Özgür Kesim

1.5K Followers
45 Following
472 Posts
Code by conduct, math by training, music by passion.
"string is the source of all eval()"
verifierhttps://www.kesim.org
verifierhttps://www.codeblau.de
verifierhttps://ngi.taler.net

One of the many reasons I'm proud to work on the #Taler digital payment system is that we focus on the needs of citizens. And as digitization continues, also how we pay, it is important to make digital payment systems inclusive for those who have difficulty when dealing with numbers.

Christian Grothoff has something to say about how we test ways to make a digital wallet as accessible as possible.

https://youtu.be/-N9b711xhSs?t=1152

#Taler #GNUTaler #NGITaler #interledger #myoralvillage #Digitalpayments #literacy #numeracy #dyslexia #dyscalculia

Digital cash, made socially responsible - GNU Taler | Interledger Community Call - 13 May 2026

YouTube
bourne> "How many people have actually written shell scripts here?"
entire room's hands go up
bourne> "I'm so sorry"

(NYCBUG, May 13 2026, https://youtu.be/Anr2UAs7ifY?t=3523)
NYC*BUG May 2026: The Design of Unix Shell, with Stephen R. Bourne

YouTube
Hey, we have another linux kernel local root exploit in IPSEC. If you build your own kernels: you probably don't need ipsec, disable INET{6,}_{ESP,AH}.
Thomas Dullien zu Anthropics Mythos: Software war nie auf perfekte Sicherheit ausgelegt - das rächt sich

Schwachstellen in Computern wurden lange hingenommen. Denn sie auszunutzen war technisch komplex und teuer. KIs ändern das nun. Damit zwingen sie uns, Altlasten schneller anzugehen.

Frankfurter Allgemeine Zeitung

Amazing: #Debian is now shipping reproducible packages 💪

https://lists.debian.org/debian-devel-announce/2026/05/msg00001.html

Thanks to everyone who helped make this happen!

See https://reproducible-builds.org/ if you are not familiar with the topic

bits from the release team

It's less that atom/RSS is "dead", and more that its "done".

The protocol is finished. It works well. It's stable and unremarkable as opposed to trendy.

And to capitalists, that's "dead".

Nothing to hype, no wealth to extract.

How the .de zone slowly stopped resolving

#de #denic #dnssec

Listening to cybersecurity people freak out over Mythos is so tiring. Like, bro, your local water treatment plant runs Windows XP, your mobile provider's hardware is older than you are, and the protocol that routes internet traffic is secured by everyone just agreeing that hijacking it would be uncool.

High Vulnerability in the Linux Kernel ("Copy Fail") (CERT-EU Security Advisory 2026-005)

On 29 April 2026, a high local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named "Copy Fail", was publicly disclosed.

The vulnerability affects every mainstream Linux distributions shipping a kernel built since 2017. A public proof-of-concept exploit has been released.
As of the date of this advisory, no distribution has shipped a fixed kernel package. The mainline fix was committed on 1 April 2026, but vendor updates are still pending across all major distributions.

CERT-EU strongly recommends applying the interim mitigation immediately, prioritising Kubernetes nodes, and CI/CD runners exposed to untrusted workloads.

https://www.cert.europa.eu/publications/security-advisories/2026-005/

High Vulnerability in the Linux Kernel ("Copy Fail")

High Vulnerability in the Linux Kernel ("Copy Fail")