the grugq's newsletter

Subscribe
Archives
October 22, 2022

October 22, 2022

This is a great thread about the limitations of AI systems.

Twitter avatar for @pardoguerra
JP Pardo Guerra @pardoguerra
The rise of GPT-3 in the classroom is, indeed, quite shocking BUT there are strategies to deal with most GPT-N-like innovations. Here are five:
Twitter avatar for @GemmaDerrick
Gemma E Derrick @GemmaDerrick
I feel dirty just knowing that this exists. How on earth can we minimise the effect of such a tool? Both in research practice as well as for the learning good of our students. https://t.co/nOiOtDUwuT
2:13 PM ∙ Oct 17, 2022
373Likes110Retweets
AI Snake Oil
Students are acing their homework by turning in machine-generated essays. Good.
The latest AI-related alarm: students around the world are using AI models such as GPT-3 to write essays, and getting good grades on them. I don’t condone cheating. But I think the availability of text generators will force changes to education which, while painful, will prove to be positive…
Read more
6 months ago · 14 likes · 8 comments · Arvind Narayanan

-

The Info Op is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Arming for the War We're In
"You’ve told us why the Voice, but you haven’t told us what it is"
As I have been and continue to be busy with another writing project that is, to be honest, more important than this newsletter, I’ve been a bit lax in writing here. As both a distraction and to help me focus on that effort, this note revisits a post on my…
Read more
6 months ago · 1 like · Matt Armstrong

-

They should only get the helmets if they make it to the last round

Twitter avatar for @burt_cdburt
Colin Burt @burt_cdburt
Tories choosing a new leader this morning…
6:48 AM ∙ Oct 20, 2022
82,615Likes16,119Retweets

-

Starlink signals can be reverse-engineered to work like GPS—whether SpaceX likes it or not

https://www.technologyreview.com/2022/10/21/1062001/spacex-starlink-signals-reverse-engineered-gps/

-

Twitter avatar for @gregpmiller
Greg Miller @gregpmiller
Wow. US intelligence on Iran missiles, espionage programs against China. All stored in boxes by Trump at a beach resort that foreign spy services have been targeting since he became president.
@DevlinBarrett
washingtonpost.comMar-a-Lago classified papers held U.S. secrets about Iran and ChinaDocuments on Iran’s missile program, U.S. intelligence work aimed at China were among the most sensitive material seized by the FBI, people familiar with the matter say.
3:31 PM ∙ Oct 21, 2022
2,322Likes1,109Retweets

-

Twitter avatar for @BeijingPalmer
James Palmer @BeijingPalmer
most of them don't read English and get filtered information through a series of yes-men and propagandists, and because the U.S. is so ridiculously economically and militarily powerful still - and has so many alliances - believing it's short of will is a form of cope
Twitter avatar for @accidentalflyer
Broken Hero on Last Chance Drive 🇺🇦🌁🇨🇦🇹🇼🚀 @accidentalflyer
@MacWBishop @BeijingPalmer One thing I don't understand is why leaders of Russia (and China as well) don't have good insights about America given freely available information. Or they can just read what General Tadamichi Kuribayashi and Admiral Isoroku Yamamoto wrote about the US.
5:36 PM ∙ Oct 21, 2022
369Likes43Retweets

-

Twitter avatar for @cfreal_
Charles Fol @cfreal_
As promised, here's the blogpost describing the journey that landed us pre-auth #RCE on @watchguard firewalls. Most of the bugs are binary, but there's also a time-based XPath injection for web folks !
Twitter avatar for @ambionics
Ambionics Security @ambionics
Learn how we discovered 5 distinct vulnerabilities on @watchguard #Firebox/#XTM firewalls, and obtained a pre-auth Remote Code Execution as root #0day (CVE-2022-31789, CVE-2022-31790). https://t.co/ufKtGODAkc
2:20 PM ∙ Aug 29, 2022
103Likes37Retweets

-

Twitter avatar for @ryanaraine
Ryan Naraine @ryanaraine
Rachel Tobac has done more for MFA adoption than $10 billion worth of big-tech companies combined. Salute! 🏆
Twitter avatar for @RachelTobac
Rachel Tobac @RachelTobac
*New live hack demo video* CNN’s @donie asked me to hack him again at @defcon — hacked him last time thru service provider call center attacks, but this time I intruded using the easiest method: reused passwords found in data breaches. Here’s the breakdown.https://t.co/tAcZQhG6MH
8:03 PM ∙ Oct 21, 2022
117Likes34Retweets

-

Twitter avatar for @dinodaizovi
Dino A. Dai Zovi @dinodaizovi
A common mistakes is assuming that Conway's Law only applies to software and not (general) systems: "Any organization that designs a system (defined broadly) will produce a design whose structure is a copy of the organization's communication structure."
martinfowler.combliki: ConwaysLawSystems are constrained to follow the communication patterns of their designers.
12:20 AM ∙ Oct 22, 2022
29Likes15Retweets

