葡萄牙

葡萄牙并不在我的bucket list上,但冬天要从纽约找个不太远的地方去避寒,葡萄牙算是个不错的选择。于是在xw最近的一个案子settle之后,就临时决定来葡萄牙了。

来了之后我们才意识到里斯本虽然每天有十几度,但已经是这儿的“隆冬”,也是旅游的淡季。好处是餐馆都很容易找到位子,坏处是并不适合去海滩玩水上项目,对我们来说倒也没什么。有几次走进空空如也的餐馆然后发现做得其实很不错,都有点不太适应。葡萄牙的物价确实挺低,四星酒店200一晚,在城里到处Uber每趟只要几块钱,都让人怀疑能不能赚回油费。

我们这次主要都待在里斯本,中间去了一天Sintra。本来考虑过去Porto,但最后两天天气不佳加上要来回换酒店有点麻烦,于是作罢。这一带的游玩项目大概也是欧洲老几样:教堂宫殿城堡。葡萄牙的宫殿繁多,大小不一。xw的一个同事刚租了一个宫殿办婚礼,据说跟在美国租个普通venue的价格相当。有家挺多人推荐的餐馆Palicio Chiado直接就是改建了一个宫殿,进门沿大理石扶梯上楼就进到一个天花板上吊着只金狮子的大堂,相当浮夸,好在吃得还不错。

里斯本1755年有一次大地震,加上之后的火灾,几乎全城尽毁。于是现在看到的很多景点古迹其实年头并不长都是18xx年兴建的而已。比较有意思的是市中心的Carmo Convent,是一个当年的大教堂屋顶被震塌了但是立柱大多幸存,于是干脆决定保持了没有屋顶的状态,倒也很好看。

Sintra是里斯本附近的一个小城,集中了几个宫殿城堡。最有名的Pena宫在一个小山山顶,配色十分鲜艳,大块红黄蓝,加上圆顶和箭楼,还有脏兮兮的外墙,莫名有种低配版迪斯尼即视感。另一个城堡有点哥特感,加上大户人家依着小山修的庭院还有个带有莫名精美的回旋梯的地洞。在里斯本待超过三天的话可以去一下Sintra。

葡萄牙的一个特色是瓷砖。到处都是瓷砖装饰,有繁复的花纹,也有大幅的壁画。在很多意想不到的地方都会冒出瓷砖的装饰来,很是精巧。和瓷砖相通的是陶器,很多质量精美的陶器店,纪念品店里的陶器也是远超其他地方的水准。里斯本有个瓷砖博物馆,满推荐去看一下。

里斯本的旧城区还有一个特点就是喜欢用碎石铺路。人行道上的碎石都磨得有些发亮了,走起来稍微有点打滑。车道则是颠簸不已,在旧城坐车一路都在颠。里斯本是个山城,道路上上下下,有不少观景点可以俯瞰色彩斑斓的建筑和房顶。搞笑的是一个出租司机跟我们说里斯本是修在七座山上,我想起来去年去Bath也说是七山之城,于是去查了一下,发现了这个Wikipedia页面,原来有这么多七山之城。。。

葡萄牙作为一个昔日的海上霸主,有个航海博物馆也可以去看看。十五十六世纪的时候葡萄牙人航海西至巴西,东达印度日本,几乎把整个世界通过海运连在了一起。不过在里斯本看景点往往会感到一些不复往日荣光的寂寥感。一个走了几百年下坡路的昔日帝国,可能对人的心态也是有影响的吧。

在里斯本这些天的主要活动其实并不是逛景点,而是吃。。逛景点只是为了空出肚子吃下一顿。里斯本的海鲜很好,有著名的地中海红虾,上次我们在西班牙吃了一个之后便念念不忘,这次总算过了瘾,不过红虾这东西味道鲜到有点顶,属于吃了一个一两天之内就不能再吃的那种。还有小河虾小海螺各种螃蟹。在这儿这几天几乎每天海鲜不停,终于到了最后一天吃出了消化不良。。我生日当天处于一个低烧状态躺了大半天。

这次去了大概是里斯本最有名的餐馆Belcanto,上榜World Best 50。一顿四个多小时的晚餐吃下来相当满意。这家店提供两套tasting menu可选,一套经典款,一套创新款。几个人一起吃可以分点不同的互相尝到。从开头的小delight就很惊艳,后面的也每道都可圈可点,尤其是鱼和红虾的菜。十分推荐。里斯本的餐厅总体水平都不错,选Google Map上review多分数高价格也比较贵一点的,基本都错不了。专门吃海鲜的话可以去Cervejaria Ramiro。

在葡萄牙的一个意外项目是晚上四人合作打穿了马里奥Wonder。。这个游戏三四个人一起玩还是很热闹的。

Published
Categorized as blog Tagged

2023

2023是很多事情的一年,重点有三:

