Show newer
Jim boosted

Security researchers are tracking what they say is the “mass exploitation” of a security vulnerability that makes it possible to take full control of servers running ownCloud, a widely used open-source filesharing server app.

The vulnerability, which carries the maximum severity rating of 10, makes it possible to obtain passwords and cryptographic keys allowing administrative control of a vulnerable server by sending a simple Web request to a static URL, ownCloud officials warned last week. Within four days of the November 21 disclosure, researchers at security firm Greynoise said, they began observing “mass exploitation” in their honeypot servers, which masqueraded as vulnerable ownCloud servers to track attempts to exploit the vulnerability. The number of IP addresses sending the web requests has slowly risen since then. At the time this post went live on Ars, it had reached 13.

“We're seeing hits to the specific endpoint that exposes sensitive information, which would be considered exploitation,” Glenn Thorpe, senior director of security research & detection engineering at Greynoise, said in an interview on Mastodon. “At the moment, we've seen 13 IPs that are hitting our unadvertised sensors, which indicates that they are pretty much spraying it across the internet to see what hits.”

arstechnica.com/security/2023/

Here's Fernando Alonso having a go in a Supercar in 2022 at Albert Park, like he's never known anything else. I don't think he even blinks.
youtu.be/1f5QlfrODu8

Show thread

Since around 2007 they pioneered 'seamless shifting' in F1, wherein - using some very trick arithmetic - two gears momentarily engage at the same time, so the next gear is 'queued' in milliseconds and the driveline simply keeps going with no interruption.

Show thread

Since pioneered in the 1989 Ferrari this is usually done by computer now; the transmission forks and throttle are moved by an actuator, the whole thing is coordinated by a computer. The driver changes gear via paddles behind the steering wheel.

Show thread

Fascinating footwell video of a V8 Supercar lap. The car has an ignition cutout on the upshift so the foot stays flat on the accelerator during the gear change. The heel and toe (clutch in and engine blip) is something you will not see in pretty much any racing series now, but they wanted it to stay in Supercars.

youtu.be/ytOujHHsIwI

The only series where the Sprint - which they borrowed from - is significant to the championship, and works because the tempo and format is very similar to Sunday's race.

Show thread

in the end, not with a bang, but with a whimper. But it went to the last race. Not a lot of that about.

Glorious onboard of a Ford GT40 at a classics event. The camera is just forward of the engine bay firewall, hence the very vocal V8. These cars look like they want to leave the track at any given moment.
youtu.be/EfhSb2cAN_Q

these cars, between their weight and the sensitivity to ride height, once they start to wobble, they're just gone. Both Sainz and Hulkenburg having big spins from mild upsets.

Mick Schumacher is joining WEC with Alpine's LMDh entry. This is great news. Endurance gives drivers things no other series does. Mick'll love it I'm sure.

Tried messing around with tap sensitivity within KDE's config, but little helped

Show thread

Before this, simply moving the mouse across the display would periodically grab a window, or tabs would move/open, or video playback would pause.

Show thread

Found an interesting quirk on wherein KDE's touchpad configuration was not disabling one-tap dragging, which was absolutely driving me nuts, until I discovered it needs to be disabled in synclient.

If you think tyre differences are bad, in it's even worse - they are stuck with what they choose, as changing them is possible but obviously not practical in a race. In the case of Jorge Martin, his championship challenge evaporated in Qatar.
autosport.com/motogp/news/the-

Jim boosted

There’s a small but important difference between a pharmacist and a farm assistant

Show older
Mastodon

The social network of the future: No ads, no corporate surveillance, ethical design, and decentralization! Own your data with Mastodon!