Lo hice con gabardina de un pantalón viejo.
Tiene partes chuecas pero es parte del encanto 🫢
Want Inkscape's Multi-page to work in web browsers (and other tools)?
Well my work today has been on moving our inkscape:page element to the SVG standard "view" element. Already supported in web browsers and hopefully supported someday in SVG viewers that use librsvg (are you interested @federicomena ?)
This will need testing and a migration for older data too. But I like more standards compliant files and less custom stuff in inkscape's svg.
#inkscape #svg #w3c #viewbox #page
a) wait a second, is that how Inkscape's multipage support is implemented? I wondered why it let you drag the pages around.
b) I need to read the spec to see what <view> is supposed to afford to the outside world...
Today on Fashion week, @Liz would like to highlight White Stripes, An underrated part of your Hoet Couture.
...Oh dear God, who fed the Social Media hampsters Ecstasy?
The White Stripes are in the Showcase, and Full Circle is still live on HKC Radio!
Music feels different in big cities. Songs on the radio feel entirely different.
If anyone knows what I'm talking about... you get it.
Gotta grab a lobstah roll while I'm here
HKC Radio reshared this.
Our In-Process blog is out! This time featuring:
- NVDA 2025.3.1 Release Candidate
- See Differently Tech Fest
- Typing Tutors
- Single Key Navigation Poll
- Featured Add-on: Screen Wrapping for NVDA
All this and more available to read now: nvaccess.org/post/in-process-2…
Don't follow us on social media and never saw this post? Then sign up to receive the blog via email! nvaccess.org/newsletter
#NVDA #NVAccess #Newsletter #Blog #News #ScreenReader #Accessibility #PreRelease #Typing #Poll
In case you weren’t aware of this reason to avoid hotel kettles…
From: @fesshole
mastodon.social/@fesshole/1154…
People say it's an urban legend. But it's not. Because I do it. Do what I hear you say? I boil my undies in hotel kettles. I mean, how else am I supposed to clean them? It's not like there's a washing machine in the room.Fesshole 🧻 (Mastodon)
#curl gets some of the worst #AIslop "vulnerabilities" reported to it via Hackerone: Here we have a fake 90s exploit assuming executable stack and x86 arch. Someone seriously passing this as their own research is stupid beyond belief.
Discovery Method Step 1: Initial Security Scan ``` # Find all files using dangerous string functions find src/ -name "*.c" -exec grep -l "strcpy\|strcat\|sprintf\|gets" {} \; # OUTPUT: #...HackerOne
Peter Guttman's paper "Do Users Verify SSH Keys?" has one of the best abstracts I've ever seen.
reshared this
An additional tax on millionaires in Massachusetts has generated $3 billion more than expected without forcing significant high-profile departures from the state. The money is being used to fund bridge repairs, literacy programs and public transport.
reshared this
Hey Fediverse! Announcing cycle.town, a new instance dedicated to urbanism and bikes!
We're running the glitch-soc patches, including increased character limit. Still more to configure, but the server is ready to take registrations. (Our domain is just a few days new and is still being marked as spam by some email providers; check your junk folder for your confirmation emails.)
Come follow me at @streetmeme for my main account focused on Minneapolis urbanism.
Calling all urbanists. Walking, biking, and public transportation.Mastodon hosted on cycle.town
reshared this
Tags:
Changes since the 2025100900 release:
All of the Android 16 security patches from the current November 2025, December 2025 and January 2026 Android Security Bulletins are included in the 2025102201 security preview release. List of additional fixed CVEs:
2025100901 provides at least the full 2025-11-01 patch level and the Android 2025-11-05 patch level (Pixel Update Bulletin could have fixes we don't get early) but will remain marked as providing 2025-10-05.
For detailed information on security preview releases, see our post about it.
GrapheneOS discussion forumGrapheneOS Discussion Forum
Today I received the invitation to update. It explained the embargo fiasco pretty clearly, and it's well designed in order to influence the user to accept it. But still opt in.
Easy, short and to the point. Great work all around.
daniel:// stenberg:// reshared this.
Gotcha — you're absolutely right 👍
Why do you think AI loves "finding" issues with strcpy in particular? Is it common in other C projects to make mistakes around it or something?
My understanding is that strcpy in c is one of the traditional "unsafe" functions, because it's easy to cause security issues with it. Since it's so well-known, LLM has likely seen it very often in training data.
However, curl is written according to ANSI C for portability, where only strcpy is available - so there's a trade-off LLM's have no capability to deduce.
Changes in version 141.0.7390.122.0:
A full list of changes from the previous release (version 141.0.7390.111.0) is available through the Git commit log between the releases.
This update is available to GrapheneOS users via our app repository and will also be bundled into the next OS release. Vanadium isn't yet officially available for users outside GrapheneOS, although we plan to do that eventually. It won't be able to provide the WebView outside GrapheneOS and will have missing hardening and other features.
Privacy and security enhanced releases of Chromium for GrapheneOS. Vanadium provides the WebView and standard user-facing browser on GrapheneOS. It depends on hardening in other GrapheneOS reposito...GitHub
A blog about making culture. Since 1999.Anil Dash
reshared this
It's just my luck that I publish the Stalwart port last night and today they make a new release
RT: friedcheese.us/objects/8eab3ae…
Sensitive content
AI slop security reports submitted to curl. GitHub Gist: instantly share code, notes, and snippets.Gist
Step 2: Locate Vulnerable Code in Progress.c ``` # Find exact strcpy usage in tool_progress.c grep -n "strcpy" ./src/tool_progress.c # OUTPUT: # 94: strcpy(r, "--:--:--"); ``` Step 3: Analyze...HackerOne
That last reply that’s just completely ignored the conversation and tone…
Saddens me if anyone is paying out money to these people.
Jaguar Land Rover hack cost UK economy an estimated $2.5 billion, report says
reuters.com/sustainability/boa…
"IT is just a cost center that must be shrunk as much as possible." -- Every C-suit.
My wife is away for a few weeks on an elder care visit so I’m wondering: does anybody have any good recommendations for a two player game, ideally that can be played on #iPhone / #iPad or possibly the web?
it can’t be action/arcade because she shrinks from the sight of a video game controller like a vampire reacting to garlic or fire. 
Word games are good. We used to play words with friends, but it became an ad in crusted garbage heap so I’m not particularly inclined to go back to that.
thanks in advance! 
Replacing the public suffix list bundled with libpsl. The original promise / expectation was that libpsl sees regular updates, and a psl update with it, but the latest release is soon to be 2 year...GitHub
Jiří Eischmann
in reply to Scott Williams 🐧 • • •It's basically adware these days.
Tofu
in reply to Jiří Eischmann • • •Jarek Rozanski
in reply to Scott Williams 🐧 • • •Jiří Eischmann
in reply to Jarek Rozanski • • •hambier
in reply to Jiří Eischmann • • •