In this newly disclosed #curl security report it is painfully obvious how the user's "clever" idea of using an AI to write the report made the report into a impenetrable wall of text instead of simply stating the problem in a few coherent paragraphs.
curl disclosed on HackerOne: libcurl: Host-Only Cookies Leak to...
libcurl canonicalizes numeric IPv4 hostnames during URL parsing and redirect handling (example: 127.000.000.001 to 127.0.0.1). When a host-only cookie (no Domain= attribute) is set, it is stored in...HackerOne
Imagine a Montréal municipal party that wants to take on the incumbents, and it manage to deliberately ignore 15% of the population by not providing an English version of their website.
@somecanuckchick @driusan and then stabbed them in the heart.
tbf every other non 1% white franco voter too.
@bnjbvr is an active member of the Rewrite in Rust task force, and he wants you to know how you can make your Matrix app go voom 🦀
Don't miss his talk at the Matrix Conference in October 15-18!
The Matrix Conference
Come along to see the latest and greatest progress in the Matrix world! From huge government deployments to the latest innovations, hang out with your peers to share the best learning, insights, projects and tips!conference.matrix.org
Tady je odpověď na to, jak tihle zmetci můžou sami se sebou žít. Ten hajzl sám sebe přesvědčil, že vlastně dělá dobré skutky… 48 procent RPSN je pro ně málo. Ať shoří v pekle společné s “finanční inkluzí”, což je jenom jiný název pro lichvu a zneužívání sociálního postavení jejich klientů v nouzi.
archiv.hn.cz/c1-67775300-strop…
Strop na úroky z úvěrů? Ze Slovenska jsme kvůli tomu museli odejít, v Česku uvidíme, říká šéf IPF, mateřské firmy Provident Financial
V čele finanční skupiny International Personal Finance (IPF), která aktuálně v devíti zemích poskytuje spotřebitelům úvěry s vysokým úrokem, stojí Gerard Ryan už třináct let.Jitka Vlková (Economia, a.s.)
já nedávno zjistil, že v Nizozemsku neexistuje žádná opravdová kreditní karta. Důvodem je zastropování úvěrů na 15 % p. a. Navíc tu každá instituce půjčující peníze musí povinně ukazovat varování, že "půjčování peněz stojí peníze."
Zřejmě moc dobře vědí, že povolit lidem půjčovat si peníze na velký úrok se státu nevyplatí.
"Go to an old cemetery. See all the baby graves from before the 1950s & 60s? After that, hardly any. That's when people started vaccinating their children against deadly childhood diseases. If you're unsure what to do to protect your kids, the answer is literally written in stone." — Michael Okuda
How quick we forget.
der Herr Kreidel (@carlklopse@troet.cafe) ist mir sehr sympatisch.
Ahoj, narodil jsem se v Karlových Varech, jen už tam docela dlouho nežiju...
Karlovy Vary jsou ale moje srdeční záležitost a často je s mojí ženou navštěvujeme...
Největší srdcovka je ovšem Grand Hotel Pupp, kde jsem se vyučil kuchařem...
Mám rád knihy, filmy a dobrou muziku. Baví mě sledovat fotbal a rád opečovávám naší zahrádku...
V roce 2018 jsem onemocněl. Trpím středně těžkou hemiparézou, jsem částečně ochrnutý na celou levou polovinu těla...
...a na pravou polovinu mozku
Pixelfed for Android (v1.8.0) is now available on the Play Store!
This fixes several issues, including the bottom navigation bar bug. 🥳
play.google.com/store/apps/det…
or F-Droid: fdroid.pixelfed.net/fdroid/rep…
github.com/eigencrow/IBMTTSDic…
GitHub appears to be maintaining a redirect for now if you attempt to visit the original link, but I do not know how long this redirect will last. If you use any scripts, update their URLs. Otherwise, simply make note of the URL for when you wish to retrieve updates or contribute fixes. Note that version 25.09 was released two days ago as per our release policy.
GitHub - eigencrow/IBMTTSDictionaries: A large, community-driven pronunciation dictionary for the IBMTTS speech synthesizer in American English
A large, community-driven pronunciation dictionary for the IBMTTS speech synthesizer in American English - eigencrow/IBMTTSDictionariesGitHub
Email & Calendar built for families. Made with ❤️ by Tuta.
Now your families can communicate & plan in privacy.
Learn more 👉 tuta.com/blog/best-family-cale…
Best family calendar app for Android | Desktop | iPhone. | Tuta
A family calendar must allow you and your loved ones to share agendas and stay in the loop. In this guide, we look at the best calendar app for families to use from any device in 2025.Tuta
Spreadshirt responded to my email about their AI tool for designers. There must have been a few of us who threatened to leave. Hilariously , their response is to add an opt-out tool for designers.
Because, and the fuckers didn't even allude to this in the original announcement, the 'AI design tool' will also scrape the designs you have uploaded on their platform. Of course it will.
