00:26:09etnguyen03 (etnguyen03) joins
00:44:57Arcorann (Arcorann) joins
00:53:20nic95 (nic) joins
00:53:25nic9 quits [Ping timeout: 265 seconds]
00:53:25nic95 is now known as nic9
01:05:34<pabs>https://www.wired.com/story/gaza-internet-blackout-israel/
01:38:09benjinsmi joins
01:41:26benjinsm quits [Ping timeout: 252 seconds]
01:42:49BlueMaxima quits [Read error: Connection reset by peer]
01:56:46Dango360 quits [Read error: Connection reset by peer]
02:00:59Dango360 (Dango360) joins
02:03:59etnguyen03 quits [Ping timeout: 265 seconds]
02:05:45benjinsmi is now known as benjins
02:48:14etnguyen03 (etnguyen03) joins
02:53:37nic94 (nic) joins
02:54:35nic9 quits [Ping timeout: 252 seconds]
02:54:35nic94 is now known as nic9
03:06:41Barto quits [Ping timeout: 252 seconds]
03:18:05nic97 (nic) joins
03:19:23nic9 quits [Ping timeout: 265 seconds]
03:19:23nic97 is now known as nic9
03:41:51kdqep__ joins
03:45:58parfait_ quits [Ping timeout: 265 seconds]
04:00:51nic93 (nic) joins
04:01:55nic9 quits [Ping timeout: 265 seconds]
04:02:36nic93 is now known as nic9
04:12:39<pabs>TIL https://github.com/jmatj/har2pcap - could be useful for viewing browser network requests outside browsers
04:20:12nic98 (nic) joins
04:20:17nic9 quits [Ping timeout: 265 seconds]
04:20:17nic98 is now known as nic9
04:30:21nic90 (nic) joins
04:30:26nic9 quits [Ping timeout: 265 seconds]
04:30:26nic90 is now known as nic9
04:38:02benjins2_ quits [Read error: Connection reset by peer]
04:41:20nic92 (nic) joins
04:42:23nic9 quits [Ping timeout: 252 seconds]
04:42:43nic92 is now known as nic9
04:56:06nic99 (nic) joins
04:57:14nic9 quits [Ping timeout: 252 seconds]
04:57:34nic99 is now known as nic9
04:58:03<fireonlive>what's that like
04:58:21<fireonlive>not web.arhive.org/not archive.is/ph/today/etc 'website saver' that's online
04:58:28<fireonlive>& doesn't need reg to use
04:58:46<fireonlive>shadow?
05:00:19etnguyen03 quits [Client Quit]
05:07:05DogsRNice quits [Read error: Connection reset by peer]
05:13:04nic93 (nic) joins
05:14:17nic9 quits [Ping timeout: 252 seconds]
05:14:17nic93 is now known as nic9
05:23:48nic97 (nic) joins
05:24:44nic9 quits [Ping timeout: 252 seconds]
05:24:44nic97 is now known as nic9
05:28:39BlueMaxima joins
05:38:41nic97 (nic) joins
05:39:35nic9 quits [Ping timeout: 252 seconds]
05:39:35nic97 is now known as nic9
05:42:53Dango360 quits [Ping timeout: 252 seconds]
05:54:04nic95 (nic) joins
05:54:59nic9 quits [Ping timeout: 252 seconds]
05:54:59nic95 is now known as nic9
06:05:56nic94 (nic) joins
06:07:06nic9 quits [Ping timeout: 265 seconds]
06:07:26nic94 is now known as nic9
06:11:48parfait_ joins
06:12:11fishingforsoup joins
06:16:46kdqep__ quits [Ping timeout: 265 seconds]
06:16:46Arcorann quits [Ping timeout: 265 seconds]
06:18:27Arcorann (Arcorann) joins
06:18:38Arcorann quits [Remote host closed the connection]
06:24:35nic98 (nic) joins
06:24:41nic9 quits [Ping timeout: 252 seconds]
06:24:41nic98 is now known as nic9
