• Muffi@programming.dev
    link
    fedilink
    arrow-up
    281
    arrow-down
    8
    ·
    1 年前

    Software Engineering. Most software is basically just houses of cards, developed quickly and not maintained properly (to save money ofc). We will see some serious software collapses within our lifetime.

    • SHITPOSTING_ACCOUNT@feddit.de
      link
      fedilink
      arrow-up
      76
      ·
      1 年前

      Y2038 is my “retirement plan”.

      (Y2K, i.e. the “year 2000 problem”, affected two digit date formats. Nothing bad happened, but consensus nowadays is that that wasn’t because the issue was overblown, it’s because the issue was recognized and seriously addressed. Lots of already retired or soon retiring programmers came back to fix stuff in ancient software and made bank. In 2038, another very common date format will break. I’d say it’s much more common than 2 digit dates, but 2 digit dates may have been more common in 1985. It’s going to require a massive remediation effort and I hope AI-assisted static analysis will be viable enough to help us by then.)

      • insomniac@sh.itjust.works
        link
        fedilink
        arrow-up
        87
        ·
        1 年前

        My dad is a tech in the telecommunications industry. We basically didn’t see him for all of 1999. The fact that nothing happened is because of people working their assess off.

        • SHITPOSTING_ACCOUNT@feddit.de
          link
          fedilink
          arrow-up
          15
          ·
          1 年前

          How much software is still running 32 bit binaries that won’t be recompiled because the source code has been lost together with the build instructions, the compiler, and the guy who knew how it worked?

          How much software is using int32 instead of time_t, then casting/converting in various creative ways?

          How many protocols, serialization formats and structs have 32 bit fields?

          • crate_of_mice@lemm.ee
            link
            fedilink
            arrow-up
            2
            arrow-down
            1
            ·
            1 年前

            Irrelevant. The question you should ask instead is: how many of those things will still be in use in 15 years.

        • SHITPOSTING_ACCOUNT@feddit.de
          link
          fedilink
          arrow-up
          11
          ·
          1 年前

          The most common date format used internally is “seconds since January 1st, 1970”.

          In early 2038, the number of seconds will reach 2^31 which is the biggest number that fits in a certain (also very common) data type. Numbers bigger than that will be interpreted as negative, so instead of January 2038 it will be in December 1901 or so.

          • BarqsHasBite@lemmy.ca
            link
            fedilink
            English
            arrow-up
            2
            ·
            1 年前

            Huh interesting. Why 2^31? I thought it was done in things like 2^32. We could have pushed this to 2106.

            • SHITPOSTING_ACCOUNT@feddit.de
              link
              fedilink
              arrow-up
              10
              ·
              1 年前

              Signed integers. The number indeed goes to 2^32 but the second half is reserved for negative numbers.

              With 8 bit numbers for simplicity:

              0 means 0.
              127 means 127 (last number before 2^(7)).
              128 means -128.
              255 means -1.

              • 257m@lemmy.ml
                link
                fedilink
                arrow-up
                1
                arrow-down
                1
                ·
                1 年前

                Why not just use unsigned int rather than signed int? We rarely have to store times before 1970 in computers and when we do we can just use a different format.

                • SHITPOSTING_ACCOUNT@feddit.de
                  link
                  fedilink
                  arrow-up
                  1
                  ·
                  1 年前

                  Because that’s how it was initially defined. I’m sure plenty of places use unsigned, which means it might either work correctly for another 68 years… or break because it gets converted to a 32 bit signed somewhere.

          • Hazdaz@lemmy.world
            link
            fedilink
            arrow-up
            1
            ·
            1 年前

            so instead of January 2038 it will be in December 1901…

            Maybe this is just a big elaborate time travel experiment 68 years in the making?

    • Mantis_Toboggan@lemmy.world
      link
      fedilink
      arrow-up
      11
      ·
      1 年前

      Are there currently any that are showing signs of imminent collapse? (Twitter, maybe?).

      Or what are the signs to look for those who are untrained in this field?

      • psion1369@lemmy.world
        link
        fedilink
        arrow-up
        19
        arrow-down
        1
        ·
        1 年前

        Is a website running on WordPress? That’s a system built on failed practices and is constantly attacked. It needs a serious overhauling and possibly replacement, but the software runs a huge majority of websites.

        • Clarke @lemmy.world
          link
          fedilink
          arrow-up
          12
          arrow-down
          1
          ·
          edit-2
          1 年前

          While most instances of WordPress you we’ll find in the wild are insecure and nothing more than bloated garbage. The CMS is actually fairly secure with minimal intervention if you properly configure it on setup and maintain software updates as they continually roll out patches for vulnerabilities as they are discovered.

          If you turn off comments and the ability for new users to self-register and throw it on PHP 8.2 with a WAF and enable file write protection it’s actually very robust.

          At least when WordPress breaks you have WP-CLI to troubleshoot it

          • psion1369@lemmy.world
            link
            fedilink
            arrow-up
            3
            ·
            1 年前

            I work for a web hosting company. So many WP sites are out of date with plugins and core. I’ve dealt with many compromised sites. Granted there are auto updates on the WP side and the hosts service, it’s still pretty often.

            • Clarke @lemmy.world
              link
              fedilink
              arrow-up
              3
              ·
              edit-2
              1 年前

              I also work for a WH. Yeah most idiots don’t do basic maintenance which is why I just rename the dir as xxx.old make a new folder install core and then delete the blank wp-content an copy over the wp-content DB and wp-config.php from the borked install. Takes 10 min rather than 30 to update and fix. I call that the “Doctor Frankenstein” method

      • MajorHavoc@lemmy.world
        link
        fedilink
        arrow-up
        6
        ·
        1 年前

        Regarding Twitter: yes.

