Forgot your password?
typodupeerror

Comment Re:Actively stalking is a different behavior ... (Score 4, Insightful) 138

Was it a false report? Did the contractor not feel threatened or harassed?

by a man who has all sorts of clear attention calling signs on him including the logo of his news outlet, so is clearly not hiding, and is just following and filming with a camera, from a distance?

no, the "threatened" claim isn't credible at all. the "harassment" claim would be more open to interpretation but from the description of the events doesn't really float either. "annoyed by his mere presence", maybe, but that's still no reason to report someone to the police! the claims of prior unrelated episodes of harassment might explain misjudgement by the caller but have nothing to do with the actual situation, which is what police has to assess. btw nowhere is it stated that the driver was driving recklessly, on the contrary, nor that he had any "hot pursuit mentality" (?), nor was there any need to "de-escalate" anything, so dunno where this comes from. the scene, as described, is completely obvious and trivial.

the way i see it this guy reacted like a karen (actually commiting a crime if it was intentional), in any case wasting the policemen's time and wasting the time of another person on their job, and the policemen were either incompetent or biased.

Comment Re:Actively stalking is a different behavior ... (Score 1) 138

which i guess is why the post you're responding to isn't criticising the police action at all but the flock contractor for falsely reporting the journalist, which is a crime in the us from what i'm reading.

then again ... 17 minutes to assess the situation around a clearly signalled journalist with credentials doing his work sitting in his car in a public space and check said credentials seems an awful lot to me. one wonders ... did they spend the same amount of time checking out the flock guy, whose report was ostensibly far more dubious?

Comment Re:Same error often repeated (Score 2) 21

that's a sensible way of minimizing both the risks and the workload. another is limiting the use of dependencies to the barely necessary, and then choosing those with the smallest surface, cleanest code and the best fit for the specific need (and nothing else). this has the added benefit of producing a leaner, more controllable and possibly more effiicient codebase (imo qualities worth on their own).

Comment Re:Same error often repeated (Score 1) 21

You absolutely should not be tasking every single user of major projects with the responsibility of doing a code review on the whole thing before installing it.

oh, i absolutely do. that's what division of labor and organization are for. if you are a single developer then that's on you. if you are a team then someone has to fullfill that task. in a full fledged development shop you have a full security department that audits, freezes and vets authorized versions of components.

package management systems themselves have that responsibility too, but you can't simply assume they're perfect. they shouldn't be blindly trusted.

ofc weak links will cause problems anywhere in the chain. whenever this responsibility is disregarded then a risk is incurred, that's just hard reality. if you don't want the risk then there's no way around it. bottom line: you get source, you own it, for good and bad.

There needs to be a clear distinction between "fly-by-night thing that some rando uploaded" and "library that a million people depend on"

there is: the risk involved. to be considered accordingly.

that said, what is the alternative? for sure not standard libraries or os releases. whe have tools, we have methods, ai can help (as much as it hurts), and i'm open to suggestions but i'm not seeing any reasonable proposals here.

In the traditional approach

we have long outgrown that scenario. it was nice, but it's not practical anymore. we have something now that works, but has flaws. until we find a radical new paradigm we better keep those flaws in mind and address them.

Comment Re:Same error often repeated (Score 2) 21

Why do programming languages keep repeating the same mistake of side-stepping established ways to provide libraries (e.g. the OS distribution systems) and run some self-service systems where anybody can just upload their malware with nobody looking over it?

first, they don't. not one of these (relevant) systems is "unchecked self-service", which doesn't mean that they're perfect and can't be exploited, like everything else.

second, you are talking about source code components and their dependencies and reutilization. at least the person downloading such a component is responsible for "looking over it" before using it.

third, your alternative is not a real alternative: no "os distribution system" could possibly absorb the managament of such activity at the present scale and diversity. so, nobody is sidestepping anything, dependency management systems provide a critical service that no other entity can realistically provide.

It's one of those ideas that immediately sound like a bad idea.

it's one of the core ideas that has contributed to the massive surge and evolution of software engineering in the last decades, along with open source, without which the present state of development wouldn't even have been possible. yes, it has downsides and dangers. those should be (and are being) addressed. but your alternative is just throwing out the baby with the bathwater, i.e., not a real alternative.

a system that downloads dependencies from a random server.

that's simply a bad use/management of that system. stay away from people, groups or companies that do this.

Dependencies that often would be better suited for the standard library.

the standard library? that's not the "os distribution system" you initially talked about. either case, paraphrasing: "these are two of those ideas that immediately sound like a bad idea". because they're entirely different ideas that don't even tackle the same problem.

you basically want a solution you can blindly trust, a comfortable single source of truth. that ship sailed long, long ago. that could work in the 70s and 80s. if we had stuck to that we would still be in the early 90s.

Comment laughing, the best medicine (Score 0) 85

i don't recall that, and i don't really know what you're talking about, so i would ask you to kindly refresh my memory but ... whatever ... i don't want you to get too excited either. if you're so stiff and upset now you should closely watch your blood pressure and heart rates in the coming months.

