On my blog: Developer Journal, Lā Kūʻokoʻa https://john.colagioia.net/blog/2022/11/28/kalahui.html #programming #project #devjournal
On my blog: Things That Worked (and Didn’t Work) in 2022 https://john.colagioia.net/blog/2022/11/27/worked.html #advice #rant
On my blog: Free Culture Book Club — Redmine, part 2 https://john.colagioia.net/blog/2022/11/26/redmine-2.html #freeculture #bookclub
On my blog: Tweets from 11/21 to 11/25 https://john.colagioia.net/blog/2022/11/25/week.html #twitter #week #socialmedia #linkdump
On my blog: Real Life in Star Trek, The Child https://john.colagioia.net/blog/2022/11/24/child.html #scifi #startrek #closereading
What if We Replace Guns and Bullets with Bows and Arrows?
The bicycle and the bow are both highly efficient, human-powered technologies that could substitute for two very harmful alternatives: the car and the firearm. Why do we promote one but not the other? ⌘ Read more
When Lethal Weapons Grew on Trees
While manufacturing modern firearms and bullets depends on a global supply chain and fossil fuels, bows and arrows can be made anywhere out of anything, using only human power and simple hand tools. ⌘ Read more
In reply to: chreke’s blog - Little Languages Are The Future Of Programming
The idea is that as you start to find patterns in your application, you can encode them in a little language—this language would then allow you to express these patterns in a more compact manner than would be possible by other means of abstraction. Not only could this buck the trend of ever-growing applications, it would … ⌘ Read more
On my blog: Developer Journal, Mayflower Compact https://john.colagioia.net/blog/2022/11/21/mayflower.html #programming #project #devjournal
お知らせ:インシデント報告Webフォームメンテナンス(2022/11/18)終了のお知らせ ⌘ Read more
お知らせ:JSAC2023参加登録開始 ⌘ Read more
お知らせ:PSIRT Services Framework Version 1.1日本語版およびPSIRT Maturity Document日本語版 ⌘ Read more
new version (1.0.4) of introduction to uxn programming e-book: launcher and raw runes | https://compudanzas.net/introduction_to_uxn_programming_book.html
@mckinley@twtxt.net Thank you! I didn’t even know about signing and encrypting XML documents. Right, RSS is a little bit messy.
Unfortunately, the autodiscovery document in one of your linked resources does not exist anymore. What annoys me in Atom is the distinction between <id> and <link>. I always want my URL also to be my ID, so I have to duplicate that – unnecessarily in my opinion.
Also, never found a good explanation why I should add <link rel="self" … /> to my feeds. I just do, but I don’t understand why. The W3C Feed Validation Service says:
[…] This value is important in a number of subscription scenarios where often times the feed aggregator only has access to the content of the feed and not the location from which the feed was fetched.
This just sounds like a very questionable bandaid to bad software architecture. Why would the feed parser need access to the feed URL at this stage? And if so, why not just pass down the input source? Just doesn’t make sense to me.
Also, I just noticed that I reference the http://purl.org/rss/1.0/modules/syndication/ namespace, but don’t use it in most of my feeds. Gotta fix that. Must have copied that from my yfav feed without paying attention what I’m doing.
Your article made me reread the Atom spec and I found out, that I can omit the <author> in the <entry> when I specify a global <author> at <feed> level. Awesome! Will do that as well and thus reduce the feed size.
お知らせ:インシデント報告Webフォームメンテナンス(2022/11/18)のお知らせ ⌘ Read more
Atom vs. RSS: https://mckinley.cc/blog/20221109.html
cc @movq@www.uninformativ.de @lyse@lyse.isobeef.org @nmke-de@yarn.zn80.net
It only took me 5 days :)
Ignite Realtime Blog: Openfire 4.7.4 release
The Ignite Realtime Community is happy to announce the 4.7.4 release of Openfire. This release fixes a number of bugs and represents our effort to provide a stable 4.7.x series while work continues on the next feature release of Openfire.
Notable fixes include enhancements to cluster-specific implementation of Multi-User Chat functionality, improved websocket handling and improv … ⌘ Read more
お知らせ:CyberNewsFlash「Intel製品に関する複数の脆弱性について」 ⌘ Read more
accepted in the Hybrid Live Coding Interfaces 2022 workshop with our qiudanz technique proposal | https://compudanzas.net/qiudanz_devlog.html
ProcessOne: ejabberd 22.10
This ejabberd 22.10 release includes six months of work, over 140 commits, including relevant improvements in MIX, MUC, SQL, and installers, and bug fixes as usual.
This version brings support for latest MIX protocol version, and significantly improves detection and recovery of SQL connection issues.
