You are hereby banned from our program. We don't want your "help". Please never contact us again.
(just sent off to another "helpful" security researcher)
curl disclosed on HackerOne: libcurl: Improper Authentication State...
Following the recent advisory for **CVE-2025-14524**, I conducted an investigation into how libcurl manages OAuth2 credentials during complex redirect chains. I have confirmed that while the...HackerOne
This could be a theatre play:
“Drop the AI”
“I sincerely apologize, you are absolutely right”
youtube.com/shorts/6eA_o9qZBuU…
“Say Potato!” Stream on Apple and Spotify!! #funnysong #tinder #dating #music
Užívejte si videa a hudbu, kterou máte rádi, nahrávejte originální obsah a sdílejte vše s přáteli, rodinou i celým světem na YouTube.YouTube
But Wait!
Anyway, BIND 9 now also has Bug Bounty program via #YesWeHack (fosstodon.org/@iscdotorg/11576…) and we got exactly one genuine issue out of 15 (and that's issue that has been previously independently reported). The rest was:
⁃ Cryptographic Weakness in BIND 9.20.15 PRNG Enabling DNS Cache Poisoning (Bullshit AI Slop; it just proved lack of randomness in provided PoC
:)
⁃ Multiple EC/TLS Private Keys Committed to Public Bind9 Repository (yeah, in system tests) (1/2)
“ I sincerely apologize. You are absolutely right.”
lol. Don’t need any AI detection software here 🤪😂
johann reshared this.
Early in my programming career I wrote a whole series of functions that did the mundane things in a business program. Then I wrote a program that allowed me to create input and output screens WYSIWYG. Those screens called my functions. In a few weeks of work, which was kinda fun, I eliminated many days of tedium for each application I was to write over the next decade.
Keep that in mind when you build the foundation. You do it once.
What about making a proof of concept for the game?
Refactoring is inevitable.
If you haven't built a menu system to begin with, there'll be nothing to rebuild. The refactoring will mostly be limited to slotting it in once you start.
If you've built one early that doesn't actually solve the problems you end up needing it to, or solves them in a way that ultimately makes it hard to integrate, that's when you'll end up rewriting stuff.
"Meanwhile, Ford was sitting at home, leaving Ontario workers with no one to fight for them. If you’re not at the table, you’re not fit for Premier." cbc.ca/news/canada/toronto/dou…
Founded by Keir Starmer’s comms chief, Portland helps rich clients ‘protect their reputation’ – with a shady, off-the-books service
thebureauinvestigates.com/stor…
Hello #Fediverse,
as #FOSDEM 2026 is approaching I was thinking about bridging the livestreams to #PeerTube as well.
Streams are under #CreativeCommons license that allows sharing videos, so there is no big deal in it.
As there are plenty of rooms (and we dibs Social Web for #VHSky :) ), it would be fun to coordinate streaming accross multiple instances to stream as much rooms as possible without overloading single instance.
What do you think, anybody interested?
Also, anybody has idea how to actually bridge m3u to PeerTube? @j4n3z maybe?
reshared this
Let’s be honest, Ring was already some technocratic, dystopian BS, but if you needed a reason to finally, finally kill it with fire, here’s your reason: Ring is partnering with Flock to help ICE spy on you and your neighbors for the government 👀
#Technology #InfoSec
techcrunch.com/2025/10/16/amaz…
Amazon's Ring to partner with Flock, a network of AI cameras used by ICE, feds, and police | TechCrunch
Agencies that use Flock can request that Ring doorbell users share footage to help with "evidence collection and investigative work."Amanda Silberling (TechCrunch)
Something that using a local Gemini Cli instance could solve though, honestly.
Jonathan reshared this.
I bloggered a post.
It's about shortcomings of FLOSS and a possible next thing.
My Next Project Won't be FLOSS:
pointless.one/my-next-project-…
#FLOSS #FOSS #FreeSoftware #OpenSource #GNU #GPL #OSI #MIT #BSD #BTPL #PolyForm
My Next Project Won't be FLOSS @ PointlessOne
Where FLOSS fails and what to do about it. With a little bit of history.PointlessOne
Some of the variables you can define in the yaml now:
# Base defaults for NV Speech Player frontend.
#
# If a setting is not listed here, the C++ defaults are used.
# Packs are merged in this order:
# default.yaml -> <lang>.yaml -> <lang-region>.yaml -> <lang-region-variant>.yaml
#
# Keep this file small. Put language-specific tweaks into their own files.
settings:
# Timing / stress shaping
primaryStressDiv: 1.4
secondaryStressDiv: 1.1
# Stop closure insertion ("click" before stops/affricates)
stopClosureMode: vowel-and-cluster
stopClosureClusterGapsEnabled: true
# Length mark (ː) handling
lengthenedScale: 1.05
lengthenedScaleHu: 1.3
applyLengthenedScaleToVowelsOnly: true
# Output gain defaults (same as ipa.py)
defaultPreFormantGain: 1.0
defaultOutputGain: 1.5
# Normalization cleanup
stripAllophoneDigits: true
stripHyphen: true
# Tonal languages
tonal: false
toneDigitsEnabled: true
toneContoursMode: absolute
»Ein #Barrierefreiheit-Feature, dass nur Menschen mit einer #Behinderung hilft, ist wahrscheinlich schlecht.«
Das sind so die Dinge die ich eigentlich nur im Fediverse lese.
Pro-Tipp: Ihr müsst gar nicht alle Gedanken die ihr habt mit der Welt teilen.
Prüfbericht zur #Barrierefreiheit mit Testimonials von KI-generierten behinderten Menschen.
How about nein einfach nur nein.
So I wasn't going to post about this but I just got off the phone with Tesco customer service and I'm shocked.
Last night I was having some soup, Tesco brand Tuscan inspired Bean soup, to be exact, bit down on a chunk of glass that was in there. Taste of blood in my mouth, dent in my tongue, possibly swallowed a small bit... I was worried about it. Also, fucking hell like.
Today I call em up, had already sent an email, they are uninterested, tell me I have to complain in store.
What the fuck.
Thank you!
when I see AI powered or heavily promoted AI service I avoid the product as much as possible.
Data harvesting is a huge problems, but the quality is usually bad as well.
Bluesky Corporation have just started hosting and verified the US agency ICE:
bsky.app/profile/icegov.bsky.s…
In other words, Bluesky are collaborating with racist violent thugs and murderers.
(Bluesky Corporation were already hosting the White House (bsky.app/profile/whitehouse-47…), the Department of War (bsky.app/profile/deptofwar.bsk…), JD Vance (bsky.app/profile/jd-vance-1.bs…), Homeland Security (bsky.app/profile/homelandgov.b…) etc. This is a long-term collaboration with Trump admin.)
reshared this
@gajim@fosstodon.org
@gajim@community.xmpp.net
With Gajim version 2.4.2 windows-key + arrow keys still don't work.
Back to 1.9.5 again.
This is a GTK issue, see dev.gajim.org/gajim/gajim/-/is…
Windows: No window snapping / no snap layout (#12348) · Issues · gajim / gajim · GitLab
Please search for similar issues first. Versions OS: Windows 10 Gajim: 2.3.2 (Installed through Windows...GitLab
Thank you.
It's a shame snapping isn't working. Because of this, I keep having to go back to v1.9.5. Snapping does work with this older version. Hopefully, this will be fixed in the future.
Sadly they seem to have a kinda strict recording policy, so we'll see wether I can take the Zoom with me. But well it's still a half year so plenty of time to overthink jk.
Wikipedia turns 25 today! 🎂📚
To celebrate, we’re looking back at its baby pictures—some of the earliest captures of the site, preserved in the #WaybackMachine.
Take a nostalgic peek at early Wikipedia ⤵️
Die zwei Gesichter des Friedrich Merz
zeit.de/politik/ausland/2026-0…
Da war ich im ersten Teil des Artikels doch baff erstaunt. Es sieht so aus, als halte im Bundeskanzleramt die Vorstellung Einkehr, das aktuelle Regime in Washington sei nicht mehr durch Besänftigung in Schach zu halten.
Wenn man ihm wohlgewogen sein will könnte man also interpretieren dass Friedrich Merz hier die Gangart umschaltet und sich nun auf die eigene Bevölkerung in Deutschland (und auch in Europa) fokussiert.
Soweit, so gut.
Und dann reißt der Kanzler, wie man das von ihm gewohnt ist, alles wieder ein.
Bundeskanzler: Friedrich Merz zeigt sich desillusioniert von Trump und der US-Politik
Donald Trump gehe auf Kritik nicht ein, sagt Kanzler Merz – sondern halte, was er tut, für richtig. Statt das Völkerrecht zu achten, machten die USA reine Machtpolitik.Sarah Vojta (DIE ZEIT)
Im Schnitt kämen die Beschäftigten in Deutschland auf 14,5 Krankentage, sagte der CDU-Politiker. "Das sind fast drei Wochen, in denen die Menschen in Deutschland aus Krankheitsgründen nicht arbeiten. Ist das wirklich richtig? Ist das wirklich notwendig?," fragte Merz.
Die Frage ist so unfassbar dämlich, dass ich gar nicht richtig weiß, was man da erwidern will.
Glaubt er, die Menschen sind freiwillig krank? Dass ich mich, wenn ich krank bin, halt nur ein bisschen zusammen reißen muss, um wieder mehr für die Wirtschaftsleistung des Landes beitragen zu können? Glaubt er, dass Kranksein eine Willensentscheidung ist?
Was er damit infolgedessen automatisch insinuiert: Die Deutschen feiern krank und betrügen. Anders kann ich seine Argumentation nicht nachvollziehen.
Wie man mit solchen Aussagen ein Gemeinschaftsgefühl erzeugen will, das geeignet ist, äußeren Widerständen zu trotzen, das weiß vermutlich nur Herr Merz. Und Herr Linnemann vermutlich.
No soporto que tengan un perfil oficial de la Gestapo / ICE
- Medical advancements allowing low or no cost healthcare for all, and various new treatments (33%, 1 vote)
- Clean energy generation allowing low or no cost energy/electricity for all (33%, 1 vote)
- Molecular recycling and assembly allowing abundant low or no cost food/clothing/etc. for all (33%, 1 vote)
- Something else, send a mention! (0%, 0 votes)

Burak Gürsoy
in reply to daniel:// stenberg:// • • •Ondřej Surý
in reply to daniel:// stenberg:// • • •And there's always this person: github.com/curl/curl/pull/2031… that ridicules themselves.
#LOL
BUG-BOUNTY.md: we stop the bug-bounty end of Jan 2026 by bagder · Pull Request #20312 · curl/curl
GitHubTheTomas
in reply to daniel:// stenberg:// • • •