all things considered, which of these two would you rather have?
=> More informations about this toot | View the thread
me: i’ve single-handedly written software used by tens of millions of people, you can see it right over at github.com/april
prospective employers: sorry, but unfortunately you did poorly in a high-stress 40-minute coding exercise, writing code with no time to think about how to solve a problem you’ve never seen before, in a terrible dev environment, while someone stares at you the whole time
=> More informations about this toot | View the thread
what's fascinating to me is how every company seems to brag about their complex, custom, secret, in-house AI safety controls (that barely work)
unlike every other infosec protective control, where people tend to collaborate to find the best solutions
https://arstechnica.com/security/2025/01/microsoft-sues-service-for-creating-illicit-content-with-its-ai-platform/
=> More informations about this toot | View the thread
the feminine urge to file an FOIA request so I can finally answer the question, “what percentage of people named April are born in April?”
=> More informations about this toot | View the thread
therapist: it’s normal for painful memories to soften over time
me: but what if they don’t? what if they only hurt more as i age?
therapist: do you have any memories in particular you’re thinking of?
me: yes, it’s… sobs the end of google reader
=> More informations about this toot | View the thread
hey chat, i need your help with a bit of fiction i’m writing.
what would you say is the onomatopoeia of a modem connecting?
please feel free to be as elaborate as necessary.
=> More informations about this toot | View the thread
was asked a really interesting question in an interview yesterday: given a budget, which areas of security spending produce the greatest and worst (or negative) ROI?
my answer:
positive: SSO/OAuth, hardware keys
worst: DAST, DLP, honorable mention to poorly configured IDS’s
what’s your answer?
=> More informations about this toot | View the thread
gonna leave spelling errors and grammer mistakes and missing punxtafuon in all my posts from now on as proof that im not an ai
=> More informations about this toot | View the thread
my wish for an incredibly minor operating system setting that would nevertheless significantly improve my experience and which would likely be used by a ton of apps:
being able to set a default emoji heart color, e.g. 💛
=> More informations about this toot | View the thread
would you take a pay cut to work a 4x8 work week?
=> More informations about this toot | View the thread
Handling Cookies is a Minefield:
inconsistencies in the HTTP cookie specification and its implementations have caused a situation where countless websites (including Facebook, Netflix, Okta, WhatsApp, Apple, etc.) are one small mistake away from locking their users out.
https://grayduck.mn/2024/11/21/handling-cookies-is-a-minefield/
=> View attached media | View attached media | View attached media | View attached media
=> More informations about this toot | View the thread
which has done a better job of teaching people to not click on untrusted links?
=> More informations about this toot | View the thread
Instead of spinning off Chrome, the Department of Justice should have split Google into:
• Google Chat
• Google Talk
• Google Wave
• Google+ Huddle
• Google Spaces
• Google Meet (original)
• Google Meet
• Google Buzz
• Google Allo
• Google Hangouts
=> More informations about this toot | View the thread
one thing i love about being in a long tech career is seeing how far things have come over the years.
when i started it was all “ugh clippy is so obnoxious” and decades of progress have gotten us all the way to “ugh this ai assistant is so obnoxious.”
=> More informations about this toot | View the thread
my dog ate my homework
=> View attached media | View attached media
=> More informations about this toot | View the thread
got laid off in the big dropbox layoffs today.
if anybody is looking for a staff-level engineer who loves mentoring and who is an expert in web security, email security, TLS/PKI, key and secrets management, and general defense security stuff, please feel free to hit me up.
=> More informations about this toot | View the thread
close, it’s actually:
input -> unexpected condition -> unhandled exception
=> More informations about this toot | View the thread
macOS designers speedrunning ways to cause security warning fatigue while failing to provide any actual security benefits.
begging them to talk to anyone who has done security UX research.
=> More informations about this toot | View the thread
dad: what is it you do again?
me: i built a ton of features into firefox
dad: okay i guess
me: and now i secure systems with an almost incalculable amount of data
dad: ???
me: also today i got quoted by consumer reports
dad: EYES BUG OUT OF HEAD
https://www.consumerreports.org/electronics/digital-security/tips-for-better-passwords-a3656305306/
=> More informations about this toot | View the thread
dad: what is it you do again?
me: i built a ton of features into firefox
dad: okay i guess
me: and now i secure systems with an almost incalculable amount of data
dad: ???
me: also today i got quoted by consumer reports
dad: EYES BUG OUT OF HEAD
https://www.consumerreports.org/electronics/digital-security/tips-for-better-passwords-a3656305306/
=> More informations about this toot | View the thread
=> This profile with reblog | Go to april@macaw.social account This content has been proxied by September (ba2dc).Proxy Information
text/gemini