Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. Tridge has responded on the rsync vibe disaster

Tridge has responded on the rsync vibe disaster

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
36 Indlæg 22 Posters 107 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • davidgerard@circumstances.runD This user is from outside of this forum
    davidgerard@circumstances.runD This user is from outside of this forum
    davidgerard@circumstances.run
    wrote sidst redigeret af
    #1

    Tridge has responded on the rsync vibe disaster

    https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

    * you're all dumb haters
    * AI is a revolution just in the past few months
    * yes there were regressions but,
    * the new test suite is awesome you haters
    * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

    at least it reads like he wrote it by hand

    i can pick the particular mastodon posts he's reacting to here

    dysfun@social.treehouse.systemsD bloognoo@retro.pizzaB peter_sc@chaos.socialP sharkfie@infosec.exchangeS quincy@chaos.socialQ 14 Replies Last reply
    0
    • davidgerard@circumstances.runD davidgerard@circumstances.run

      Tridge has responded on the rsync vibe disaster

      https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

      * you're all dumb haters
      * AI is a revolution just in the past few months
      * yes there were regressions but,
      * the new test suite is awesome you haters
      * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

      at least it reads like he wrote it by hand

      i can pick the particular mastodon posts he's reacting to here

      dysfun@social.treehouse.systemsD This user is from outside of this forum
      dysfun@social.treehouse.systemsD This user is from outside of this forum
      dysfun@social.treehouse.systems
      wrote sidst redigeret af
      #2

      @davidgerard

      I’d rather be out sailing than working on rsync security issues, so I have reached for several AI tools to help with what needs to be done. I have absolutely no regrets about doing that

      you know tridge, i'd rather you were out sailing too.

      barubary@infosec.exchangeB 1 Reply Last reply
      1
      0
      • davidgerard@circumstances.runD davidgerard@circumstances.run

        Tridge has responded on the rsync vibe disaster

        https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

        * you're all dumb haters
        * AI is a revolution just in the past few months
        * yes there were regressions but,
        * the new test suite is awesome you haters
        * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

        at least it reads like he wrote it by hand

        i can pick the particular mastodon posts he's reacting to here

        bloognoo@retro.pizzaB This user is from outside of this forum
        bloognoo@retro.pizzaB This user is from outside of this forum
        bloognoo@retro.pizza
        wrote sidst redigeret af
        #3

        @davidgerard
        You can hear the wind whistling through the hole in their forehead.

        1 Reply Last reply
        0
        • dysfun@social.treehouse.systemsD dysfun@social.treehouse.systems

          @davidgerard

          I’d rather be out sailing than working on rsync security issues, so I have reached for several AI tools to help with what needs to be done. I have absolutely no regrets about doing that

          you know tridge, i'd rather you were out sailing too.

          barubary@infosec.exchangeB This user is from outside of this forum
          barubary@infosec.exchangeB This user is from outside of this forum
          barubary@infosec.exchange
          wrote sidst redigeret af
          #4

          @dysfun @davidgerard

          I have reached for several AI tools to help with what needs to be done

          "We do what we must because we can."

          1 Reply Last reply
          0
          • davidgerard@circumstances.runD davidgerard@circumstances.run

            Tridge has responded on the rsync vibe disaster

            https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

            * you're all dumb haters
            * AI is a revolution just in the past few months
            * yes there were regressions but,
            * the new test suite is awesome you haters
            * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

            at least it reads like he wrote it by hand

            i can pick the particular mastodon posts he's reacting to here

            peter_sc@chaos.socialP This user is from outside of this forum
            peter_sc@chaos.socialP This user is from outside of this forum
            peter_sc@chaos.social
            wrote sidst redigeret af
            #5

            @davidgerard "People keep telling me gambling is bad, but what they don't know is this: I have a *system*. These new machines are so much more sophisticated, your ideas about how they work are totally outdated. What do you mean 'am I on cocaine?' Of course I am! It's part of the system, dummy!"