Comment Re:Simpons Quote (Score 0, Offtopic) 85

putin is beating Ukraine

wait, what happened to the "ukraine is winning!" - "it's a stalemate!" fantasy narrative back and forth?

and getting ready for Europe from the East

oh, you jumped back to the star wars story of the dark side wanting to conquer europe, something russia would never be able to do to begin with, nor wants to do.

trump is beating Iran

if by "beating iran" you mean :
- not reaching a single one of the initial stated objectives
-- regime change
-- shut down nuclear capability
- not reaching any the ongoing string of "alternative" objectives made up on the fly
-- oh, shit, hormuz closed. open hormuz!
-- recover "nuclear dust"
-- can't open hormuz ... know what? we'll close hormuz! that'll show them!
-- not a good idea ... open hormuz!
-- shut down missile strike capability
-- oh well, at least shut down long range missile strike capability
-- this isn't working ... end iranian civilization!
- having to scramble air defence stocks from all over the planet to replenish dwindling stocks
- having early warning system shut down
- running out of stand-off munitions and air defence
- signing the mou which is literally an (desperate) admission of defeat which ...
-- ... recognizes iran's control of hormuz
-- ... pledges removal of us naval blockade
-- ... pledges sanctions relief
-- ... pledges restitution of stolen funds
-- ... pledges a fund for reconstruction
-- ... pledges stopping military action in western asia
-- ... postpones any discussion of the nuclear issues to after a peace agreement
- violating/not complying with any of the above
- getting kicked out of the gulf after getting bases destroyed
- retreating to jordan
- now in the process of getting kicked out of jordan by getting bases destroyed
- now getting carrier groups fired on and having to retreat them (another) 400 miles away
- accomplished:
-- killing a few thousands of civillians (including 160 little girls in a single strike)
-- destroying a few ships
-- demolishing some buildings and bridges
-- electrifying iranian population to rally around "the regime" like never before
-- having west asian countries start alliances and building a new security architecture after realizing "us protection" is actually a threat (and a racket)
-- antagonizinng two thirds of the world's public opinion
-- manipulating stock and energy prices (and enrich some friends) for a while, alas, it doesn't seem to be working anymore
-- bringing about the worst coming energy shock, food crisis and economic depression the world has ever seen (maybe that was the real and only objective?) ...
then that's indeed a hell of a "beating"!!! /s

and getting ready for Europe from the West

wait ... this is new! you mean trump wants to invade europe???

xi is thinking when to join

holly molly, now china wants to invade poor old withering lady europe too? wtf is wrong with these villains!?!? :'(

sooo ... i'm always curious and ready for new psychotropic substances but ... that stuff you're having you can keep. it's obviously no good.

quoting from your other post (funny how you just went on a rant over putin and ukraine in two consecutive articles about ... climate change of all things?):

trump is helping putin prop his little empire and continue murdering innocent Ukrainians.

Why?

because he's desperate. he is fucked in his western asia adventure with no way out (saving face, that is) and midterms are here, plus suddenly operation ukraine seems to be hitting the long expected watershed moment which will unravel the whole nato dark comedy show and expose it for what it is, and he's going to take the blame for a clusterfuck which he didn't actually start but could have walked away from long, long ago.

but he's going to fail at that too. what they need now is a "ceeeeeaaasefire" at all costs, to prolong the agony. think of it as a "euroslavic mou". he sent ratcliff with either threats or bribes, putin and lavrov didn't even want to speak with him. then he sent tweedlekoff and tweedleshner with probably more bribes, and putin actually granted them a respectful formal reception (these 2 poisonous grifters seem to be the closest the us nowadays has to an official diplomatic corps after all) in which he politely listened but very much ignored their bribes and nonsense and probably explained to them in full detail what the actual situation on the ground is and how it is going to play out for the most part of less than 3 hours, sent them back to kiev with a 48h no-strike courtesy. then trump finally phoned putin directly to exactly the same practical outcome.

the narratives are all collapsing like a house of cards.

Comment nice try at sarcasm ... (Score 2) 95

... but it doesn't go well with ignorance. gigawatts worth of solar plants are working/commisioned just for ai in the us, google has a good share of them. a simple google search would have saved you the embarrassment.

just in case your's was a serious question, i guess they're all scraping everything they can, money doesn't seem to be an issue. nor does profitability apparently. long and mighty be the bubble! or maybe they're guessing now that a nuclear winter is a possibility?

Comment Re:This makes my suspicion nipple tingle (Score 4, Interesting) 63

goes back to the us not having serious and transparent job market stats, it's a jumble of different statistics and projections.

they do cite the datacenter boom, particularly construction. if that's going to hold as a long-term strategy and is going to keep producing stable value for the economy and in particular for the job market remains to be seen, i would be skeptical even if the bubble doesn't pop (anytime soon).

Slashdot Top Deals

%DCL-MEM-BAD, bad memory VMS-F-PDGERS, pudding between the ears

Working...