October 2018
202 tweets
There was a second there where I thought you were tweeting about your sartorial arrangements.
♥ 1
Oh, absolutely — I was essentially pointing out that this might be solved minimally… and also that SSL errors (even if evidently produced by a bug) help even less with trust.
Sandwiches. Right there. It's pointing at the word "sandwiches". I'm *sure* that will solve your problem.
And "How To Solve It".
♥ 1
"In a way that we rarely appreciate, the demands of excellence are at war with what we call freedom. For to permit yourself to do only that which you are good at is to be trapped in a cage whose bars are not steel but self-judgment." --@superwuster
nytimes.com/2018/09/29/opi…
♥ 10↺ 4
All the answers to proof-of-work versus proof-of-stake debates that you’ve been pretending you knew in those blockchain discussion, conveniently wrapped up in a single thread.
Quoting a tweet by @crainbf ↗
♥ 2
For those of you wondering why all of your French and Armenian friends are lamenting the loss of this “Charles Aznavour”, here’s a very short introduction to some classics. open.spotify.com/user/robin.ber…
I'd watch a movie in which some plucky Canadian negotiators snuck these in as a "fuck you" to the Trump administration 😏
♥ 1
The amount of work that went into this outstanding piece is incredible. nytimes.com/interactive/20…
♥ 2
Extensive user tracking → Powerful micro-targeting of users → Highly effective disinformation/fake news → Goodbye democracy.
Quoting a tweet by @nickconfessore ↗
♥ 2↺ 1
I wanted to pick some choice quote from @fmanjoo's "Silicon Valley’s Keystone Problem: ‘A Monoculture of Thought’" but it's too good to share only a bit. Just go read the whole damn thing.
nytimes.com/2018/10/02/tec…
♥ 3
Exactly my thoughts. If you've spent time in bars it's likely you may have had to *intervene* in a fight, typically to stop it. But starting one? That's the province of a small group of drunk morons.
♥ 2
Are you coming to town for an event of some kind?
Actually it's very comparable: five years after mobile became mainstream they realised it was important. Adapting must have been brutal but they never questioned their myopic leadership. They missed the shift to privacy; they're still not questioning.
♥ 1
My personal bet: it would have changed nothing. Voters knew more than enough to disqualify him, this would not have convinced anyone who wasn't already.
(Also, it took 18 months to make, so that would have been hard.)
It's far from done, but if the type of tracking prevention now common in Brave, Safari, Firefox extends (possibly by force of law) to all browsers then wide-scale user tracking becomes much harder, if (legally) possible at all.
How ready would you guess they are? 😏
♥ 1
Ah, I can't make it sadly. Let me know if you're near the NYT and looking for coffee!
Today marks the first year since I joined the @nytimes, and somehow they haven’t fired me yet. It’s been a wonderful ride.
♥ 30
Thank you :-*
♥ 1
Happy (belated) Red Hat day!
(Sssh, they don’t know I’m rogue yet ;-)
We have eight open positions in data engineering at the @nytimes (there are 3 job descriptions, but each has multiple openings). Come work with us, it’s a great team!
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
♥ 24↺ 20
Is it the case that if you bought your phone untethered to an operator you’re not part of the alert system? Everyone seems to be getting it but me.
Awww, you’re too sweet :-)
♥ 1
But… but how would they guess?
The good taste of brie I assume you mean.
♥ 2
I agree the original advice was terrible, I agree that we need different people (lots). I'm not sure the CL is all that bad. As a manager, I teach its basics to my (nontech) reports when it can save them time. There's more to knowing enough bash to be dangerous than macho BS!
A Turing machine is really just a bunch of conditional GOTOs.
Well, mine is protecting me it would seem!
Ah, mine is a Sony as well, there may be a connection!
♥ 1
Merci! 🤗 When do you come see us?
“The Big Hack: How China Used a Tiny Chip to Infiltrate U.S. Companies”
bloomberg.com/news/features/…
♥ 3↺ 2
I love how, even in such a serious, sobering piece, the authors throw in a touch of humour: “Two of Elemental’s biggest early clients were the Mormon church, which used the technology to beam sermons to congregations around the world, and the adult film industry, which did not.”
