Posts
4460
Following
738
Followers
1658
"I'm interested in all kinds of astronomy."
repeated

✨ A Sprinkle of JoyousJoyness ✨

That's all that matters.

Have a JoyousJoyfulJoyness day!

0
7
0
Edited yesterday
I can't wait for someone pivoting from a HF build container to Nvidia's ICS :)

#consolidation

RE: https://mastodon.cloud/@slashdot/117168550975017498
1
1
0
repeated
repeated

If Hollywood had any nerve there would be three different movies about a scruffy blue-collar hero who's down on his luck but finds meaning and new love cutting down Flock cameras shooting right now

https://www.theverge.com/tech/985155/flock-camera-destruction-vigilantes

2
5
0
@sassdawe Yeah I kinda understand, but this "OS as a service but not really" policy is confusing + docs could be more forward about "bleeding edge" features (like "we mark this purple because you won't find this in releases")

@0rkk0
1
0
1
@sassdawe @0rkk0 Yeah at least as something I can enable post-install from the original media

Edit: it's like 8GB already ffs, I think they aren't concerned about size...
1
1
1
repeated
repeated

wat

https://spring.io/security/cve-2026-59270

Spring Security's embedded UnboundID LDAP server (UnboundIdContainer) unconditionally registers an administrative credential and binds its listener to all available network interfaces.

An attacker who could reach the LDAP listener port could authenticate using the well-known administrative bind DN, and then read or modify entries in the in-memory directory.

1
2
0
repeated

Ryan Castellucci (they/them) nonbinary_flag

Partner: Open this for me?
Me: What are the magic words?
Partner: Please?
Me: ...
Partner: ...
Me: Squeamish...
Partner: ...
Me: Ossifrage.
Partner: looks up "Squeamish Ossifrage"
Partner: NERD!

2
4
1
@0rkk0 thanks, I know exactly it was introduced in 7.2. Fortunately I could temporarly move the VM out of the no-internet zone and install the latest version. Even after that it was quite frustrating that the default PS version remained the old one...
1
0
1
@kpwn IMO it's the hackerest movie out there if you look at the general simulation concept
0
0
1
The latest #PowerShell version is 7.6 (according to Wikipedia).

I need a feature from 7.2.

I downloaded a Windows image literally yesterday.

The feature is not there.
1
1
0
Since I was #FediLectured that I shouldn't expect street names to be displayed on AdTech maps, here is a map from our local bike rental app with zero street names to indicate where the bike stations actually are (map provider is #Mapbox)

#geoinformatics #cartography #bubi
0
0
0
repeated
Compromising Signal's Contact Discovery Enclave | V12
https://v12.sh/blog/signal
0
5
2
@david_chisnall My first thought is how to get my opponent sanctioned by donating to them 🤔
1
0
0
repeated

Trammell Hudson

Hope you're having a better day than the folks at Ziggo who pushed a remote firmware update that bricked eleven thousand customers' cable modems. https://tweakers.net/nieuws/251384/ziggo-vervangt-11000-modems-van-zakelijke-klanten-vanwege-technisch-defect.html
(in case you were wondering why we were offline for much of Monday...)

3
3
0
repeated

I've recently scanned DKIM keys for vulnerabilities, more extensively than previous scans. DKIM keys with the Debian OpenSSL bug are still very common. So are too-short RSA keys (quite a few 512 and even 384 bit keys, and *many* 768 bit, which is still difficult to break, but possible).
Also, a notable number publish a private key in their DKIM record. (This is only a problem if they actually use the same key elsewhere correctly.)
I tried disclosing things, but manual disclosure impractical for thousands of affected hosts and automated disclosure is difficult (plenty without security.txt, security@ often is rejected).
Replies to disclosures also show a common misunderstanding: People believe they are unaffected saying these keys are old and unused. This shows a fundamental confusion about how digital signatures work. Attackers don't care if you use insecure keys as long as they can use them.

Some stats for the latest scan: https://monitor.badkeys.info/dkim/2026-08-11-dkim-badkeys.html

0
2
0
repeated
Edited 3 days ago

Both Xcancel and Nitter have had cease and desist letter from Twitter. You can still follow Twitter account on Mastodon via account@bird.makeup and the like. Eg @c_c_krebs

2
15
0
repeated
Show older