        As a tech person outside Twitter, looking in: Twitter is metaphorically a huge airliner with one remaining engine, and that engine is pouring smoke.

        The clown who caused the first four engines to fail has stepped out of the pilot’s seat, but still has the ability to fire the new pilot, and still has strong convictions on how to fly a plane.

        That plane might land safely. But in the tech community, those of us fortunate not to be affected are watching with popcorn, because we expect a spectacular crash.

        If anyone reading this is still relying on Twitter - uh, my advice is to start a Mastodon account. Or Myspace or something.

        • dubble_deee@lemmy.world
          link
          fedilink
          arrow-up
          3
          ·
          1 年前

          I can’t imagine the shit show it would be if that log4j vulnerability and software update hit Twitter in its current state. I could see shutting off all external web traffic until the overworked devs finish committing while being held up with a visa loaded gun pointed at their head.

    • LurkNoMore@lemmy.world
      link
      fedilink
      arrow-up
      7
      ·
      1 年前

      Package management is impossible. When a big enough package pushes an update the house of cards eill fall. This causes project packages with greatly outdated versions to exist in production because there is no budget to diagnose and replace packages that are no longer available when a dependency requires a change.

      Examples: adminJs or admin bro… one of them. Switched the package used to render rich text fields.

      React-scripts or is it create react app, I don’t recall. Back end packages no long work as is on the front end. Or something like that? On huge projects, who’s got the budget to address this to get the project up to date?

      This has to be a world wide thing. There is way to many moving targets for every company to have all packages up to date.

      It’s only a matter of time before an exploit of some sort is found and who knows what happens from there.

      • AlexWIWA@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 年前

        That’s basically what happened with log4j or whatever that java bug was a few years ago. A lot of things still haven’t been patched.

    • StereoTrespasser@lemmy.world
      link
      fedilink
      arrow-up
      5
      ·
      1 年前

      As an everyday user of software who’s not a developer, this is not a secret. Nothing works well for any extended period of time.

  • ImplyingImplications@lemmy.ca
    link
    fedilink
    arrow-up
    222
    arrow-down
    2
    ·
    1 年前

    I used to be a funeral director. The majority of outsiders were unaware of pretty much everything we did. Often on purpose because thinking of death is uncomfortable.

    The biggest “secret” is probably that the modern funeral was invented by companies the same way diamond engagement rings were. For thousands of years the only people who had public funerals were rich and famous. It was the death of Abraham Lincoln that sparked the funeral industry to sell “famous people funerals at a reasonable price”. You too could give your loved one a presidential send off! The funeral industry still plays into this hard, and I’ve found many people are simply guilt tripped by society to have a public funeral.

    • Dasnap@lemmy.world
      link
      fedilink
      arrow-up
      87
      ·
      edit-2
      1 年前

      Donate my body to the worst medical student in the collage college. I’ll definitely be an F level carcass.

      • medgremlin@lemmy.sdf.org
        link
        fedilink
        arrow-up
        69
        ·
        1 年前

        I did my cadaver dissection last year in medical school, and you’ll probably be a better cadaver than you think. The worst one to deal with in the class was in the tank next to ours. The cadaver was 102 years old at time of death without a scrap of fat anywhere. The muscles dried out and fell apart almost immediately on dissection, and started growing mold over the winter break. The lab manager had to keep removing portions of the cadaver to try to limit the spread of the mold until all that group was left with was a head in a bucket of formaldehyde. The head, neck, and brain were the last dissections we did, so it worked out okay-ish, but I will never forget the absurdity of them ending up like a Futurama president.

          • medgremlin@lemmy.sdf.org
            link
            fedilink
            arrow-up
            10
            ·
            1 年前

            If they are very lean, yeah, it can be a problem. Having a bit of adipose to absorb some of the formaldehyde and retain some moisture helps to keep the tissues from drying out. Once the body tissues dry out, they’re basically mummified and dissecting them would be about as useful and easy as dissecting jerky.

        • afraid_of_zombies@lemmy.world
          link
          fedilink
          arrow-up
          1
          arrow-down
          3
          ·
          1 年前

          For no reason whatsoever: if you received an email, activated by a dead man’s switch, that told you that the body coming in next buried treasure which you could find by solving a series of riddles, the first of which is respond to the email with what gum flavor was swallowed last, would you?

      • afraid_of_zombies@lemmy.world
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        1 年前

        My wife knows my wishes. My body is to be donated to the medical school of my university. If nothing else I get to help train the next generation of doctors plus my dead leaking asshole will shit on my university. Chaotic Neutral ftw.

        In terms of funeral service I told her that she should do whatever she wants to mourn since I won’t be there it doesn’t matter to me. Knowing her it will be a traditional service from her homeland.

    • Hazdaz@lemmy.world
      link
      fedilink
      arrow-up
      16
      ·
      1 年前

      You didn’t talk about how coffins are sold for many thousands of dollars when they are just cheap plywood boxes that shouldn’t cost more than a hundred bucks and that serve no purpose other than to decay as quickly as possible.

      • ImplyingImplications@lemmy.ca
        link
        fedilink
        arrow-up
        16
        ·
        1 年前

        While I do think expensive caskets are a waste of money, they’re actually one of the least marked up products sold at a funeral home! Typically, caskets and urns are sold for twice what they’re bought for wholesale. This is mostly because anyone can sell caskets and urns so they can’t have ridiculous markups or people will go elsewhere for them. Urns for example are almost always bought off Amazon instead of at a funeral home.