♥ 8↺ 1
Just following your lead in showing appreciation for others’ work, m’am.
I’m sure that’s it. “Contacted for comments, a spokesperson for YouPorn Inc. stated ‘We have not streamed content to Mormon congregations and currently have no established plans to do so’.”
Shame it doesn't seem to have an Android version, this is the most needed app in American restaurants & bars right now.
Quoting a tweet by @kottke ↗
♥ 4↺ 1
Apparently Zuck thinks it's perfectly OK to support sexual assault, as VP of global public policy, so long as it's in your own spare time.
@MikeIsaac points to low morale at @facebook; frankly at this point I'm shocked to hear they have morale at all. nytimes.com/2018/10/04/tec…
♥ 2↺ 1
I've thought of it many times, as I'm sure have others, but running the backend and all just annoyed me.
Right. I also thought about how Web Audio might help. It’s not much! But then there’s the whole issue of people trying to game it, load, etc. If you don’t plan to make a business out of it, it’s not clear it works.
Though maybe there’s some kind of OpenStreetMaps annotation thing that could work here?
People who spend time, money, and energy preparing for some unlikely AI-based apocalypse should read this thread, slap themselves on the face, then read it again.
Quoting a tweet by @ScipioAcheronus ↗
♥ 3
The problem with going after all is that we only have so much bandwidth. The GAI threat is several degrees of speculative, but is getting solid funding and top thinker effort. Climate chaos is close to certain yet gets too little.
♥ 1
My only question is "how can I help?"
♥ 1
Yeah, there are problems in there.
But there are problems with that theory too. It would be hard to pull off at that scale.
It goes a bit beyond that, notably it starts under Obama.
It’s a classic French saying, I hadn’t realised it was Diderot before!
It makes sense to me, but then that’s not a topic I’m entirely foreign to. Happy to give more feedback but a bit more context would help.
♥ 1
Do they ever not?
Data breaches from famous companies grab headlines, but the ones you need to be worried about are those from companies you've never heard of.
Because they've heard of you. A lot.
Quoting a tweet by @WolfieChristl ↗
♥ 22↺ 11
I'm at a major Connecticut garlic festival and a woman not far from me is wearing an "International Zucchini Festival" t-shirt.
I wonder if that's a fighting statement.
♥ 3
That's quite derogatory, Jim. Clearly the Garlic King hasn't shown you just how many ways garlic can be eaten. Clearly, it is meant to be a staple, only held back by ignorance.
I don't think anyone will be surprised to hear that Google is really bad at data protection. The first step would be caring.
I'm shocked to hear that there are hundreds of thousands of Google+ users, though.
Quoting a tweet by @ericgeller ↗
♥ 8↺ 1
Do they explain how you make a *two-stage* water rocket?
♥ 1
Can we get some?
Whoa, they’re cool AF! I can tell they’re going to be super-popular at the office :)
I’m afraid I’d need a DeLorean to make it to @ParisWeb…
These “Cyberspace Building Crew” stickers and patches are about as lit as it gets.
cyberspace.builders
I know they have wonderful security teams but:
1) When a major data leak has to be uncovered 6+months later it doesn’t exactly breed confidence nor lead to good marks for ethics.
2) Chrome alone would justify failing them on data protection efforts, no matter what else they do.
♥ 2
My understanding is that they don’t know if it was exploited or not, and declined to disclose not out of security concerns but PR/legal ones. That’s not the same.
As for Chrome, I would be happy to entertain counterexamples!
♥ 1
I used to think that but the more I learn about Chrome the less Android seems worse — but that’s probably because I’m not learning enough about Android ;-)
I’m done cutting Google slack because they have some good people on payroll. They’ve built the Windows 95 of privacy.
♥ 1
TP is the biggest concern evidently, Firefox has announced they’re moving to default. There’s a bunch more in google.com/chrome/privacy…. More on Chrome+Android in digitalcontentnext.org/blog/2018/08/2….
♥ 1
I’m not sure how it’s an over-broad claim to state that Chrome or Android are data protection train wrecks. They are by far the biggest enablers of tracking today, and they’ve expressed no interest (that I’ve seen) in changing it.