  • 珠峰大本营
  • 告别Flux,开始了Firsthand

今年的旅游数量还好。年初去了以色列,四月尼泊尔,八月魁北克,十月墨西哥城和德州,加上三月和五月两趟伦敦出差。尼泊尔这趟hiking很棒,但是除此之外就只有德州这一趟hiking trip了,难怪我现在觉得有点憋得慌。

今年游戏玩得似乎不多,而且出现了好几个打了一点放下或者想玩没开动的游戏,让我有点忧心。

  • 最终幻想16:老牌迟暮,玩到后来比较鸡肋,以强迫症为动力还是通关了。
  • 马里奥奇迹:玩了一点就放下了,一个人玩这游戏不是很有意思。
  • 街霸6:玩了玩桑吉尔夫上网打了打。一键发大招的modern control模式很友好。
  • 塞尔达王国之泪:今年的年度游戏无疑。虽然没有前作那么开天辟地,但也达到了不负众望的程度。
  • Diablo 4:个人觉得还不错。
  • 火焰纹章Engage:又一个打了一半被别的事情中断之后就没再捡起来的游戏。

今年的桌游依然是被Ark Nova统治的一年。。打了几个月之后入手了海洋馆扩展,于是又重拾起来兴致勃勃的玩了十几盘。但我在网上玩了大约两百盘Ark Nova。。等级分数到了400之后开始上上下下,有点下棋的感觉,也就没那么好玩了。跟平时一起玩桌游的朋友玩的话也有点熟练度相差过大,伤感情。

玩的另外一个深度桌游是Hegemony,扮演工人资本家的主题很有趣,游戏本身设计得很有深度,然而好玩程度差了那么一点,四个人轮着用了一遍各个角色之后就有点懒得玩了。再就是Brass翻出来玩了几盘,还有Nemesis这个外星逃脱的主题游戏也是初看很有趣但不会想重复玩。明年要开发新桌游了。

今年倒是看了不少不错的电视剧:

  • 请回答1988:我很少看韩剧,看到这个时代为主爱情为辅的韩剧倒是很喜欢。虽然煽情煽到特别用力的时候也偶尔会吃不消,但大体还是觉得浓淡相宜。
  • Scavengers Reign:意外发现的科幻动画,很不错。
  • 异世界归来的舅舅:游戏主题的动画在我心里会有不少加分,如果做得好的话就会很喜欢。前几年的HiScore Girl,今年则是这部。
  • The Last of Us:今年我最喜欢的美剧吧,不仅仅是因为科幻游戏主题,感觉整个剧就是做得很好。

40岁于我是开始感觉到自己有些变老的一年。中年开始健身是一个典型的反应吧,意识到自己的mortalness,身体不再像年轻的时候一样可以随意挥霍。数个游戏打不起兴趣来玩,也让我有点忧心自己是不是玩不动游戏了,但年底又玩了一些,于是也可能只是有几个阶段忙工作顾不上。年底去了趟漫展觉得真的有点看不动,作为一个对原神嗤之以鼻的老玩家,大概和年轻一代的文化的确脱节了。Oh, and the fucking reading glasses…

Flux到了今年进入了一个shit show的状态,有道是85%的收购都是失败的,我想我们很确定不是那15%了吧,lol。对我个人来说,趁着GenAI这一波热潮出来再创个业也就变成了一个并不艰难的决定。尽管如此,到年底的时候还在那边的同事突然一起被裁掉还是很意外的。五年的旅程就此划上句点,长痛不如短痛。个人觉得也未尝不是一件好事。

2023是跌宕起伏的一年,有很多值得想念的人和事。I’ll treasure the memories.

Published
Categorized as blog

Final Fantasy XVI

年底放假这几天把搁置了几个月的最终幻想16捡起来通关了。打到后来对这个游戏的感觉有些五味杂陈。简单来说这是个优缺点都很明显的游戏,打到后来虽说比上代要好一点,但也还是算不上好玩。昔日JRPG的代表作如今落到这般田地,也是有点唏嘘。

本作的优点是延续了系列画面和音乐的优势。场景和人物都画得很漂亮。虽然场景偏灰暗没有地平线那么好看,但人物实在是美型太多了。西方这些游戏公司真的应该从日本引进一些捏人的技术。。战斗也是有大段大段类似看电影的桥段,保持了最终幻想的味道。召唤兽和水晶魔法这类动画在这个年代还能做到让人不审美疲劳已经很不容易了。音乐可能是本作最大的亮点,场景音乐和战斗音乐都很棒。

