The amount of much-needed work going into Firefox bug 1590215 for forced-colors support in DevTools is incredible to watch.
The amount of much-needed work going into Firefox bug 1590215 for forced-colors support in DevTools is incredible to watch.
Thunderbird for Android is coming soon! Find out how to get involved, from beta testing to localization to support and more, in our shiny new contributor guide!
(Seriously, by soon, we mean soon!)
Bubu reshared this.
Hackers showed me (there's video) how a website vulnerability let them locate, unlock, honk the horn, start ignition of any of millions Kias in seconds, just by reading a car's license plate.
They found similar bugs for a dozen carmakers over the last two years.
So this "CVSS 9.9" "unauthenticated RCE vs all GNU/Linux systems (plus others)" thing...
- Does NOT affect all GNU/Linux systems.
- Is not CVSS 9.9. I put it at a 6.3
It also requires:
1) The victim system has no active firewall to block incoming connections.
2) A user on the victim system must print something to a printer that mysteriously appears on the system that has never been there before.
If these two things happen, then command execution can happen as the "lp" user.
<yawn>
We get it. You found a vulnerability.
Lying about it to try to stir up interest in it is not appreciated by anybody who takes themselves seriously in this industry.
CVE-2024-47176, CVE-2024-47076, CVE-2024-47175, and CVE-2024-47177 have been assigned.
I wrote a benchmark of game engine performance primarily geared towards the types of 2D games that are popular these days.
Here are the results for Flutter, Flame, Unity and Godot. It's a long read with many caveats, so buckle up.
People on StackOverflow telling people to screw up #accessibility with the HTML dialog element defeats the purpose of using that element in the first place IMO. Please upvote my answer that corrects the numerous wrong answers, including the accepted answer, to this question if you have an SO account.
stackoverflow.com/a/79028606/2…
#webDev #a11y #html #css #javaScript
Reminder that the original Metatext third party app is no longer being maintained, as its lead developer had to step back due to health issues.
However, there is a new version of Metatext run by different people called Feditext which is currently in public beta testing. You can follow the official Feditext account at:
➡️ @Feditext
If you would like to join the public beta testing, it's on Apple TestFlight. There are more instructions here:
reshared this
Sutherland said the threshold for informing Canadians was deliberately set very high because of the risk that such an alert could disrupt an election.
[speechlessly confused/exasperated Mal.gif]
Samsung unveils the $649+ Galaxy S24 FE, a "Fan Edition" value-focused version of the S24 with a 6.7" display, Exynos 2400e, and 8GB of RAM, in five colors (Ben Schoon/9to5Google)
9to5google.com/2024/09/26/sams…
techmeme.com/240926/p26#a24092…
Philosophy and mental health are deeply interconnected. The practical wisdom derived from philosophical reflection offers valuable insights and tools for navigating life's challenges. By integrating philosophical concepts into counseling, individuals can gain a deeper understanding of themselves and their experiences, fostering greater mental well-being.
it would be very nice for the world and industry if what the C++ committee said here was true and if they actually cared about memory safety. but with a committee that writes nonsense like this, actively denying the problem, i don't see this happening.
> "Memory safety is a very small part of security."
-- C++ Committee submission to DOE laying out the language's memory safety strategy.
If you live in the United States, you can now order 4 free COVID-19 tests.
Visit covidtests.gov or special.usps.com/testkits for more details.
#covid #covid19 #CovidTests #FreeCovidTests #health #PublicHealth
1/2 "Na spiatočnej ceste vlakom sedeli vedľa mňa dve dámy. Rozprávali sa o niečo hlasnejšie, ako by sa patrilo, ale práve preto viem, že jedna z nich zarába v štátnej službe 900 eur – s príplatkami, keď je dobrý mesiac (august dobrý nebol).
Úprimne netuším, ako sa z 900 eur dá s aspoň nejakou mierou dôstojnosti prežiť, o nižších sumách nehovoriac, lebo aj tie mnohí ľudia dostávajú. A majú rodiny."
~ #SamoMarec
J'entends souvent des automobilistes râler que les cyclistes circulent sur la chaussée et pas sur les pistes cyclables.
Voici un exemple de pourquoi :
"pourquoi ils on des 4x4 a Paris?"
"pour mieux monter sur les trottoirs"
Aussi le truc qui surprend les Français qui émigrent à Montréal c'est la vitesse à laquelle ils se prennent des tickets de stationnement...