As John hints, it is pretty clear that neither Chrome nor Android work for their users. They are classic two-sided market affairs. I would *love* to take a more moderate view, I have quite a few friends there. But I just can’t see the case for it.
I'd love to provide you with an answer but I'm not clear on what you're looking for. Are you disputing that tracking is heavily detrimental? Or that you given a choice between protecting your users or feeding your adtech you should go with the former?
Chrome is in a leadership position and choosing Google ad revenue over its users. Should they not be called out on this? I have spoken to folks on the Chrome team who don't find this outrageous...
♥ 1
I've called Firefox out on this numerous times. They have since made progress; it's far from perfect but working in the right direction is something I respect. Chrome isn't even trying. It's not a "weird place", they have decided their users just matter less.
I'm not looking for a bogeyman, I just happen to have a front seat to what they do to their users and force publishers into. Please explain which bit is subtle because it sure doesn't look that way from the trenches.
There is ample evidence that you can significantly block tracking without breaking the Web. It's been established beyond excuses.
The fact that they can fight surveillance effectively when they're not profiting from it only shows what they're deliberately not doing.
Besides, I'm not sure that government surveillance is very much blocked when you can just listen to an RTB feed and know almost everything that someone is reading.
Would you say that Safari is broken?
Some, limited, user-activated. Sure, everything is a trade-off, and doing the right thing is sometimes a little harder. I’m still not sure what case you’re trying to make.
♥ 1
Courage? No. "A little harder." It's like storing hashed passwords: it's more work, it's more resources. But doing it is a no-brainer. Everything involves a trade-off, some trade-offs are obvious. This is one of them.
It was subtle some years ago. I don't think at least the basics can be considered subtle anymore. Security is full of subtle issues, yet it's pretty clear that Win95 sucked at it. Basic privacy is not harder, and Chrome sucks at it to the point of not trying.
Ok, replace hashing with ACLs. They break so many use cases! You have to type your password all the time!
You don't think it's obvious a well-resourced browser should be trying? Is Google trying? I have yet to see TP breaking things. I can see how many people have blockers, presumably their Web isn't broken. If it's not black then it's the darkest shade of grey. So?
I'm not trying to troll you Ben, I'd love to get what you're getting at better, but you seem to be making the case that Win95 is too strong, it's more like the NT4 of privacy, and I'm not sure what to do with that...
I would love to have a productive discussion. I have reached out, with constructive questions. All I heard back was at best dithering, at worst slights about how browsers that care about privacy suck (not from junior people, either). Do you have a better option handy?
As have I! Finding a subtle approach to privacy is something I have to do every day. But just because it's often complicated doesn't mean it's never simple. And I just have not heard anything to redeem Chrome (or Android) in a long time.
Mostly Safari, apparently your approach to privacy is just press release fodder and you don't understand how the Web works.
That's why the GDPR has a journalistic exemption. If your lawyers are agreeing to those requests you might want to get a second legal opinion.
♥ 3
Well, you wouldn't want the ISPs to compete with your tracking 😊
But my original point doesn’t put in doubt that they’ve done “good stuff”. It’s that, looking at all they do and have done — good and bad — my overall assessment is negative with regards to privacy. When a new issue comes up, that is the background against which I evaluate it.
So regarding the G+ breach, this is obviously speculation but I can’t help noticing that they audited third-party access to G+ data right when the Cambridge Analytica (which is precisely about 3P API access) story broke.
That might well be sheer coincidence. Or it might be that they had never bothered to audit 3P access to user data before and scrambled when CA broke. All I’m saying is that based on their prior behaviour, I know which one I see as most likely. It’s just Bayesian, if you will.
“expenditure”
IANAL, but I am not sure that a small amount of extra academic credit would meet the definition (other issues notwithstanding).
Soda, prison, hypodermic RFID tracking, dystopian business plans, and then some — this story has everything. thehustle.co/three-square-m…
♥ 2
Is there a history of international criminal courts going against companies that either intentionally or through negligent haplessness aid and abet genocide?
It’s not. This isn’t grounded in GDPR, it’s an earlier ECJ decision. Search engines are on the hook not to keep information about you that is detrimental and no longer relevant. Relevance tends to be grounded in having paid your dues and mended your ways.
