Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Star War Sex Parrot
Oct 2, 2003

Aleksei Vasiliev posted:

anyway in other google news: https://blog.exodusintel.com/2015/08/13/stagefright-mission-accomplished/
the stagefright exploit patch doesn't actually fix it due to size differences in the two uints it's comparing

Adbot
ADBOT LOVES YOU

ate shit on live tv
Feb 15, 2004

by Azathoth

Nintendo Kid posted:

no, moron, most people really don't want child porn posted on their site

Agreed. But they don't want to be "under investigation indefinitely" more, hence the DoJ cooperative CP filters in place on 4chan, 8chan, reddit, etc.

Nintendo Kid
Aug 4, 2011

by Smythe

Powercrazy posted:

Agreed. But they don't want to be "under investigation indefinitely" more, hence the DoJ cooperative CP filters in place on 4chan, 8chan, reddit, etc.

no, the fbi filters are the most effective way to keep cp off of the site, other than using another government's filters if you really wanted to.

Carbon dioxide
Oct 9, 2012

Nintendo Kid posted:

no, the fbi filters are the most effective way to keep cp off of the site, other than using another government's filters if you really wanted to.

Do non-american sites use fbi's filters?

Triglav
Jun 2, 2007

IT IS HARAAM TO SEND SMILEY FACES THROUGH THE INTERNET
um why does the fbi have child porn? dont they know its bad and illegal?

Nintendo Kid
Aug 4, 2011

by Smythe

Carbon dioxide posted:

Do non-american sites use fbi's filters?

well really the filters are shared among INTERPOL members, but if you're in the US you'd get them and the tools through the FBI just because they're local and corresponding agencies for different countries.

Carbon dioxide
Oct 9, 2012

Triglav posted:

um why does the fbi have child porn? dont they know its bad and illegal?

There are people out there who investigate everything on the internet that's illegal, horrible, and disgusting, in order to get the people creating that stuff locked up.

A lot of those people develop PTSD-like problems after a while. There's an article and a youtube clip out there about people in Latin America that're hired by Facebook and the like to check reported images and delete the illegal stuff. They get a rather low wage... and most can't keep it up for more than a few months or so, it's more traumatizing than you'd think.

I respect those folks.

Dessert Rose
May 17, 2004

awoken in control of a lucid deep dream...
yeah my ex used to do terms of service compliance verification for mastercard or some other payment processor and she said they had company-provided counseling to deal with the things they saw

Shame Boy
Mar 2, 2010

Nintendo Kid posted:

no, moron, most people really don't want child porn posted on their site

i'm friends with a guy who's friends with "hotwheels," the guy who runs 8chan. i can tell you right now that man actually does want child porn posted on his website.

fun fact: for his birthday him and a bunch of gamer gators went to a strip club and spent the entire time using the free wifi to "troll SJW's" online.

Shame Boy
Mar 2, 2010

Dessert Rose posted:

yeah my ex used to do terms of service compliance verification for mastercard or some other payment processor and she said they had company-provided counseling to deal with the things they saw

apparently Google hires contract workers to do this sort of poo poo and promises them that they'll totally hire them full time on a better job when the contract is up and when it's up they just toss them aside and refuse to pay any of the medical bills for their now completely broken brains.

Nintendo Kid
Aug 4, 2011

by Smythe

Parallel Paraplegic posted:

i'm friends with a guy who's friends with "hotwheels," the guy who runs 8chan. i can tell you right now that man actually does want child porn posted on his website.


welp, death by guillotine i guess

syscall girl
Nov 7, 2009

by FactsAreUseless
Fun Shoe

Parallel Paraplegic posted:

i'm friends with a guy who's friends with "hotwheels," the guy who runs 8chan. i can tell you right now that man actually does want child porn posted on his website.

fun fact: for his birthday him and a bunch of gamer gators went to a strip club and spent the entire time using the free wifi to "troll SJW's" online.

