[-] CosmicTurtle0@lemmy.dbzer0.com 3 points 3 hours ago* (last edited 1 hour ago)

Which is exactly what some conservative said when his account was diverified.

These people don't realize that the same concentric cone of fascism that they loved and voted for just targeted them.

[-] CosmicTurtle0@lemmy.dbzer0.com 4 points 4 hours ago

You could secure it using an IAM user with credentials but then those credentials would be available on all vehicles.

If the vehicles had direct access to S3, maybe that's why the bucket was public? But you could also just leave it available to the public.

But if that was the design, you should sweep the bucket on a regular basis to make sure there aren't any objects over x hours old or something like that.

[-] CosmicTurtle0@lemmy.dbzer0.com 4 points 4 hours ago

Bucket names are often committed to GitHub. It used to be that bucket names could be published but ever since the blog post of the guy getting fucked by people polling his bucket due to an open source project typo made others realize that bucket names should probably be secrets.

There are bots that will just monitor all public commits to github, gitlab, etc. for AWS credentials and other strings like that. And as soon as they are found they will start to abuse them.

[-] CosmicTurtle0@lemmy.dbzer0.com 21 points 7 hours ago

The default for net new buckets is actually very strict.

But it's that strictness that makes devs just to open it up to everyone and not learn proper IAM syntax.

The unfortunate part is that AWS made rules and privileges so nuanced and detailed that it makes people want to make everything public and deal with it "later".

[-] CosmicTurtle0@lemmy.dbzer0.com 6 points 18 hours ago

Oh are the try guys back?

[-] CosmicTurtle0@lemmy.dbzer0.com 65 points 18 hours ago

Costco is one of the very few for profit publicly traded companies that seem to have their head on straight.

If you haven't already, listen to Acquired's episode on Costco.

One of my favorite quotes that I'm going to butcher: raising prices is like a drug. Once you start doing it, it's hard to stop. We choose to find value and savings the hard way and to keep our prices competitive. Raising prices is the last thing we do.

[-] CosmicTurtle0@lemmy.dbzer0.com 11 points 18 hours ago

Baby Orange is making it damn near impossible for us to have any decent relations with any nation other than Russia and Israel.

Which, if I had to guess, is the point of Agent Cheeto and his handler.

[-] CosmicTurtle0@lemmy.dbzer0.com 10 points 23 hours ago

I'm clutching my pearls as I type this.

The National Defense Authorization Act passed both the House and Senate in recent weeks after months of negotiating between Democrats and Republicans. One issue in the bill was a measure to ban the military’s insurance Tricare from covering some gender-affirming care treatments. Other issues that were, however, struck from the final bill included restrictions on abortion access and DEI initiatives in the military.

Biden said that he and his administration “strongly opposes” restrictions on gender-affirming care for trans youth in a statement released after he signed the bill.

If I had to guess, this was a tightly negotiated funding package which of course the Republican controlled House shoved down Democrat throats because otherwise it couldn't move through the Senate.

Biden shouldn't have signed it but the Democrats shouldn't have bent over and taken it either.

"We don't want to be told what to do. We only want to tell other people what to do."

- every conservative

"Those other people didn't earn it...like us. They are lazy welfare mommas. They need to pull themselves up by their bootstraps, like we did."

- your in-laws probably

I had a friend back a few years ago who was an H1B and it's fucking exploitive. They made him work off his visa. And since his visa is tied to his job he couldn't leave it. The place was toxic af.

The company was very much abusing H1B visas but unless someone at the company spoke up, it's just business.

153
284

Which is it?!

This headline came up in my news feed, from a very dubious source so I decided to investigate.

Headline after headline, many from identical sources, about how Walmart and Bank of America are either going to stop taking $1 bills or keep accepting them. The headlines read like a FUD article and I refuse to click through to read the details.

I can't find a reputable news source for this story so I'm assuming it's fake news.

It shouldn't be this easy to manipulate news feeds.

133

I've been searching around for a copy of the Resolute Letter that Trump left for Biden. The letters are typically released within a few days of entering office but this was never done because Biden wanted to talk to Trump first before doing so.

It's been almost four years. Surely it's been done by now and I can't seem to find any article with the letter or anything on the official White House website. I'm tempted to submit a FOIA request for it but wasn't sure where to start.

30
submitted 7 months ago* (last edited 7 months ago) by CosmicTurtle0@lemmy.dbzer0.com to c/selfhosted@lemmy.world

Good day self-hosters! I'm not exactly sure what to call what I'm looking for besides a "clipboard". Let me describe my problem and what my ideal solution is.

At work, I get a lot of slack DMs that ask for the same information. It's not consistent to the point I would just pin the information in my Windows 11 clipboard. But it's often enough that I'd prefer to give people the same information each time it's asked.

I'm limited in what I can build on my work computer. In an ideal world, I'd do what Gilfoyle did and make and bot but I lack the time and skills for such a task. Right now, I solve this with a very long notepad, which is subject to copy/paste errors. If I don't highlight everything correctly or if I accidentally copy over an existing line. That kind of thing.

What I was thinking was a very simple website where the items I'm copying are in tiles that can be tagged and searched. Once I find what I'm looking for, I can click the button to copy it to my clipboard and then go on with my life.

Due to restrictions on my work computer, I cannot host containers or host a website, though a fully self-contained HTML page with javascript I could do.. Ideally this is something that can be build using Github Pages build with Jekyll but so far, I haven't found a theme that mimics the behavior I'm looking for and I lack the time (though not the skills) to build it.

I'd prefer the github route so that I can share the page with others on my team who get asked similar questions.

I am also able to deploy a website via Github Pages (with .nojekyll).

I have to think something similar to this already exists but I imagine the restrictions on having no backend might be the challenge. Love to hear your thoughts!

Edit: added context for Gilfoyle

Thank you all for the great suggestions. I should have added in this post that my work does not allow software with Copyleft (Don't get me started. I'm a strong copyleft advocate and it annoys me that my company only takes and never gives back to OSS). I'm going to give TiddlyWiki out. License is friendly with my work, seems simple enough to run.

That said, Logseq seems to be pretty interesting as well. Might try this out on my on machine to see if I like it.

view more: next ›

CosmicTurtle0

joined 8 months ago