The fundamental idea is sound: you shouldn’t be branded for life if you’ve repaid your debt to society. How it gets implemented is a sore topic, however.
Is there a reason browsers allow scripts to prevent pasting to password inputs? The only use case is «I’m clueless about security and want to be a dick to my users about it.»
♥ 32↺ 18
Yeah, it’s on my long list of extensions to do at some point. It’s almost certainly not even hard!
♥ 3
But doesn’t that just override all clipboard events?
♥ 1
It’s like they’re actually trying to make you sick.
♥ 1
Well, it’s the Web, so there is almost always some fringe community with a fringe use case :) But I reckon: password inputs should only be used for passwords, and passwords should always be pastable. It almost sounds likely!
♥ 1
When focus is in a password field, you could prevent preventDefault quite easily.
How would that prevent F1 from triggering help?
1) That’s only when focused on input[type=password].
2) It only needs to be when the paste command is activated.
I really don’t see what the use case for overriding that there is.
True, but how often do you have a choice?
Actually the browser _could_ show a security warning when that’s done.
I’m retired man, I just complain about shit on the Internets.
♥ 2
Whoa. @trekonomics this might be fodder for your #FermiParadox?
♥ 1
I don't think it pushes it any more than the fact that we migrated from Africa pushes our evolutionary history down any line. It does make deep history potentially a fair bit deeper, though.
♥ 1
I need to watch that show yet again, it's been too long.
♥ 1
Dark chocolate is just an ingredient to make other chocolate things with.
♥ 5
I saw that same paragraph and it seems at best specious to me. Keeping two weeks' worth of logs for access to personal data by third parties isn't privacy by design at all, it's really poor data protection.
I don't want to speculate malice but "we just happened to find a problem similar to Cambridge Analytica right after that story broke" and "because we love privacy we have no logs of external access" are some really neat coincidences 😏
As I understand it, these aren't logs of what a user installed but rather of third-party access to their data. No?
♥ 1
Decentralised does not mean unregulatable, nor does it mean without IRL location. There are points of enforcement.
Also, it’s not clear that the personal data market is being decentralised — in fact, quite the reverse.
♥ 1
“All of the monster’s transactions came from voluntary exchanges between consenting people. Each individual transaction was free, but was the result?”
What happens if you replace “land” with “data” in this comic is… interesting.
Quoting a tweet by @seanmcarroll ↗
♥ 2↺ 1
There is. It’s… it’s standing right behind you!
♥ 1
For the subset of those apps that were installed apps, possibly, but was there ever an installed Plus client other than Google’s? These aren't installed apps.
But aven if it did, the balancing of that small piece of info vs knowing who accessed your data does not seem hard?
Great writing meets great subject matter in @ASoloski’s look at Tom Stoppard and “The Hard Problem”. nytimes.com/2018/10/16/the…
♥ 1
There’s been a trend towards Web Brutalism for a couple years now. And Bloomberg for instance has been hailed as having ridden that early, with a sort of Brutalist Light approach (if that conjunction of terms even makes sense).
♥ 6
I don’t know that it’s necessarily reactionary, though. Not all inspiration from the past is. Web design was long very constrained. In such an environment, you get a distinctive look from just applying a technique that others haven’t figured out yet, or that’s hard.
♥ 2
But once everyone can do something, the easy distinctive thing is to ditch that. The second we got built-in rounded corners and drop shadows sexy became defined as flat and square. So a return to websafe colours and the seven fonts isn’t all that surprising.
♥ 3
Also, web brutalism looks more raw and therefore more authentic. And brutalism overall is back in style, see this gorgeous thing I have been wanting ever since leafing through it last weekend: smile.amazon.com/Atlas-Brutalis…
♥ 4
It’s an interesting thesis, you can kind of see it in eg. e-architect.co.uk/images/jpgs/am…
♥ 2
I’d love to! I don’t have much in the way of professional reasons, though. We should team up with the Japan Times or something :)
♥ 1
If by this you mean the Adidas version then I agree that it fails on several accounts - but it's what it's trying to be!
