Note to self: More proof reading before tooting.
Note to self: More proof reading before tooting.
Dear #OpenSource folks, I'd like to offer #UX help to your teams. I've tried "making a small PR" on projects and it turns out that's TERRIBLE advice for a UX designer. The PR is usually misunderstood or ignored. I don't fault the teams for this! It's just the wrong tool for the job.
So I'm trying something different. I'm offering free consulting time to any project that wants it. Sign up here: https://cal.com/scottjenson/exchange
People are desperately rushing to save data from the National Oceanic and Atmospheric Administration (NOAA) before their Amazon Web Services go dead tonight... thanks to DOGE. That's a lot of weather and climate data.
The thread continues:
"Help very much needed. Some tips…
Instructions for scraping from SciOp
If you begin working on an archive, please mention that you’ve claimed it in a reply to this thread and then edit your reply with an update when it’s completed and/or uploaded
If you archive a resource but can’t upload it to SciOp, that’s okay, just let us know
Possible third-level domains based on certificate issuances (thank you, @jenniferplusplus)
Possible sites/datasets based on the master NOAA github account (thank you, @Catladylilia)"
If you want to help, go to the Safeguarding Research & Culture website:
https://forum.safeguar.de/t/noaa-all-services-specifically-amazon-web-servies-urgent/569
and read the whole thread, then sign up.
[EDIT: Wait a minute! See some *good news* in part 3.]
(1/n)
Well, this one was unexpected: https://github.com/tarampampam/error-pages/discussions/336
I just discovered that some of my services were open to the internet, thanks to the default-backend for my ingress-nginx changing the status codes when switching from v2 to v3 of the backend container…
It's not really a vulnerability, but somehow a security issue for potentially more people. My monitoring caught it, but I didn't really understand until I looked deeper into it.
Kenne Ich hier jemanden mit einer (halbwegs guten) Kameradrohne? Der mir jetzt, und in den nächsten 12 bis 18 Monaten ein paar mal wiederholt, Fotos/Videos mit der Drohne drehen könnte?
Würde gerne den Baufortschritt beim neuen Haus immer wieder mal aufnehmen, aber dafür eigens Drohne kaufen ist auch meh...
Umgebung von #Fulda, Unkosten die entstehen trag Ich.
PSA: The #LVFS has been down from about 5AM this morning; the machine the database is running on appears to be OOMing. I've opened a ticket with the sysadmin team at the Linux Foundation and am trying some mitigations in the meantime.
No idea on the root cause yet -- debugging now. If you see error messages from fwupd or gnome-software when refreshing or downloading firmware then that's why. Some downloads may work, as AWS is starting and draining containers like crazy. Send hugs!
@aphyr wait until those idiots find out about trans actions.
Keep up your great work.
If you want to filter out US politics just filtering one name brings you 80% there.
GOOD POINT
Let's talk about the elephant in the room.
Project 2025 calls for using public channels of communication (like Signal) instead of secure government channels, to subvert FOIA requests and conceal damning information from the public. This was no rookie mistake. It's the plan.
GitHub has gone - long live Forgejo (@forgejo).
Fully migrated out of Microsoft’s walled garden after they blocked us:
- 54k commits
- 9.5k issues
- 4.3k pull requests
- 100k comments
Everything moved. Nothing left behind.
A few words on SSH public keys read from AuthorizedKeysFile(s) and obtained programmatically from OpenSSH's AuthorizedKeysCommand program.
https://jpmens.net/2025/03/25/authorizedkeyscommand-in-sshd/
I'm a bit unhappy with the coverage for CVE-2025-1974. While it might be true that ">40%" of all #Kubernetes clusters run ingress-nginx, only a small fraction will actually at risk of being exploited. If you run an overlay network (non-IPv6) and don't let non-cluster-admins create Ingress resources, the risk is drastically reduced. Remains the risk of attacks by workloads directly talking to the webhook endpoint.
It's an exciting finding, but still… keep calm and patch.
@tagesschau Die Antwort kann ich Euch jetzt schon geben: Jedenfalls NICHT idiotensicher!
Trump admin uses Signal to coordinate military operations, and also accidentally added the editor in chief of The Atlantic to a group about bombing Houthi targets in Yemen that includes JD Vance, Stephen Miller, Marco Rubio, Pete Hegseth, and other dipshits https://www.theatlantic.com/politics/archive/2025/03/trump-administration-accidentally-texted-me-its-war-plans/682151/?gift=kPTlqn0J1iP9IBZcsdI5IVJpB2t9BYyxpzU4sooa69M
Have you had that "Upcoming price change for your Microsoft 365 subscription" email yet? They want to charge you an extra 50%ish for AI features, and they do *not* make it easy to find the way to turn it off. It took me minutes of searching - this is a particularly evil dark pattern.
"Switch plan" just lets you pick between annual and monthly billing. You want "Turn off recurring billing" and then "Current subscription without AI".
You're welcome. Please boost for others.
Pika Backup kept failing due to locking issues and unreliable mounts. I guess I successfully resolved that today by deploying borg on the server-side: https://github.com/AnotherStranger/docker-borg-backup
Wenn Koalas daten, führen sie dann Koalationsgespräche?