-

Twitter avatar for @arstechnica
Ars Technica @arstechnica
Vice Society has been described as "a perfect example of the success of mediocrity in the ransomware ecosystem," which is the main reason it's been able to quietly thrive. (Via @WIRED)
trib.alHow Vice Society got away with a global ransomware spreeVice Society has a superpower that’s allowed it to quietly thrive: Mediocrity.
12:04 AM ∙ Oct 22, 2022
8Likes7Retweets

-

Twitter avatar for @ORCx41
ORCA @ORCx41
decided to release this, a highly capable pe packer, with a lot of nice features
github.comGitHub - ORCx41/AtomPePacker: A Highly capable Pe PackerA Highly capable Pe Packer. Contribute to ORCx41/AtomPePacker development by creating an account on GitHub.
5:05 AM ∙ Oct 12, 2022
432Likes154Retweets

-

Twitter avatar for @5aelo
Samuel Groß @5aelo
After > 2 years it's time for a new Fuzzilli release: github.com/googleprojectz… :)
github.comRelease Fuzzilli Version 0.9.2 · googleprojectzero/fuzzilliBesides various bug fixes and stability/performance improvements, notable new features of this release include: The new ExplorationMutator A new and improved splicing algorithm The swarm testing m...
3:27 PM ∙ Oct 21, 2022
132Likes26Retweets

-

Twitter avatar for @Rich_Harris
Rich Harris @Rich_Harris
i'm going to need to write a blog post on this topic, but this is a deeply under-appreciated fact about web dev, and one of the reasons native apps tend to feel more robust than web apps. as someone who frequently amtraks through connectivity dead zones, it resonates deeply.
Hacker News comment:

I think you're talking past each other: the problem isn't assuming the client's internet is fast, the problem is assuming the client's internet is stable.

If you replace most interactions that could be resolved client-side with a network transaction, you're betting on the client's internet being not just reasonably fast but also very stable. When I'm on the go, my internet is more likely to be fast than stable.
Hacker News comment:

For a real world example of this, GitHub uses server-side rendered fragments. Working with low latency and fast internet in the office, the experience is excellent. Trying to do the same outside with mobile internet, and even with a 5G connection, the increased latency makes the application frustrating to use. Every click is delayed, even for simple actions like opening menus on comments, filtering files or expanding collapsed code sections.

I'm actually worried about developers in developing countries where mobile internet is the dominant way to access the Internet and GitHub is now the de facto way to participate in open source, that this is creating an invisible barrier to access.
5:30 PM ∙ Oct 21, 2022
1,426Likes197Retweets

-

Twitter avatar for @Techmeme
Techmeme @Techmeme
Snap, which just reported its slowest quarterly revenue growth ever, will close its San Francisco office, saying it "was lightly used" due to flexible work (Bloomberg) bloomberg.com/news/articles/…
techmeme.comSnap, which this week reported its slowest quarterly revenue growth ever, plans to close its San Francisco office, which “was lightly used”…From Bloomberg. View the full context on Techmeme.
9:46 PM ∙ Oct 21, 2022
6Likes3Retweets

-

Twitter avatar for @yesterdaysprint
Yesterday's Print @yesterdaysprint
Daily Mirror, England, November 14, 1938
Image
1:45 AM ∙ Oct 22, 2022
257Likes52Retweets

-

Twitter avatar for @swathibkrishna
Swathi Krishna @swathibkrishna
Recently @newscientist published a piece on our work where @UNFoLD_EPFL, @AlexanderGehrk4, and I show that water-treading helps increase efficiency by about 50% compared to normal hovering kinematics! newscientist.com/article/233333… @unisouthampton @UoSAeroAstro @EPFL_MechE @EPFL_en 1/2
newscientist.comHovering robots could get more lift by ‘treading water’ in the airMoving like an insect may not be the most efficient way for tiny flying robots to hover – they get more lift by taking advantage of vortices of air that form under their wings
7:04 AM ∙ Oct 14, 2022
35Likes11Retweets

-

Twitter avatar for @wang_maya
Maya Wang 王松蓮 @wang_maya
Messages of Beijing bridge protester appear in public toilets--the least surveilled places in China. The New Toilet Revolution, the trend is called. chinadigitaltimes.net/chinese/688638…
Image
3:46 PM ∙ Oct 19, 2022
744Likes295Retweets

-

Twitter avatar for @yurirando
frog "DISEMBODIED HUMAN ASS" kosaric @yurirando
every part of this tweet is a scam. Harvard is a potemkin village for real estate speculation. Linkedin is Myspace for 50yo men who are office instead of emo. Books were invented by the CIA to diversify their dark money portfolio away from cocaine. Audiobooks aren't even real
Twitter avatar for @nateliason
Nat Eliason @nateliason
Saying you "read a book" when you just listened to the audiobook is the same energy as having Harvard in your LinkedIn education section because you took one online course
3:36 AM ∙ Oct 22, 2022
259Likes46Retweets

