• 0 Posts
  • 26 Comments
Joined 2 years ago
cake
Cake day: June 14th, 2023

help-circle




  • Partially. The summary isn’t quite in line with the detail:

    Android is the only operating system that fully immunizes VPN apps from the attack because it doesn’t implement option 121. For all other OSes, there are no complete fixes. When apps run on Linux there’s a setting that minimizes the effects, but even then TunnelVision can be used to exploit a side channel that can be used to de-anonymize destination traffic and perform targeted denial-of-service attacks.










  • Despite the breach, LastPass has been pretty solid for me for over a decade. Syncs across devices, easy sharing between family members, etc. If your master pw and iteration counts are in the green, even them losing your data is relatively low risk, apart from exposing the sites you have accounts for, which is equal parts privacy & security issue. If I wasn’t so invested in LP, I would probably go elsewhere but since the horse has bolted…

    I’ve also heard good things about Bitwarden and KeePass but can’t speak to how easy they are to set up.






  • Definitely LLMs have been over promised and/or misrepresented in mainstream media, but even in the last few months their utility is increasing. I’m a big advocate of finding ways to use them to enhance people (thinking partner not replacement for thinking). They are most certainly a tool, and you need to know their limitations and how to use them.

    From experience working with naive end users, they are anthropomorphising based on how the models have been reported and that’s definitely not helpful.

    As the models get more and more capable (and I’m pretty happy to make that prediction), will they reach a point where they are indistinguishable from the output of a real person? That will give us some challenges. But the interesting thing for me is that when that happens, and the AI can write that report you were paying someone to write, what was the point of the report? You could argue they were some kind of terrible UBI and we’ll end up with just the pointless output without the marginal benefit of someone’s livelihood. That needs a bigger rethink.