• 2 Posts
  • 147 Comments
Joined 1 year ago
cake
Cake day: June 22nd, 2023

help-circle








  • Cleveland clinic says says about coffee’s laxative effect:

    Researchers found that 29% of coffee drinkers report a desire to poop after drinking coffee. The feeling can come pretty quickly, too. (In as little as four minutes!)

    And about lactose intolerance (same article):

    An estimated 65% of people have some difficulty digesting lactose, which can lead to restroom runs. Lactose intolerance can cause diarrhea and other gastrointestinal (GI) issues within 30 minutes of consumption.





  • Keep in mind, though, so far, we only know it to be a user experience issue.

    “Incomplete paper and online applications will not be accepted,” Evans said in the statement. (Parker’s cancellation request would have lacked a driver’s license number.) The Secretary of State’s Office did not respond to individual questions about what testing the portal underwent before launch, the system’s security procedures, what happened to Parker’s cancellation request…

    It doesn’t matter what the browser says if the end user tampered with the running page to make it say something. It matters if the application might have been processed. They’re claiming it wouldn’t have been processed since it was incomplete (lacking ID number). We’d need to know how this was handled on the back end to know how risky it really was. It could still have been bad, but this isn’t, in itself, proof of an actual problem.

    edit: Just to be clear, I’m not saying it shouldn’t be investigated. It really should be, as the article claims, an all-hands-on-deck moment. I’m just saying that the article makes the case that it should be investigated to ascertain what would have happened to the incomplete application submission to assess the exposure, not that it definitely was a vulnerability at all.


  • “Incomplete paper and online applications will not be accepted,” Evans said in the statement. (Parker’s [demonstration] cancellation request would have lacked a driver’s license number.) The Secretary of State’s Office did not respond to individual questions about what testing the portal underwent before launch, the system’s security procedures, what happened to Parker’s cancellation request…

    Yeah, that tells us we just don’t know if this was a problem after all. Evans’s statement basically claims it wasn’t a vulnerability. If that’s correct, then the worst thing might be if someone’s browser tripped on the validation JS and allowed them down a blind alley execution path. If the claim is correct and if the page’s JS never shits the bed, then in that case the only negative outcome would be someone dicking with the in-browser source could lead themselves down the blind alley, in which case who cares. The only terrible outcome seems like it would be if the claim is incorrect–i.e. if an incomplete application submission would be processed, thus allowing exploit.

    Short of an internal audit, there’s no smoking gun here.


  • I haven’t given up on being a stick in the mud keeping Austin a little different from other parts of Texas. The loudest idiots in this state rebuke Austin as something un-Texan, but I’m not going anywhere and am continuing to live and vote the way I do. I know it’s a little easier for me to say this, not having to worry about kids, so I don’t expect others to make the same choice, even if they feel the same way.