            sherapantsuit@mastodon.socialS 1 Reply Last reply
            0
            • davidgerard@circumstances.runD davidgerard@circumstances.run

              Tridge has responded on the rsync vibe disaster

              https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

              * you're all dumb haters
              * AI is a revolution just in the past few months
              * yes there were regressions but,
              * the new test suite is awesome you haters
              * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

              at least it reads like he wrote it by hand

              i can pick the particular mastodon posts he's reacting to here

              sharkfie@infosec.exchangeS This user is from outside of this forum
              sharkfie@infosec.exchangeS This user is from outside of this forum
              sharkfie@infosec.exchange
              wrote sidst redigeret af
              #6

              @davidgerard

              I’m here to tell you that you are out of date. The world of software engineering has changed dramatically in the last few months.

              They are better (I have to use them for work, not primarily a software dev though) but they do still do fundamentally broken decisions that "compile, run, end up with subtle bugs or silent failures". It was impressive until I began having to fix a lot of those.

              I wonder if he hasn't gotten to that part.

              1 Reply Last reply
              0
              • davidgerard@circumstances.runD davidgerard@circumstances.run

                Tridge has responded on the rsync vibe disaster

                https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                * you're all dumb haters
                * AI is a revolution just in the past few months
                * yes there were regressions but,
                * the new test suite is awesome you haters
                * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                at least it reads like he wrote it by hand

                i can pick the particular mastodon posts he's reacting to here

                quincy@chaos.socialQ This user is from outside of this forum
                quincy@chaos.socialQ This user is from outside of this forum
                quincy@chaos.social
                wrote sidst redigeret af
                #7

                @davidgerard

                To be fair, what he writes, for the most part, doesn't even sound unreasonable to me, if I try to ignore the parts that are AI-pilled hyperbole.

                davidgerard@circumstances.runD 1 Reply Last reply
                0
                • davidgerard@circumstances.runD davidgerard@circumstances.run

                  Tridge has responded on the rsync vibe disaster

                  https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                  * you're all dumb haters
                  * AI is a revolution just in the past few months
                  * yes there were regressions but,
                  * the new test suite is awesome you haters
                  * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                  at least it reads like he wrote it by hand

                  i can pick the particular mastodon posts he's reacting to here

                  robinsyl@meow.socialR This user is from outside of this forum
                  robinsyl@meow.socialR This user is from outside of this forum
                  robinsyl@meow.social
                  wrote sidst redigeret af
                  #8

                  @davidgerard can we normalize giving a project to someone else if you don't want to maintain it

                  david_chisnall@infosec.exchangeD 1 Reply Last reply
                  0
                  • shadowjonathan@tech.lgbtS This user is from outside of this forum
                    shadowjonathan@tech.lgbtS This user is from outside of this forum
                    shadowjonathan@tech.lgbt
                    wrote sidst redigeret af
                    #9

                    @davidgerard also what the fuck are these replies glazing him

                    can you moderate replies as an author?

                    robinsyl@meow.socialR hsza@social.tudbut.deH 2 Replies Last reply
                    0
                    • davidgerard@circumstances.runD davidgerard@circumstances.run

                      Tridge has responded on the rsync vibe disaster

                      https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                      * you're all dumb haters
                      * AI is a revolution just in the past few months
                      * yes there were regressions but,
                      * the new test suite is awesome you haters
                      * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                      at least it reads like he wrote it by hand

                      i can pick the particular mastodon posts he's reacting to here

                      addison@nothing-ever.worksA This user is from outside of this forum
                      addison@nothing-ever.worksA This user is from outside of this forum
                      addison@nothing-ever.works
                      wrote sidst redigeret af
                      #10

                      @davidgerard@circumstances.run Honestly, it's just kind of unpleasant to watch. I understand the pressures at play here, re: security-relevant bugs being reported at a higher rate (including some which actually exist). Also, there was a lot of criticism directed towards him for this, some of which was way too personal or rhetoric-laden. That tends to cause walls between people that stifle actual change. I doubt he will change course following this sequence of events.