可以看出本作是在试图进行一些颠覆的。最大的改变大概就是战斗系统变成了全程操作主角一个人,相比一般日式RPG的三四人小队配合作战,这次更像一个简化版鬼泣。直接带来的结果就是剧情大部分时间都没有“队友”可言而是主角一个人在到处乱跑,其他角色存在感极为稀薄,就连正经在谈恋爱的女主角都没多少戏份。(Btw最终决战是三个男的冲过去女主被落在家里也是醉了。。)本作的剧情可以说不仅是老套,连一般RPG提供的那些定番满足感都没提供到。

在演出方面很明显的一个变化是成人向。不打码的F word和床戏,男女主之间不再是点到为止的暧昧而是真的谈起了恋爱,还有偶尔显得有些暗黑的剧情,比如去救人结果赶到发现都已经挂了这样的支线任务。个人觉得这类改动不过不失吧。

战斗方面除了招式演出效果比较华丽之外,就真的很无聊。每个招来来去去用个几次很快就找到一套自己习惯的无脑打法,然后就重复到学到下个新招。我觉得我前期就平砍了好久。。然后就靠身边转火球和泰坦的反击技打了一阵,然后是巴哈姆特的激光炮,最后是斩铁剑。套路有点过于明显,也没有什么激励机制让你去研究怎么能打得更好。道具金钱这些几乎全是摆设。有种战斗系统动画做好了但是可玩性整个崩掉破罐破摔的感觉。

不知道几时会出FF17。觉得要么复古回去,要么就要再激烈一些的变化才行了。

eBay Account Hacked

Last month right before our trip to Mexico City, I got a text message saying my PayPal account had a $11k charge and asking me if it was my authorization. I immediately replied no and verified that was a legit message from PayPal. We went onto the trip and I didn’t think of this matter in the next few days.

A week later, I noticed our checking account had a $11k withdraw from PayPal! WTF?! I called the bank immediately. They said the only thing they could do was to close my checking account and open a new one, and suggested me to contact PayPal first. Hence my month-long wrestling with PayPal began.

Before I go on to lay out my experiences with PayPal, I’ll list findings from our forensic checks of how the orders were placed without our knowledge. The result was very shocking to me.

  • My checking account was charged because it was linked to my PayPal account.
  • When the 11k charge happened, I got hundreds of spam emails within a few hours. Gmail blocked most of them but still more than 100 showed up in my inbox. Apparently hackers tried to overwhelm my inbox so I miss any alert emails.
  • My PayPal account was linked to Wen’s eBay account before.
  • Wen’s PayPal account was also linked to Wen’s eBay account, and also had 4 unauthorized charges since Aug 2023, total ~8k$. ~$4k was charged to our credit card reward points(!), which was very sneaky as reward point transactions have way less notifications and checks than usual credit card charges. The other ~$4k was charged to someone else’s card that hacker added to Wen’s PayPal.
  • Wen’s eBay account was hacked and all the orders were placed there. The orders were “hided” in eBay (not sure why eBay even has such a function…) so it was harder to notice at first. Wen’s eBay account didn’t have 2FA enabled before this. So it was a weak link. At first I thought this was the “entrance” the hacker found.
  • But a few days later I found Wen’s gmail was also hacked… there was a filter created in gmail to delete all emails with the words “eBay” or “PayPal”. This was why we didn’t notice any of the hack orders. Wen’s gmail apparently didn’t have 2FA enabled until Nov 2022. But she did place some order in Aug 2023 and received the emails. So the filter was created within Aug 2023, after her last legit order and before the first hack order.
  • eBay support said the hacked orders were placed from our home IP.
  • Wen’s Google account sessions don’t have devices or locations we don’t recognize.
  • Hacker’s “entrance” was likely one of Wen’s devices that has her gmail account logged in, and/or eBay logged in.
  • But at the end, I couldn’t confirm which device was hacked or how exactly the hacker took control of Wen’s accounts.

In the past few weeks I files several tickets with PayPal and had numerous calls with their support. The resolutions were really inconsistent and not transparent at all.

  • For the 11k charge on my PayPal account, I filed a ticket and claimed it was an unauthorized charge. I supposed it would be an easy case, as I replied the text message immediately and told PayPal it was unauthorized when the charge happened. But I got turned around several times. The case was denied after a few days. I called support. An agent told me to change it to “item not received”. I waited more days and seller apparently provided shipping confirmations, so the case was denied again. I called the support again to reopen the ticket and I reiterated it was a hack, and the case was denied after another week… I called PayPal support again and filed a new ticket and reiterated the same information again, and it was finally refunded this time…
  • I filed a ticket for the four hacked charges in Wen’s PayPal account as unauthorized access as well. To my surprise, three of them were refunded very quickly. But one smallest charge was left out and not refunded for unexplainable reason… I called PayPal support and one agent said she filed an appeal for me (essentially reopened the ticket). A few days later it came back denied again… I’ll keep argueing with PayPal support.