Hey Rust users. I want to call attention to this Hacker News comment by the primary developer of async/await support in Rust: news.ycombinator.com/item?id=4… Especially this:
> The state of async Rust is not better because no one hired me to finish it past the MVP.
I wish there was a way that all of us who have ever complained about async Rust could pool funds to hire this person. I'd be happy to be the first to contribute, though I don't remember if I've actually complained about this.
🛑 STOP 🛑
Before running that new program, are you sure it's legit?
You can verify the integrity of your downloads by verifying the checksum provided by the developer. ✅
You can learn how to make these checks in our new guide! 👉 tuta.com/blog/what-is-a-checks…
В общем, сегодня у нас было внутрикорпоративное событие, где народ хвастался достижениями. Грубо говоря, этакий all-hands meeting по поводу релиза внутренней платформы для разработки, и разные команды хвастались, где и чего они достигли.
Ну что я могу сказать: после пары лет работы в Samsung я навсегда перешёл на айфоны. А после вот этого, Я БОЛЬШЕ НИКОГДА И НИ ЗА ЧТО НЕ СЯДУ В ЛЕКСУС!
Там просто ААААААААА!
Если не нарушать NDA, то, грубо говоря, я думал, что в автомобилестроении MISRA, AUTOSAR, CI/CD с параноидальными конфигами уймы анализаторов, расстрел из пулемёта за неинициализированную переменную. А здесь — нуууу, довольно ответственная разработка софта. Просто разработка, просто софта. С обычным легаси, с костылями, с хард-кодом, с кривыми BSP, требующими хаков в компиляторе. Ну то есть буквально та работа, к которой я привык, но НЕ В МАШИНЕ ЖЕ!
В общем, я был максимально прав, что всю жизнь считал, что в машине из электроники достаточно инжектора. Ну если очень хочется, то можно ещё ABS, но не более.
А теперь вот я увидел изнутри, как работает современное авто, и это, сука, вызывает у меня ужас и дрожь по всему телу.
Знаете, как открывается окно в современных премиальных автомобилях? А я вам расскажу!
Кнопка на двери, которая опускает стекло — нифига не кнопка, а энкодер, и прямо в двери установлен микроконтроллер, который считывает её состояние, и отправляет в CAN. CAN подключен к специальному грубо говоря хабу, который работает на линуксе (да, для «вторичных» штук там просто линукс), пакет идёт через обычный iptables, проверяется на то, что его отправил тот, кому можно, и откуда можно, и маршрутизируется в настоящую голову на QNX, там оно ещё раз идёт через файрволл (на этоти раз pf, который Blackberry портировал с OpenBSD ещё во времена оны), потом проверяется ещё набором правил, и если всё в порядке, то отправляется обратно с линуксовую маршрутизировалку, по направлению к стеклоподъёмнику. там оно проходит первую мааршрутизацию, закидывается во «вторичную» CAN-сеть, там ещё раз маршрутизируется в дверь, и в двери ЕЩЁ ОДИН контроллер принимает сигнал, и начинает драйвером мотора тащить вам стекло.
Само собой, на каждом этапе машина может запретить или поменять команду, скажем, сама закрыть окна на парковке, или запретить их открывать на каком-нибудь шоссе. Да, машина теперь постоянно на связи с материнским кораблём и получает оттуда команды, а сама отправляет туда статистику, скажем, по парковочным местам, которые видит бортовыми камерами и радарами.
А знаете, зачем она это делает? Потому что современному лексусу можно просто голосом сказать «Припаркуйся возле офиса», и он будет ехать по улице, вокруг твоего офиса, пока не найдёт подходящее место, а потом припаркуется туда. И если ты по пути заметишь более интересное место, можно просто сказать «Нет, припаркуйся туда», и показать рукой, куда. И ОН ПРИПАРКУЕТСЯ!
И мне сегодня показали на реальном автомобиле, что это реально работает.
Короче, дамы и господа, я готов объявлять Батлерианский Джихад. А мой следующий автомобиль будет как на приложенном видео.
@menelion
Справедливости ради - стеклоподъемник сейчас не просто с кнопочки управляется, но и с мультимедиа, смартфона, а еще и с ключа (закрыл машину - закрыл и окна).
Так что простым присоединением моторчика к питанию уже не обойдешься.
А если все равно городить огород для управления окошком через инет - то не проще ли и кнопку в эту же архитектуру добавить?
The Cookie Consent illusion:
Most users want to opt out of being tracked. Yet, many sites boast of high consent rates.
