NaibofTabr

  • 18 Posts
  • 5.04K Comments
Joined 3 years ago
cake
Cake day: June 18th, 2023

help-circle

  • NaibofTabrtoJavaScript@programming.dev"your website doesn't work without javascript"
    link
    fedilink
    English
    arrow-up
    11
    arrow-down
    1
    ·
    edit-2
    16 hours ago

    So… there’s a practical difference between rendering markup, which is handled by the browser engine and generally benign, and running executable script, which is frequently malicious.

    Allowing your website to load JavaScript means that I’m allowing you to execute arbitrary code on my hardware. Hopefully the potential blast radius of any malicious code is limited by safety precautions in my web browser, but a web browser is not a security barrier and should not be relied on to protect the local system from malicious code downloaded from the Internet. The most pernicious and seemingly unavoidable behavior of JavaScript on most websites is device fingerprinting, and to get a better understanding of how much of a problem that is check out https://coveryourtracks.eff.org/

    The simplest step to prevent a lot of this malicious behavior is to block executable script. This is not really a new thing on the Internet, as extensions like NoScript have been around for 2 decades and have millions of users. This should be anticipated by the web developer as a completely normal use case.

    Competent web developers understand that they have privacy-conscious users who block external executable script as a matter of course. Your website(s) should be designed to account for this, and should at least render and display information in a readable way without needing to execute your un-vetted code on the user’s system. Maybe some dynamic functions of the website don’t work, but that’s OK as long as the majority of the site is accessible. A JavaScript-dependent website is no better than a Flash-dependent website, in terms of security, privacy, and professionalism.

    NoScript frames this as a consent issue, and that’s probably valid:

    NoScript enables consensual browsing: your browser, your choice!








  • NaibofTabrtoMemes@sopuli.xyzYou earned some more dislikes
    link
    fedilink
    English
    arrow-up
    1
    ·
    4 days ago

    A good forum design will only get you so far, the rest is up to the moderators. If you let bad actors in, it doesn’t matter how you designed your forum, they will poison the well and drive other people out.

    Yes, well, the problem with hexbear was that it started with bad actors. As they made their true colors apparent to the lemmy community at large, they were increasingly defederated.

    The best communities I’ve been in are in independent old-style forums. One of them is Tildes. Most of these don’t feature downvotes (or upvotes for that matter) and are honestly the better places to have discussions IMO.

    Oh yes, my past experience is in old web forums as well. Those communities were more isolated though, they essentially existed inside their own bubbles. Unregistered users could read them, but not participate in any functional way, and typically the people that found them were looking for a community like that on purpose.

    I’ve also experienced such communities becoming toxic due to the actions of individual moderators or admins, post voting not required.

    Ultimately I think I agree this far - if you’re going to disable voting you should do all of it. Removing only the downvoting is the YouTube path, the authoritarian path, the toxic positivity path.


  • NaibofTabrtoMemes@sopuli.xyzYou earned some more dislikes
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    1
    ·
    4 days ago

    I wouldn’t imply that the unhealthyness of hexbear is due to the disabled downvoting though, and I’m sure you aren’t either, but just to be clear.

    No, I’m implying the reverse: disabling downvoting is a symptom of the unhealthy mentality of the people running that server. Disabling downvoting appeals to authoritarians - that is, the type of people who are interested in silencing dissent (QED).




  • NaibofTabrtoPolitical Memes@lemmy.worldthat
    link
    fedilink
    English
    arrow-up
    2
    ·
    4 days ago

    It’s real hard to find the interferer when there’s interferers everywhere

    It’s actually pretty easy to locate a radio source on a particular frequency, especially if it’s a frequency where most transmitters are known/registered (e.g. police radios).

    also triangulation is hard, particularly for a bunch of meat heads who have been shown to struggle with high school education.

    You do realize that not all police are beat cops, right? They have technical specialists. If there’s an issue outside the qualifications of a regular officer, they just refer it to the specialists who know exactly what to do.

    Police have been driving around with suitcase-sized Stingray devices since at least 2006. They absolutely have equipment that can triangulate a radio source - they don’t even really need to understand how it works, just turn it on.


  • NaibofTabrtoMemes@sopuli.xyzYou earned some more dislikes
    link
    fedilink
    English
    arrow-up
    1
    ·
    4 days ago

    Enforced toxic positivity does not produce better conversations or better communities. It basically just turns a discussion forum into Disneyland, where everyone is happy all the time, because there’s no other option. It’s the kind of yes-man thinking you get in corporate meetings that produce really bad ideas because “don’t be negative! there are no bad ideas here!”


  • China is doing this sort of thing, and worse, they’re just less obvious about it.

    For instance, China operates unauthorized police stations inside other countries, which they use to enforce party loyalty and target dissidents.

    You should also read the article about Chinese government interference in Canada:

    The Canadian government has been tracking Chinese government efforts to influence Canada since at least 1986.

    In 2016, newspaper sources reported that Justin Trudeau had been attending cash-for-access events at the homes of wealthy Chinese Canadians in Toronto and Vancouver, generating a political scandal. Attendees at these events, including those with connections to the CCP, would pay up to $1,525 per ticket to meet Trudeau.

    The People’s Republic of China made attempts to interfere in the 2019 Canadian federal election and 2021 Canadian federal election and threatened Canadian politicians, according to Canadian Security Intelligence Service (CSIS) and the Parliament of Canada’s Foreign Interference Commission.

    PRC manipulation activities in Canada are well documented, but it would be extremely naive to think they aren’t pulling the same shit in other countries.


  • NaibofTabrtoPolitical Memes@lemmy.worldthat
    link
    fedilink
    English
    arrow-up
    80
    arrow-down
    1
    ·
    4 days ago

    This is a bad idea. Transmitting on a government frequency with enough power to interfere with other radio traffic will get you a police visit. You’re basically turning on a big lightbulb that says “come find me” for anyone who would bother to triangulate the source of the interference.




  • Who said anything about how it looks?

    Shanghai is a global financial center, ranking third in Asia and eighth globally on the Global Financial Centres Index.[139] Shanghai is also a large hub of the Chinese and global technology industry and home to a large startup ecosystem. As of 2021, the city was ranked as the 2nd Fintech powerhouse in the world after New York City.[140]

    As of 2019, the Shanghai Stock Exchange had a market capitalization of US$4.02 trillion, making it the largest stock exchange in China and the fourth-largest stock exchange in the world.[141] In 2009, the trading volume of six key commodities—including rubber, copper, and zinc—on the Shanghai Futures Exchange all ranked first globally.[142] By the end of 2017, Shanghai had 1,491 financial institutions, of which 251 were foreign-invested.

    https://en.wikipedia.org/wiki/Shanghai

    Shanghai is about as communist as Wall Street. It should look nice, they certainly have the money for it.