My book Human Transit (2024 revised edition) is 50% off at Island Press, this week only, along with many other great books.
A great holiday gift for transit-curious friends.
Print books only (because giving ebooks is no fun!)
Please share!
I was reading through the two SBOM specifications today (as you do), and noticed that both have fields that impose a "supplier" field on packages.
Couldn't help but think of @https://hachyderm.io/@Di4na's blog post softwaremaxims.com/blog/not-a-… and how it's literally in the standards now 🤦
I am not a supplier
For the past few years, we have seen a lot of discussions around the concept of the Software Supply Chain. These discussions started around the time of LeftPad and escalated with multiple incidents in the past few years.Thomas Depierre
To me FOSS/FLOSS/Name-your-open-source-whatever is basically someone planting a plant in a public garden for anyone to pick tomatoes from it. So who is the supplier there? The one planting or the one distributing it or the shop owner selling it in their tomato soup?
That's at least my personal simplification of this thought. I am also aware this is not a perfect metaphor. Furthermore, I guess I am coming more from an individual small-project POV rather than something as largely used as curl, linux kernel or similar projects.
PSA: tips to protect yourself from scams on Signal.
Every major comms platform has to contend w phishing, impersonation, & scams. Sadly.
Signal is major, and as we've grown we've heard about more of these attacks--scammy people pretending to be something or someone to trick and abuse others. 1/
How are you fighting abuse on Signal, when you have no access to metadata or message content?
With your tech stack, is it possible to e.g. detect new accounts which immediately send a deluge of messages to thousands of users?
I hate that I can basically recycle my posts about Chat Control every month or so. These lobbyists are extremely motivated.
Let's show them that we are
even more motivated than them to protect privacy rights, human rights, and democracy! ✊🔒
You know what you have to do:
👉 fightchatcontrol.eu/
• Recent news:
"Just before a decisive meeting in Brussels, digital rights expert and former Member of the European Parliament Dr. Patrick Breyer is sounding the alarm. Using a “deceptive sleight of hand,” a mandatory and expanded Chat Control is being pushed through the back door, in a form even more intrusive than the originally rejected plan. The legislative package could be greenlit tomorrow in a closed-door EU working group session."
#ChatControl #Privacy #HumanRights #DigitalRights #Democracy #EUpol
reshared this
Corey's public.monster was the 1st one
> In contrast, if you infuse saline down an occluded vessel, you push the blood through the myocardial vasculature and replace it with fluid containing no oxygen. That is a recipe for cardiac arrest because the myocardium is very sensitive to short periods of ischaemia. I like all cardiologists have done it occasionally inadvertently and caused ventricular fibrillation (fortunately always successfully defibrillated in my patients).
I feel better about crashing production now
Without exaggeration, Paperback is currently the most accessible and user-friendly book reader available for screen reader users.
paperback.dev/
@TheQuinbox
RE: sunny.garden/@neocolapsar/1155…
@neocolapsar has a public.monster
People who want to make the web accessible need to understand the many different ways that people with disabilities use the web. This W3C resource offers a good introduction to how disabled people navigate the web, and barriers they commonly encounter.
How People with Disabilities Use the Web
Introduces how people with disabilities, including people with age-related impairments, use the Web.W3C Web Accessibility Initiative (WAI) (Web Accessibility Initiative (WAI))
reshared this
The more nuanced reporting did mention that. If the targets to meet are suitably impressive then why not set the bonuses equally impressive.
It's a stupid amount of money and nobody is worth it, but that's executive pay in general.
I'm building a new PC (for work, productivity and some gaming) and this is my current configuration:
- CPU: AMD Ryzen 7 9700X
- CPU cooler: Be quiet! Dark Rock Pro 5
- Motherboard: MSI MAG B850 TOMAHAWK MAX WIFI
- GPU: SAPPHIRE NITRO+ AMD Radeon RX 9060 XT GAMING OC 16G
- Memory: Kingston FURY 64GB KIT DDR5 6000MHz CL36 Beast EXPO
- SSD: WD_BLACK SN7100 2TB
- Case: Be quiet! PURE BASE 501 Airflow Window Black
- Power supply: Be quiet! PURE POWER 13 M 750W
Opinions? I haven't built a PC in the last 10 years, so I would appreciate advice from more experienced PC builders.
#pcbuild #buildingpc #computer #pc
My website on public.monster is on.
@dk
Vergleich moderner E-Mail-Alias-Dienste: Addy.io, Firefox Relay und Proton Pass im Test – Datenschutz, Funktionen und Alltagstauglichkeit. 👇
kuketz-blog.de/anbieter-von-e-…
#email #mail #alias #addyio #firefoxrelay #protonpass #datenschutz #schutz #spam
Sonic Onslaught is live! Join @nick and Christel for their take on the best of metal!
Deals: New Google Nest Cam Outdoor, Galaxy S25 Edge $490 off, loads of Singles’ Day discounts, more
Today’s 9to5Toys Lunch Break is now ready and waiting below alongside a gigantic list of Singles’ Day 2025 deals you...Justin Kahn (9to5Google)
FFmpeg to Google: Fund Us or Stop Sending Bugs
thenewstack.io/ffmpeg-to-googl…
Them: "I'm paid to find these"
Us: "I'm not paid to fix these"
Feels like labour exploitation.
FFmpeg to Google: Fund Us or Stop Sending Bugs - The New Stack
A lively discussion about open source, security, and who pays the bills has erupted on Twitter.Steven J. Vaughan-Nichols (The New Stack)

Bubu
in reply to Fiona • • •Braucht definitiv folgende Verbesserungen! :D
* Veröffentlichungen
* Modellregistratur
(Ich weiß grade gar nicht wofür Bereitstellung stehen soll... und Containerregistrierung ist schon sehr... schlecht. 🙈)