06:24:51Arcorann (Arcorann) joins
06:33:06hitgrr8 joins
06:37:38nic93 (nic) joins
06:39:00nic9 quits [Ping timeout: 265 seconds]
06:39:00nic93 is now known as nic9
06:49:04BlueMaxima quits [Client Quit]
06:50:04nic92 (nic) joins
06:51:05nic9 quits [Ping timeout: 252 seconds]
06:51:25nic92 is now known as nic9
06:57:07nic9 quits [Read error: Connection reset by peer]
06:57:49nic9 (nic) joins
06:57:59<icedice><fireonlive> what's that like
06:57:59<icedice><fireonlive> not web.arhive.org/not archive.is/ph/today/etc 'website saver' that's online
06:57:59<icedice><fireonlive> & doesn't need reg to use
06:58:04<icedice>ghostarchive.org
06:58:07<icedice>megalodon.jp
06:58:19<icedice>archive.st is "online", but was broken last time I checked
07:12:21nic9 quits [Ping timeout: 265 seconds]
07:12:28nic95 (nic) joins
07:23:09nic9 (nic) joins
07:23:57nic95 quits [Ping timeout: 265 seconds]
07:32:35nic94 (nic) joins
07:34:06nic9 quits [Ping timeout: 265 seconds]
07:34:06nic94 is now known as nic9
07:43:20nic9 quits [Ping timeout: 252 seconds]
07:43:39nic9 (nic) joins
07:56:03nic94 (nic) joins
07:57:18nic9 quits [Ping timeout: 265 seconds]
07:57:38nic94 is now known as nic9
08:06:26nic9 quits [Ping timeout: 252 seconds]
08:06:43nic9 (nic) joins
08:17:35nic91 (nic) joins
08:18:32nic9 quits [Ping timeout: 252 seconds]
08:18:32nic91 is now known as nic9
08:29:28nic97 (nic) joins
08:30:38nic9 quits [Ping timeout: 252 seconds]
08:30:38nic97 is now known as nic9
08:40:50nic95 (nic) joins
08:42:15nic9 quits [Ping timeout: 265 seconds]
08:42:19nic95 is now known as nic9
08:51:17nic90 (nic) joins
08:52:05nic9 quits [Ping timeout: 252 seconds]
08:52:05nic90 is now known as nic9
09:02:32nic9 quits [Ping timeout: 252 seconds]
09:02:50nic9 (nic) joins
09:11:53nic9 quits [Ping timeout: 252 seconds]
09:12:00nic9 (nic) joins
09:22:58nic99 (nic) joins
09:24:18nic9 quits [Ping timeout: 265 seconds]
09:24:28nic99 is now known as nic9
09:33:57nic92 (nic) joins
09:34:56nic9 quits [Ping timeout: 265 seconds]
09:34:56nic92 is now known as nic9
09:42:40magmaus31 is now known as magmaus3
09:42:59magmaus3 quits [Client Quit]
09:43:19magmaus3 (magmaus3) joins
09:43:32nic96 (nic) joins
09:44:36nic9 quits [Ping timeout: 265 seconds]
09:44:36nic96 is now known as nic9
09:53:31nic90 (nic) joins
09:54:45nic9 quits [Ping timeout: 265 seconds]
09:55:05nic90 is now known as nic9
09:57:10Barto (Barto) joins
10:04:45nic98 (nic) joins
10:04:54nic9 quits [Ping timeout: 265 seconds]
10:05:14nic98 is now known as nic9
10:14:02nic9 quits [Ping timeout: 252 seconds]
10:14:23nic9 (nic) joins
10:23:56nic9 quits [Ping timeout: 252 seconds]
10:48:09BearFortress_ quits [Client Quit]
10:51:34HackMii_ quits [Remote host closed the connection]
10:52:10HackMii_ (hacktheplanet) joins
11:13:10adia (adia) joins
12:02:02Naruyoko5 quits [Remote host closed the connection]
12:02:22Naruyoko5 joins
12:16:39<nukke>https://github.com/advisories/GHSA-xwcq-pm8m-c4vf
12:26:28Billy549_ (Billy549) joins
