• 0 Posts
  • 39 Comments
Joined 6 months ago
cake
Cake day: April 4th, 2026

help-circle
  • An investment that would pay off if the tech industry went to hell would be Put options on QQQ (an ETF that tracks the NASDAQ-100). You have to get both the timing and the drop correct, and better funded groups with much faster computers AND the ability to make trades to prop up the market while they unload their shit will be competing against you (every options trade has an opposite side and most of them expire worthless). Watch the movies Margin Call and The Big Short for research as much as playing the lottery can be researched (they’re good movies so it’s time well spent anyway). Make a movie night out of it and watch The Other Guys which was directed by the same guy who directed The Big Short. Watch through the end credits.

    I didn’t read the article because gizmodo, but as other people here have said, Dr. Burry (he’s played by Christian Bale in The Big Short) often thinks things are going to go south, and there’s usually reason to think so, but in general as Warren Buffett could easily have said, “stonks only go up.” NVDA, AAPL, and MSFT make around 15% or so of the entire world stock market and around 20% of the US market. Nobody’s going to let them collapse and even without the AI craze they still have all the other stuff to fall back on. Thumbs will go on the scale to an extent even greater than the 2008 collapse.












  • A MITM doesn’t require decrypting. It just requires telling a convincing enough lie to each side of a conversation that they think they’re talking to the other party. Then you end up encrypting to their key which they can just read. That’s different from breaking the encryption.

    Are you sure they can’t decrypt?

    No, and none of the state actors who do that kind of stuff will ever tell you. Watch The Imitation Game for a good/bad time and some context.

    If you had a break for the modern crypto schemes and published it right now you would shut down all digital commerce, a lot of the spy traffic if not most of it1, and nothing could be started back up again until everything was redone from scratch. Best hope would be that the post quantum algorithms2 the cryptographers have aren’t succeptible to whatever you did to break the existing algorithms. It’d take a bit to get the software implementations and keys in place, etc. The hardware stuff would take longer.

    • [1] The stuff using One Time Pads would still be fine, but its limitations wouldn’t take the place all of all the rest of it.
    • [2] The rollout of post quantum algorithms is going on now on a more accelerated schedule than originally planned.





  • https://nostr.com/

    No idea what the Google login thing was. If I had to take a wild guess, maybe you found some place that also offers some key management/signing features as a way to make things more user friendly?

    I’ll buy that. I just have trouble squaring things like that with things like gpg-agent and how they cache passphrases and keep them from swapping to disk, etc. I’d want to know more about it and whether it’s generated in the browser or on the server. I’m also not even sure how I’d go about doing some sort of review of the javascript algorithms or where their random numbers come from. I’m not throwing shade on them; I just don’t know.

    iris.to […] Primal.net

    I’ll look.


  • Hard pass for me I think on nostr. The signup says to continue with google (heard of 'em) or NIP-07 (not heard of 'em), and the generate nsec button offers me an opportunity to download “my” private key. The file has a keypair and a helpful message that I can share the public key, and that I should never share the private key that it just sent me.

    Maybe there’s something I’m missing, but all the previous systems I’m used to use that to mean that you generate the keypair yourself, and then you can post the public key publicly while you should always keep the private key private which breaks the guarantee of the math that only the person with the private key can undo the message that the public key locked.

    I feel like there’s something I’m not understanding.


  • Correct, except I signed my public key. You now have cryptographic proof that I’m me. And as me, you can take my word for it that I only made that key to see what signed messages would look like on lemmy so that I could post in these sorts of situations and so that I could test Kleopatra. It’s not intended to be used for anything serious.

    It should also enable anyone who wanted to send an encrypted message to me to do so.


  • -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512
    
    We could all do it today.  The technology has existed for a
    very long time now.  We somehow allowed the market to get to
    a point where the crypto mostly benefits the corporations
    using people as a product.
    
    - -----BEGIN PGP PUBLIC KEY BLOCK-----
    Comment: User ID:	lemmy_posting_key
    Comment: Valid from:	7/31/26 2:00 AM
    Comment: Valid until:	7/31/29 12:00 PM
    Comment: Type:	255-bit EdDSA (secret key available)
    Comment: Usage:	Signing, Encryption, Certifying User IDs
    Comment: Fingerprint:	3965EF2558DE27BDF057EBD6D1800E8356A14454
    
    mDMEamxIKxYJKwYBBAHaRw8BAQdAHa59Q90fLXONJ/dheGvaTUsh8RxpYbN5/kLk
    VwhuJ8S0EWxlbW15X3Bvc3Rpbmdfa2V5iJYEExYKAD4WIQQ5Ze8lWN4nvfBX69bR
    gA6DVqFEVAUCamxIKwIbAwUJBaV4ZQULCQgHAgYVCgkICwIEFgIDAQIeAQIXgAAK
    CRDRgA6DVqFEVPHlAP9zcGI0AvP/I1fqIYfks8gArPWsbbXFMA3xdXuxpB0fkQD+
    NEKRbjZaoyQ5MU2IAlHdfC0DWCL7gyJ/aXtJQZPOAg24OARqbEgrEgorBgEEAZdV
    AQUBAQdA0itDkHmO4JKPtyK0+c+7KvaB1ub/ees6koIZo2S13wEDAQgHiH4EGBYK
    ACYWIQQ5Ze8lWN4nvfBX69bRgA6DVqFEVAUCamxIKwIbDAUJBaV4ZQAKCRDRgA6D
    VqFEVIaOAP9FUfaxNBI+gsBA4s6INSqhWCxhRPWCgQAk0wltsgpnkgD/bfpilGAx
    XBvfnJBlHbel5z73T4IEBqIvDTHX6t9AUQo=
    =kclm
    - -----END PGP PUBLIC KEY BLOCK-----
    -----BEGIN PGP SIGNATURE-----
    
    iHUEARYKAB0WIQRUzy5RsYePpEjLPsQmKLxeU5C8sgUCaqIEbwAKCRAmKLxeU5C8
    soZBAQCuGIZLW0SKpqqNrVOheG8U/t8YLrvLSal/MI5f3HgfowEAr6AV0lsrLmlV
    5BIldH/5q5WIbiZOiyPM4O/oerODSQQ=
    =jnr7
    -----END PGP SIGNATURE-----