In pretty sure it's then advertising through us rather than us doing the advertising though 😊
That'd OK, we're kickstarting our own IRB-analog at the The Times and I chair it, so I'll just wave this through.
That's how it works, right?
I can't claim all the credit, the pioneering work of Facebook and Google is clearly an inspiration to this IRB vision.
♥ 2
A classic trick is to track your current page in the session, because the app is written in ancient thin client mode. Adding a tab will really throw that off!
♥ 1
Dude, shouldn't you have considered what it means *before* accepting? And then ran as far away as possible?
I'm kidding, I'm thrilled that you were crazy enough to accept, and I know you'll do good. It's a fucking hard problem but it's worth solving.
♥ 6↺ 1
"Social media misinformation is becoming a newsroom beat in and of itself, as journalists find themselves acting as unpaid content moderators for these platforms."
Quoting a tweet by @nytopinion ↗
♥ 8↺ 2
@karaswisher asks some good questions in there. I would argue that ethics at the enterprise scale is governance. You build operational processes designed to foster principled outcomes. It's not as sexy as "Boss of the Ethics", but it's grounded and it works.
Quoting a tweet by @nytopinion ↗
♥ 1
Celui qui est “W / T” avec un “W” fait de deux triangles? C’est “Women In Tech”, le réseau interne des femmes dans la tech au Times.
Youpi!
In fairness, it tended to be painful as hell, right? I mean it often wouldn’t work, or the ISO was the wrong size, or it took forever, or then it worked but the burnt CD was bad quality that ended up useless after a while. How *did* we do it?
♥ 1
The idea is that the script loads but can’t recognise you (with a cookie). This is similar to ITP in effect. So FB will see the traffic but not know it’s you. (At least, not so readily.)
♥ 1
Evidently there are gaps in this, notably from fingerprinting. That’s why we’re seeing an increase in tracking vendors wanting to switch to fingerprints; it’s also why WebKit has been working hard plugging those holes. I assume Mozilla will too; last I heard G said they wouldn’t.
♥ 3
Putain mais pas du tout c’est absolument génial, je vais faire ça avec tous mes tweets dorénavant: managérial mais jeune. #punchline
I think you know why they’re not doing that :)
As to exposure, my reading is that they very much are, but they may have decided it’s worth the risk, or might be blinded to it for a variety of reasons.
♥ 1
OMG that’s amazing! And kind of insane! But also amazing! Best wishes and congratulations, and big hugs to the both of you!
♥ 2
Frankly, I can't even do canned whiteboard examples. And I've failed every interview coding test I've been subjected to. t.co/GqCk54VOAx
♥ 5
Seriously Rick, it's a rounded rectangle with knobs. And it doesn't even look that similar.
♥ 4
Ben oui! Ça serait chouette, ça mérite bien une petite bise 😘
Han. #punchline
Le goulot n’est pas la seule façon de fonctionner, le référent ne doit pas être un douanier. L’idée est d’être porteur de solutions plutôt que de validation/blocage. Si les gens savent que tu vas prendre en compte les spécificités de leur projet pour adapter un process général…
♥ 1
…et qu’ils voient à chaque fois que ça les aide, ils vont venir spontanément vers le référent. Chez nous, *toutes* les initiatives data passent entre mes mains (et il y en a beaucoup); mais ce n’est pas un goulot!
Le bus factor est limité par le fait qu’on soit 4, qu’on documente tout, et qu’on fasse beaucoup de formations. Évidemment ça dépend de la taille de la boîte, mais au pire si l’équipe DG n’est pas là les gens peuvent utiliser des process de base.
En gros il y a un fallback qui est que “tout le monde porte les données au quotidien” — mais c’est juste pour que ça roule en cas d’absence de référent, pour du ponctuel.
I need to tell you a few things about multitasking...
♥ 1
"In 2018 Amazon could claim $8bn in ad sales worldwide, contributing perhaps $3bn in operating profit"
Huh, 37% profit for an upstart. I guess competition in the adtech space is working fiiiiiine.
espresso.economist.com/7dc7538f41cbee…
↺ 2
Where does one get those stickers?
Is that what they call PR these days?