12:26:36rohvani quits [Client Quit]
12:26:36iCaotix quits [Quit: ZNC 1.8.2 - https://znc.in]
12:26:36VerifiedJ quits [Client Quit]
12:26:36Billy549 quits [Client Quit]
12:26:36katocala quits [Remote host closed the connection]
12:26:36Naruyoko5 quits [Remote host closed the connection]
12:26:41katocala joins
12:26:41iCaotix joins
12:26:42rohvani joins
12:26:43VerifiedJ (VerifiedJ) joins
12:27:29Naruyoko joins
12:31:02BearFortress joins
12:46:02iCaotix quits [Client Quit]
12:46:02katocala quits [Read error: Connection reset by peer]
12:46:10iCaotix joins
12:46:10katocala joins
12:50:20AlsoHP_Archivist quits [Client Quit]
12:50:41HP_Archivist (HP_Archivist) joins
12:52:18kdqep__ joins
12:53:36benjinsm joins
12:56:17parfait_ quits [Ping timeout: 252 seconds]
12:56:50benjins quits [Ping timeout: 252 seconds]
13:17:11Arcorann quits [Ping timeout: 252 seconds]
13:32:03benjins2 joins
13:36:10qwertyasdfuiopghjkl quits [Remote host closed the connection]
14:19:50Chris5010 quits [Remote host closed the connection]
14:28:35etnguyen03 (etnguyen03) joins
14:59:22icedice quits [Client Quit]
15:37:23parfait (kdqep) joins
15:39:51kdqep__ quits [Ping timeout: 265 seconds]
15:43:05icedice (icedice) joins
15:53:18parfait_ joins
15:57:15parfait quits [Ping timeout: 265 seconds]
16:03:17etnguyen03 quits [Ping timeout: 252 seconds]
16:10:42icedice quits [Client Quit]
16:17:48qwertyasdfuiopghjkl (qwertyasdfuiopghjkl) joins
16:21:34etnguyen03 (etnguyen03) joins
16:29:59<thuban>til: python supports underscore separators in numeric literals. handy i guess, but i still wish there were an e-notation equivalent for ints
16:36:19<@JAA>lol PBKDF2 with a single iteration of SHA1 *facepalm*
16:39:30<ymgve_>thuban: nice of them picking a way to separate that is not used in any region in the world
16:39:39kdqep__ joins
16:40:41fangfufu_ joins
16:41:14fangfufu quits [Ping timeout: 252 seconds]
16:41:42<@JAA>ymgve_: I think I've heard that it is used in some contexts, but definitely very rare, yeah. Can't use commas though since those were already in use for tuples.
16:43:36<thuban>i understand a number of programming languages do it
16:43:39parfait_ quits [Ping timeout: 265 seconds]
16:43:54<thuban>(notable exception: c++, which somehow went with _single quotes_)
16:44:00<@JAA>Yeah, I mean outside of programming.
16:53:47parfait (kdqep) joins
16:56:42kdqep__ quits [Ping timeout: 265 seconds]
17:35:56simon8162 quits [Quit: ZNC 1.8.2 - https://znc.in]
17:42:51simon816 (simon816) joins
17:46:08etnguyen03 quits [Ping timeout: 252 seconds]
17:55:23simon816 quits [Client Quit]
18:00:49simon816 (simon816) joins
18:07:11<nicolas17>JAA: single iteration of sha1 is bad, but we need someone who actually understands cryptography to write the advisory, there's so much bullshit there
18:07:28<nicolas17>"To encrypt the user password via symmetric encryption we might do [...] This is a common scheme for protecting passwords, as exemplified in bcrypt & scrypt." wtf
18:20:56<@JAA>Yeah, true.
