Lance R. Vick ( @lrvick@mastodon.social )

@lrvick

Security Engineer, Cypherpunk, OSS Advocate PGP: 6B61ECD76088748C70590D55E90A401336C8AAA9

Silicon Valley, CA
Joined February 2009

Tweets

You blocked @lrvick

Are you sure you want to view these Tweets? Viewing Tweets won't unblock @lrvick

  1. Pinned Tweet

    Would love to chat, but I prefer open platforms. Matrix: : Mastodon: @lrvick@mastodon.social IRC: lrvick@irc.freenode.net Rooms: ircs://irc.freenode.net/#!, ircs://irc.hashbang.sh/#!, #!: Shells:

    Undo
  2. Hey . Remember that security bug where anyone can attach commits to repos they don't control? That bug you said you wont fix? It was used to attach the "youtube-dl" source code to your own DMCA repo. Have fun . You two deserve each other.

    Show this thread
    Undo
  3. Here is the "youtube-dl" source code GitHub took down, in image form. Let's make sure there are enough copies of this image on the internet to keep the team busy for the geological ages.

    Undo
  4. FYI all forks of a GitHub repo are stored together in the backend. If you fork the "dmca" repo and push code to a new empty branch, it is accessible from the original repo as well. Security problem, right? GitHub didn't think so. Anyone can push DMCAed code to GitHub DMCA repo.

    Show this thread
    Undo
  5. Hey . Remember that security bug where anyone can attach commits to repos they don't control? That bug you said you wont fix? It was used to attach the "youtube-dl" source code to your own DMCA repo. Have fun . You two deserve each other.

    Show this thread
    Undo
  6. here is another mirror for you. If you really like banning these I can make a script to automatically re-upload obfuscated versions of them to random repos every few mins. How much time do you have?

    Show this thread
    Undo
  7. If you don't censor this thread, it could be used against you in court as evidence that you are unfairly applying your interpretations of your rights. If you do censor it, the internet will ensure there are 1000s of clones monopolizing all of your time forever. Your move.

    Show this thread
    Undo
  8. The feels code capable of downloading copyrighted material must be censored. I wonder what they will do about this image that contains code to download "Taylor Swift - Shake It Off" from YouTube?

    Show this thread
    Undo
  9. Meanwhile. My parrot expresses her feelings about the current state of democracy.

    Undo
  10. Also any attempts to make brittle one-liners like this work is an exercise in futility purely to increase Streisand effect. I for one am masochistic enough to do it anyway. In general just go actually use youtube-dl and mirror it like crazy.

    Show this thread
    Undo
  11. Note: this version probably doesn't work on most/all videos today. It is an iteration of one I wrote years ago: Thanks to for testing! I may try updating it for funsies this weekend. Join #!: to help :)

    Show this thread
    Undo
  12. The RIAA just got GitHub to ban open source YouTube downloaders. They don't want anyone to share this code: mplayer $(echo -s " $youtube_url | sed -n "/watch_fullscreen/s;.*\(video_id.\+\)&title.*;\1;p")&fmt=22") Woops.

    Show this thread
    Undo
  13. Saying you can't justify the cost of a hardware security module to protect you on the internet like a Yubikey or Mooltipass is like saying you can't justify the price of condoms to go to a sex party. Please invest in basic protections for yourself and those that trust you.

    Undo
  14. How long before Apple bans web browser apps allowing access to some URLs I wonder? They could at any time and there would be nothing you can do about it. Apple can decide what you can and can't do with hardware you paid for, so is it really yours?

    Show this thread
    Undo
  15. Apple helps China spy on, censor, and ban apps for their citizens and of "threats" like Hong Kong. Now they are forcing closure of political Telegram chats. Apple will sell your privacy and freedom whenever it suits them politically. Stop funding them.

    Show this thread
    Undo
  16. Remember that one time Google forced an "Anonymous Coward" to remove the ability to choose alternative search engines in Android? I can't wait to see how they explain this in the DOJ antitrust lawsuit.

    Undo
  17. Signal assumes no E2EE network can survive without centralization to empower rapid changes. I assume no E2EE network can survive without decentralization to resist political demands for censorship and backdoors. This is fundamentally why I always recommend Matrix over Signal.

    Undo
  18. Update: Most stable/powerful thing I have ever flown. I regret not building a 7" sooner! Clean HD footage with no vibration too. Small VTX drops so I am going to move the antenna up higher and do more range testing. Next: finding some towers to dive.

    Show this thread
    Undo
  19. Built my first 7" 6S freestyle FPV quad. Then the pandemic happened, and moving, and remodeling, and a new job. Finally did some equipment testing today. Real maiden flight tomorrow.

    Show this thread
    Undo
  20. This morning on a hunch I went on github and searched for 'math/rand' encrypt' and 'rand.seed' and filtered for golang. 30 minutes in I realized there were more potential CVEs than I would ever bother to file. If anyone is bored, have fun.

    Undo
  21. 95F and my driver had no A/C. Would not roll down the windows presumably to save gas. "How much discomfort is this person willing to endure for such a small optimization?" I thought. Then I realized I am the same way about tech.

    Undo

Loading seems to be taking a while.

Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

    You may also like

    ·