Show more

If you're confused too, don't be like - watch my video from OWASP AppSec 2018 where I went into details how these two are different:

scitech.video/videos/watch/38b

Show thread

What they dump is *binary* representation of UTF-8 *encoded* Unicode character U+105 (LATIN SMALL LETTER A WITH OGONEK) but with \u prefix that confuses decoder into thinking it's *two* Unicode character with code points U+C4 (LATIN CAPITAL LETTER A WITH DIAERESIS) U+85 (NEXT LINE).

They totally confused the concepts of Unicode *codepoint* (the number of a character in the Unicode catalogue), and character *encoding* (one of possible binary representations of the character).

Show thread

🤦‍♂️ When you dump your data prior to deleting your account, you get a nicely looking ZIP with JSON, JPG, MP4 etc.

I've started importing that into ElasticSearch so that all the valuable 10 years old arguments aren't lost etc etc.

This is a fragment of text in Polish taken from the dump (JSON-encoded Unicode):

nios\u00c4\u0085 za sob\u00c4\u0085

Comes out, Facebook screwed up character encodings in their internal representation 🤦‍♂️

#fediverse alive servers stats

alive servers: 5,744 (+103)
max: 5,744
total users: 3,535,475 (+8,410)
max: 3,545,639

top ten (soft users servers):

:mastodon: 2,923,325 3,167
:diaspora: 322,728 21
:peertube: 130,073 808
:pleroma: 76,869 937
:pixelfed: 31,891 172
:writefreely: 20,803 331
:plume: 10,320 64
:friendica: 7,716 92
:gnusocial: 6,837 27
:hubzilla: 4,270 98

@scully

Fantastic place!

I guess Yagi on the barn should do the job, especially if you have strong AP on the house.

@scully Ah ok, but you do have power in the barn? In such case I'd just go for a directional WiFi antenna (like Yagi) on both ends. No need to top class, 200 m is nothing unusual for WiFi bridges. On both ends you can use TP-Link or OpenWrt WiFi access points, even the cheap ones, you just need one in Access Point mode, the other in WiFi client mode. Chances are it would even worth with directional antenna on the house, but signal may be patchy during fog etc so when you need monitoring most.

@scully

If it's just a single PoE, why not long Ethernet cable from wherever the main Internet connection is? Because you still need the PoE cable, so why not send data over it?

Ubiquity is fun but expensive and in addition to the transmitter you also need a computer (read: RaspberryPi) to run controller on. Mesh generally make only sense when you have a number of these, repeating signal between them, not just a single one.

@scully

What do you need in the barn in terms of client devices - one WiFi camera, a dozen of them?

parent: get out, it's time to go
kid: but i am out

Delete this malicious Android app from your phone right now

More Android app malware has been found and removed from the Google Play Store, this time in the form of an app called Barcode Scanner.

Researchers found that the app seemed to be legitimate at one time and had accumulated some 10 million installations before the sketchy code was added, turning it into malware.

More info

bgr.com/2021/02/10/android-app

Росреестр засекретил жену предполагаемого отравителя Навального в документах о собственности. Она стала «Российской Федерацией»

t.co/6RGwHBYAAF

Источник: twitter.com/meduzaproject/stat

Позиция российских властей вкратце: акцию устраивают агенты НАТО, своровав идею у флешмобов в память о Великой Отечественной, а ходить туда не надо, потому что может быть теракт, ну или как минимум задержание

t.co/c2vHlfx7hb

Источник: twitter.com/meduzaproject/stat

Time to upgrade your GitLab :blobfoxcomputerowonotice:

about.gitlab.com/releases/2021

Generally speaking it's recommended to subscribe to the webfeed. If you also want to chat a bit about those updates, feel free to join us in our Git Hosters room:

shivering-isles.com/matrix#git

It's a small matrix room with people hosting their own platforms and talk a out it. Hope to see you around :)

#GitLab #infosec #update

Gonna check out PrusaSlicer today because Cura is totally screwing up support generation

@1010101 @lunch

I'm just reading about the concept of L2 and it seems like community finally discovered that the usual mantra "do that on blockchain" isn't always the best solution for many reasons. Basically L2 is a nice name for doing things without blockchain (you could even say: "regular computation", as in L2 channels), and then only submitting the final result for the sake of keeping audit trail.

ethereum.org/en/developers/doc

@lunch

Thanks, that's very useful. I'm not watching the ETH world too much, just trying stuff that I find interesting and ENS was certainly one of them. Handshake also looks interesting and I'll give it a try. To be honest however, Gnunet GNS seems just as good from the functional point of view and without the whole massive blockchain overhead.

Show more

kravietz 🦇's choices:

Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!