18:25:32<@JAA>Maybe the advisory was written by the same person who thought a single iteration of SHA1 was a good idea for a default. :-)
18:33:03<fireonlive>“but we upgraded from md5!”
18:43:20benjins joins
18:46:38benjinsm quits [Ping timeout: 252 seconds]
18:54:31<nicolas17>turns out all the length-extension stuff in the advisory is also bullshit
18:55:35<nicolas17>PBKDF2 doesn't use SHA1, it uses HMAC-SHA1
18:55:57<nicolas17>yes, using sha256 would be better, but HMAC protects against length extension attacks no matter the hash
19:00:39etnguyen03 (etnguyen03) joins
19:05:57TheTechRobo quits [Client Quit]
19:05:57benjins2 quits [Remote host closed the connection]
19:05:57parfait quits [Remote host closed the connection]
19:06:07parfait (kdqep) joins
19:06:27TheTechRobo (TheTechRobo) joins
19:06:53benjins2 joins
19:16:23etnguyen03 quits [Ping timeout: 264 seconds]
19:21:48benjinsm joins
19:21:53AlsoHP_Archivist joins
19:22:14TheTechRobo quits [Client Quit]
19:22:14rohvani quits [Client Quit]
19:22:14parfait quits [Remote host closed the connection]
19:22:14HP_Archivist quits [Remote host closed the connection]
19:22:14benjins quits [Remote host closed the connection]
19:22:27parfait (kdqep) joins
19:22:45TheTechRobo (TheTechRobo) joins
19:24:23etnguyen03 (etnguyen03) joins
19:26:52rohvani joins
19:50:39decky_e quits [Read error: Connection reset by peer]
19:55:23decky quits [Ping timeout: 252 seconds]
19:57:16decky_e joins
19:57:27decky joins
20:00:08Dango360 (Dango360) joins
20:01:35<Barto>you shouldnt use pbkdf2 with so few iterations, look at the owasp standard that tells like 1300000 iterations for sha-1, sha256 is 600k
20:01:52<Barto>you're way better off with argon2
20:02:11<Barto>surprisingly bcrypt holds way better over time
20:02:21<Barto>https://cheatsheetseries.owasp.org/cheatsheets/Password_Storage_Cheat_Sheet.html
20:03:38etnguyen03 quits [Ping timeout: 252 seconds]
20:05:38<@JAA>They changed it to SHA256 and 250k.
20:06:13<@JAA>But it'd be surprising if this was the only flaw in the thing. Personally, I'd replace that thing as if it was dangerously radioactive.
20:08:45<nicolas17>Barto: this library was using 1 iteration by default
20:08:47<nicolas17>ONE
20:28:29<nukke>Hey give them a break, they wanted to keep compatibility with 33MHz CPUs
20:28:44<nukke>Any more iterations would be too much for those poor things
20:34:13etnguyen03 (etnguyen03) joins
20:55:36that_lurker quits [Quit: I am most likely running a system update]
20:56:10that_lurker (that_lurker) joins
21:03:51tzt quits [Read error: Connection reset by peer]
21:04:10tzt (tzt) joins
21:07:05<Barto>nicolas17: time to barf i guess
21:15:10<fireonlive>shall we interlock arms while we finger punch our uvulas
21:15:31hitgrr8 quits [Client Quit]
21:48:03<fireonlive>did i type that
21:48:07<fireonlive>and why
21:48:14<project10>(╯°□°)╯︵ ┻━┻
22:17:50etnguyen03 quits [Ping timeout: 252 seconds]
22:30:17etnguyen03 (etnguyen03) joins
22:47:55icedice (icedice) joins
23:06:47etnguyen03 quits [Ping timeout: 252 seconds]
23:25:05Arcorann (Arcorann) joins
23:30:00etnguyen03 (etnguyen03) joins
23:52:28<that_lurker>https://lounge.kuhaon.fun/folder/ca5f21df47d00891/what.gif