He didn’t manage to trigger it on me and also didn’t raise it as a red flag.
WYGIWYG
- 1 Post
- 7 Comments
rumba@lemmy.zipto Showerthoughts@lemmy.world•Vibe coding takes the "science" out of computer scienceEnglish5·3 days agoTip, when you’re done having it do your project, restart the chat, tell it that it’s a security engineer and ask it to check for any vulnerabilities or anything that should be done to protect the site against malicious activities. Ask it if there’s anything with your hosting or site that should be addressed.
Most of the training data out there is on how to get a task done and the best way to do the task, there’s a lot less training on completing a project with security in mind. There is however a lot of data on specifically how to secure already written code so it can do it, but it generally will not unless you ask it to.
rumba@lemmy.zipto Showerthoughts@lemmy.world•Vibe coding takes the "science" out of computer scienceEnglish7·3 days agoIt’s an interesting tool.
It can shave hours off of experienced programmers work if they use it in the right scenarios. You can use it in places where you need to do something that’s mundane but fiddly. It’s suboptimal for crapping out a large project, But it’s super effective at generating a single function or module to do a task. It might even come up with a better idea than you would use for some things. The key is if it does something that’s not quite right or not the best idea You need to be able to read it to understand that it’s going a little off the rails.
If you’re a spreadsheet junkie, It’s capable of writing really really complicated rules without getting lost in the minutia.
For non-developers that don’t know anything it’s a dicer proposition. After a couple thousand lines of code You might start running into interesting problems. When it starts having to go and do problem solving mode, and you’re just feeding it back The errors and asking it to fix the problem You can get bogged down pretty quickly.
For DevOps it’s the diggity bomb. Practically everything in that profession is either a one-off quick emergency script or a well thought out plan of templates.
Here are my five Amazon accounts give me a shell script that goes into every account in every availability zone, enumerate every security group and give me a tool to add remove or replace a given IP with a description and port based on the existence of other IPs descriptions or ports. Or write me an ansible script to install zabix monitoring playbooks with these templates.
The last time I had a physical that actually used one of these:
PA: here let me test your reflexes. Plink
Me: absolutely nothing
PA: PLINK
Me: absolutely nothing
PA: PLINK PLINK
Me: absolutely nothing
PA: come on, work with me here.
I had no idea that I had to participate I thought this was supposed to be automatic.
Nobody in the past decade has tried to do that to me.
Yeah, it was crazy, at 25 I could sprain my ankle and be right as rain the next day.
By 35, fucking up a joint was a couple day ordeal that required some painkillers.
By 50, nursing a tendon irritation for 2 weeks is not at all unusual. Having to wait on the painkillers for a few days just post injury to make sure I rest the injury properly is becoming more necessary.
I’m pretty sure you can fight all of this off with an exercise regiment and eating well. But, I haven’t done that for a very long time.
rumba@lemmy.zipto Leopards Ate My Face@lemmy.world•Self-Described Fascist Begs for Donations After Claiming Viral Debate Got Him FiredEnglish2·6 days agoNah, just dox em so that everyone starts trying to grift them out of cash. fresh meat.
There are names and pretty damning proof, there are no prosecutions other than the two show runners.