There are no breaking changes in SQL schem … ⌘ Read more
ProcessOne: ejabberd 22.10
This ejabberd 22.10 release includes five months of work, over 120 commits, including relevant improvements in MIX, MUC, SQL, and installers, and bug fixes as usual.
This version bring support for latest MIX protocol version, and significantly improves detection and recovery of SQL connection issues.
There are no breaking changes in SQL schem … ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年10月)」(更新) ⌘ Read more
お知らせ:JPCERT/CC Eyes「TSUBAMEレポート Overflow(2022年7~9月)」 ⌘ Read more
お知らせ:JPCERT/CC インターネット定点観測レポート[2022年7月1日~2022年9月30日] ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年10月)」 ⌘ Read more
@prologic@twtxt.net It’s called “cgod” and it isn’t written in C or Go? I want my money back…
I also like Gopher more than Gemini. The problem Gemini is trying to solve is better solved by just writing static HTML 4.01 pages.
98.css (again)
I already shared “98.css” on my blog in 2020. It’s a CSS framework that styles semantic HTML to look like Windows 98. ⌘ Read more
PEP 700: Additional Fields for the Simple API for Package Indexes
PEP 691 defined a JSON form for the “Simple Repository API”. This allowed clients to more easily query the data that was previously only available in HTML, as defined in PEP 503. ⌘ Read more
お知らせ:CyberNewsFlash「2022年7月から9月を振り返って」 ⌘ Read more
お知らせ:ソフトウェア等の脆弱性関連情報に関する届出状況[2022年第3四半期(7月~9月)] ⌘ Read more
お知らせ:JPCERT/CC 活動四半期レポート[2022年7月1日~2022年9月30日] ⌘ Read more
お知らせ:JPCERT/CC インシデント報告対応レポート[2022年7月1日~2022年9月30日] ⌘ Read more
お知らせ:インシデント報告Webフォームメンテナンス(2022/10/13)終了のお知らせ ⌘ Read more
お知らせ:CyberNewsFlash「複数のアドビ製品のアップデートについて」 ⌘ Read more
** uxn laboratory **
As I look to assembly nights 2, and think of trying my own take on it, I wanna have a cozy space ready to play with uxn.
The setup I’ve landed on is sort of inspired by plan9port.
Prepare the way- in home directory, create a
udirectory
- in
ucloneuxnand build it
- add
~/u/uxn/to your path as$UXN
- add
$UXN/binto your path
- moving forward we’ll put any and all
*.romfiles into … ⌘ Read more
お知らせ:インシデント報告Webフォームメンテナンス(2022/10/09)終了のお知らせ ⌘ Read more
applied to the Hybrid Live Coding Interfaces 2022 workshop | https://compudanzas.net/qiudanz_devlog.html
お知らせ:JPCERT/CC Eyes「TLP v2の日本語版が公開されました」 ⌘ Read more
お知らせ:インシデント報告Webフォームメンテナンス(2022/10/09)のお知らせ ⌘ Read more
お知らせ:インシデント報告Webフォームメンテナンス(2022/10/13)のお知らせ ⌘ Read more
Tillitis Key 1
The secret project I’ve been mentioning in my gemlog is out!
This week we presented the Tillitis Key 1 at the Open Source Firmware\
Conference (OSFC). What we unveiled is a new kind of USB security
stick and a new company, a sister company to Mullvad VPN: Tillitis.
The stick is a small computer that can load and run small programs
uploded to it from a host computer. It always measures … ⌘ Read more
お知らせ:CyberNewsFlash「ISC BIND 9における複数の脆弱性について(2022年9月)」 ⌘ Read more
お知らせ:TRAFFIC LIGHT PROTOCOL(TLP) FIRST Standards Definitions and Usage Guidance - Version 2.0 日本語版 ⌘ Read more
お知らせ:JPCERT/CC Eyes「積極的サイバー防御」(アクティブ・サイバー・ディフェンス)とは何か ⌘ Read more
お知らせ:JPCERT/CC Eyes「攻撃グループBlackTechによるF5 BIG-IPの脆弱性(CVE-2022-1388)を悪用した攻撃」 ⌘ Read more
お知らせ:CyberNewsFlash「複数のアドビ製品のアップデートについて」 ⌘ Read more
お知らせ:JPCERT/CCのスペシャリストに国際規格開発賞 ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年9月)」 ⌘ Read more
Arnaud Joset: Updates: chatty server and HTTPAuthentificationOverXMPP
It’s been a long time since I updated this blog. It will be a short update post about two projects.
The first is chatty_server, a small XMPP bot I use to interact with my server. It allows me to get information about the CPU load, traffic, weather etc.