        The products with the highest markups were insurance based. Estate Fraud insurance (if someone steals the dead person’s identity, the insurance company will pay any costs involved in correcting it) and Travel insurance (if you die on vacation, the insurance company will pay any costs involved in bringing the body home). Both of these insurance policies had real costs of about $10 or $20. They’re often sold for $300 to $500.

      • RaoulDook@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 年前

        That’s what keeps the hit show “Coffin Flop” on the air, as long as CornCob TV is able to broadcast. Just clip after clip of naked dead bodies busting out of shit wood and hitting pavement.

    • LillyPip@lemmy.ca
      link
      fedilink
      arrow-up
      8
      ·
      1 年前

      Not so fun story:

      One of my first jobs when I was barely 18 was with one of the big funeral home/cemetery providers in the US. It was positively horrible, and not for the reasons most people think.

      As a new hire, you’d start on the cold-calling phone banks, which was bad enough. Nobody wants a cold marketing call from a cemetery. But it got worse from there.

      After a month on the phone bank, I’d done well enough to be promoted to field sales, which meant going to the most impoverished areas of town to follow up on the appointments the phone bank had made, basically trying to scare poor elderly people into handing over what little they had to ‘pre-plan’ for their deaths, with the pitch that if they didn’t, their family would suffer.

      After a few appointments it was clear I didn’t have the stomach for that, so they moved me to on-site sales, which was somehow worse.

      On-site sales included helping to host the Mother’s Day open house at the large main cemetery. They set up a greeting station at the entrance with refreshments and ‘in memorium’ wreaths that could be bought by bereaved family (on that day, mostly children of the deceased, but also mothers who had lost their children, some at a very young age). It sounds like a kind thing to do, because many young mothers/fathers coming to visit were so distraught, they hadn’t stopped for coffee or thought about flowers.

      I was not stationed at the welcome station. I was a ‘roamer’, meaning I was one of several staff expected to meander through the graves and check on families graveside – to ask if they needed anything and to upsell them pre-planning packages for themselves or their other children. I am not kidding, we were expected to do that.

      I had to be prodded to approach my first mark (a young couple ‘celebrating’ the woman’s first Mother’s Day at the grave of her several months old child, and I couldn’t stomach it. It felt barbaric, to even try to sell someone who could not stop crying at the grave of her young child. I couldn’t do the pitch, obviously, and backed out as soon as possible, then hid by the skips behind the main building until the end of the day when I quit.

      I’ve done many jobs in my life, including cleaning bowling alley toilets, but I’ve never been asked to do anything as vile.

      I’ll bet everyone in the funeral industry can guess which company I’m talking about.

      • ImplyingImplications@lemmy.ca
        link
        fedilink
        arrow-up
        4
        ·
        1 年前

        I also had the pleasure of working for Service Corporation International. Thankfully solicitation of funeral services is banned in Ontario, Canada. So no cold calling or bugging people at cemeteries. Their way around it was to hold seminars about Last Wills at places like retirement homes. If someone had a funeral related question the staff would get them to sign a form agreeing to a phone call or visit from a sales person.

        The pre-arrangement sales people were all on commission and it made them very pushy. The pitches were so manipulative I couldn’t listen to them. Our government is throwing around the idea of banning commissioned sales in funeral services as well because of it. Some other Canadian provinces have already banned it.

        • LillyPip@lemmy.ca
          link
          fedilink
          arrow-up
          3
          ·
          1 年前

          Their practices are so scummy, I’m surprised they’re still allowed to operate at all in Canada. Glad they can’t do their worst in Ontario, that’s a small win.

          You’re right about their abhorrent manipulation – I still have binders in storage from my sales training; I should dig them up and post some of it. It’s still, 35 years later, the most disgusting emotional manipulation I’ve ever seen. After all these years, it’s only got worse in the US from what I hear.

          You were supposed to ask them to relive their most recent familial death experience under the guise of polite conversation, then hone in on whatever detail was the most unpleasant, and hammer home how if they didn’t buy a package, their children would go through worse. Have they considered how much emotional and financial pain they would cause if, god forbid, they died tomorrow? Don’t take time to think about the money you don’t have, because every hour of delay raises the chances your kids will be left with a financial mess when they’re grieving you. You’re basically heartless for doing that to them.

          The graveside pitch was even worse. It’s so sad you lost your baby last month, but what if your six-year-old died tomorrow? Are you prepared for that? Like jesus, I can’t imagine the paranoia a grieving family faces after losing one child, constantly afraid for their remaining child. Let’s rub salt in that wound and scare the shit out of them for a few thousand dollars. It should be illegal everywhere.

    • merc@sh.itjust.works
      link
      fedilink
      arrow-up
      3
      ·
      1 年前

      What do you mean by “public funeral”? What’s the alternative? It sounds like you’d consider an event with only friends and family where there was a coffin in a room to be a “public funeral”. That seems to be what most people have, but it isn’t very public. Is a non-public funeral one where the family makes the coffin themselves and there’s no event where people see the dead person and the coffin?

      • ImplyingImplications@lemmy.ca
        link
        fedilink
        arrow-up
        1
        ·
        1 年前

        The minimal services are essentially transportation, government documentation, and disposition (cremation, burial, entombment, etc). Some funeral homes won’t charge for a private viewing by immediate family, some charge a small fee. Typically there’s a cap on number of people and amount of time, something like 10 people total for 30 minutes.

        Anything more than that will require you pay thousands of dollars extra. Hours of receiving guests, a published obituary, a mass or ceremony, musicians, clergy/celebrants, reception. All of those are pushed as “traditional” or expected but they’re incredibly expensive.

  • SHITPOSTING_ACCOUNT@feddit.de
    link
    fedilink
    arrow-up
    207
    ·
    edit-2
    1 年前

    How online ads actually work.

