[03:12] I just went to upload a file, and it was too large- the service tells me if I upgrade, I can upload files up to 931322.57461548 GB large- that's incredibly precise, and makes me wonder if that number has a special meaning [03:17] Free space in one of the racks? idk [05:10] one of the EC2 instances at work has 224 MB of security-only updates [05:10] I have no confidence that this thing has not already been owned several times [05:11] yow [05:12] using EC2 outside of Elastic Beanstalk seems like a bad way to go heh [07:08] SketchCow: i have 98 items waiting to be derived [07:08] i really hope more IA gets back online soon [07:09] Someone needs to get this: [07:09] http://www.nec-computers-ap.com/driver.htm [07:27] i'm looking in to it [07:27] http://www.nec-computers-ap.com/default.htm is main page....it will be up for another 4 days....I saved the FAQ page manually as HTML but we really need all the driver pages as HTML as each page at least tells you driver version and release date and for bios usually gives very specific installation details. So that was what I was having trouble configuring htttrack to do. Get the drivers and the pages that link to the drivers. ;) [07:27] I saved the p82xx files also...I think one of the Bluetooth driver links was dead but it was same driver for p72xx series or vice versa so that is recoverable . I ordered the driver discs for the models I had before they closed support but they wouldn't let me buy windows installer discs for machines I didn't have serial numbers for...so i couldnt get like one for each series. And I also need to compare the discs they sent and check driver vers [07:30] path: http://www.nec-computers-ap.com/user/Drivers/Modem/Conexant_RD01%20D850%20modem%20driver_V710405.exe [07:32] so i figure once you know the file category and file name we can grab all of it [07:33] by me blute forcing the driver.aspx?a=$number pages i will be able to get the download pages [07:34] from there we can see the catagorys [07:51] blute [07:51] lol [08:18] 3760 download pages in total i think [08:37] i'm grabbing the download pages now [09:06] godane: you taken care of nec-computers-ap? [09:07] yes [09:07] OKAY [09:07] okay * [09:07] i got all the download pages [09:11] YES joepie91 CAPS IS BETTER! [09:11] * midas hides [09:15] * BlueMaxim stabs midas [09:36] Noah Everett talking about archival of internet history https://www.youtube.com/watch?v=mBCzREson1A [10:20] i got to love nec downloads are going at very slow speeds [10:23] looks even though its 3759 download pages [10:23] there is only 1436 files [11:31] new way to grab the drivers: zcat *.warc.gz | sed 's/\>\n[0-9][0-9][0-9][0-9][0-9] bytes" | grep driversdl | sed "s|.*blank'>||g" | sed 's|>||g' | sort | uniq [11:32] i'm grabing them by size [11:32] this way i can grab all the smaller files quickly [11:46] very nice! [11:52] there are 405 file names that are in the 6 digit file size [13:34] anyone running *nix boxen and bash shell needs to update - http://arstechnica.com/security/2014/09/bug-in-bash-shell-creates-big-security-hole-on-anything-with-nix-in-it/ [13:42] well and bash scripts in your /cgi/bin [13:43] as far as I know I've not seen an attack vector that doesn't require being able to set environment variables [13:44] http://linux.slashdot.org/story/14/09/24/1638207/remote-exploit-vulnerability-found-in-bash [13:44] the slashdot article mentions openssh also [13:46] yes but they need a login first, but yes if you have untrusted users patch patch pathc [13:47] I never trust users [13:48] Jonimus: no, they do not necessarily [13:48] that's the point [13:48] there's a number of ways in which environment vars can be set remotely [13:48] CGI / AcceptEnv * are two common methods [13:48] but certainly not the only ones [13:49] I'm not sure AcceptEnv * even requires a valid login [13:49] to exploit it [13:53] phpcgi for example? [14:03] midas: does anybody actually still use PHP with plain CGI>? [14:10] I work for a large web hosting company, the answer is yes, you wouldnt believe the ancient crap people still insist on suing [14:10] *using [14:13] i am a customer of a large web hosting company, you wouldnt believe the ancient crap they still insist on using :( [14:13] debian squeeze ftw [14:14] ouch [14:14] we use cloudlinux which is based on centos 6 [14:20] lol centos [14:20] though to be fair [14:21] apparently cloudlinux is noticeably less shit than plain centos [14:21] joepie91: yes. [14:22] im forced to use centos at work. [14:22] shitos [14:22] yesterday i had to manually press a button to start upgrading bash [14:23] all my debian/ubuntu boxes already did that, and all i needed to do was check my email. [14:23] oh knows, one button! [14:25] i didnt go into IT to do stuff manually Jonimus [14:25] I know I was joking. [14:46] BiggieJon: at least you're better than this https://twitter.com/GoDaddyHelp/status/514951676353339392 [14:52] they would be our biggest competition [15:24] http://www.itnews.com.au/News/396180,amazon-forced-to-reboot-ec2-to-patch-xen-bug.aspx [15:34] arkiver sent me [15:34] http://www.zdnet.com/unixlinux-bash-critical-security-hole-uncovered-7000034021/ [15:34] http://www.zdnet.com/first-attacks-using-shellshock-bash-bug-discovered-7000034044/ [15:35] and it's on! [17:03] those "first attacks" are probably just people scanning [17:03] also the fix is incomplete lol [17:03] :( [17:05] I'm getting pretty tired of all the conversations about the bash vulnerability. [17:05] ersi: stop bashing conversations [17:05] Just hold on to your tits and a fix will be up, then patch, be glad. [17:05] Drink beer or selected beverage. [17:06] be glad seems like the product of hopeless naviete [17:06] when i looked through my logs i saw "GET /filebase/{{{file}}}.zip" which filled me with happiness at someone scripting to download alll the files :) [17:15] people care about data! 'uses hands for heart sign thingy' [17:16] http://cache.desktopnexus.com/thumbnails/1329050-bigthumbnail.jpg [17:25] yipdw: Well, the world is a depressing place [17:32] I think it's only depressing if you work in computers [17:32] it's pretty awesome outside of it [17:32] heh, not quite unique to us computatorers [17:33] I'd say that's pretty self-selecting bias [17:33] like, what really gets me is the extraordinary shittiness of contemporary software plus all of those Silicon Valley cheerleaders trying to push their software-will-eat-the-world mantra [17:33] Heh, fuck those guys [17:33] the problem is that they have money [17:33] and presumably those girls [17:34] actually I've only seen white dudes push that [17:34] women seem to have more sense [17:34] yea, that's why I carefully added presumably [17:34] I dunno, you're going to have those assclowns in any business [17:34] take home building, pre-fab is all the jizz there [17:35] oh sure [17:35] I'm sure selection bias is all up in this [17:35] I'm just saying the world in general can be quite depressing, so sit back and relax with a favorite beverage and be glad/contempt [17:35] :) [17:36] contempt or content? :P [17:36] both [17:36] heh [17:37] I did mean content though [17:37] but both works [17:50] I love the whole bash security thing, bossman is going 'WHATTHEFUCK PATCH ALL THE SERVERS!' while the foreman is doing that part im already going to bed and telling my boss i had to work to deep in the night [20:42] http://smethur.st/posts/176135860 [21:24] that's a p. banged up car that SketchCow posted on twitter [21:28] really is, I hope no one has any asymptomatic injuries [21:31] .tw https://twitter.com/textfiles/status/515251957314117632 [21:31] One driver only had his car for 3 days. Another only had hers for 5. The third is unlicensed. One driver is Piiissed. At fault driver whiny (@textfiles) [21:32] I'm expecting an Uber ad [21:41] I think his driver might be a uberist [21:41] https://twitter.com/textfiles/status/515252174755205121 [21:41] .tw [21:41] midas: Give me a link, a username, or a tweet id [21:41] backlog it you fool [21:43] .tw 515252174755205121 [21:43] Apparently my taxi has no insurance TWIST ENDING SQUIRRREL (@textfiles) [21:46] what the fuck [21:46] http://www.rantic.com/ [21:47] midas: "rantic" themselves appear to be a hoax. It's hoaxes all the way down? [21:48] still, a call for internet censorship by anyone is mindblowing [21:49] best thing to do now is remove all females from government and revoke the right to vote for women. [21:50] not sure how B follows A but ok [21:55] looks like aol files will have music videos also [21:56] because we might as well go back to the 50s and shutdown the entire internet if you start to censor it. heck, not even a month ago we grabbed ferguson because of censoring AND equality yipdw [21:56] before that, ukraine, turkey, iran, iraq etc etc [21:57] I meant the bit about women [21:57] midas: WTF. Even if you're joking, I am not cool w/ statements of misogyny [21:57] nobody knows who rantic is, I don't know where the jump in logic is [21:58] mistym: sarcasm, read it again and again untill the penny drops. [21:59] yipdw: Rantic is a hoax run by SocialVEVO, a group behind some other hoaxes. It seems like they mostly want attention. [22:00] Their last big one was some dumb Family Guy thing, so I'm not sure they have an agenda more specific than wanting attention [22:00] ah ha [22:16] it's just trolling for knee-jerk reactions I guess, first the emma watson stuff to get feminist reactions then go for internet censorship to get all the internet liberty folks hot and bothered [22:17] seems effective