So now people have a chance to opt out TWO WEEKS AFTER the AI shite is in place. Lolzers.
I've deleted all my stuff. I don't care, I've only made a few shirts for myself or the Merry Mushmen here and there, this isn't part of my livelihood... What would I do if I counted on t-shirt sales for a living? Would I even have a choice?
I just bought 20 envelopes and stamps, and I'm packing them with 5x #Conversations_im, 5x #OMEMO, and 5x #XMPP stickers each.
Send me an email if you want one. Put 'Stickers' in the subject so I can filter. While supplies last, obviously. (Though I'm more limited on the stamps than the stickers.)
Edit: I’m out of envelopes.
And I’m out of envelopes. I didn’t send out individual confirmations, but if you sent your email before just now, I very likely received it and sent an envelope your way.
They mostly went where you would expect them to go: Germany, France, and Spain. But a few went to some more obscure places…
This should have been big news!
Ten funding agencies from eight European countries have pledged to support a public infrastructure that is poised to replace academic journals:
FWF 🇦🇹
RCN 🇳🇴
Forte 🇸🇪
ARIS 🇸🇮
SRC 🇸🇪
FCT 🇵🇹
CSIC 🇪🇸
DFG 🇩🇪
Formas 🇸🇪
ANR 🇫🇷
Only two of them issued press releases in English:
fwf.ac.at/en/news/detail/joint…
fccn.pt/en/atualidade/fct-assi…
and one more, NWO from 🇳🇱 considers joining:
nwo.nl/en/news/nwo-endorses-jo…
Why is this BIG? 1/4
#openscience #openaccess
FCT assina declaração de intenções para colaborar no fortalecimento do Open Research Europe (ORE) • FCCN
A FCT compromete-se a financiar colaborativamente a Open Research Europe - plataforma de publicação em acesso aberto sem fins lucrativos.Raquel Alfredo (FCCN)
FediVerseExplorer likes this.
tube.pilgerweg-21.de/w/sSLjJFu…
FediVerseExplorer likes this.
The first would be "UK callers, unless I have you in my contact list, I'll not take your calls and will block you."
I currently get 2-3 calls per week from random UK numbers with (probably) classic tech support scam. I stopped taking them like a year ago, but the attempts intensified recently for some reason. I wonder what list I ended up on for it to be so intense.
- Tady je obecný článek: portal.nukib.gov.cz/informacni…
- Kamery: portal.nukib.gov.cz/informacni…
- #Auta: portal.nukib.gov.cz/informacni…
- #FVE střídače: portal.nukib.gov.cz/informacni…
# kybez
Hey Tuta,
It appears that the tuta.com domain is currently being blocked on Quad9 DNS resolver :
quad9.net/result/?url=tuta.com…
Quad9 | A public and free DNS service for a better security and privacy
A public and free DNS service for a better security and privacyQuad9
Having ongoing discussions about URL parsing differences as a basis for a #curl security vulnerability report made me check when I wrote my "my URL isn't your URL" blog post.
*Nine years ago*. And we have not made a single move towards a solution in all this time.
daniel.haxx.se/blog/2016/05/11…
My URL isn’t your URL
When I started the precursor to the curl project, httpget, back in 1996, I wrote my first URL parser. Back then, the universal address was still called URL: Uniform Resource Locators. That spec was published by the IETF in 1994.daniel.haxx.se
No I personally think this the least important thing in your post, I don't see how this is practical.
Digital Extremes violate the #cURL license?
github.com/curl/curl/discussio…
If they do, that's a shame but there's not a lot I can do. Anyone who can verify this claim? (probably by scanning the binaries for known names or similar)
Digital Extremes violate the cURL license · curl curl · Discussion #18474
Hi, I just want to let you know (and have there be a record) of the fact that Digital Extremes, a Canadian video-game-developer-turned-GaaS-developer, are using cURL (statically linked alongside Op...GitHub
#dobréRáno
První víkend v listopadu bude v Brně opět konference OpenAlt. Pro přihlášení přednášky zbývá ještě téměř měsíc.
xyhhx 🔻 (plz hire me)
in reply to daniel:// stenberg:// • • •Stéphane Bortzmeyer
in reply to daniel:// stenberg:// • • •daniel:// stenberg://
in reply to Stéphane Bortzmeyer • • •John Kristoff
in reply to daniel:// stenberg:// • • •Mike
in reply to daniel:// stenberg:// • • •Poolitzer
in reply to daniel:// stenberg:// • • •Chris Adams
in reply to daniel:// stenberg:// • • •it's missing 🔜 eth0
in reply to daniel:// stenberg:// • • •daniel:// stenberg://
in reply to it's missing 🔜 eth0 • • •Kaito
in reply to daniel:// stenberg:// • • •daniel:// stenberg://
in reply to Kaito • • •