How? Through deceptive design:
- Hiding the "Reject" button, and making "Accept All" prominent
- Auto-accept by scrolling the site, with no obvious option to opt-out
- Pre-selecting tracking options
- Not as easy to withdraw as to consent
As per European laws, consent for cookie usage must be freely given, specific, informed, and unambiguous.
How does one go about begging for money from strangers online to feed your kids? I am out of options. The gig work I was using to keep us alive after being unemployed for 6 months has dried up. We are down to $20. My car will be repossessed soon. I'll lose my house in the spring when I can't pay the taxes. The electricity and water and phone will soon be cut off. I have never had so much trouble getting hired in my entire career. I don't understand it. I'm tremendously talented and have decades of experience, but all anyone wants is LLMs, the one thing I'm not experienced with. I'm worried I might not be alive much longer.
EDIT:
My PayPal link is paypal.me/AaronHosford
Thanks in advance to anyone willing to help, whether it's a dollar or a boost. I don't have a target right now. Just trying to have food for dinner tomorrow. I'll make another post soon if I don't find a way to get some income first.
It's ok to deprioritize performance in favor of correctness. Unfortunately they don't seem to care much about correctness either.
We've been working with WolfSSL lately. I think we'll be promoting it more now.
I think if OpenSSL devs ever faced with a set of alt implementation choices, with say one better for security and code clarity (can overlap, imo) on one hand, versus say perf on the other, they should pick bias to former.
since ssh/sshd is one of the biggest security SPOFs in modern computing. a massive pinata for black hats
so I *hope* thats why their perf is non-ideal
Kdo získá digitalizaci stavebního řízení?
... Bartoš se snažil o to, aby do budoucna nešlo dělat vendor-lock-in; aby si jedna firma nemohla privatizovat celé ministerstvo tak jako to dělá OKsystem na MPSV. Piráti protlačovali otevřené technologie namísto proprietárních. Jenže tím, tou transparentností, drželi cenu dole, čili šlapali jiným po penězovodech. ...
Our refresh release, Endeavour Neo, is available
It was three months ago that our fifth-anniversary release, Endeavour, was released and with the upstream changes, we released this refresh ISO.
I know I mentioned in the Endeavour release announcement that the Endeavour release name would be a one-off release name that wouldn't be followed up by a Neo and Nova release. But we decided to name this
endeavouros.com/news/our-refre…
#News
zeromind
in reply to Thunderbird: Free Your Inbox • • •Looking forward to it.
Would be nice if the documentation explained what "SUMO" is. I could not find that anywhere.
Vincent Tunru
in reply to zeromind • • •zeromind
in reply to Vincent Tunru • • •For some reason the linked article, and the "getting started with SUMO" one do not mention/clarify that.
Thunderbird: Free Your Inbox
in reply to zeromind • • •Spoodle
in reply to Thunderbird: Free Your Inbox • • •Vincent Tunru
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to Vincent Tunru • • •08/15 🤍 #RIPNatenom 💔
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to 08/15 🤍 #RIPNatenom 💔 • • •🟩Enlo🟣
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to 🟩Enlo🟣 • • •Kalytis
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to Kalytis • • •Kalytis
in reply to Thunderbird: Free Your Inbox • • •Aamir
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to Aamir • • •Sollace
in reply to Thunderbird: Free Your Inbox • • •As a regular Firefox Android user, I am so there!
Would be awesome to have something besides the default Gmail app
j
in reply to Sollace • • •You do not need to wait. K9 mail (which was taken over by Mozilla to become thunderbird for Android, hopefully I described it correctly) got many improvements and is a great mail client.
Thunderbird: Free Your Inbox
in reply to j • • •52 Fighters
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to 52 Fighters • • •Nico 🦇
in reply to Thunderbird: Free Your Inbox • • •I was already wondering why there was no new release on GitHub since the end of June. 😅
Looking very much forward to the first stable release.
Peter
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to Peter • • •cboehmit
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
in reply to cboehmit • • •cboehmit
in reply to Thunderbird: Free Your Inbox • • •Thunderbird: Free Your Inbox
Unknown parent • • •Dan Milway
in reply to Thunderbird: Free Your Inbox • • •Nick
in reply to Dan Milway • • •@thrilway
I was wondering the same. I have the K9 beta installed. Will that morph into Thunderbird beta?
@thunderbird
Thunderbird: Free Your Inbox
in reply to Nick • • •Darren
in reply to Thunderbird: Free Your Inbox • • •