>_<

Space-Pope
Aug 13, 2003

by zen death robot

Dessert Rose posted:

yeah my ex used to do terms of service compliance verification for mastercard or some other payment processor and she said they had company-provided counseling to deal with the things they saw
i'm confused by this. are there really people who tried to sell that kind of stuff, and they accepted mastercard?

like i'm not trying to be cheeky or anything. i'm just kind of baffled by people trying to do that

Nintendo Kid
Aug 4, 2011

by Smythe

Space-Pope posted:

i'm confused by this. are there really people who tried to sell that kind of stuff, and they accepted mastercard?

like i'm not trying to be cheeky or anything. i'm just kind of baffled by people trying to do that

bestiality and a thousand other things would be part of that, and often even legal though definitely against the terms of service for the merchant thing.

Space-Pope
Aug 13, 2003

by zen death robot
oh right. i forgot about things being technically legal, but against TOS

that sucks :\

uninterrupted
Jun 20, 2011

Carbon dioxide posted:

There are people out there who investigate everything on the internet that's illegal, horrible, and disgusting, in order to get the people creating that stuff locked up.

A lot of those people develop PTSD-like problems after a while. There's an article and a youtube clip out there about people in Latin America that're hired by Facebook and the like to check reported images and delete the illegal stuff. They get a rather low wage... and most can't keep it up for more than a few months or so, it's more traumatizing than you'd think.

I respect those folks.

also, the filters apparently just take hashes of images/video and compare them to a list of hashes of known child porn; this way the FBI sidesteps forcing (for example) gmail from storing child porn to compare against user email attachments.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer

Parallel Paraplegic posted:

apparently Google hires contract workers to do this sort of poo poo and promises them that they'll totally hire them full time on a better job when the contract is up and when it's up they just toss them aside and refuse to pay any of the medical bills for their now completely broken brains.

that's hosed. facebook at least limited people's exposure and offered counseling.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer

uninterrupted posted:

also, the filters apparently just take hashes of images/video and compare them to a list of hashes of known child porn; this way the FBI sidesteps forcing (for example) gmail from storing child porn to compare against user email attachments.

the hashes also allow for really satisfying mean-time-to-law-enforcement numbers.

HAIL eSATA-n
Apr 7, 2007


Parallel Paraplegic posted:

i'm friends with a guy who's friends with "hotwheels," the guy who runs 8chan. i can tell you right now that man actually does want child porn posted on his website.

fun fact: for his birthday him and a bunch of gamer gators went to a strip club and spent the entire time using the free wifi to "troll SJW's" online.

sounds like they got owned

Meat Beat Agent
Aug 5, 2007

felonious assault with a sproinging boner
rare footage of fredrick "hotwheels" brennan trolling some SJWs IRL

Segmentation Fault
Jun 7, 2012

so you're saying Paul Rudd is actually hotwheels

Storysmith
Dec 31, 2006


that's just paul rudd's newest movie

pseudorandom name
May 6, 2007

uninterrupted posted:

also, the filters apparently just take hashes of images/video and compare them to a list of hashes of known child porn; this way the FBI sidesteps forcing (for example) gmail from storing child porn to compare against user email attachments.

I wonder what else has been hashed and added to the list.

presumably everything snowden has gifted us

Shame Boy
Mar 2, 2010


hotwheels leading the way

Winkle-Daddy
Mar 10, 2007
Probably not. The cp list is the cp list and it is only the cp list. A hosting company i used to work for actively discouraged us from developing tools to discover cp being hosted except for those things that could just check hash values on upload.

I wasn't really privy to the implementation of that tool, but the reason the lawyers gave for not seeking out more was that it became a huge pain in the rear end to deal with law enforcement at that point. Kinda hosed up imo. We did find pedo stuff on a pretty regular basis. Usually it was a tiny php site accessible through a randomly generated url. Almost always a wordpress site was hacked to upload it. Finding one of those makes you want to take some time off and reevaluate humanity's right to continued existence.

froward
Jun 2, 2014

by Azathoth
For everyone who freaked out about Lenovo UEFI/BIOS writing execs to the (windows) filesystem, have a read about the intel AMT which works even on the lunix!
FSF writeup
Wikipedia on known vulnerabilities

one man's remote manament protocol is another man's backdoor, I guess.