So in summary:

  • I got ~19k back among the ~20k stolen money (including ~4k on someone else’s stolen card), not too bad…
  • The hacker went away with the goods they bought. The refund I got probably came from either the seller or insurance.
  • I still don’t know exactly how the accounts were hacked…

—–

Months later.. the hacker stroke again! A morning in April 2024, I woke up with several email notifications of Wen changed her PayPal password! I set up an email forwarding rule from Wen’s email to mine for any email with keyword PayPal or eBay, in a similar way as the hacker. And they stepped right in..

By examining Google account browsing history, I found the culprit was a mini gaming PC we bought from China last year, brand is MinisForum and model is HX99G. The hacker apparently controlled the PC’s browser which has Wen’s email logged in. They remotely controlled the browser to reset PayPal and eBay passwords, but I had removed all linked cards/accounts from PayPal, so they couldn’t do much.

I installed a bunch of anti-virus software to the computer. Norton found a Trojan malware camouflaged as a .NET runtime, and blocked a bunch of malicious traffic from east Europe. By examining the malware file creation time, I’m relatively sure they were installed before I bought the PC…

I wiped and reinstalled the system. A windows installation USB drive needs 8GB these days! It has been years since I installed a Windows and dealt with drivers. I learned Windows 11 didn’t let you install without Internet, but the WiFi card of this PC doesn’t have driver built in Windows, so I was stuck there for a while… and it took another hour or so for me to figure out how to install Bluetooth driver without a mouse. Fun times.

Published
Categorized as blog

前司裁员

上周二(Nov 14)在办公室正开着会,手机接二连三的收到短信。一看之下吃了一惊,我刚离开不久的B司大裁员了。说是要裁1/4的员工。最让我震惊的是Flux的人全都被裁了。Flux的产品虽然近半年来确实没几个客户在用,但是有一个大客户在做集成。一下子把人全都裁掉看起来是要砍掉这个产品的势头,不知道如何跟那个客户公司交代。但我又听说这事并没有通知到那个客户那里,唯一一个和客户直接对接的人没有被裁,难道要上演一番空城计?无论怎样,不再是我的问题了,哈哈。

一年前业界开始纷纷裁员的时候,我的想法是比较中立的。从员工角度来说,毫无准备就被裁掉往往会直接开始谴责公司。但从公司角度来说,生存和盈利能力毕竟是根本。顺风顺水的时候可以说善待员工自然就会带来收入,但到了困难的时候裁员收缩规模可能确实是必要的生存手段。队伍一团和气最后做不下去的公司多了去了,往往到了没钱的时候和气也维持不下去。

但这次听说B司的裁员的时候我的心态还是自然自动的站到了雇员这一边。首先年底节前裁员实在是很不地道,美国很多IT公司都是感恩节圣诞节放两周假,加上headcount到年底常常用得差不多了,这段时间找工作难上加难。再者B司给的severance居然只有两三周,少到发指。作为一个总部在欧洲的公司,欧洲那边裁员是要提前几个月通知,于是最后遣散费给少点也就罢了,毕竟要养员工几个月;美国这边裁员速度是按美国风格当天遣散,遣散费却是按欧洲风格只给这么一点。我真的是觉得这公司如果不挂掉的话是可以被放上黑名单了。被收购之后我还给他们招了十来个人,实在有点对不起这些被招进来的同事。

周四本来B司纽约办公室的几个人还约了一个happy hour,于是临时变成了after-shock rant session。大家一番推测到底这事发生之前谁知道谁不知道,感觉知道的人还是比较少的,一两周之前还在各种开会讨论计划什么的。干活的人基本上都不知道。但某高层,aka.我前老板,很明显是知道的,还来纽约组织会议,就有些过假了。比较让我惊讶的一点是他在跟Flux的eng lead裁员talk的时候说裁整个Flux是他自己的决定,我有种不知道他这是要背锅还是要忏悔的感觉。

我现司虽然在招人,但对大部分岗位只限在纽约招,于是也捞不了什么前司的人,有点遗憾。

对这次被裁的人来说,我觉得脱离B司这个环境也不失为一件好事。希望他们都找到更适合的事情做吧。

我想了一阵这个裁员和Flux最近纷纷走人的因果关系。从八月到十月Flux的几个骨干依次离职,Product VP,Customer Service VP,我,Yue。我的猜测是B司裁员这个事情在我走之前就决定了,今年的数字一直不太好看,裁员这种事从计划到施行也差不多需要至少两个月。但我有点怀疑这一番走人导致了具体裁的人倾向了Flux这边。Anyway,焉知非福。

Published
Categorized as blog