devclass.com/2024/12/12/sqlite…
SQLite re-implemented in Rust to achieve asynchronous I/O and other changes • DEVCLASS
Turso, a developer focused on database solutions, is re-implementing the SQLite database engine in Rust, in order to […]Tim Anderson (DEVCLASS)
Happy Birthday, Zamenhof! 🎉💚
Today, we celebrate the 165th birthday of Ludoviko Lazaro Zamenhof, the visionary creator of Esperanto. His goal was to establish a language that would facilitate communication among people from different countries and cultures, thereby contributing to peace and cooperation among nations.
Esperanto is now the most successful planned language in the world, with millions of speakers in over 120 countries. It is utilized on the internet, in social media, and even in some universities and institutions. But Esperanto is not just a language—it's a movement. It represents a community of individuals united by the common goal of promoting peace, unity, cultural richness, understanding, and cooperation among all people. Esperanto is a language of hope, unity, and love.
Zamenhof's vision is more relevant than ever. In an era of increasing globalization and interconnectedness, Esperanto provides an opportunity for people from diverse cultures and countries to communicate and collaborate without language barriers.
Moreover, Esperanto serves as a valuable tool for inclusion and accessibility, thanks to its simplicity and regular structure. It not only eases communication between speakers of different native languages but also supports neurodiverse individuals who may struggle with learning natural languages or navigating irregular writing systems like English orthography. Thus, Esperanto can promote accessibility in education.
What makes Esperanto so special? Its simple, logical grammar and vocabulary derived from the most common European roots make it incredibly easy to learn. Its phonetic spelling features one sound per letter and one letter for every sound, unlike English or French. Beyond its practical benefits, Esperanto embodies the noble ideals of mutual understanding, cultural exchange, and the brotherhood of all people.
In our increasingly interconnected world, Esperanto has found new life on the internet, where online communities and resources allow learners to connect across borders. It is truly a language of the digital age, used for everything from casual conversation to academic discourse.
As we celebrate Zamenhof's 165th birthday, let us embrace his timeless vision of a more harmonious world, where Esperanto serves as a bridge between cultures. By learning this beautiful language, we honor the legacy of its creator and take a meaningful step toward a more peaceful and productive coexistence for all.
Happy birthday, Zamenhof! Your dream lives on. ✨ Thank you for your inexhaustible legacy and the inspiration you have given us all. Let us unite humanity and reach for the stars! ✨
---
**Interesting Facts about Esperanto 🌎💚:**
* Esperanto is the 14th most used language on the internet, according to 2022 statistics.
* The website "Duolingo" offers an Esperanto course, which is one of the most popular courses on the platform.
* The University of Amsterdam includes an Esperanto course as part of its program in international communication.
#Zamenhof #Esperanto #Peace #Coexistence #InternationalLanguage #Revival #CulturalRichness #Zamenhof165 #EsperantoOnTheInternet #LingvoInternacia #Planlingvo #Naskiĝtago #FelichanNaskiĝtagon #ZamenhofTago #ZamenhofDay #KulturaRicheco #Paco #Kunlaboro #a11y #inclusion #accessibility
Today's threads (a thread)
Inside: Social media needs (dumpster) fire exits; and more!
Archived at: pluralistic.net/2024/12/14/fir…
1/
en.wikipedia.org/wiki/Conclave…(novel
AppleInsider (@appleinsider@mastodon.social)
Apple's eventual goal of producing its Apple Glass smart glasses is still a long way from reality, with the challenges of making light and useful eyewear posing a problem. https://appleinsider.Mastodon
Inaccessibility Can Drive Me Crazy
/>I do my best to always buy accessible appliances and electronics, but sometimes it's not possible. I had a run-in with one of these inaccessible appliances taccessaces.com
I also wish we had multiple versions of the DLL to play around with, maybe there's a more stable later revision out there in some obscure package.
- Re-init the engine from scratch before every chunk.
- Shut down and unload the DLL after each chunk.
- Use a background thread but with a lock around TtsWav.
- On cancel, we try to shut up. If it doesn't stop mid-chunk, we still eventually finish and then re-init.
- Indexes only if not canceled, doneSpeaking always fired.
- We store the handle as self.handle, a POINTER(c_long), rather than a simple c_long. This matches the engine’s expected long* type, reducing the risk of memory access violations.
- V0.7 hotfix: add "number processing" checkbox to voice settings.
Please download and test from: eurpod.com/BestSpeak.nvda-addo…
Pitermach reshared this.
A Secret Stocking-Stuffer Summit: Google TalkBack, Samsung TalkBack, and Jieshuo’s Christmas Confession -
It’s another silent, snowy December night within a secret digital den lit by shimmering code-lights and pixel-wreaths. Three infamous Android screenAmir Soleimani (Accessible Android)
80 years later, Glenn Miller's sudden disappearance remains unsolved — NPR
Glenn Miller was the swing era's biggest star. Then, he vanished without a trace.apple.news
Important reminder, if you own a domain name and don't use it for sending email.
