@talgya

12 Followers
28 Following
36 Posts
I like to make things
working on @SmartPiggies | dev

I finally did it... I wrote an official blog post about Mastodon 3.3.0. Sorry for the delay

https://blog.joinmastodon.org/2021/01/mastodon-3.3/

Mastodon 3.3

It’s Mastodon 3.3 time 🎉 We’ve got security fixes, performance fixes, new moderation tools and quality of life features!

Mastodon Blog

RT @VULLNERAB1337
This critical Sudo vulnerability makes your servers cry... 😭

An unprivileged local user can execute commands with root privileges by exploiting this vulnerability. 🔥

Update your sudo package to the latest version ASAP! 🛡️

CVE-2021-3156

26.01.2021 - 21:16 (GMT)

Email from my uncle:
Well, I survived the bone marrow biopsy. It was all explained to me
beforehand and I was told about one point at which it would be painful.
He said: "It will happen right after I tell you to take a deep breath
and hold it." It happened just like he said - SHEEZ! It was painful but
only for a matter of seconds. I asked what the reason for the deep
breath was and he responds "Have you ever tried screaming while holding your breath?"
😂
@lccmv I was hit with my first warning to be banned. For this...
This gets even bigger. If https://www.reddit.com/r/ParlerWatch/comments/kuqvs3/all_parler_user_data_is_being_downloaded_as_we/giu04o6/ is legit (and so far everything matches up), Twilio dropping Parler made them implement a work-around that left accounts wide open for takeover. Like: admin accounts. So people have been using that to scrape all “private” data.
All Parler user data is being downloaded as we speak!

Posted in r/ParlerWatch by u/BlueMountainDace • 15,002 points and 2,663 comments

I’ve looked through the available info and everything adds up. Yes, it seems that activists managed to archive at least 30TB of #Parler data. It’s now safe to use the past tense when speaking about Parler. Even ignoring the technical difficulties, there is no coming back from that.

Some back-of-the-napkin math by my colleague about why cellular service cut out during the Capitol riots. (Spoilers: it's because American infrastructure is trash)

https://www.pcmag.com/opinions/why-cell-networks-cut-out-at-the-us-capitol-riot

- Mastodon is a federated and open version of twitter. You can use choose between multiple different competing public and private servers called instances. You can also run and use your own instance which is best practice from a trust perspective. Users can interact and 'follow' across instances.

- DMs are not encrypted so instance admins can read them.

- The bitcoinhackers instance is run by @nvk who we trust to keep it up, protect our privacy, and to not censor us.

RT @RayRedacted
This will be studied in information security college textbooks one day.
Controverse. Les musées doivent-ils vendre leurs œuvres pour survivre au Covid-19 ?

Pour compenser l’effondrement des recettes dû à la pandémie et éviter les licenciements, de nombreux musées britannique envisagent de se séparer de certaines pièces. De quoi provoquer un débat éthique houleux dans le milieu de l’art.