-

-

Twitter avatar for @chompie1337
chompie @chompie1337
Remotely exploiting CVE-2022-34718, TCP/IP RCE bug #EvilEsp for DoS. This is a bug in Ipv6 fragmentation/IpSec, which allows OOB write if an Ipv6 fragment is contained inside an IpSec ESP payload.
3:47 AM ∙ Oct 22, 2022
889Likes152Retweets
Twitter avatar for @chompie1337
chompie @chompie1337
I'll write a blog post soon - in the mean time check out this incredibly detailed blog post by @0vercl0k about reverse engineering tcpip.sys. this work made the REing of this bug much easier.
doar-e.github.ioReverse-engineering tcpip.sys: mechanics of a packet of the death (CVE-2021-24086)
3:48 AM ∙ Oct 22, 2022
87Likes17Retweets

-

A follow up on the mass shooter Tajiks

Twitter avatar for @ChrisO_wiki
ChrisO @ChrisO_wiki
1/ Were the Tajiks who carried out a mass shooting at a Russian training ground on 15 October forcibly mobilised against their will? Reports from Russian and Tajik-language media suggest this may indeed have been the case, though much still remains uncertain. 🧵 follows.
Image
7:47 AM ∙ Oct 20, 2022
2,956Likes635Retweets
Twitter avatar for @ChrisO_wiki
ChrisO @ChrisO_wiki
1/ The Russian Cheka-OGPU Telegram channel has suggested that *both* the Tajiks who carried out a mass shooting at the Soloti training range on 15 October were forcibly recruited in Moscow. I highlighted yesterday the story of one of them, Ehson Aminzoda.
Twitter avatar for @ChrisO_wiki
ChrisO @ChrisO_wiki
1/ Were the Tajiks who carried out a mass shooting at a Russian training ground on 15 October forcibly mobilised against their will? Reports from Russian and Tajik-language media suggest this may indeed have been the case, though much still remains uncertain. 🧵 follows. https://t.co/ClJorrGqRf
11:06 AM ∙ Oct 21, 2022
412Likes70Retweets

-

Twitter avatar for @The_Lookout_N
The Lookout @The_Lookout_N
And we have another one. The Western Police District, on request from the Police Security Services, has arrested a Russian citizen for drone flying in violation of sanctions laws. The arrest was made in Ullensvang, Hordaland.
direkte.vg.noNok en russer pågrepet etter å ha fløyet med drone – VG Nå: NyhetsdøgnetEn russisk statsborger er pågrepet for mulig brudd på reglene som nekter russere å fly droner i Norge, skriver Bergensavisen.
8:09 PM ∙ Oct 21, 2022
293Likes88Retweets

-

Twitter avatar for @TheDreadShips
Dreadnought Holiday @TheDreadShips
At about this time, 118 years ago, one of the daftest and most one-sided sea battles in history began. Fair play to them though. The Russian's gave it their best few thousand shots, missed with virtually all of them, and escaped with a draw.
Twitter avatar for @TheDreadShips
Dreadnought Holiday @TheDreadShips
Kamchatka officially opened its war by casually announcing it was under attack by "about eight" torpedo boats. The entire Russian fleet responded by pumping thousands of shells at passing fishermen from Hull. https://t.co/Anzhv7kVvG
7:51 PM ∙ Oct 21, 2022
384Likes76Retweets

-

Twitter avatar for @fallettiseb
Sebastien Falletti @fallettiseb
Exclusive: Several French pilots have been working as instructor in #China to train #PLA air force, two former military sources confirmed me. I interviewed a French Navy pilot who was approached to train China aircraft carrier pilots @Le_Figaro A thread.
lefigaro.frQuand l’armée chinoise recrute des pilotes français«J’ai failli me laisser tenter»: Le Figaro a recueilli le témoignage d’un pilote français approché par Pékin pour former l’armée de l’air chinoise.
3:45 AM ∙ Oct 22, 2022
871Likes493Retweets

-

Twitter avatar for @shinynew_oz
astrid atkinson @shinynew_oz
This one is actually my story, about adapting to massive scaling challenges, a gamble that didn't pay off, and the work of my friends in Traffic SRE, particularly my beloved colleague @_jdh. Buckle up, we're going for a trip down memory lane!
Twitter avatar for @lizthegrey
Liz Fong-Jones (方禮真) @lizthegrey
Okay, the time has come, it's been an entire decade, let's talk about loadbalancing techniques and how they evolved at Google in response to various practical failure modes, from 2008 to 2012. https://t.co/ppRjNPYmfd
4:57 PM ∙ Oct 20, 2022
68Likes28Retweets

-

Twitter avatar for @Aristot73
Aristotle Tzafalias @Aristot73
Image
10:29 AM ∙ Oct 22, 2022
8Likes1Retweet

-

Twitter avatar for @life_arts_lane
lifeintheartslane 🕯 @life_arts_lane
Her slim, elegant fingers thrummed on the taxi window. She could barely contain her glee. A swift trip to the airport so that when he shambled from the plane… her raddled, adoring face would be the first he saw. And soon… oh so tantalisingly soon, he would be back inside her
Image
4:59 PM ∙ Oct 21, 2022
2,174Likes353Retweets

-

The Info Op is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Don't miss what's next. Subscribe to the grugq's newsletter:
X