• 1 Post
  • 15 Comments
Joined 3 years ago
cake
Cake day: July 9th, 2023

help-circle
  • I’m not buying this. Sure minimizing dependencies is a good practice, but not updating? That’s a recipe for disaster.

    It’s important to note that you can’t predict supply chain attacks or vulnerabilities, and vulnerabilities are much more common. Also, while frequent updates might expose you to that supply chain attack more quickly, it also mitigates it more quickly. Frequent updates in combination with vulnerability scanning, and limiting downloads to reputable sources (that try to prevent supply chain attacks and discover them quickly) is a much better approach.

    There also the maintainability argument, that I’m having right now with a couple of our legacy software teams. Not updating can lock you into the past, for entire ecosystems of dependencies. You cant update if you have to, you cant take advantage of new features anywhere in the ecosystem, and it’s now an expensive emergency when something stops being maintained or has an unresolved vulnerability. If you’re being continually kept up, then choices or features are easy

    Then the goal is how do you automate your updates as smoothly as possible so they do not become noise, do not create extra work? Tools like dependabit and renovate bot have a lot of config options to help that









  • Five years ago I splurged on a higher end laptop than I’ve ever had, and regretted it from the beginning. Even when new, the battery barely lasted an hour, and hyper-v was unable to do the VMs I wanted

    But I needed Windows for two reasons: tax software and gaming with my kids. Well my tax software also supports Mac and my kids are in college, so there goes my reasons.

    So I booted up the windows laptop to do my taxes. It started with not knowing my pin, my bad. But the alternate login was to use the mandated online account that I don’t use. That password change sent email to my ex: yikes. Then ad after ad after popup, so crazy how unusable it became

    So yeah, laptop sucks and is showing its age, big waste of money, no more reason to be tied to windows, poor experience ……. Really selling me on a Mac for my next one