• 0 Posts
  • 200 Comments
Joined 3 years ago
cake
Cake day: June 10th, 2023

help-circle

  • That is the problem though, isn’t it?

    We’re at a point that AI is shoved hard in everything and your mother, yet actual useful applications for AI barely get any attention.

    It’s all about the useless and criminal like chat bots, nudifier apps, and the hilarious claims that AI really can do software development

    It’s all pushed by lying psychopaths who convince empty headed politicians (seriously, we need a required IQ test or something for people who want to become politician) to invest billions in their bubble balloons.

    Those billions are them used to build new datacenters that nobody wants and which destroy the environment in all sorts of creative ways

    This is not a tool used wrong. This is somebody inventing guns and now everybody wants to shoot those guns at everything and your mother.

    If tomorrow AI and the knowledge we have about it would completely disappear from the world, it would be a better place.










  • I don’t blame a girl for doing a job that lands her food on the table. I blame the guy employing her because she’s the cheapest option

    Having said that, this design was so bad that she should not have been doing any of this. If you don’t know that SQL allows you to select multiple columns then by all means, do a tutorial, it’s not that hard.

    If you don’t even know what encryption is, that passwords need hashing and what not, then you should really question what you’re doing

    OPs question was about the worst code I’ve seen, that was the worst I’ve seen


  • A program that HR had built so that all employees could they their payment receipts online

    The username was the companies’ email address, the password was a government personal id code that you can lookup online, a don’t change, and you can’t update the password to something else.

    So I told the director of HR this was a bad idea. She told me I was overreacting until I showed her her own receipt, then she finally understood that this is a really fucking bad idea.

    Okay, so now she out me in charge of debugging that program.

    So I setup a meeting with the director of the company they hired, he came by with the developer: a 21 yo girl who I think hadn’t finished college yet. Great start! Apparently it was her idea to do the authentication like that so that explains a few things.

    So we dive in to the code.

    First of all, the “passwords” were stored in blank, no hashing, no encryption, nothing. That wasn’t the worst.

    For the authentication she made a single query to check if the user email existed. Of that was true, then step two was a second query to see if the password existed. If that were true, the email had been authenticated.

    So let’s say, hypothetically, that they had actual passwords that people could change… I could still login with the email from anyone, and then use MY OWN password to authenticate.

    This just blew my mind so hard that I don’t think I ever fully recovered, I still need treatment. The stupidity hurts







  • “The position of the FFmpeg X account is that somehow disclosing vulnerabilities is a bad thing. Google provides more assistance to open source software projects than almost any other organization, and these debates are more likely to drive away potential sponsors than to attract them.”

    Yeah slave, stop complaining get your ass back to work because I’m about to dump more obligatory work on your lap that you will fix for no pay, I don’t care you have a family to feed!

    Your complaining about not having any sponsor for the free work that we sell for millions of dollars may cause that you don’t get any sponsors!

    The entitlement and mental gymnastics here at display is insane

    Google has made billions off of open source software they got and used for free. Sure, they gave back a few fractions of a penny for each million they made with it, they gave back with adding some softwares here and there when it strategically suited them, but the simple fact is that without open source software, Google wouldn’t exist today, definitely not the way they do now.

    Hell, the internet wouldn’t exist as it does today, it would be a tiny fraction of what it is today without open source software. Open source software is amazing yet most people in the world don’t even know that it exists, that it’s a concept, and that people are doing this

    Yet there are countless companies profiting majorly from the work of others without giving back a dime. There are multinationals that profit in the billions from open source software without giving back properly or at all.

    We need an updated GPL amendment or something that requires companies to start giving back productively in some form or another once they start majorly profiting from the work of open source projects.


  • OpenSSL heart bleed, for sure

    Great example of corporations just taking from open source and not giving back a dime because fuck you, give us your work!

    I’d love to see a GPL version where if you’re a company, and you make more than x amount of profit with open source projects, that you gotta fund it with y amount, depending on your profit or something

    ALL big tech companies have gotten ginormous thanks to open source software, and though some have given back something, and some have done some funding, it’s always been such few pennies on so many dollars that it might as well have been slavery. Add to that that many times what was given back was only given back because it was a good thing, strategically, for them.

    Tech companies are abusive as fuck which made them so insanely big, powerful and rich and this nonsense has to stop

    Open source is awesome and ALL software should be open source as far as I’m concerned, but the abuse from tech corporations has to stop