There is nothing to stop scammers from sending email claiming to be coming from your domain. And the older it gets, the more valuable it is for spoofing. It could eventually damage your domain's reputation and maybe get it blacklisted, unless you take the steps to notify email servers that any email received claiming to come from your domain should be trashed.
Just add these two TXT records to the DNS for your domain:
TXT v=spf1 -all
TXT v=DMARC1; p=reject;
The first says there is not a single SMTP server on earth authorized to send email on behalf of your domain. The second says that any email that says otherwise should be trashed.
If you do use your domain for sending email, be sure to add 3 records:
SPF record to indicate which SMTP server(s) are allowed to send your email.
DKIM records to add a digital signature to emails, allowing the receiving server to verify the sender and ensure message integrity.
DMARC record that tells the receiving email server how to handle email that fails either check.
You cannot stop scammers from sending email claiming to be from your domain, any more than you can prevent people from using your home address as a return address on a mailed letter. But, you can protect both your domain and intended scam victims by adding appropriate DNS records.
UPDATE: The spf and the dmarc records need to be appropriately named. The spf record should be named "@", and the dmarc record name should be "_dmarc".
Here's what I have for one domain.
One difference that I have is that I'm requesting that email providers email me a weekly aggregated report when they encounter a spoof. gmail and Microsoft send them, but most providers won't, but since most email goes to Gmail, it's enlightening when they come.
#cybersecurity #email #DomainSpoofing #EmailSecurity #phishing
This is art. 👌✨
Source: tumblr.com/therinly/7679152519…
CISA just took CVE-2024-11053 from 9.1 all the way down to 3.4!
github.com/cisagov/vulnrichmen…
vulnrichment/2024/11xxx/CVE-2024-11053.json at develop · cisagov/vulnrichment
A repo to conduct vulnerability enrichment. Contribute to cisagov/vulnrichment development by creating an account on GitHub.GitHub
@darakian I don't think it was good to do that thing in the first place. I think the ripple effects of that damage is still to come as news sites and databases will be slow to update.
Also, it was not a "mistake" they "discovered". It was done on purpose and we/I had to waste time and energy correcting it, for the sanity and safety of millions of curl users.
Rude and stupid it was.
@literalgrill paging @Seirdy
You were right bro
RE: sakurajima.moe/@literalgrill/1…
LiteralGrill (@literalgrill@sakurajima.moe)
So Bluesky might have provided Jesse Singal with a user's information so that his lawyer could track them down and force them to issue an apology over things said on the platform? Yeah... Kill your bridges, get people over here if you can.Sakurajima (桜島)
Jieshuo+ vs. Jieshuo Lite: Differences and Which One Should You Choose - Accessible Android
Jieshuo screen reader comes in two versions: Jieshuo+ and Jieshuo Lite. The Lite version is sometimes referred to as the "International" version on the GitHubKareen Kiwan (Accessible Android)
13 Red Flags You Should Never Ignore At A Pizza Shop
With so many great pizza places, there's no need to grab a pie from one that is subpar. Keep an eye out for these signs to ensure you're at the right shop.Jay Wilson (The Daily Meal)
Automakers have been selling data about the driving behavior of millions of people to the insurance industry.
In the case of General Motors, affected drivers weren’t informed, and the tracking led insurance companies to charge some of them more for premiums.
I’m the reporter who broke the story.
I recently discovered that I’m among the drivers who was spied on.
nytimes.com/2024/04/23/technol…
How G.M. Tricked Millions of Drivers Into Being Spied On (Including Me)
This privacy reporter and her husband bought a Chevrolet Bolt in December. Two risk-profiling companies had been getting detailed data about their driving ever since.Kashmir Hill (The New York Times)
reshared this
Where do I send my invoice?
github.com/cisagov/vulnrichmen…
CVE-2024-11053.json: adjusted CVSS scoring: MEDIUM 5.3 by bagder · Pull Request #151 · cisagov/vulnrichment
The security problem this describes is mostly a risk that a user can accidentally stumble upon this. It is VERY hard for an attacker to exploit. "vectorString": "CVSS:3.1/AV:L/AC:H/...GitHub
Infinitely Light Years
Provided to YouTube by IDLAInfinitely Light Years · Steven PageExcelsior℗ Fresh Baked Goods IncReleased on: 2022-09-30Producer: Steven PageLead Vocals: Steve...YouTube
#UploadFilter #ResponsibleEncryption - politicians today use euphemisms when they want to break encryption. 🤯
We must keep fighting for our right to privacy! 💪
Learn here why #backdoors to #encryption must never be allowed: tutanota.com/blog/posts/why-a-…
Let's fight encryption backdoors on Global Encryption Day! | Tuta
61% of all Tuta emails are sent e2e encrypted - a huge success for privacy. But the authorities want to weaken encryption. We must stop them!Tuta
FYI: CVE-2024-11053 is *not* a critical security flaw, even if now several security related sites repeat that statement.