It also has a small feature to get reminder messages. There was a bug that allowed anyone to spam reminders. Anybody can add the bot to their rooster and could create random reminders t … ⌘ Read more
Today I found on HackerNews a federated ‘Reddit’ 🤔
https://join-lemmy.org/docs/en/index.html
**RT by @mind_booster: “After self-hosting my email for twenty-three years I have thrown in the towel. The oligopoly has won.”
https://cfenollosa.com/blog/after-self-hosting-my-email-for-twenty-three-years-i-have-thrown-in-the-towel-the-oligopoly-has-won.html**
“After self-hosting my email for twenty-three years I have thrown in the towel. The oligopoly has won.”
[cfenollosa.com/blog/after-se…](https://cfenollosa.com/blog/after-self-hosting-my-email-for-twenty-three-years-i-have-thrown-in-the-towel-the-oligopoly … ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年8月)」(更新) ⌘ Read more
@prologic@twtxt.net I don’t know how to code in go or anything really. Not even really know how to do html and css only basic things.
お知らせ:役員体制の一部変更について ⌘ Read more
お知らせ:JPCERT/CC Eyes「JPCERT/CCが確認したフィッシングサイトのURLを公開」 ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年8月)」(更新) ⌘ Read more
Dino: Stateless File Sharing: Sources and Compatibility
This is my next progress post about my Google Summer of Code project of implementing Stateless File Sharing (sfs)
Like everything else we receive, we need to store the sfs sources in a database.
In this case, we are in a unique position:
Not only are there different kinds of sources, but even http sources on their own are not trivial.
For now, we only … ⌘ Read more
お知らせ:CyberNewsFlash「Apple製品のアップデートについて(2022年8月)」 ⌘ Read more
@mckinley@twtxt.net Haha, while composing I was wondering two or three times whether I should throw my thoughts in an HTML page instead. But out of utter laziness I discarded that idea. ¯_(ツ)_/¯
お知らせ:CyberNewsFlash「複数のアドビ製品のアップデートについて」 ⌘ Read more
お知らせ:CyberNewsFlash「Intel製品に関する複数の脆弱性について」 ⌘ Read more
お知らせ:JPCERT/CC Eyes「A File Format to Aid in Security Vulnerability Disclosure - 正しくつながる第一歩」 ⌘ Read more
Dino: Stateless File Sharing: Base implementation
The last few weeks were quite busy for me, but there was also a lot of progress.
I’m happy to say that the base of stateless file sharing is implemented and working.
Let’s explore some of the more interesting topics.
File hashes have some practical applications, such as file validation and duplication detection.
As such, they are part of the [metadata element](https://xmpp.org/extensio … ⌘ Read more
お知らせ:JPCERT/CC Eyes「TSUBAMEレポート Overflow(2022年4~6月)」 ⌘ Read more
お知らせ:標準から学ぶICSセキュリティ - ICSセキュリティ標準IEC 62443シリーズの全体概要 ⌘ Read more
お知らせ:JPCERT/CC Eyes「連載『標準から学ぶICSセキュリティ』の初回を公表しました」 ⌘ Read more
People now talk about “web3” as if it was a new thing, when in fact it has been being redefined, again and again, for years. Years, yes, and not just a few: just see what I wrote about this subject 15 years ago, when we were already debating web3… and 4:
https://mindboosternoori.blogspot.com/2007/08/what-is-web-30.html
People now talk about “web3” as if it was a new thing, when in fact it has been being redefined, again and again, for years. Years, yes, and not just a few: just see what I wrote about this … ⌘ Read more
Ignite Realtime Blog: Openfire 4.7.3 released
The Ignite Realtime Community is pleased to announce the release of Openfire version 4.7.3. This version brings a number of bug fixes and other improvements and signifies our efforts to produce a stable 4.7 series of Openfire whilst work continues on the next feature release 4.8.0.
You can find download artifacts on our website with the fol … ⌘ Read more
お知らせ:サイバー政策動向を知ろう Watch! Cyber World vol. 3 |中国の法整備 ⌘ Read more
お知らせ:JPCERT/CC インターネット定点観測レポート[2022年4月1日~2022年6月30日] ⌘ Read more
@niplav@niplav.github.io if he’s willing to be even more nerdy he could use https://lojban.org/publications/cll/cll_v1.1_xhtml-section-chunks/section-evidentials.html and possibly color-code them in some less important color than red
お知らせ:ソフトウェア等の脆弱性関連情報に関する届出状況[2022年第2四半期(4月~6月)] ⌘ Read more
お知らせ:インシデント報告Webフォームメンテナンス(2022/07/14)終了のお知らせ ⌘ Read more
お知らせ:JPCERT/CC Eyes「なぜ、SSL-VPN製品の脆弱性は放置されるのか ~“サプライチェーン”攻撃という言葉の陰で見過ごされている攻撃原因について~」 ⌘ Read more
