• 0 Posts
  • 145 Comments
Joined 1 year ago
cake
Cake day: June 15th, 2023

help-circle





  • It highlighted some pretty glaring weaknesses in OSS as well. Over worked maintainers, unvetted contributers, etc etc.

    The XZ thing seems like we got “lucky” more than anything. But that type of attack may have been successful already or in progress elsewhere. It’s not like people are auditing every line of every open source tool/library. It takes really talented devs and researchers to truly audit code.

    I mean, I certainly couldn’t do it for anything semi advanced, super clever, or obfuscated the way the XZ thing was.

    But I agree, that the fact we could audit it at all is a plus. The flip side is: an unvetted bad actor was able to publish these changes because of the nature of open source. I’m not saying bad actors can’t weasel their way into Microsoft, but that’s a much higher bar in terms of vetting.






  • The article even states this is a thinly veiled ad for some other “method”.

    The agile manifesto is fantastic. Scrum can work wonders as a means for providing a framework to hang “agile principles” onto.

    Most organizations don’t do “scrum” well or quickly lose sight of the “why” behind it.

    Companies are gonna company at the end of the day. Process + bureaucracy + buzzwords + ill-informed management + vendors promises + shit customers/product owners = late projects.

    Agile done right, works. The benefit agile has over waterfall(the process it replaced in a lot of places), imo, is that it’s predicated on working software, responding to change and working collaboratively/iteratively.




  • Lemmy is gonna lemmy.

    There isn’t any evidence that they used her voice for the “Sky” voice model. Actually, there is evidence that they paid a voice actress to model that specific actress’s voice.

    That actress sounds similar to Scarlett, but it isn’t Scarlett’s voice. Is that illegal? No. Is it grounds for a suit? maybe. Will Scarlett win? Maybe.

    Let’s put it another way. If you wanted to record an audio book, but you wanted the voice actor to have certain qualities that you think would help your book sell. You think Scarlett has all of those qualities, so you ask her if she would record it for you. She declines.

    Well shit, that sucks. But wait! She’s not the only person with those vocal qualities. I am sure you can find someone else with very similar qualities. So you hire another voice actress that has all of those–which coincidentally and very understandable sounds a lot like Scarlett. But it isn’t Scarlett.

    Everyone wants to say “big corp bad!” here, but if they truly didn’t use Scarlett’s voice and didn’t do any sort of manipulation to make it sound more like Scarlett, then why CANT they do it. I get that Scarlett is upset, but she’s basically mad that someone sounds like her–and decided to work for OpenAI.

    If I wanted James Earl Jones to read my eulogy, but he isn’t available or is unwilling. Why couldn’t I get someone to sound like him to read it? Why should he be able to sue me for using a voice actor that sounds similar to him?






  • cybersandwich@lemmy.worldtoLinux@lemmy.mlNixOS forked
    link
    fedilink
    arrow-up
    9
    arrow-down
    14
    ·
    2 months ago

    Wait so people got butthurt that a company made a deal with nix. That company also does business with ICE. And people are mad at Nix?

    What am I missing?

    Also companies and open source entities do business with all manner of government(s) all the time.


  • cybersandwich@lemmy.worldtoSelfhosted@lemmy.worldPost your Servernames!
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    1
    ·
    2 months ago

    “rocinante” for my proxmox host.

    “awkward, past his prime, and engaged in a task beyond his capacities.” From don Quixote’s wiki page.

    It seemed fitting considering it is a server built from old PC parts…engaged in tasks beyond its abilities.

    The rest of my servers (VMs moslty) are named for what they actually do/which vlan they are on (eg vm15) and aren’t fun or excitin names. But at least I know if I am on that VM it has access to that vlan(or that it’s segregated from my other networks).