                      On the other hand, the dismissal of legitimate concerns and criticisms is really gross to read; rubs me very wrong. It also irks me that he characterises all of the criticism he got as concerns about correctness, and how he addresses even that. I don't care at all if he thinks it's "right"; he hasn't put in nearly the same time or effort or thought as he would have needed to otherwise, and that's what he has 40 years of experience in. I care that it is well-reasoned, and doesn't rely on something so fundamentally problematic for reasons other than efficacy.

                      I don't know. This whole movement continues to reveal that a huge chunk of open source does not hold the values I expected.

                      1 Reply Last reply
                      0
                      • shadowjonathan@tech.lgbtS shadowjonathan@tech.lgbt

                        @davidgerard also what the fuck are these replies glazing him

                        can you moderate replies as an author?

                        robinsyl@meow.socialR This user is from outside of this forum
                        robinsyl@meow.socialR This user is from outside of this forum
                        robinsyl@meow.social
                        wrote sidst redigeret af
                        #11

                        @ShadowJonathan @davidgerard I know someone with a Medium account and yes you can hide replies you don't like

                        robinsyl@meow.socialR 1 Reply Last reply
                        0
                        • robinsyl@meow.socialR robinsyl@meow.social

                          @davidgerard can we normalize giving a project to someone else if you don't want to maintain it

                          david_chisnall@infosec.exchangeD This user is from outside of this forum
                          david_chisnall@infosec.exchangeD This user is from outside of this forum
                          david_chisnall@infosec.exchange
                          wrote sidst redigeret af
                          #12

                          @robinsyl @davidgerard

                          The problem is finding people who are both willing and able to do it (and not, as with liblzma2, just there for the supply-chain attacks).

                          This is especially true for codebases written in C with a bunch of idiosyncratic things. I had a quick skim of some of the rsync source and it has a few more comments than a lot of contemporary code, but also some cryptic things. My favourite was an ad-hoc inlined memmove with a comment explaining that memmove didn't handle overlapping regions correctly on 'some platforms' (the only difference between memmove and memcpy is that the former is required to be able to handle overlapping regions). I wouldn't want to take over maintaining it, even if I had time to do so.

                          That said, I think we do need to normalise projects being done. No new features need to be added, the project is complete.

                          This is much easier when the project is designed around extensibility, so missing features can be added with external plugins, maintained by other people.

                          1 Reply Last reply
                          0
                          • robinsyl@meow.socialR robinsyl@meow.social

                            @ShadowJonathan @davidgerard I know someone with a Medium account and yes you can hide replies you don't like

                            robinsyl@meow.socialR This user is from outside of this forum
                            robinsyl@meow.socialR This user is from outside of this forum
                            robinsyl@meow.social
                            wrote sidst redigeret af
                            #13

                            @ShadowJonathan also possibly some sampling bias as people who use AI are prolly more likely to have a Medium account

                            1 Reply Last reply
                            0
                            • shadowjonathan@tech.lgbtS shadowjonathan@tech.lgbt

                              @davidgerard also what the fuck are these replies glazing him

                              can you moderate replies as an author?

                              hsza@social.tudbut.deH This user is from outside of this forum
                              hsza@social.tudbut.deH This user is from outside of this forum
                              hsza@social.tudbut.de
                              wrote sidst redigeret af
                              #14

                              @ShadowJonathan @davidgerard chances are you can, but also picture the average individual with a medium.com account

                              1 Reply Last reply
                              0
                              • davidgerard@circumstances.runD davidgerard@circumstances.run

                                Tridge has responded on the rsync vibe disaster

                                https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                                * you're all dumb haters
                                * AI is a revolution just in the past few months
                                * yes there were regressions but,
                                * the new test suite is awesome you haters
                                * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                                at least it reads like he wrote it by hand

                                i can pick the particular mastodon posts he's reacting to here

                                passocacornio@tech.lgbtP This user is from outside of this forum
                                passocacornio@tech.lgbtP This user is from outside of this forum
                                passocacornio@tech.lgbt
                                wrote sidst redigeret af
                                #15

