I really appreciate you grappling with this in public! My personal experience these last few months has been very similar to what you describe: an eerie combination of doubt and dread about the environmental and societal effects perpetuated by an obscene concentration of power and wealth, alongside a real sense of delight in the possibilities opened up by a meaningful leap in what the tech can do.
Add in an already polarized media environment with a lot of people yelling (understandable!), many not reading beyond headlines (regrettable), and everything moving so fast - you really do end up with a kind of perpetual headache.
Talking about it more, engaging with the nuance of it, wading through the murk in community: I think that's the only way through.
Many People: Wildfires are out of control and burning everything in sight
Counterfactuals: Well actually fire is useful in certain situations
These are both true because they differ in the assumption of whether or not the fire is controlled. So yes two things can be true if they are said in different contexts.
freddyb I know Mozilla used to link to embargoed bugs in Bugzilla after they had been fixed and shipped, is there a reason why Mozilla isn’t linking to any of the bugs yet mentioning them in several posts?
The Firefox 150 release notes link to this advisory, which has a bunch of individual callouts and then rollups for categories of repetitive bug - you can click through for the individual bug numbers, but there really are hundreds.
Please take a look at this advisory for example. How many of the 271 claimed bugs are on there, compared to ones found by independent security researchers and fuzzers?
What I’m asking for is the links to majority of the 271 bugs being claimed.
phinze | a day ago
I really appreciate you grappling with this in public! My personal experience these last few months has been very similar to what you describe: an eerie combination of doubt and dread about the environmental and societal effects perpetuated by an obscene concentration of power and wealth, alongside a real sense of delight in the possibilities opened up by a meaningful leap in what the tech can do.
Add in an already polarized media environment with a lot of people yelling (understandable!), many not reading beyond headlines (regrettable), and everything moving so fast - you really do end up with a kind of perpetual headache.
Talking about it more, engaging with the nuance of it, wading through the murk in community: I think that's the only way through.
Garbi | 20 hours ago
Many People: Wildfires are out of control and burning everything in sight
Counterfactuals: Well actually fire is useful in certain situations
These are both true because they differ in the assumption of whether or not the fire is controlled. So yes two things can be true if they are said in different contexts.
retornam | a day ago
freddyb I know Mozilla used to link to embargoed bugs in Bugzilla after they had been fixed and shipped, is there a reason why Mozilla isn’t linking to any of the bugs yet mentioning them in several posts?
gulbanana | a day ago
The Firefox 150 release notes link to this advisory, which has a bunch of individual callouts and then rollups for categories of repetitive bug - you can click through for the individual bug numbers, but there really are hundreds.
retornam | 23 hours ago
Majority of the bugs on there are from independent researchers and fuzzers. I see a few ( far less than 5 of the 271 claimed, credited to Anthropic).
legoktm | 17 hours ago
The count discrepancy was previously explained at https://lobste.rs/s/glpz3r/zero_days_are_numbered#c_nelno4
sanxiyn | a day ago
What are you talking about? As I understand Mozilla linked to all bugs as usual.
retornam | 23 hours ago
Please take a look at this advisory for example. How many of the 271 claimed bugs are on there, compared to ones found by independent security researchers and fuzzers?
What I’m asking for is the links to majority of the 271 bugs being claimed.
[OP] freddyb | 22 hours ago
Kinda off topic, but scroll all the way to the bottom. Last 3 CVEs.