¯\_(ツ)_/¯

Heresiarch
Oct 6, 2005

Literature is not exhaustible, for the sufficient and simple reason that no single book is. A book is not an isolated being: it is a relationship, an axis of innumerable relationships.

froward posted:

one man's remote manament protocol is another man's backdoor, I guess.

this is often literally the case

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Winkle-Daddy posted:

Probably not. The cp list is the cp list and it is only the cp list. A hosting company i used to work for actively discouraged us from developing tools to discover cp being hosted except for those things that could just check hash values on upload.

this is an interesting (albeit 10 year old) document about BT's cleanfeed system, which they use to prevent their customers from accessing CAI: https://publicaffairs.linx.net/news/?p=154
it essentially uses static routes to force requests to certain IPs to go via a reverse proxy that can block by URL

two things of particular note:

- they claim they'd rather throw the whole thing out than fall victim to scope creep

quote:

BT says that if the pressure to extend the scope of Cleanfeed became too great it would simply cancel the project.
this was commendable but they have subsequently been forced to implement a very similar system to block torrent sites etc at the request of the high court. this new system also falsifies DNS responses to try to block at the domain name level so they don't have to sinkhole cloudflare's entire address space to filter out libgen.org lol

- they were worried about filtering for CAI jeopardising their status as a common carrier, rendering them responsible for policing all the other illegal poo poo online

quote:

If BT faced an adverse finding on this issue Cleanfeed would be terminated.

doubtless this is something goddamnedtwisto can elaborate on

Trabisnikof
Dec 24, 2005

Have we talked about how the stagefright patch didn't actually fix anything? Cause that's kinda nifty.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer

Trabisnikof posted:

Have we talked about how the stagefright patch didn't actually fix anything? Cause that's kinda nifty.

the link was posted, but we ended up talking about CP instead.

Korean Boomhauer
Sep 4, 2008

ultramiraculous posted:

the link was posted, but we ended up talking about CP instead.

goons.txt

Shame Boy
Mar 2, 2010

ultramiraculous posted:

the link was posted, but we ended up talking about CP instead.

the SA user control panel is called "usercp.php" and my bookmark for it just says "CP"

Winkle-Daddy
Mar 10, 2007
speaking of android malware, what is a good thing to do to find out if you are boned? both my wife and i got messages to our lg g4's (on sprint's network) that our sim card was successfully unlocked, with just a button to press "ok". I'm sure that has something to do with the garbage sprint loads on their androids but it did make me wonder what's out there that isn't just terrible security theater?

Last Chance
Dec 31, 2004

Winkle-Daddy posted:

speaking of android malware, what is a good thing to do to find out if you are boned? both my wife and i got messages to our lg g4's (on sprint's network) that our sim card was successfully unlocked, with just a button to press "ok". I'm sure that has something to do with the garbage sprint loads on their androids but it did make me wonder what's out there that isn't just terrible security theater?

thanks to the freedom of anroid, you have dozens of options for anti virus for your phone. check them out.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer
so to actually talk about the stagefright fuckup:

Aleksei Vasiliev posted:

anyway in other google news: https://blog.exodusintel.com/2015/08/13/stagefright-mission-accomplished/
the stagefright exploit patch doesn't actually fix it due to size differences in the two uints it's comparing

the issue here is that SIZE_MAX is UINT_MAX on 32-bit devices (most of them), right? the fix works if SIZE_MAX is ULONG_MAX, like if you compiled it as 64-bit?

apseudonym
Feb 25, 2011

Last Chance posted:

thanks to the freedom of anroid, you have dozens of options for anti virus for your phone. check them out.

Now you have n+1 problems.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer
mostly can i used this to strengthen my case that macros usually poo poo because they don't usually come with types the compiler can yell at you about?

apseudonym
Feb 25, 2011

ultramiraculous posted:

mostly can i used this to strengthen my case that macros usually poo poo because they don't usually come with types the compiler can yell at you about?

No, it has nothing to do with macros.

ultramiraculous
Nov 12, 2003

"No..."
Grimey Drawer
well it might if llvm called out mis-matched int sizes like i thought it did. i thought there was a warning/error similar to swift, where doing operations with differently sized integers w/o casting gets called out. there's only signedness difference checks, apparently.

Adbot
ADBOT LOVES YOU

hobbesmaster
Jan 28, 2008

yeah i swear i've seen that warning before but i guess not?

  • Locked thread