Forgot your password?
typodupeerror

Comment Re: And if we had a spine we'd have voted for (Score 2) 45

Kamala Harris because she would sure have enforced antitrust laws to save us all from the evil billionaires.

Exactly who do you think donated to her (literal) billion-dollar plus campaign? Oh, right, it was the retired teachers and widowers that donated hundreds of times a day they Act Blue, purely grass-roots, bottom-up campaign financing, no billionaires... LOL

Comment Re: So in the end it's all because of the boomers (Score 1) 45

You keep seeing kids wandering on to somebody's property playing hide and seek and getting blown away in broad daylight. Usually black kids in the south. And usually the boomer gets away with it.

No, you don't "keep seeing it". I've never seen it and I suspect neither have you.

I've never seen any kid get "blown away in broad daylight", not "black kids" or any other kids, and it follows I've also never seen anyone "(get) away with it", boomer or other, because it never happens.

I'd appreciate three different examples of small "black kids" that are "blown away" in "broad daylight" for merely trespassing on someone's property, if you can't find at least three examples, can you really claim it happens "all the time"?

Comment Re: Its just not working out (Score 1) 45

Single-payer healthcare will not drive down healthcare costs, no more than federally-backed student loans have made college more affordable.

The last time politicians tried to "fix" (or, if I'm feeling generous, "improve") healthcare in America, they took a blank piece of paper, had the healthcare industry lobbyists craft a solution that required every uninsured American to buy "affordable" healthcare coverage from a private insurer (the folks paying the lobbyists) using federal money, then passed the bill into law without understanding what it was ("we have to pass the bill to find out what's in it", and the bills sponsors got angry when reporters asked them what was in the bill, remember "what good is reading the bill if I don't have lawyers with me to explain it to me"?).

So excuse me, but I'm a little reluctant to look to these folks for a solution to our so-called healthcare crisis...

Comment Re: Fuck you Larry Ellison (Score 1) 45

mostly because of the money people like the ellisons and the fat nazi threw at the elections, distorting the democracy from its traditional meaning of one person having one vote

So, money in politics is the issue?

Didn't his Democrat opponent outspend Trump by a YUGE margin, like, I don't know, 100% more? The democrats burned thru over a Billion dollars in 107 days and wound up $22M in the hole when the votes were counted and Harris/Walz lost in 2024?

Is that the money you want to keep out of presidential politics?

Comment Re: Its a trap! (Score 1) 23

I don't understand this contradiction:

require employers to send written notices to workers if AI is responsible for mass layoffs and ban employers from relying on AI to decide to fire someone...

So you can't use AI to decide to fire someone ("ban employers from relying on AI to decide to fire someone") BUT, if AI is responsible for MASS layoffs (fire lots lots and lots of 'someone's'), you have to give the (terminated?) employees "written notices"?

You can't do it, but if you do do it, you need to use written notices?

Comment Re:Correct. And oh, no. (Score 1) 47

Yeah, "very". They're going to make it like sudo where when you give permission to a program to write protected files once it has it forever after.

No, wait, that isn't how it works, is it?

That's how it already works. But you can request the permission from the user with a pop-up. Presumably a "very explicit action" means going into the Settings app and turning it on by hand.

But that's going to do exactly nothing. The app will tell them that they have to do this, and the users, having no idea how dangerous it is to give an AI unrestricted access to their device, will do it anyway, and we'll be right back to where we are now. And the next step will be "See, we can't allow full disk access." And then macOS will cease to be usable.

The only reasonable choice is to flag Meta's software as malware for extending their full disk access to agents. Force them to implement a proper sandbox. Apple already gives them all the tools they need to do it right.

  • The main host app asks for full disk access, but functions without it, triggering an open file dialog to work around missing access when necessary. Most users will end up granting full disk access out of frustration, but that's okay because the agents themselves don't have that access. If possible, make it start out with a read-only full-disk entitlement, because otherwise, using it will be much harder.
  • Each agent runs in a separate agent runner process with a stricter sandbox.
  • The agent sandbox has an entitlement that grants read-only access to the entire disk (or, if the main host app's sandbox doesn't allow that, to every resource that the main host app has access to), and bans the use of the socket() system call.
  • AI agents can request read-write access to specific files or directories by asking the host app. The agent is encouraged to ask for access to an entire directory at once if it needs to write to multiple files in that directory.
  • The host app can pass in a security-scoped bookmark/URL to grant permission, but asks the user first unless the URL is part of an explicit list of allowlisted URLs that the user provided before beginning the task. Doing this expands the sandbox to allow writing to that file or to files in that directory. The SSB can be created programmatically or, if the main app also doesn't have access, through showing an Open File dialog.
  • One tool provides network access to specific hosts with no POST, all GET parameters filtered, and a low limit on URL length to mitigate exfiltration risk. This tool has an entitlement that allow socket access inside an environment where opening sockets is otherwise banned, and thus can be run directly by AI agents.
  • One tool provides broader network access with full upload capabilities. This tool lives outside the sandbox so that the AI agents cannot run it themselves — only ask the main host app to run it for them. Then:
    • The main host app requires the user to give permission to access a single hostname for either a single request (allow once) or a single task (always allow for this task).
    • If the user clicks the "Always allow sending data to example.com" button, the user is asked "Trust example.com for similar request parameters only" or "Trust fully".
    • If the user choose to trust similar request parameters only, then any additional GET parameters must be explicitly allowed each time.
  • The main host app passes each AI agent runner a new open socket connected to the AI service's server.
  • The AI service's server is configured to provide minimal or no network access from the server side.

This is how you protect privacy in an agentic environment.

Comment Not really a "DOOM on a ..." story (Score 1) 18

It's always fun to read about people implementing DOOM on various unlikely devices... however this is not one of those stories. This is just porting DOOM to a different language, but still running on a standard computer. And the heavy lifting is being done with python rather than SQL - so it's not even a new language, in terms of DOOM ports.

It does sound like it was an interesting and likely fun project for the coder(s), in any case.

Comment Re:Damn... (Score 1) 45

the us has been fascist for a very long time

The US has been oligarchic and authoritarian all along, and has behaved towards some other nations much like a fascist nation would do, but in general has not subjected the general citizenry to full blown fascism. It's been horrible to everyone other than landed white males all along, though.

Slashdot Top Deals

Your code should be more efficient!

Working...