" information
they will respond with "yes" or "no"
(US)
I think this is unlikely someone trying to defraud our client due to the nature of the purchase
So it's about providing enough technical evidence to make this customer realise that they're the ones at fault
Annnnnnnd solved.
BTW, JSON is actually a subset of YAML
but i like my json 😦
Simpler is faster
is it secured tho?
how does one secure a data format
obfuscation
you use the braces the wrong way around
JSON is far from the fastest choice anyway
Yaml has arbitrary code execution in the language spec
it'll throw all the hackers of
Look it up
If I saw a massive one line json file looking like that id give up
break(bisks_data)
Use jq
Yaml has arbitrary code execution in the language spec:O :O
is this true
i use yaml
cat file.json | jq .
It doesn't if you use safe_loader in Pyyaml, which is the default
Well I'm off later
Yes it’s true cake
hey @lone otter
you go college right?
i dont know if this is a dumb question
but could i put my github profile on my college application?
will they even care about my github or only the stuff i did at school?
Probably couldn't hurt, but if your profile is bad it could hurt. Unless you're aiming for like a top university though its probably not needed. I just applied with ACT scores and got in
I bought ath m20x yesterday and i'm so blown away
I wen't from phone 5$ earphones to those, and it's just euphoric
HS is grade 9-12 for us
UK colleges aren't high school
Depends if Sixth Form College
@sour shale why will u be in Melton Mowbray tomorrow?
Wut @sullen thorn
Not me
Yeah I was just memeing
What is it?
that sounds like if you were working with Oracle
And what DBv
*?
Yeah - but also I can help - spent countless hours debugging MySQL queried
*queries
It was just an insert statement but sea octothorpe is dumb
