Sorry to report the passing of Craig Maloney https://www.mug.org/2024/04/sorry-to-report-the-passing-of-craig-maloney/ #Uncategorized
I may have found the best app ever
The FOSS security talking points have started already #Linux
https://www.pcmag.com/news/software-engineer-stops-attempt-to-add-backdoor-to-linux-operating-systems
Today in 1979, 45 years ago: A Soviet bio-warfare laboratory at Sverdlovsk accidentally releases airborne anthrax spores, killing 66 plus an unknown amount of livestock.
For example some common .deb applications that have a demonized component ship systemd service files, so you have to figure out their replacement. Again just a little work, and not a big deal. It's normal in something like Slackware, but the bsd-style init is really simple there.
I had to do the firmware dance initially, which Debian sorted out a little while ago, but that isn't a big deal. The experience did make me realize how widespread the systemdification of things has gone, which of course is one of the goals of the Devuan project - to avoid this.
If you really care about the #xz #liblzma backdoor, the IMHO (In My Humble Opinion) best source of information is the FAQ at https://gist.github.com/thesamesam/223949d5a074ebc3dce9ee78baad9e27 which gets continuous updates and keeps track of the fallout and ongoing work.
However — do not read the comments on that gist, as a lot of not-so-well informed but very motivated people try to add their .02.
Open source software is a critical part of our national security infrastructure, but one that government is entirely neglecting. Federal agencies rely on OpenSSL, liblzma, etc. just as much as the private sector.
We need a division of federal government whose job isn’t to find and exploit security holes (like the NSA), but fix them. A sort of a national security agency, but that actually does…that.
Absolutely exquisite score to Mike Leigh's Naked. Utterly beautiful.
https://youtu.be/CcBIetAjxDo
On a tangent from all the XZ drama, I'm somewhat amused that this proposal is essentially uncomfortably aligned with many, many criticisms of systemd from the last decade.
https://github.com/systemd/systemd/issues/32028
Hey funders,
You know you could just... give... the money... to projects that need it. Like software libraries that ARE IN EVERYTHING.
No grants. Don't make tech nerds write grants.
Don't make the tech nerds hire grant nerds to write grants.
FFS don't fund research into this problem with a budget of double what it would take to SOLVE THE PROBLEM for a significant number of open source projects with code that is, again, IN EVERYTHING.
SavageGeese represent everything I cannot stand in motoring journalists. They decide they don't like something out of the gate, then laugh at it and shit all over it because they're car bros, and car bros are going extinct, so they regressively kick out like teenagers. Pathetic. They acknowledge the Leaf's achievements but refuse to give it any credit at all as a viable EV.
https://youtu.be/YkZeGpzcuzw
FOSS, motorbikes, and photography.