To my "ethics in software" specialists, what would be a good reading list/authoritative source for someone wanting to dive deep in the differences between say the US bar association ethics enforcement (yeah i know) and software. Especially with a historical comparison of how we got there for both. The profession of reference framing can be different, medical or engineering or whatever.
Friends seems to want to dive so eh.
@CatherineFlick maybe?
=> More informations about this toot | View the thread
I am sorry but you just did WAT????!!!!
https://www.homecrux.com/eve-paintcam-paintball-shooting-camera/303521/
=> More informations about this toot | View the thread
Well seems like we are seeing the impact already.
https://lobste.rs/s/ffd4xt/lfgss_microcosm_shutting_down_16th_march#c_cdfjmr
@neil any good write up you know about if these entities are legitimate in feeling concerned?
=> More informations about this toot | View the thread
To the crowd advocating for Therac-25 as a great software engineering ethics case study.
Do you really think it drills how to handle this kind of unethical software engineering to students?
https://www.statnews.com/2023/11/14/unitedhealth-class-action-lawsuit-algorithm-medicare-advantage/
=> More informations about this toot | View the thread
Wait, wat
Are you fucking kidding me? Now? Like that? I mean good, but also, no, you are not going to be forgiven like that.
https://www.nbcnews.com/tech/security/us-officials-urge-americans-use-encrypted-apps-cyberattack-rcna182694
=> More informations about this toot | View the thread
So uh. This is good. Not great. Progress but with limits.
But the more important question for software....
What happens to .io ?
https://www.bbc.com/news/articles/c98ynejg4l5o
=> More informations about this toot | View the thread
Well. I suppose it is time to send money to Servo if I want a proper browser to use now, because Firefox decided to crap itself.
You had one job Firefox. One. And your leadership managed to shit the only job. I am impressed by the level of leadership failure there.
On to Servo I guess
https://blog.mozilla.org/en/mozilla/digital-advertising-privacy/
=> More informations about this toot | View the thread
Please please please please
https://github.com/mozilla/standards-positions/pull/1064
I know the web feels like a lost cause under all the layers of atrocious JS and SPA the frontender imposed on us.
But this kind of stuff is fundamental for the few of us trying to still build good websites.
We need it. We needed it 10 years ago.
=> More informations about this toot | View the thread
Wait. Wat. Someone finally brought python to the 21st century? I may be able to unban python from my toolkit for scripts and programs? Fuck. Well. about damn time I guess
https://astral.sh/blog/uv-unified-python-packaging
=> More informations about this toot | View the thread
@luis_in_brief thanks for reposting your capabilities talk. I had been using capabilities framework for years (especially in the foss security situation)but had not spent the time to find where it came from
Now I have more books on the the pile.
=> More informations about this toot | View the thread
So kindly. Fuck off and come back when you want to help us fix it. I cannot stop you from making us liable.
Heck I want us to be liable.
But telling us we did not try hard enough? Maybe instead of dunking us deeper you could come chop some wood. Carry some water. And help.
But who am I kidding. You all did everything right. We are the one creating defects and not even trying. After all, only you care about users safety. That is known.
=> More informations about this toot | View the thread
So yeah. I am pissed. Pissed that we keep trying and failing alone. And still getting results as a community. Being spit on while we worked to make Rust a thing. Countless people supported Rust. Grew it. Fought for it to spread. <3 to my fellow RESF members.
All of that against the infosec community. And the result is to be told that we did not try hard enough, so now we will be put to court for not trying hard enough, while DefCon visitors party and drink like they defended the world.
=> More informations about this toot | View the thread
Come spend that money on us. Where are the CISA sponsored Rust Devs? Where are the CISA sponsored people writing tools fit for the software engineering process that detect and provide information to fix path traversal?
Where is the CISA money to build better error message for gcc?
Or to make llvm easier to use so that people can write Programming Language using this knowledge?
Or maybe spending money into serde ?
Oh. None. And Infosec money? Oh sorry, the OSSF can't find projects.
=> More informations about this toot | View the thread
I want these tools. I have tried building some. I keep trying to get some support to build some. There is a whole community of people that have tried, burned out and went into depression trying for decades.
But what you tell us is that it is our fault that we failed. While spending billions in useless Infosec crap that we need to fight everyday to keep you all safe and the digital infrastructure of this world running.
Well. That. That is why we don't listen to Infosec people.
=> More informations about this toot | View the thread
The only one we have is Rust. It took more than a decade to make it industry level for a niche. Will take another decade or two to reach industry level use. And it was written in large part by interns, and the whole team was fired the moment it seemed to work.
And it took decades to get one of these tools through.
It works though. Really well.
But when you say we know how to fix it. Fuck off and come back when you support building these tools with actions.
=> More informations about this toot | View the thread
I think I finally found out why it feels like CISA live on Alpha Centauri.
“It’s a myth,” she declared, “that software vulnerability is an inevitability. … It’s the same classes of defects we’ve known about for decades and known how to fix for years.”
This is both true and utterly wrong. It is true, we know how to detect and fix them for decades. In research.
But you know what we do not have? Industry tool that can be used in the industry based on this knowledge.
https://insideaipolicy.com/share/16704
=> More informations about this toot | View the thread
When I tell people that we, Devs, Kill People, they think I am being facetious.
No. This. Shit. Kills. People.
https://toot.cafe/@slightlyoff/112955445252270695
=> More informations about this toot | View the thread
I am now back to Chrome for my laptop. I don't like that. But i watch a lot of YouTube and twitch video, and Firefox has consistently, over the past couple of year, got my laptops to heat a lot while watching one video. Different hardware.
Chrome... Does not. I literally lost a tablet due to Firefox video overheating it so much that the screen unglued from the chassis.
I should investigate and debug it and post on bugzilla, i know but...
I am too burned out for it. If someone want to do it
=> More informations about this toot | View the thread
=> This profile with reblog | Go to Di4na@hachyderm.io account This content has been proxied by September (ba2dc).Proxy Information
text/gemini