Posts
3070
Following
703
Followers
1553
"I'm interested in all kinds of astronomy."
Oh the Technical Specifications on the vendor page lists HP cartridges and something called Inkit (maybe https://inkit.se ?) for ink:

https://www.opentools.studio/

Maybe @rayckeith can clarify?
0
0
1
Open Printer

https://www.crowdsupply.com/open-tools/open-printer

I've been looking for something like this for a long time! Unfortunately I don't yet see how ink could be supplied, and as @pojntfx points out, the chosen CC license would make establishing a sustainable ecosystem difficult...
3
2
2
repeated

the AI slop in security reports have developed slightly over time. Less mind-numbingly stupid reports now, but instead almost *everyone* writes their reports with AI so they still get overly long and complicated to plow through. And every follow-up question is another minor essay discussing pros and cons with bullet points and references to multiple specifications.

Exhausting nonetheless.

11
2
0
repeated

joernchen :cute_dumpster_fire:

For the Berlin peeps:

I’ll be playing some tunes tonight together with the amazing poco1oco, don’t miss out https://www.eschschloraque.de/vinyltrottel-02012026

0
5
0
[RSS] The Story of a Perfect Exploit Chain: Six Bugs That Looked Harmless Until They Became Pre-Auth RCE in a Security Appliance

https://mehmetince.net/the-story-of-a-perfect-exploit-chain-six-bugs-that-looked-harmless-until-they-became-pre-auth-rce-in-a-security-appliance/
0
0
2
repeated

@oaklandprivacy Has any state made serious efforts towards outlawing the data broker industry outright?

As in, rather than forcing individual residents to opt out of data collection, mandate that as soon as you become aware someone is a California resident they implicitly treat that as a deletion request.

And banning the operation of data brokers within state lines (even if not handling CA resident data) including employing CA residents, selling data to CA companies, etc.

0
1
0
repeated

Project Zero Bot

New Project Zero issue:

Samsung: libimagecodec.quram.so buffer overflow in WINKJ_YcbcrWriteOutput1to1_YUV422_H1V2_toRGBA8888 during JPEG decoding

https://project-zero.issues.chromium.org/issues/450884207

CVE-2025-58480
0
1
1
repeated

California residents now have a real tool against the data broker industry.

The state has launched DROP, a single portal to demand deletion of your personal data from 500+ registered data brokers in one request, for free.

To start: https://consumer.drop.privacy.ca.gov/


1/2

2
13
0
@addison It's obvious you have a lot to say :) I think the presentation was also very good (using sokoban as a model is spot on!), it's just that internalizing new perspectives takes time, and I think we were better off getting multiple highlights of ideas instead of working through any one of them during the time given - we have the recording, slides, etc. to dig deeper as we like.
0
0
0
@addison Thanks for the great talk, definitely the most thought provoking one for me from this CCC! Have to watch it like 3 more times to get all the details though 😅
1
0
0
repeated

“Move fast and break kings.” I love @pluralistic and his rallying cry: https://pluralistic.net/2026/01/01/39c3/

0
6
0
repeated

Bonne année 2026 à tout le monde !

N'oubliez pas que l'appel à soumission est en ligne et que la date limite pour envoyer vos articles est le 18 janvier.

https://www.sstic.org/2026/cfp/

0
3
0
@hanno As another datapoint, MOTW bypasses worth CVE's at MS (e.g. CVE-2025-24061). It's not the same ofc. as an automatic control is bypassed in such cases, but at the same time users could choose to bypass the control after a warning (which the CVE also bypasses).
0
0
1
@murb @bert_hubert @signalapp Great, that can be a checkbox then! I'm also sure that support/M.W. didn't have to deal with as many angry Europeans if the us-east-1 only affected users over the pond :)
0
0
1
@filippo @freddy @hanno I'll save this thread under "even your vendor doesn't approve CVSS" for future reference
0
0
6
@embedding_shapes @rickoooooo nix-shell works though, leaving you with tasks that are too complex for that but don't justify a container. Now I'm sure that can be a deal-breaker too, but it's worth keeping in mind that there is room for ad-hoc tasks.
1
0
1
@rislandr I had an account, forgot the pw, couldn't reregister the last time I tried...
1
0
1
@hanno I'm bringing this up exactly because when CVSS will be assigned it will either show 0.0 or some really weird non-sense. The former would be likely a better, but still misleading scenario,. My bet is on MITRE publishing some non-sense though.
1
0
1
@hanno Not saying it's not a vulnerability but I think you won't be able to score this with CVSS that would make CVE registration weird.
1
0
1
Show older