I write bugs and sometimes features! I’m also @CoderKat@kbin.social.

  • 2 Posts
  • 183 Comments
Joined 1 year ago
cake
Cake day: June 21st, 2023

help-circle
  • CoderKat@lemm.eetoPrivacy@lemmy.mlWhat the actual fuck?!
    link
    fedilink
    English
    arrow-up
    3
    ·
    edit-2
    8 months ago

    Yeah. There’s literally nothing you can put on a prompt that will truly work. It’s still a good idea to prompt cause it will reduce how many people approve the prompt, but there is a significant number of people who don’t read prompts at all and just insta-confirm.

    At best, I think you could design it so there’s no way for an app to request certain permissions themselves. They’d have to be opted in from the system settings and apps could only tell you how to do it. But that’s a usability nightmare that is quite frustrating for legitimate usages. There’s already some super sensitive permissions that do this. I think the ability to install apps, ability to display over other apps, and password managers for android.







  • There’s already a ton of such exploits. Most servers use Linux and many exploits of corporations this had to go through Linux (though many exploits aren’t related to the OS at all – eg, SQL injection is OS independent). I expect it’s more common, though, that attacks on Linux systems are either meant to target servers or were personalized attacks that you’re not gonna accidentally download.

    On that vein, I also kinda suspect that many people who use Linux may be bigger targets for their employer than their personal PC. Which is actually scary, cause personalized attacks are far harder to defend against. I expect the average Linux user is technically savvy. Not a lot of money in try to do a standard, broad attack on such types (I think most attacks on personal computers are broad attempts that mostly depend on a small fraction of technologically incompetent people falling for simple schemes). But a personalized attack that happens to infiltrate a fortune 500 company? Now that’s worth a lot of money. Using Linux won’t protect you against those kinda attacks.


  • Find local groups. Two notable ones for me are that I found a discord for my city for people looking for friends (which means stuff like regular board game events and the likes) and the kink community (ie, fetlife) regularly does similar (you don’t treat that one as a dating site, but rather a way to find real life events where you meet people).

    There’s probably various other ways to find real life meetups that aren’t for the explicit purpose of meeting people to date, but will find em anyway. Casual sports leagues, hobby oriented groups, co-workers, etc.



  • I also really hate the meme of nerds not having sex or relationships. I’m a software dev that works with the nerdiest people I’ve ever met. The vast majority of my coworkers are married or in long term relationships. I’m active in the kink community and have a number of coworkers I see there too. My experience is that nerds are very common in the kink community. I mostly date and fuck fellow nerds and as far as I can tell, they’re mostly doing alright, too.

    The stereotype from the meme is just self deprecation bordering on toxicity and incel-ness. The only place where “nerd” is still an insult or bad thing is in Disney channel movies, which are eternally stuck in 90s stereotypes, where people nerds are supposed to remove their glasses and let their hair down if they want to be found hot (ps: that is a terrible trope, because glasses are extremely hot).


  • Heck, I’d say even give money to those big corps so long as they are being reasonable with the price and availability. Reasonable varies by person, of course. But for me, I’ll pay for any $70-90 game (the normal price for new games now in Canada), but stuff like Sims DLC or how the original Mass Effect only let you get DLC through some dumb BioWare credits are cases where I’d pirate no regrets even with my current income.

    After all, there won’t be AAA games if people don’t pay for them. I have (mostly) no qualms with big publishers pocketing a significant profit on those games if they get made well. Bigger problem I have is with games that get rushed to the point of impacting quality, but that’s something I see more for changing how you approach that individual title. Stuff like mistreating staff (crunch time) is a bit iffier. I still lean towards giving them my money, since nobody enters the game dev business without knowing it’ll involve crunch and I do want the devs to be rewarded for their hard work with a commercial success (cause that’s unfortunately just how success is measured in our capitalist society).





  • But are they? Generally in tech, it’s really hard to gauge people’s performance and most companies are conservative with firing people for performance reasons. So you could coast by on mediocre performance. You team won’t be happy with you, but you probably will keep your job simply because you’re given the benefit of doubt. Tech is one of those areas where someone can actually be 10x as effective as another person, because so much of the job can be spent on stuff like debugging and dealing with weird issues, where one person might spend all day on an issue that another person can resolve in minutes.

    There’s also something to be said about the fact that companies are usually paying for your time, not output. Contractors are the ones who are paid for output, not employees. It’s also straight up expected in tech that you’re looking for ways to automate some tasks so they don’t have to be done anymore. It’s not like some mindless office job where you’re expected to do X reports per day. There’s a never ending list of bugs to fix and features requested. You’re generally paid to find ways to increase productivity, not merely do the same thing over and over.

    At any rate, tech is usually also paid well enough for it. There’s still massive income disparity between regular workers and C-suite, but at least the pay is always well, well above living wages, stock options are commonly given to regular workers, and high performers often are rewarded for doing better than average. IMO, tech jobs aren’t really an area to focus on the kinda mindset you have, since it does so much better than most (not perfect, but still far better). Most jobs don’t get anything close to what tech jobs offer to regular employees.


  • As a dev, I honestly can’t understand that. I probably use regex a dozen times a day. Basic regex is so easy and useful, but describing exactly what you want is so iffy for an AI. The basics of regex are also so easy. It’s not like most people are trying to, say, parse an email address with regex. Most usage is basic, like “extract this consistent pattern from this text” or “remove this (simple) parameter from this function”. It takes me seconds to come up with a working regex in most cases.


  • Especially where image generation is concerned, the infancy part can’t be understated. It’s growing so, so fast. A year ago, people would be dismissing AI art as “you can always tell”, it largely couldn’t do hands, and text was right out. But current cutting edge models can semi-reliably generate imperceptible works, needing only some fairly trivial manual curation to pick the best output. There’s also some models that are now able to do basic text. Just comparing a couple of years worth of progress side by side makes it very clear that it’s advancing rapidly and there’s no signs yet that it’s plateaued.

    The big barrier to image generation, though, is profit. The images that it creates are useful, but current understanding is that they can’t be copyrighted and there’s ongoing legal challenges that make it very murky. I don’t think these companies can stay in business from regular people who’ll pay for some tokens to generate art. They need to be usable by commercial companies, and the legal issues will scare many of those away, at least for now.


  • I do think there’s some use for AI in its current form (especially AI art as a tool for developing other works, like movies and video games), but I find it bizarre just how much investors value the current form of AI.

    As cool as I find AI art, I’m not yet sure about it’s commercial viability, given the serious legal issues it’s facing. So why do investors, who are supposed to care about commercial viability, value it so much?

    And for generative text, I have an even more negative stance. My understanding is that the cost to train and run those AIs is ludicrous. Sure, some companies will use it to make blog spam articles or replace their basic support staff with it, but is that really gonna make it profitable?

    And I emphasized “current form” because the current AI is basically just predictive text. It’s severely limited and this is extremely evident if you try to ask even basic math problems. It’s not capable of actual intelligence, which is what has me very skeptical of it on the long term. Maybe these companies will come up with a new, better form of AI. Or maybe they won’t. But it doesn’t seem like “just increase the size of the model” is sustainable nor will frankly get closer to strong(ish?) AI.