This is as good as any reminder that you should read the #curl advisories for #curl issues rather than trusting the scaremongers.
curl.se/docs/CVE-2024-11053.ht…
(edit: I wrote an extra '1' in there at first)
daniel:// stenberg:// reshared this.
We added your clarification in vulnerability-lookup.
vulnerability.circl.lu/cve/CVE…
Now I'm wondering if we should not add the ability to propose the author and maintainer to counter any element from a vulnerability description.
@cedric what do you think of it? Not sure how this could be efficiently implemented.
cvelistv5 - CVE-2024-11053
Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.vulnerability.circl.lu
I get why it’s important to have an independent severity rating for security flaws. Vendors are incentivized to downplay the severity. Does anybody think Adobe would have appropriately rated even *half* of the bugs in Flash?
But for the independent ratings to be useful, they need to have high quality with extreme consistency. We certainly don’t seem to be getting that.
Apparently #CISA has rated #curl #vulnerability #CVE_2024_11053 as #CVSS v3 Base Score 9.1 "critical". This is wrong, and will lead to automation triggering unnecessary warnings and blocking use of perfectly fine systems until an update is installed (which can take months). nvd.nist.gov/vuln/detail/CVE-2…
Edit: In case you wonder my credentials for judging this: I found this vulnerability.
Edit2: This appears to be originating from CISA: cve.org/Media/News/item/blog/2…
Edit3: The score has now been fixed. Commit: github.com/cisagov/vulnrichmen…
data updated · cisagov/vulnrichment@91fadb2
A repo to conduct vulnerability enrichment. Contribute to cisagov/vulnrichment development by creating an account on GitHub.GitHub
Opt-Out von der "dunkelgrünen Schrumpel-Bananen Software" schon vorgenommen?
Elektronische Patientenakte: Sorge vor Verlust von Zeit und Vertrauen
heise.de/meinung/E-Patientenak…
Elektronische Patientenakte: Sorge vor Verlust von Zeit und Vertrauen
Die "E-Patientenakte für alle" soll ab 2025 durchstarten. Ärzte und Ärztinnen wie unsere Autorin befürchten hohe Aufwände und Vertrauensverlust ihrer Patienten.heise online
"Die "E-Patientenakte für alle" soll ab 2025 durchstarten. Ärzte und Ärztinnen wie unsere Autorin befürchten hohe Aufwände und Vertrauensverlust ihrer Patienten."
Dafür ist es imho doch längst zu spät. Wer nicht völlig verblendet ist, misstraut dem Kram doch eh schon seit längerem.
@Cyb3rrunn3r "Dem Kram" ja, dem Arzt (hoffentlich) noch nicht. Und das ist es, was die Autorin da befürchtet: Verlust des Vertrauensverhältnisses zwischen Arzt und Patient. Patienten haben keine Kontrolle darüber, welche Daten in der Akte landen und was damit passiert – und Ärzte wundern sich, wenn jemand etwas nicht in die Akte eingetragen wissen will…
Für diese Datengier ("aber die (datengetriebene) Wirtschaft!11!") setzt man das also auf's Spiel.
@MrMST wider Erwarten, teilweise ja. Ich bekam erst kürzlich Bescheid, dass dieses tolle Teil ab Januar für mich eingerichtet würde – ohne irgendwelche Aufklärung. Habe also meine Versicherung aufgeklärt. Das (per Fax) zugestellte Opt-Out hatten sie bereits in weniger als 24h eingetragen, auf die schriftliche Bestätigung warte aber nun ich seit 8 Tagen…
Opt-Out ist auf allen Kanälen möglich: Anruf (da hast Du aber nichts in der Hand), Fax, Mail, Web-Formular… Vorsorglich machen.
Microsoft just released a tool that lets you convert Office files to Markdown. Never thought I'd see the day.
Google also added Markdown export to Google Docs a few months ago.
github.com/microsoft/markitdow…
GitHub - microsoft/markitdown: Python tool for converting files and office documents to Markdown.
Python tool for converting files and office documents to Markdown. - microsoft/markitdownGitHub
I thought about this, and I think they only did it because there's no way to convert those files back to their original format, not without losing details.
This is probably intended for feeding your documents to an LLM to do RAG on them etc, but it can't be used to collaboratively work on files, which is where the real money for Office is.
)

SuspiciousDuck
in reply to Cat 🐈🥗 (D.Burch) • • •