お知らせ:JPCERT/CC 活動四半期レポート[2022年4月1日~2022年6月30日] ⌘ Read more
お知らせ:JPCERT/CC インシデント報告対応レポート[2022年4月1日~2022年6月30日] ⌘ Read more
**The SDF Public Access UNIX System Celebrates 35 Years!
Here’s what I wrote about SDF back on the 20th anniversary, only now more impressive as SDF goes on in operation, and still faithful to the same ideas, objectives and modus operandi.
Happy birthday!
https://mindboosternoori.blogspot.com/2007/06/sdf-celebrates-20-years.html**
The SDF Public Access UNIX System Celebrates 35 Years!
Here’s what I wrote about SDF back on the 20th anniversary, only now more impressive as SDF goes on in operation, and still … ⌘ Read more
Ignite Realtime Blog: Openfire 4.7.2 released
The Ignite Realtime Community is pleased to announce the release of Openfire version 4.7.2. This version fixes a number of bugs and signifies our efforts to produce a stable 4.7 series of Openfire whilst work continues on the next feature release 4.8.0.
A major highlight of this release is fixing of BOSH bugs found under load testing.
You can find [download artifacts](https://ign … ⌘ Read more
お知らせ:CyberNewsFlash「Intel製品に関する複数の脆弱性について」 ⌘ Read more
お知らせ:CyberNewsFlash「複数のアドビ製品のアップデートについて」 ⌘ Read more
お知らせ:CyberNewsFlash「2022年4月から6月を振り返って」 ⌘ Read more
In reply to: A simple mess
This is also something people keep getting wrong about Markdown as originally presented. Markdown isn’t a format. It’s a convenience tool that helps you write some of the boringest and commonest parts of HTML easier, and you can easily drop into more wonky HTML at any time.
Yes yes yes yes yes yes! ⌘ Read more
Ignite Realtime Blog: Push Notification Openfire plugin 0.9.1 released
The Ignite Realtime community is happy to announce the immediate availability of a bugfix release for the Push Notification plugin for Openfire!
This plugin adds support for sending push notifications to client software, as described in XEP-0357: “Push Notifications”.
[This update](https://www.igniterealtime.org/projects/openfire/plugins/0.9.1/pushnotificatio … ⌘ Read more
お知らせ:JPCERT/CC Eyes「CODESYSに由来するICS製品の脆弱性を論じた2021年度下期のICS脆弱性分析レポートを公表」 ⌘ Read more
お知らせ:JPCERT/CC Eyes「GitHubからC2サーバーの情報を取得するマルウェアVSingle」 ⌘ Read more
A simple TODO application: https://www.codemadness.org/todo-application.html
Hmm, @prologic@twtxt.net / @lyse@lyse.isobeef.org: Should we remove the section “Traditional Human-Readable Topics” from the spec? Or mark is as deprecated? I haven’t seen this being used in the wild for years. 🤔
@chronolink@chrono.tilde.cafe Replies are not part of the original twtxt format. They were added later as an extension by Yarn.social: https://dev.twtxt.net/doc/twtsubjectextension.html (only the section “Machine-Parsable Conversation Grouping” is used these days)
お知らせ:インシデント報告Webフォームメンテナンス(2022/07/14)のお知らせ ⌘ Read more
お知らせ:JPCERT/CC Eyes「攻撃グループLazarusが使用するマルウェアYamaBot ⌘ Read more
お知らせ:JPCERT/CC 感謝状 2022 ⌘ Read more
moved from cdmx to madrid | https://compudanzas.net/location.html
お知らせ:ICS脆弱性分析レポート ― 2021年度下期 ― ⌘ Read more
お知らせ:JPCERT/CC Eyes「インターネットスキャンデータから見るウクライナ」 ⌘ Read more
お知らせ:CyberNewsFlash「Intel製品に関する複数の脆弱性について」 ⌘ Read more
お知らせ:CyberNewsFlash「複数のアドビ製品のアップデートについて」 ⌘ Read more
wait, is CIRL incorrigible for the same reason that utility-maximizers don’t wirehead? https://niplav.github.io/notes.html#A-Short-Example-For-Why-CIRL-Is-Incorrigible
I’ll likely take this down soonish as I think it’s pretty bad for usability, but as a fun hack, one of my weird side projects web pages now has monitor burn-in: http://txtpunk.com/index.html