♥ 2
The Amateur Astronomers' Association of New York spend their Friday nights volunteering to teach overexcited kids about science and space.
They're fucking heroes.
aaa.org
♥ 5
To quote @WilliamsJames_, "Freedoms of the future are freedoms of the mind." Tell your kids about attentional harvesting!
Quoting a tweet by @NellieBowles ↗
♥ 10↺ 4
The one thread to read.
Quoting a tweet by @drvolts ↗
No YouTube, ever. Way too much kid hostile content.
Robin
I've never seen porn but I've seen torture stuff recommended in the middle of cartoons, crazy stories about aliens in New Zealand when they watch animal docs, conspiracy theories about freemasons when they watch history stuff. It's just bad.
They are young enough that I don't worry too much about this part, but I also recommend this:
nytimes.com/2018/03/10/opi…
Completely agree. YouTube just has too much random stuff that's hard to vet. I switched my girls to only use Netflix, there's plenty of choice, no bad surprises, no COPPA violation.
"The world is made up of networks of kisses, not of stones." --@carlorovelli.
This is better process philosophy than process philosophers make.
I'm pretty sure you're a mermaid Anna. Don't give up.
I knew that was you.
I have to copy my notes first, but after that sure!
♥ 1
Brazil 😿
Eventually, we will prevail.
♥ 2
There are parts of Manu's takes on the #FermiParadox that I disagree with (and more that I agree with), but they're always fascinating.
Quoting a tweet by @trekonomics ↗
♥ 4↺ 1
@mariejulien Je ne peux pas prendre de photo parce que mon téléphone est défoncé, mais j’ai les autocollants — ils sont top! 🤗
It would likely justify a longer treatment, but here are some notes. If I might say: you're not being mediocre enough! Mediocrity requires us to think far away from specialness and consider the possibility of being sentient, civilised, or transmitting than seem obvious.
♥ 1
The rarity of civilisation-level intelligence on Earth is, I think, a point that would require greater substantiation than we have data for. To make a parallel, look at how Native American civilisations are perceived: as horse-riding hunter-gatherers.
♥ 1
This despite the facts that: they're still here, it's a short few centuries old, historians care, they are human, they weren't very different from European medieval agrarian civilisation. Yet we have lost much knowledge about that world.
♥ 1
Yes, I think we agree on a lot; but (unless I misread) you seem to conclude that it’s very likely we’re alone whereas I conclude that we have no clue what otherness is.
♥ 1
Yeah, I'm not ready to rule out that there's a subglacial mycelial mat on Europa right now thinking itself alone because we haven't sent it any spores 😏
♥ 1
"The Order of Time", by @carlorovelli. A strong and lucid overview of time.
Is there documentation on how big various browser teams are?
How Google wants to monetise your kids but own none of the responsibility for it, episode #782.
nytimes.com/2018/10/30/sty…
♥ 2↺ 4
Why wait five years? nytimes.com/2018/10/23/bus…
There is some hope in this thread. t.co/8q27nnSH3i
♥ 2
Yeah, chocolate is totally overrated.
♥ 1
Engagement, and engagement, and engagement,
Tweets in this petty pace from day to day,
To the last syllable of curated time;
And all our yesterdays have liked some fools
The way to dusty death.
Go read some @karaswisher before the Web is over.
nytimes.com/2018/10/30/opi…
♥ 38↺ 7
Hot take:
Data Ethics > AI Ethics.
♥ 45↺ 4
If you like data, visualisation, and building rocking cool tools and want to join a badass team (and work with me!) check these out:
Manager, Data Products
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
Lead, Data Visualization
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
Lead, Data Products
nytimes.wd5.myworkdayjobs.com/en-US/DataInsi…
♥ 6↺ 4
You would be working with folks like @femalegazebot and @podopie — believe me it’s a treat.
I think that @dtemp_09f9’s blockchain costume has to win a prize for Most Literal (and it’s quite scary too), and I have to say that whoever in InfoSec dressed as @mikiebarb did an amazing job.
Quoting a tweet by @neenahyena ↗
♥ 2
You know @NYTCooking is there for you, always.
cooking.nytimes.com/recipes/101828…
♥ 1