                                @davidgerard no, like i get it... i don't know their level of understanding about machine learning, so i will not conflate their feeling overwhelmed by the surge in llm-driven issues reporting with lack of knowledge, also I don't know if any maintainer of rsync is trustworthy enough (in their experience) to pass the project to.
                                but i do think we need to normalize saying a software is complete more often.
                                what i mean by complete? that it will not get more features and will only get security updates and at a slowed down pace.
                                the "move fast and break things" did much more damage to to software engineering than we are comfortable admitting. i don't agree with their main points, but I empathize with the thought processes they are putting "to paper", even the subconscious ones.
                                anyway, let's migrate to openrsync

                                1 Reply Last reply
                                0
                                • davidgerard@circumstances.runD davidgerard@circumstances.run

                                  Tridge has responded on the rsync vibe disaster

                                  https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                                  * you're all dumb haters
                                  * AI is a revolution just in the past few months
                                  * yes there were regressions but,
                                  * the new test suite is awesome you haters
                                  * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                                  at least it reads like he wrote it by hand

                                  i can pick the particular mastodon posts he's reacting to here

                                  mackensen@higheredweb.socialM This user is from outside of this forum
                                  mackensen@higheredweb.socialM This user is from outside of this forum
                                  mackensen@higheredweb.social
                                  wrote sidst redigeret af
                                  #16

                                  @davidgerard it's clear that he doesn't consider any criticisms of his choice legitimate, which rather confirms what his critics are saying.

                                  1 Reply Last reply
                                  0
                                  • davidgerard@circumstances.runD This user is from outside of this forum
                                    davidgerard@circumstances.runD This user is from outside of this forum
                                    davidgerard@circumstances.run
                                    wrote sidst redigeret af
                                    #17

                                    @dysfun did any of them acknowledge that??

                                    dysfun@social.treehouse.systemsD 1 Reply Last reply
                                    0
                                    • davidgerard@circumstances.runD davidgerard@circumstances.run

                                      Tridge has responded on the rsync vibe disaster

                                      https://medium.com/@tridge60/rsync-and-outrage-d9849599e5a0

                                      * you're all dumb haters
                                      * AI is a revolution just in the past few months
                                      * yes there were regressions but,
                                      * the new test suite is awesome you haters
                                      * openrsync doesn't pass the new test suite! ha, you fools! well that's cos it targets an older version but,

                                      at least it reads like he wrote it by hand

                                      i can pick the particular mastodon posts he's reacting to here

                                      li@tech.lgbtL This user is from outside of this forum
                                      li@tech.lgbtL This user is from outside of this forum
                                      li@tech.lgbt
                                      wrote sidst redigeret af
                                      #18

                                      @davidgerard

                                      > Also, nobody actually knows if human intelligence is just finer grained stochastic prediction as well.

                                      lmfao yes we do, people are not LLMs

                                      hsza@social.tudbut.deH robinsyl@meow.socialR 2 Replies Last reply
                                      0
                                      • davidgerard@circumstances.runD davidgerard@circumstances.run

                                        @dysfun did any of them acknowledge that??

                                        dysfun@social.treehouse.systemsD This user is from outside of this forum
                                        dysfun@social.treehouse.systemsD This user is from outside of this forum
                                        dysfun@social.treehouse.systems
                                        wrote sidst redigeret af
                                        #19

                                        @davidgerard i heard (though haven't seen) that fedora wouldn't take the update and they are all in.

                                        davidgerard@circumstances.runD 1 Reply Last reply
                                        0
                                        • davidgerard@circumstances.runD This user is from outside of this forum
                                          davidgerard@circumstances.runD This user is from outside of this forum
                                          davidgerard@circumstances.run
                                          wrote sidst redigeret af
                                          #20

                                          @sharpcheddargoblin he's got a lot to be arrogant about! unfortunately,

                                          sharpcheddargoblin@reclusive.blogS 1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper