TSMC: Importance of Open Innovation Platform Is Growing, Collaboration Needed for Next-Gen Chips
1_DevOps'ish
After hackers distribute malware in-game updates, Steam adds SMS-based security check for developers
Valve, the company behind the Steam video game platform, has announced
[https://steamcommunity.
Microsoft tops CISA’s list of exploited CVEs used in ransomware attacks
CISA updated its Known Exploited Vulnerabilities Catalog to alert organizations to CVEs linked to ransomware.
A New Protocol Vulnerability Will Haunt the Web for Years
Dubbed “HTTP/2 Rapid Reset,” the flaw requires issuing patches to virtually every web server around the world before the problem can be eradicated.
The death of NTLM could not happen fast enough | The evolution of Windows authentication
Discover how we’re securing authentication and reducing NTLM usage in Windows.
AI Images Detectors Are Being Used to Discredit the Real Horrors of War
Online AI image detecting tools that may or may not work are labeling real photographs from the war in Israel and Palestine as fake, creating what a world leading expert called a “second level of disinformation.”
This is another one of those bookmark for later things | Which version of Go was used to compile this binary? · Jamie Tanna
How to use a few means to work out what version of Go a given binary was compiled with.
23andMe sued after Ashkenazi Jews’ user data is stolen
The hacker from the initial leak offered to sell data profiles in bulk for $1 to $10 per account.
An Intelligent Wikipedia
Wikipedia's top five accounts (by number of edits) are all bots. There’s MalnadachBot (11 million edits), WP 1.0 bot(10 million), Cydebot (6.8 million), ClueBot NG (6.3 million), and AnomieBOT (5.9 million.). These bots range in functionality from migrating tables, formats, and markup as Wikipedia changes to automatically detecting and reverting vandalism. Others tag content with labels, archive old discussions, recommend edits, or create new content. The website couldn’t function without them.
How I learned to stop worrying and love the CoreOS
Here’s a blog post to answer the question: Why do you write so much about CoreOS? 📦
I wish Rust were easier to pick up | How Linkerd became resilient to CVE-2023-44487, a HTTP/2 DDOS vulnerability, six months prior to its disclosure
Yesterday, CVE-2023-44487, a DDOS vulnerability in many HTTP/2 implementations, was disclosed. This is a very interesting attack involving the specifics of how HTTP/2 multiplexes concurrent requests on the same TCP connection, and there are several great writeups on how it works—see e.g. Cloudflare’s HTTP/2 Rapid Reset: deconstructing the record-breaking attack and Google’s How it works: The novel HTTP/2 ‘Rapid Reset’ DDoS attack for details of how this attack works and the consequences.
Ubuntu Desktop 23.10 ISOs Recalled Due To Malicious User Translations
Hours after the release of Ubuntu 23.10, Canonical has pulled the ISOs and is re-spinning them after user-submitted translations for the Ubuntu installer turned out to contain hate speech.
iamadamdev/bypass-paywalls-chrome: Bypass Paywalls web browser extension for Chrome and Firefox.
Bypass Paywalls web browser extension for Chrome and Firefox. - iamadamdev/bypass-paywalls-chrome: Bypass Paywalls web browser extension for Chrome and Firefox.
jinyus/related_post_gen: Data Processing benchmark featuring Rust, Go, Swift, Zig, Julia etc.
Data Processing benchmark featuring Rust, Go, Swift, Zig, Julia etc. - jinyus/related_post_gen: Data Processing benchmark featuring Rust, Go, Swift, Zig, Julia etc.
Microsoft documents how to install Linux
You may need it – Windows 10 is no longer a free upgrade
Textbook from Arm | Operating Systems Foundations with Linux on the Raspberry Pi
This textbook provides a practical introduction to the foundations of modern operating systems, with a focus on GNU/Linux and the Arm platform.
Not often I share news about Wordpress but this is cool to see. | Engage a Wider Audience With ActivityPub on WordPress.com
The fediverse has arrived at WordPress.com.
mogenius/punq: A slim open-source workload manager for Kubernetes with team collaboration, WebApp, and CLI.
A slim open-source workload manager for Kubernetes with team collaboration, WebApp, and CLI. - mogenius/punq: A slim open-source workload manager for Kubernetes with team collaboration, WebApp, and...
Bedrock, Bosch, Cisco And KODE Labs Launch The Urban Tech Xchange | Detroitisit
One-Of-A-Kind Real World Test Lab Aimed at Tackling the Modern City's Biggest Challenges
ossf/malicious-packages: A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerability (OSV) format.
A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerability (OSV) format. - GitHub - ossf/malicious-packages: A reposi...
awslabs/eks-node-viewer: EKS Node Viewer
EKS Node Viewer. Contribute to awslabs/eks-node-viewer development by creating an account on GitHub.
Saving Millions of Dollars by Bin-Packing ClickHouse Pods in AWS EKS
Read about how changing the pod scheduling in our Kubernetes clusters, powering ClickHouse Cloud, saved millions of dollars.
Scrollbars are becoming a problem
Scrollbars. Ever heard of them? They’re pretty cool. Click and drag on a scrollbar and you can move content around in a scrollable content pane. I love that shit. Every day I am scrolling on my computer, all day long. But the scrollbars are getting smaller and this is increasingly becoming a problem. I would show you screenshots but they’re so small that even screenshotting them is hard to do. And people keep making them even smaller, hiding them away, its like they don’t want you to scroll! “Ah”, they say, “that’s what the scroll wheel is for”. My friend, not everyone can use a scroll wheel or a swipe up touch screen. And me, a happy scroll-wheeler, even I would like to quickly jump around some time.
macOS Containers Initiative
Chainguard’s response to CVE-2023-38545 and CVE-2023-38546 in curl
Everything you need to know about securing the software supply chain.
Been waiting for this! | Release Alpha 0.1.0 · spacedriveapp/spacedrive
After 15 months of development we are extremely excited to be releasing the first version of Spacedrive as an early public alpha.
This is an MVP, and by no means feature complete. Please test out t...
Intuition for Cryptography
Building an understanding of common cryptographic use-cases without delving into the deep end.
curl - SOCKS5 heap buffer overflow - CVE-2023-38545
How I made a heap overflow in curl | daniel.haxx.se
I need all the help I can get | How to talk to children violence israeli palestinian gaza hamas