GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place), page 2

  1. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Friday, 03-Nov-2023 23:52:13 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • mekka okereke :verified:
    • Angry Centrist
    • Maggie Maybe

    @dkbgeek @mekkaokereke @maggiemaybe

    I can't help thinking of that bit in Office Space where the main character is talking to The Bobs about how little he cares about his job and is called "leadership material" as a result

    I guess what's supposed to be absurd satire is not so absurd after all

    In conversation Friday, 03-Nov-2023 23:52:13 JST from mastodon.gamedev.place permalink
  2. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Wednesday, 01-Nov-2023 00:50:30 JST Bee O'Problem :godot: Bee O'Problem :godot:

    Talk I'm listening to today: https://youtu.be/EZ05e7EMOLM

    The experience of ATDD (acceptance test driven development a la Cucumber Gherkin etc) definitely follows mine. They're a lot of work to write, and the customer-facing part never is used.

    To expand: No customer cares that button X opens modal Y. They care about higher level stuff like "does the wizard I asked for exist? do I like using it?"

    For a webapp the finest granularity that will be read is page, form or dialog. That's it.

    In conversation Wednesday, 01-Nov-2023 00:50:30 JST from mastodon.gamedev.place permalink

    Attachments

    1. 🚀 TDD, Where Did It All Go Wrong (Ian Cooper)
      ❗️ATTENTION ❗️Registration to DevTernity is running:👉 https://devternity.comSince Kent Beck wrote the book on TDD in 2002 a lot of words have been dedicated...

  3. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Tuesday, 29-Aug-2023 02:33:05 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • silverwizard

    @silverwizard Yeah. I have no objections to the flag being high severity/risk. If it weren't a false positive it could be exploitable for RCE after all.

    I'm just annoyed that it wasted my time by flagging sketchy evidence of an possible exploit as being stronger than it was. I wasted time I should've been spending on issues with better evidence.

    In conversation Tuesday, 29-Aug-2023 02:33:05 JST from mastodon.gamedev.place permalink
  4. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Tuesday, 29-Aug-2023 02:15:15 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • silverwizard

    @silverwizard ZAP seems to for some reason. It'd be much better if it didn't

    In conversation Tuesday, 29-Aug-2023 02:15:15 JST from mastodon.gamedev.place permalink
  5. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Tuesday, 29-Aug-2023 01:45:22 JST Bee O'Problem :godot: Bee O'Problem :godot:

    Today in What Grinds my Gears:
    When a ZAP scan flags a "high severity, high confidence" issue based on literally nothing.

    ZAP: sends a request with a hinky query string
    Server: ignores all query strings
    ZAP: OMG BLIND SERVER SIDE INJECTION INTO A NONEXISTENT TEMPLATE ENGINE!!!!!11one

    As in previous "What Grinds my Gears" I really don't get why these scanning tools assign ridiculously high confidence values to issues where there's no evidence the vulnerable component exists.

    In conversation Tuesday, 29-Aug-2023 01:45:22 JST from mastodon.gamedev.place permalink
  6. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Tuesday, 29-Aug-2023 01:45:21 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to

    To be safe I even wasted my time checking the server itself and the entire stack has literally zero interaction with the query string whatsoever.

    I'm mainly angry due to the absurd "high" confidence ZAP is assigning the flag.

    First: ZAP has no knowledge of the server's implementation. There's no way to tell a "blind" injection even exists.

    Second: The evidence something bad happened is NOTHING. It's just as likely the input didn't do anything.

    Third: Response time was unchanged

    In conversation Tuesday, 29-Aug-2023 01:45:21 JST from mastodon.gamedev.place permalink
  7. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Saturday, 19-Aug-2023 02:22:46 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • silverwizard

    @silverwizard lol 🤭

    In conversation Saturday, 19-Aug-2023 02:22:46 JST from mastodon.gamedev.place permalink
  8. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Tuesday, 25-Jul-2023 12:20:15 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • aeva

    @aeva damn girl are you an open source project? cuz I can't hear what you're saying... what do you mean pulseaudio?

    In conversation Tuesday, 25-Jul-2023 12:20:15 JST from mastodon.gamedev.place permalink
  9. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Sunday, 16-Jul-2023 03:57:07 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • silverwizard

    @silverwizard that sounds nice. See you there

    In conversation Sunday, 16-Jul-2023 03:57:07 JST from mastodon.gamedev.place permalink
  10. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Sunday, 16-Jul-2023 02:58:42 JST Bee O'Problem :godot: Bee O'Problem :godot:

    My #gamedev #livestream will not be happening on schedule tonight.

    Got last minute word that a memorial service is happening for a good friend who recently passed is tonight. The event overlaps with my 7pm stream time.

    If I'm in the mood I may do a late guerilla stream but no guarantees.

    In conversation Sunday, 16-Jul-2023 02:58:42 JST from mastodon.gamedev.place permalink
  11. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Friday, 14-Jul-2023 03:16:19 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • Eniko Fox

    @eniko the ones that I've seen complaining the most are journalist/influencer types and, if you'll forgive the term, normies.

    Folks that either want to shove their content in front of as many eyeballs as possible or folks that just want to take in content/news without having to think particularly hard about actually getting to know interesting people

    In conversation Friday, 14-Jul-2023 03:16:19 JST from mastodon.gamedev.place permalink
  12. Embed this notice
    Bee O'Problem :godot: (beeoproblem@mastodon.gamedev.place)'s status on Monday, 19-Jun-2023 22:43:01 JST Bee O'Problem :godot: Bee O'Problem :godot:
    in reply to
    • Allan Haverholm

    @haverholm but not maroon5 or matchbox20?

    In conversation Monday, 19-Jun-2023 22:43:01 JST from gnusocial.jp permalink
  • After

User actions

    Bee O'Problem :godot:

    Bee O'Problem :godot:

    Moonlighting as an indie gamedev. Wears many hats but programming is my forte. Livestreaming #gamedev on #twitch every Friday, Saturday and Sunday.Software QA to pay the bills. Emphasis on automation but I've done most of the things.

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          95029
          Member since
          5 Feb 2023
          Notices
          32
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.