• 1 Post
  • 51 Comments
Joined 1 year ago
cake
Cake day: June 5th, 2023

help-circle
  • Disputing a CVE is no straightforward task either, as a GitHub security team member explained. It requires a project maintainer to chase the CVE Numbering Authorities (CNA) that had originally issued the CVE.

    CNAs have conventionally comprised NIST’s NVD and MITRE. Over the past few years, technology companies and security vendors joined the list and are also able to issue CVEs at will.

    These seems like an issue worth addressing. If it’s too easy to report and too difficult to dispute, I could see the CVE ecosystem be weaponized and turned into a political tool.






  • Software updates have, more than once, changed my settings for things like autopilot without warning, and I’ve only discovered it when driving and turning autopilot on.

    I feel like this point can’t be overstated enough. When I need to go somewhere, I shouldn’t need to reorient myself because the car receives software updates all the time. A device that’s constantly changing is inherently unreliable, even if technically it’s improving over time.















  • For a boardgame, online matchmaking was already dead, it was released more than a decade ago, this isn’t something that you want to play with complete strangers at random.

    I’ve been playing online with strangers for years. It’s very easy to find a match and I regularly see over a hundred players in the lobby

    If someone purchased the old one with DLC they can continue to play and access the DLC

    I’d wager most people purchased the DLC for online play. There’s typically more DLC maps in the lobby than the normal map

    you can’t expect unlimited free updates

    What’s important is game preservation. It’s now practically impossible for an average person who didn’t purchase it to obtain a copy and play. It’s been mentioned time and time again on WAN show - if a company chooses to shut down their servers then the technical information on how run a server should become open-sourced in an ideal world. Then the community can step in to run them if they so choose. This is especially true for multiplayer-first titles