    Very simplified TLDR: you visit a news site. They load an ad network and tell it “put ads here, here and here”.

    The ad network now tells 300 companies (seriously, look at the details of some cookie consent dialogs) that you visited that news site so they can bid for the right to shove an ad in your face.

    One of them goes “I know this guy, they’re an easy mark for scams according to my tracking, I’ll pay you 0.3 cents to shove this ad in their face”. Someone else yells “I know this guy, he looked at toasters last week, I want to pay 0.2 cents to show him toaster ads just in case he hasn’t bought one yet.”

    The others bid less, so that scam ad gets shoved in your face.

    That’s extremely simplified of course. https://en.wikipedia.org/wiki/Real-time_bidding has a bit more of an explanation.

    • drekly@lemmy.world
      link
      fedilink
      English
      arrow-up
      45
      arrow-down
      1
      ·
      edit-2
      1 年前

      And how you’re tracked online. I’ve worked on Google ads accounts every day for a decade and I don’t see you,the user, and your data.

      I just click “female, 50+, likes home decor, uses a phone” and then a little business I work with bids 10% extra on you because they think you might be interested in their new autumn wreaths they’re super proud of, and Google think you fit that box I ticked.

      And that’s advanced marketing for most businesses. Most businesses won’t even get into the audience side of things and they’ll stick to keywords: they’ll show you an ad because you searched for “autumn home decor” and that’s all.

      Google take advantage of most advertisers by saying "let us be in charge of your keywords, and how much money you spend, our AI is smarter than you and you don’t have time!"And most businesses just use the automatic stuff because they don’t understand it, and it’s true, they don’t have time… so then Google takes your “autumn wreath” keyword and shows your ads to someone looking for “Christmas trees”, because they’re both seasons and they’re both plant related, right?

      And then the small business gets charged $1 by Google to show their autumnal page to someone who wasn’t interested and left right away.

      My job is to help these businesses actually make an advertising account that doesn’t fall for all these little bear traps that Google sets all over their ads interface. They weren’t there 7 years ago, but things have been getting worse and worse. Including third party sales companies like regalix, hired by Google to constantly call you and telling you to trust the automation and spend more.

    • TechyDad@lemmy.world
      link
      fedilink
      arrow-up
      18
      arrow-down
      1
      ·
      1 年前

      I’d be interested in finding out why some of the ads I see (mostly in Android games I play where I voluntarily watch the ads for in game rewards) are so badly matched to me. I’ll get ads in Spanish when I only speak English. I’ll get ads for dating sites when I’ve been married for over 20 years.

      Very few of the ads seem to be anything I’d even remotely consider. Not that I mind too much. I ignore the ads (sometimes even muting them) and do other things until they stop playing and I can get my rewards. Still, those very mismatched ads seem to be badly placed. Is it just that nobody else is bidding for this ad spot so “let’s play this Spanish ad for toilet paper” wins the rights to advertise to me?

    • JackbyDev@programming.dev
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 年前

      I heard that (at least on YouTube) it isn’t only how high people bid but how likely someone is to click on your ad. Like if you have an ad they’re likely to click on you may get shown even if you bid less. You probably know more about it, I’m just sharing this because it sounded fascinating when I heard about it.

  • ToppestOfDogs@lemm.ee
    link
    fedilink
    arrow-up
    197
    arrow-down
    1
    ·
    edit-2
    1 年前

    Inside almost every arcade cabinet is a Dell Optiplex running Windows 7, or 10 if its really recent. There’s no such thing as an arcade board anymore, they’re all Dells, or sometimes those HP mini PCs, usually with the protective plastic still on.

    Daytona even uses a Raspberry Pi to control the second screen. SEGA intentionally ships those with no-brand SD cards that consistently fail after 3 months. It’s in their agreement that you’ll buy another card from them instead of just flashing the image onto an SD card that won’t break.

    The Mario Kart arcade cabinet uses a webcam called the “Nam-Cam” that is mounted in a chamber with no ventilation, which causes it to overheat and die every few months, so of course you’ll have to replace those too. The game will refuse to boot without a working camera.

    Oh yeah also all arcade games with prizes are rigged. All of them. We literally have a setting that determines how often the game will allow wins.

    • Dasnap@lemmy.world
      link
      fedilink
      arrow-up
      78
      ·
      edit-2
      1 年前

      The past decade of the tech industry has felt very snakeoil-y.

      INB4 “It always has been.”

      • ourob@discuss.tchncs.de
        link
        fedilink
        arrow-up
        36
        ·
        edit-2
        1 年前

        If you’re good at building hype and have some connections, you can attract all sorts of investors hoping to get in on the ground floor of the next big thing.

        Dan Olsen’s NFT video from a year ago summed it up well, I think (link). People with money to invest today want to repeat the insane growth in wealth brought about by computers, the internet, social media, etc. So they will basically gamble on any new ideas that have an air of plausibility to kick off the next boom.

      • jubilationtcornpone@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        22
        ·
        1 年前

        What’s sad is there are plenty of actual problems out there that could be solved with software. Most of the time they’re not that ‘sexy’ and management is so blinded by greed that they throw away all the good opportunities.

        • Haywire@lemm.ee
          link
          fedilink
          arrow-up
          3
          ·
          edit-2
          1 年前

          Blockchain is gone, just like “space age”, “plastics”, “environmentally friendly”, “digital”, “computer controlled”. Every startup is including “AI” and “sustainable” in their pitch this year.

    • Hazdaz@lemmy.world
      link
      fedilink
      arrow-up
      8
      arrow-down
      1
      ·
      1 年前

      It is kind of hilarious that airplanes are seen as being safe and reliable, when if they were given the same factor of safety as most other consumer goods, they’d never get off the ground from being too heavy.

      I do NOT recommend you do this, but if a ladder says it is designed for 300 lbs, then it should carry 1200 lbs. 4X is a fairly common factor of safety for things like ladders where people’s lives are in jeopardy. Most other items are usually 2X. (I want to point out that there are qualifications to this… static loading and dynamic loading are totally different things. Also a simple point load is not the same as a cantilevered loading condition. A new piece of equipment is not the same as one abused on the job for the last 10 years. All these things will dramatically affect safety ratings for things)

      • merc@sh.itjust.works
        link
        fedilink
        arrow-up
        3
        ·
        1 年前

        I’d say the difference is that every single part of an airline is carefully rated though. Everything that’s supplied for use on an airline is expensive because of all the regulations.

        A ladder may be rated for 1200 pounds, but nobody inspects every single use-case for that ladder and ensures that the entire system always has 4x safety. Once you buy the ladder it’s up to you what you lean it up against, etc.

        • Hazdaz@lemmy.world
          link
          fedilink
          arrow-up
          2
          ·
          1 年前

          Regulations and quality checks on aerospace parts is no joke. More so on stuff that goes out into space and on military hardware, but every single nut and bolt and everything in between can be traced back to a supplier and that supplier will be able to tell you when it was made, by who and even where the raw material came from and show you the certs. Regular airplanes not nearly as strict or as much paperwork, but it isn’t that far behind, quite honestly.

          Also, you might be surprised by the testing that ladders go through. Not so much the cheapo Chinesium stuff, but safety in all fields is no joke. It is too costly to skimp on testing.

    • yamanii@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      1 年前

      Works fine in Brazil, shit is audited every single year by universities and other especialists, only rightoids scream that it’s bad and only when they lose.

  • Art35ian@lemmy.world
    link
    fedilink
    arrow-up
    155
    arrow-down
    4
    ·
    edit-2
    1 年前

    I’ve worked with massive customer databases of over a million people multiple times in jobs I’ve had. And while each company has spent tens-of-thousands of dollars in cyber security to protect that data from outside hackers, none have given any fucks at all about who accessed it internally or what they do with it.

    I’ve literally exported the entire customer database in two different jobs, dropped the CSV into my personal Google Drive (from my work computer), and worked entire databases at home.

    No one has ever known I’ve done it, cared, or checked if I have any customer personal data when I quit.

    • SupraMario@lemmy.world
      link
      fedilink
      arrow-up
      45
      arrow-down
      1
      ·
      1 年前

      Sounds like they didn’t spend any money on Cyber security’s team to properly implement it then…data exfil %100 would have been picked up by any real DLP solution and even barebones heuristics based EDR would have thrown a red flag as well.

      • Art35ian@lemmy.world
        link
        fedilink
        arrow-up
        43
        arrow-down
        3
        ·
        1 年前

        Haha, please. You’re talking about machine learning when the best any business is using is antivirus. You forget, Boomers are still running big business and IT departments are running security.

        It’s perfect world vs. real world my dude, and real world puts out tender for the cheapest solution.

        • SupraMario@lemmy.world
          link
          fedilink
          arrow-up
          12
          arrow-down
          3
          ·
          1 年前

          It sounds like you’ve been working for Mom and pop shops then, and they’re not having audits done. Companies with millions of customers will usually either have in house secops or an mssp handle everything. Point being is, without audits then insurance usually will not be approved for PII loss or they flat out will not work with the company at all. It even more so with HIPAA laws.

      • AlexWIWA@lemmy.ml
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        1
        ·
        edit-2
        1 年前

        I’ve worked at plenty of companies with exfil protection and people still did this. One has 100 devs and 500 total employees

    • agent_flounder@lemmy.one
      link
      fedilink
      English
      arrow-up
      35
      ·
      edit-2
      1 年前

      Sounds like the company doesn’t have a clue about cyber security then. Tens of thousands is a piddling infosec budget for anything but a tiny company. Also, Insider threats, malicious or otherwise, should always be on an infosec professional’s radar.

      Companies not giving a shit about cyber security is probably not a secret but it is still pretty common, I think, so nobody should be surprised when there are major breaches.

      Infosec is usually seen as an expense that cuts into profits. Assuming top level management and the board give a shit about security that’s great but often the risk isn’t fully appreciated at the top or is managed poorly.

      Adequate infosec requires a company to have very mature processes across the board in IT (and likely beyond). C-level “buy in” isn’t enough. If the C level management and board doesn’t actively demand it, infosec will lose out to myriad other priorities every time.

      The big tell is the org structure. If the CISO reports to the CEO, great. If they’re reporting to the CIO, CFO, etc., that can cause conflicts of interest. It can still work. If there is no CISO or they are the same person as the CIO, or if infosec reports several levels down in the org–beware!

      • limelight79@lemm.ee
        link
        fedilink
        arrow-up
        12
        ·
        1 年前

        Yeah, if I did what he did, I’d be in jail. I would be caught quickly.

        There are only a few ways to get immediately fired from my employer, and that’s one of them.

        • agent_flounder@lemmy.one
          link
          fedilink
          English
          arrow-up
          2
          ·
          1 年前

          This exact scenario is in our annual training. Also I wouldn’t be able to in the first place because we block those kinds of sites. Even if we didn’t they would likely detect it and come a-knocking lol.

    • lud@lemm.ee
      link
      fedilink
      arrow-up
      19
      ·
      1 年前

      That sounds highly illegal depending on what’s on the databases.

    • xpinchx@lemmy.world
      link
      fedilink
      arrow-up
      14
      arrow-down
      1
      ·
      1 年前

      Lol same here. Some for ecomm, but the most egregious was underwriting PPP loans. There was a database none of us could access after the loans were underwritten and sent to processing. But most of those documents came in thru the portal and we had to download that package and combine it with anything we got in email… Tax forms, IDs, and all the most sensitive personal info as a lot of businesses that applied were sole proprietors. All those documents say on my local HDD and I catalogued them in case they were needed again.

      None of that was handled securely, it was on my home network with no VPN, and after the project was over very suddenly I sat on that laptop for 6 months until they sent a return label. I was a good worker but it was a mass hire and not a lot of vetting that happened.

  • Kalash@feddit.ch
    link
    fedilink
    arrow-up
    147
    arrow-down
    4
    ·
    edit-2
    1 年前

    IT in the EU:

    Due to some EU laws, there has to be a “cookie consent” dialog on every website that uses cookies. I would estimate that more than 50% (probably too low) of these popups are cosmetic only and it doesn’t actually matter if you click accept or reject.

  • rmuk@feddit.uk
    link
    fedilink
    English
    arrow-up
    140
    ·
    1 年前

    Outsourced IT provider here:

    90% of businesses have basically zero IT security. Leaked passwords in regular use and no process or verification for password resets. As soon as someone complains that 2FA or password rotation is difficult it gets dropped. Virtually all company data is stored on USB keys, plaintext hard drives and on staff’s personal home devices.

    The reason they’re not constantly having their data stolen is because no-one cares about the companies either.

  • Elderos@lemmings.world
    link
    fedilink
    arrow-up
    128
    ·
    1 年前

    I have worked in the gaming industry and let me tell you that in some game studios most of the people involved in making the games are not gamers themselves.

    Lots of programmers and artists don’t really care about the final game, they only care about their little part.

    Game designers and UX designers are often clueless and lacking in gaming experience. Some of the mistakes they make could be avoided by asking literaly anyone who play games.

    Investors and publishers often know very little to almost nothing about gameplay and technology and will rely purely on aesthetic and story.

    You have entire games being made top to bottom where not a single employee gave a fuck, from the executives to the programmers. Those games are made by checking a serie of checkboses on a plan and shipped asap.

    This is why you have some indie devs kicking big studio butts with sometime less than 1% the ressources.

    Afaik even in other “similar” industry (e.g filmmaking) you expect the director, producers and distributors to have a decent level of knowledge of the challenges of making a movie. In the video game industry everyone seems a bit clueless, and risk is mitigated by hiring large teams, and by shipping lots of games quickly.

  • BOMBS@lemmy.world
    link
    fedilink
    English
    arrow-up
    125
    arrow-down
    3
    ·
    1 年前

    Private mental health providers in the US are pretty unsupervised and have a conflict of interest in that they make more money by keeping their patients/clients unwell, which can lead to negligence and abuse. The only thing keeping in line is the possibility of someone informed and insightful enough to report them to the licensing board or pressing a lawsuit.

    For example, if a provider has poor integrity, it is in their best interest to not treat depression, but rather help the patient/client feel good for the moment. What the patient/client experiences is that they feel better when they see their provider, so they become dependent on their provider. This ensures the provider a reliable source of revenue.

    Another issue is that masters level therapists, while capable of providing treatment for simple cases such as a clear depressive episode, are not properly trained to conduct thorough assessments for complex cases, meaning they can misdiagnose quite easily. Complex cases would be better treated by a well-trained psychologist that can conduct thorough psychometric assessments that are quite sophisticated and take lots of time to analyze. These services are costly and the vast majority of insurance policies won’t cover them.

    Relevantly, yet another issue is insurance for mental health. Most insurance policies that pay for mental health services pay low, so the care you receive can be substandard since the more effective providers are charging what they’re worth in a market economy. One example that comes to mind is Better Help. They pay providers insultingly low, like around $30/hour, while effective providers are charging ~$150/hr out-of-pocket. That means that when someone uses Better Help to obtain care, they’re getting the bottom of the barrel therapist.

    Lastly, the majority of family and marriage therapists aren’t properly trained in narcissistic emotional abuse. This can mean that therapy would not only be a waste of time, but can make things much worse as they can help the narcissist abuse the victim even further. Narcissistic abuse is quite complicated and requires a relationship therapist that specializes in that to properly assess and help the victim escape.

    Tips: If you have been seeing a therapist for 12 sessions, and you haven’t realized any considerable long-term changes, find another therapist. Also, if your therapist doesn’t call you out on your bullshit, let’s you ramble about tangential matters, or focuses on helping you overcome specific weekly struggles, rather than helping you develop skills and restructure deep cognitive matters to address them yourself, find another therapist. An effective therapist would develop a clear treatment plan with you that aims to meet objectively measurable goals within a certain time frame.

    Note: I am not a therapist. I have just worked in the mental health field and have friends that are therapists.

  • Hanabie@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    116
    ·
    1 年前

    Many European language versions of anime and games are being localized not by translating the original Japanese, but the English.

    Lots of translators also seem to use Google or DeepL, which makes the issue even worse.

    The English language version often don’t even translate, they write their own version, calling it “creative liberty”. This leads to a completely different version than what was intended, with others, such as the German or Spanish version, being even further from the original.

    That’s why claims of people of having “learnt Japanese from anime” are dubious in the best of cases.

    Source: Am Japanese, working in game translation in Tokyo. I’m also trilingual, which makes it even worse to watch this. Ignorance is bliss.

    • RamSwamson@lemmy.sdf.org
      link
      fedilink
      arrow-up
      18
      ·
      1 年前

      Well that just sucks. So if you’re a die hard fan of [anime name] and happen to be European how would you find something close to the source material?

      I noticed that “creative liberty” first with the Dragonball series. I grew up watching the dubbed versions then one day discovered a little import store that sold tapes of the series with the original dialogue subtitled into English. There were a noticeable amount of differences in the story and it was slightly mind blowing to me at the time.

      • ayaya@lemdro.id
        link
        fedilink
        English
        arrow-up
        11
        ·
        edit-2
        1 年前

        It’s not exactly what you’re looking for but the website https://animelon.com lets you use English and Japanese subtitles at the same time. And you can look at definitions of individual words. It is probably only useful if you are beyond a beginner level though.

        I think using Japanese subtitles would be the way to go in general assuming you can read them but have trouble with listening.

        • RangerAndTheCat@startrek.website
          link
          fedilink
          arrow-up
          3
          ·
          edit-2
          1 年前

          So I’m old as fuck… did the horriblesubs scene die? They were a bunch of die hard fans encoding subs with direct translations. I appreciated them so much for Knocking on Heavens Door and the complete Cowboy Bebop series 🥹

          • ayaya@lemdro.id
            link
            fedilink
            English
            arrow-up
            6
            ·
            1 年前

            All HorribleSubs did was rip directly from Crunchyroll, they didn’t do any encoding or translations themselves. And yes they shutdown a few years ago but were immediately replaced by SubsPlease who do the same thing.

      • Hanabie@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 年前

        I don’t think it’s possible to get close to the original other than learning the original source language. I’d think this goes for English books/movies translated to Japanese, too.

    • x4740N@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      1 年前

      I’m currently learning Japanese at the moment and if I could tell my younger self that it’s stupidity learn Japanese from English substitutes then I would

      • thisbenzingring@lemmy.sdf.org
        link
        fedilink
        English
        arrow-up
        8
        ·
        1 年前

        One of my friends who is really good at learning languages watches a lot of crappy daytime TV in the language they are trying to learn. He tells me that those shows present a lot of bullshit situations that you can understand with your eyes while you can try and put together with the dialog. I have heard of more then one person learning english by watching TV game shows

        • sonnenzeit@feddit.de
          link
          fedilink
          arrow-up
          3
          ·
          1 年前

          Printed comics (in native language are also really good), paticularly those aimed at a younger audience (think Walt Disney classics like Mickey Mouse or Donald Duck). The phrases are usually short and use everyday language. The graphical design (colors, postures, framing, fonts, panel alignment, etc) are all in support of conveying the action.

      • Hanabie@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 年前

        I’m sorry, I don’t have any recommendations. Maybe there are useful communities for this on Lemmy?

      • merc@sh.itjust.works
        link
        fedilink
        arrow-up
        1
        ·
        1 年前
        1. Be very young
        2. Be so young that you don’t understand you’re learning a language, you’re just making sounds with grandma
        3. Be exposed to unique sounds like the German “ü”, the French “r” and the Dutch “ch” and try to imitate them when you’re 3 years old and your brain, tongue and throat are still flexible

        If you’ve fucked up 1 to 3, plug away at it for a long time, then at some point, before you think you’re ready, live somewhere where you’ll have no choice but to use that language.

    • sonnenzeit@feddit.de
      link
      fedilink
      arrow-up
      4
      ·
      1 年前

      Shout out to Banjo Kazooie, an older platformer from the Nintendo 64 game era, where the antagonist always speaks in silly rhymes. So the translators needed to translate and also make it rhyme while also keeping the context and humor intact. They took creative freedom of course because there simply isn’t a good match but it actually enhances the game in a way. So if you played the game in French before and now switch to English you’ll get a fresh set of jokes and rhymes.

    • Langoddsen@lemmy.world
      link
      fedilink
      arrow-up
      3
      ·
      1 年前

      This also applies to a lot of subtitling in general. Shows that are in a different language than English are usually first translated into English, and then that file is used as a template for the other languages it’s translated into. It’s easier and cheaper.

    • kratoz29@lemm.ee
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 年前

      Also using AI to translate and companies firing real translators because of this bro ☠️

      RIP proper translations.

      • yamanii@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        1 年前

        At least dlsite is being open about it, if the game has an AI translation, that translation is always free and tagged as AI.

    • merc@sh.itjust.works
      link
      fedilink
      arrow-up
      1
      ·
      1 年前

      Proper translation is really, really hard, especially for something like Anime.

      Not only do you have to get across the same message in a language that works completely differently, you have to time what’s being said so it matches the timing from the original language. And then there’s the fact that there are many cultural differences. If you just translate the words, sometimes the meaning doesn’t make sense to the new audience because what’s happening relies on a cultural understanding that’s different.

      Too much “creative liberty” is a problem, but it’s just as bad to get rid of it entirely. That’s why it’s so refreshing when someone makes the effort to do it right. Doing it right is really hard and takes a long time. It’s often a labor of love because doing it acceptably well is much faster and normally pays the same.

      • Hanabie@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 年前

        Absolutely. The problem arises when the source material then gets translated from English, which already suffers from losing nuances.

        It’s also often debatable if something counts as liberty or is really a lazy shortcut, when it’s clear that something could have been done in better ways.

  • droans@lemmy.world
    link
    fedilink
    arrow-up
    113
    arrow-down
    3
    ·
    1 年前

    Burning waste qualifies as recycling.

    I used to work for a specialty waste company. We would brag about our ability to recycle better than any of our competitors. Because we would burn most of the waste.

  • solstice@lemmy.world
    link
    fedilink
    arrow-up
    116
    arrow-down
    8
    ·
    1 年前

    The USA is run by unpaid 22 year old interns being supervised by underpaid 24 year olds.

    Old people in charge are definitely a problem (McConnell, Feinstein etc) but the people in their offices doing all the heavy lifting are basically children.

  • ✨Abigail Watson✨@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    107
    ·
    edit-2
    1 年前

    Accounting is a goddamn mess. There’s lots of mistakes in accounting, finance, banking, etc but we’re supposed to act to outsiders like they never happen. Publicly traded companies (US) get audited every year, but no audit company would give a paying customer a failing grade. New grads are funneled into working for public firms - the 10 or so companies that cater to the world’s audit, tax, and consulting needs. They’re supposed to teach discipline, but in reality they only teach you security theater. You’re worked to the bone until you either burn out or agree to perpetuate the system to keep your job.

    And the only reason it continues to work is society’s social contract agreeing that it has to work because we don’t have any other options. All it takes is the rumors that the idea is failing - like in the silicon valley bank run - and we’re all out of luck. With the speed of information these days all it takes is a few minutes for a situation to spiral out of control. It’s bonkers.

    I got into accounting because I enjoyed bookkeeping in high school. Now that I’m in it I refuse to work for anything larger than a mid sized, non public company.

    • at_an_angle@lemmy.one
      link
      fedilink
      English
      arrow-up
      51
      ·
      1 年前

      So basically, everyone is full of bullshit and lying to keep the system working.

      Why am I not surprised?

      • meseek #2982@lemmy.ca
        link
        fedilink
        arrow-up
        19
        ·
        1 年前

        Bro this is the fucking world! It’s just smoke and mirrors. Like the commercials. Everyone at McDonald’s smiling and happy and loving their job. Then look at reality.

        That’s every job, every field. It’s just held together by duct tape and bubble gum.

        • 𝒍𝒆𝒎𝒂𝒏𝒏@lemmy.one
          link
          fedilink
          arrow-up
          7
          ·
          1 年前

          It’s just held together by duct tape and bubble gum.

          🔥 Hot take: Applies to the mainstream tech industry too in my eyes… an abundance of unstable implementations and hacks that can break at a moment’s notice - all prettied up with a fresh coat of paint so it “looks and feels new” to sell a new license each year or give the user a reason to keep paying that subscription. No value added whatsoever.

          Fintech, construction (Solidworks, Autodesk), media & design (Adobe CC), Microsoft (Windows, office), the whole lot

        • silentknyght@lemmy.world
          link
          fedilink
          arrow-up
          3
          ·
          1 年前

          This here is the best comment to address the OP question. Just to be clear, I 100% agree: every job, every field is just held together by duct tape and bubble gum.

          • Cryophilia@lemmy.world
            link
            fedilink
            arrow-up
            2
            ·
            1 年前

            Not everywhere. I work in one of those jobs (facilities management for a building with critical infrastructure) and we’re very thorough and do our jobs well.

            However, I know some of our other facilities phone it in.

            • silentknyght@lemmy.world
              link
              fedilink
              arrow-up
              1
              ·
              1 年前

              I didn’t mean my comment or the OPs to be an aspersion on how well anyone does their job. It’s more a comment on perception vs reality. For example, look at how many people came to observe and realize how many US government operations are held together through gentlemen’s agreements (aka duct tape and chewing gum) that Trump was able to dismantle simply by not agreeing.

              • Cryophilia@lemmy.world
                link
                fedilink
                arrow-up
                1
                ·
                1 年前

                Ah, I see what you mean. If my coworkers and I suddenly decided to stop giving a shit, there’s not much that would prevent that as long as we don’t let it get too bad. A lot runs on trust.

                Our company has mechanisms to try to force us to do a good job, but that just means working towards the metrics rather than the spirit of our job. Often doing our job well means knowing when to ignore the red tape.

                So I think you’re right, the whole world runs that way, it’s an intractable problem.

          • afraid_of_zombies@lemmy.world
            link
            fedilink
            arrow-up
            2
            arrow-down
            1
            ·
            1 年前

            There is an open joke at the corporation I work at that there are about 5 people who if they quit at once the company would be under within a few months. I really do not think it is wrong.

      • jcit878@lemmy.world
        link
        fedilink
        arrow-up
        14
        ·
        1 年前

        I work with financial analysts and accountants at work. we swing from “holy shit the sky is falling” to “wow we have more budget in this than we realised” in a few months, meanwhile the guys in the field do the exact same job and the relatively fixed revenue stream keeps coming in

      • AdminWorker@lemmy.ca
        link
        fedilink
        arrow-up
        7
        ·
        1 年前

        Ehh, so a counterargument is we now have “control audits” aka soc1 type2 audits that test whether management fix their stuff without external eyes. That hasGREATLY increased the fidelity of all public companies. Yeah mistakes happen, but the controls get pretty robust after only a few years.

    • Hazdaz@lemmy.world
      link
      fedilink
      arrow-up
      19
      arrow-down
      1
      ·
      1 年前

      Accounting, just like economics, likes to pretend it is a hard science when in reality is it close to reading tea leaves.

    • merc@sh.itjust.works
      link
      fedilink
      arrow-up
      2
      ·
      1 年前

      but no audit company would give a paying customer a failing grade

      And there are what, 4 major accounting firms now, so it’s not like a public company that cared about a good audit has much choice.

  • BilboBargains@lemmy.world
    link
    fedilink
    arrow-up
    107
    arrow-down
    2
    ·
    1 年前

    Cars produce more harmful airbourne pollutants from their brakes than they do from the tailpipe. Copper is being phased out and the ultimate goal is to abandon friction braking entirely in favour of electrical regeneration.