Arthur Besse
cultural reviewer and dabbler in stylistic premonitions
- 56 Posts
- 28 Comments
Arthur Besse@lemmy.mlOPto
World News@lemmy.ml•Iran to close Strait of Hormuz, strike twice as many targets in response to any US attackEnglish
8·2 months agoTheir certificate was revoked (by their certificate authority, Actalis, part of the Aruba Group) on July 6. Presumably the CA was pressured to revoke it by the Italian and/or US government, and they will get a new certificate from someone else soon.
There is a hexbear thread here about it; afaict there doesn’t appear to yet be any reporting about it. But in the CRL you can see it was revoked July 6:
$ curl -s http://crl15.actalis.it/Repository/tls-subca-rsa-dv-2025/getLastCRL | openssl crl -noout -text |grep -A 4 02295E6BB25717C4652321F4ED9D2B29 Serial Number: 02295E6BB25717C4652321F4ED9D2B29 Revocation Date: Jul 6 13:54:09 2026 GMT CRL entry extensions: X509v3 CRL Reason Code: Privilege WithdrawnThe reason “Privilege Withdrawn” means it was the CA’s decision rather than their own.
Because certificate revocation has never worked very well, many people can still access it (until their browser fetches the certificate revocation list, or checks OCSP, does some newfangled proprietary other thing i don’t understand…).
Arthur Besse@lemmy.mlMto
Linux@lemmy.ml•Rust Coreutils cp Ended Up Breaking Ubuntu Image Builds With Latest IncompatibilityEnglish
28·2 months agoWhat an absolute shitshow
I’d say the month of June is actually a good time to be breaking and fixing things in a release that is due to come out in (checks notes) October.
Arthur Besse@lemmy.mlto
Privacy@lemmy.ml•Companies now block older browser versions from accessing their websites!English
1·3 months agoCompanies now block older browser versions
Now? This has been happening since the dawn of the web. At least the screenshot you pasted represents all of the big three rendering engines - it used to be common to see “Internet Explorer version XYZ required”, sometimes with javascript to prevent you from using the site with any other browser (even if in some cases it would actually work fine if you simply spoofed your user agent string).
I have used kinda retro devices to surf the web at times
Most websites became HTTPS-only sometime after the snowden disclosures in 2013.
Over time old versions of TLS have been deprecated and eventually support for them is dropped from browsers and web servers alike. So, a browser from even 15 years ago literally cannot connect to most webservers today.
Planned obsolescence is terrible but it’s a minor factor here: it’s actually dangerous to use even (especially?) a slightly-out-of-date web browser because every new release fixes vulnerabilities which can be exploited to run malicious code on your computer. The planned obsolescence which prevents people from being able to have an up-to-date browser comes mostly from proprietary operating system vendors; to have up-to-date software while continuing to use somewhat older computers you need to use free/libre software.
'Suspicious given the elections going on'

😭
Arthur Besse@lemmy.mlto
Privacy@lemmy.ml•Handy flock camera license plate reader mapEnglish
3·3 months agoThe 2021 paper OSRM-CCTV: Open-source CCTV-aware routing and navigation system for privacy, anonymity and safety says they published source code at https://github.com/Fuziih but I don’t see it there now (though there is a related project called cctv-exposure).
The final published version of the paper seems to be paywalled; it’s probably on scihub but there is also a preprint of it here on arxiv.
https://github.com/FNBIP/ghost-route (just 3 commits, from February this year) says it is inspired by the paper and “extended to a production-grade multi-mode threat routing system”. It’s a node app you run locally (there doesn’t appear to be a public instance currently) which would be nice if it could work offline but unfortunately “Offline mode with pre-downloaded OSM tiles” is still on the roadmap and it currently lists “A Mapbox GL JS token (free tier works)” as a requirement (which is probably why there isn’t a public instance - someone would need to pay mapbox if they wanted to run it for other people).
I have not tried it; if anyone reading this has or does please post here about how it works!
Arthur Besse@lemmy.mlOPto
Privacy@lemmy.ml•"Scan to Verify You're Human": Google's reCAPTCHA is trialing a new "experimental challenge type" which requires desktop users to use an Android or iOS device to be able to pass itEnglish
6·3 months agoIs this something that websites opt into and add to their own site?
Yes.
reCAPTCHA is google’s “anti-abuse” service which many websites use to
preventslightly increase the cost of operating automated crawlers (which somewhat ironically google operates one of the largest of itself, for their search engine).Before neural networks could solve CAPTCHAs reliably, spammers were solving them with human labor; solving services like
anti-captcha.com(intentionally not a clickable link…) today use a mixture of automated and human solvers.In the future google is apparently building, solving services will need farms of able-to-run-a-recent-android-release mobile devices with some kind of trusted computing hardware, each one of which they’ll have to use sparingly enough to keep usage of its unique ID under some plausibly-human threshold.
And even if you do have a phone and are willing to identify yourself with it, if it is too old to run a recent enough Android you also will sometimes be denied services for being unable to pass a robots’ “human” test.
🤮
Arthur Besse@lemmy.mlOPto
Privacy@lemmy.ml•"Scan to Verify You're Human": Google's reCAPTCHA is trialing a new "experimental challenge type" which requires desktop users to use an Android or iOS device to be able to pass itEnglish
11·3 months agoI would guess not, given the other recent news about degoogled Android devices also being unable to pass reCAPTCHA.
Arthur Besse@lemmy.mlto
Fuck AI@lemmy.world•Data Poisoning could be a tool we use to identify AI that has used copyritten materialEnglish
2·4 months agoYep. But just providing a list of millions of URLs and saying “we trained on this” as some models in the past have done also didn’t make it possible to replicate; by the time anyone re-fetches them all, many of the URLs will inevitably have changed or disappeared.
Arthur Besse@lemmy.mlto
Fuck AI@lemmy.world•Data Poisoning could be a tool we use to identify AI that has used copyritten materialEnglish
14·4 months agoidentify AI that has used copyrighted material
but, that is basically all modern “AI”.
(the only LLM i’ve heard of which actually claims that its training corpus is freely licensed is Apertus…)
Arthur Besse@lemmy.mlMto
Linux@lemmy.ml•Fragnesia: New Linux Privilege Escalation ExploitEnglish
24·4 months ago
Arthur Besse@lemmy.mlOPto
Fuck AI@lemmy.world•LLMs Corrupt Your Documents When You Delegate: Our large-scale experiment with 19 LLMs reveals that […] even frontier models corrupt an average of 25% of document content by the end of long workflowsEnglish
11·4 months agoBy the end of long workflows
Yes, this has been known for 10 years.
huh? the kind of “long workflows” this paper is discussing didn’t exist two years ago much less 10
Arthur Besse@lemmy.mlto
World News@lemmy.ml•Filmmakers slam BBC after Gaza documentary wins award despite being droppedEnglish
3·4 months agosome more coverage of this:
- https://www.independent.co.uk/arts-entertainment/tv/news/baftas-gaza-doctors-under-attack-speech-b2973944.html
- https://www.presstv.ir/Detail/2026/05/11/768412/‘We-refuse-to-be-silenced’--Gaza-doctors-documentary-team-denounces-BBC-After-BAFTA-win
- excerpt of the acceptance speech: https://www.youtube.com/watch?v=Vq90Tzwmpxo
Yep, Fastly the CDN company (doing HTTPS mitm-as-a-service for millions of websites) which Apple also uses (along with CloudFlare) for their similar iCloud Private Relay feature.
Unlike Apple though, Firefox’s new “built-in VPN” does not claim (falsely) to use different providers for ingress and egress.
iiuc Firefox uses Mullvad for original paid VPN service but their new freemium one is through Fastly (?)
Arthur Besse@lemmy.mlto
DeGoogle Yourself@lemmy.ml•Website for Sustainable Alternatives to BigTechEnglish
01·7 months agoSadly there are none I can recommend wholeheartedly, all have various problems 😢
























It’s Alistair Hennessey: