s_bergmann, to blender
@s_bergmann@chaos.social avatar

, alongside leading open source organizations including the SoftwareFoundation, Foundation, Software Foundation, Software Foundation, Foundation, and Foundation, announced today a collaborative initiative aimed at establishing common cybersecurity standards in alignment with the European Union’s Cyber Resilience Act ():

https://thephp.foundation/blog/2024/04/02/open-source-community-cra-compliance-initiative/

onepict, to random
@onepict@chaos.social avatar

Personal opinion.

Despite RMS I think of the GPL and using those licences as a gift to the commons in perpetuity.

Unlike more permissive licences you aren't at risk of future releases being locked up in a kinda "Pray I don't alter the deal more" vibe.

There's nothing petty in how I use it.

But then I tend more towards the collective freedoms, than the freedom of anything goes.

I believe future generations should have access to all the code.

markhughes,
@markhughes@mastodon.social avatar

@onepict
Yep. It was only recently I properly understood why I was always reluctant to contribute to a permissive project. I knew it was bad, but Redis have given the example I needed to explain it in one word.

All my own projects are GPL and I will never contribute to anything like , or licensed code. If I need a project I'll just fork and switch it to GPL.

icing, to random
@icing@chaos.social avatar

From the google doc about the HTTP/2 Rapid Reset attack:

„In a typical HTTP/2 server implementation…“

If you run Apache httpd, you do not have such. Since 2016, we have measures in place that limit clients in how they can pull our chains.

This attack pattern will waste cpu on your httpd, but it will not hit your backends.

In addition, nghttp2 will make a release that limits the cpu waste.

simontsui, to random

Rapid7 identified suspected exploitation of CVE-2023-46604 (CVSS: 10.0 critical severity, disclosed 26 October 2023 by Apache). Rapid7 also included links to a Proof of Concept exploit, external technical details, and their own vulnerability analysis. They provided Indicators of Compromise.
Link: https://www.rapid7.com/blog/post/2023/11/01/etr-suspected-exploitation-of-apache-activemq-cve-2023-46604/

chris_evelyn, to random German
@chris_evelyn@troet.cafe avatar

Kennt jemand gute, aktuelle Ressourcen zum Webserver? Bücher, Screencasts, Blogs etc.?

(Boost ausdrücklich erwünscht ^^)

markhughes, to foss
@markhughes@mastodon.social avatar

We now understand why permissive is bad for .

taught us why is important and , , etc allow corporations to enclose and steal our contributions.

's use of for targeting in , which may also use the code we donated to the commons, shows that we need to be more restrictive if we want to avoid assisting war crimes and probable .

I hope some lawyers are on this, and will help us add exclusions to protect from such use.

goku12, (edited ) to Matrix
@goku12@fosstodon.org avatar

The project is re-licensing its servers (synapse, dendrite, ..) from to , following the spate of similar measures by many other projects. Good that they didn't choose a non-FOSS license.

But they're also changing the sign-off from to . That is very disappointing.

PS: If you are starting a FOSS project, consider adopting a license. It should be abundantly clear by now that the push for permissive licenses is an attempt to extract free labour.

DoomsdaysCW, to NativeAmerican
@DoomsdaysCW@kolektiva.social avatar

Opinion: Why the birthplace of the Western religion shouldn’t be destroyed by a

by Luke Goodrich
February 6, 2024·

"A federal court is poised to decide whether a site will be destroyed by a massive . Mining proponents claim that destroying the is necessary for the development of . That claim is both factually wrong and morally repugnant. And recent polling shows that the vast majority of Americans agree with what the constitution requires: sacred sites deserve the same protection as all other houses of worship.

"Since before European contact, and other Native tribes have lived and honored their at , or 'Chi’chil Bildagoteel.' The site is the birthplace of Western Apache religion and the site of ancient religious ceremonies that cannot take place anywhere else. Because of its religious and cultural significance, Oak Flat is on the National Register of Historic Places and has been protected from mining and other destructive practices for decades.

"That changed in 2014, when several members of Congress, supported by , slipped an amendment into a must-pass defense bill authorizing the transfer of Oak Flat to a foreign-owned mining giant. That company, , announced plans to obliterate the sacred ground by swallowing it in a mining crater nearly two miles wide and 1,100-feet deep, ending Apache religious practices forever. That was no surprise given the company’s sordid history dealing with . The majority owner of Resolution Copper is (the world’s second largest mining company), which sparked international outrage in 2020 when it destroyed a 46,000-year-old rock shelter with some of the most significant artifacts in all of .

"The Apache and their allies, represented by my firm, the , have been fighting in court to ensure that such an atrocity won’t repeat itself at Oak Flat. After initial court rulings against the Apache, a full panel of 11 judges at the Ninth Circuit Court of Appeals reheard their appeal last spring. A decision on whether the government can execute the land transfer is expected any day.

"Resolution Copper and its backers want the public to believe that building the mine is essential for developing energy. Extracting the copper beneath Oak Flat, they say, will help to build batteries necessary for powering and thus fight . In other words, we have to destroy Oak Flat in order to save the planet.

"These claims, however, are false — and they are specifically designed to obscure the physical and cultural destruction the project would wreak on the land.

"The mine will destroy the , not save it. It is undisputed that the mine will swallow the ecologically diverse landscape of Oak Flat in a massive crater, decimating the local . It will also leave behind approximately 1.37 billion tons of ',' or , which, according to the government’s own environmental assessment, will pollute the and scar the landscape permanently. And the mine will consume vast quantities of water at the time it is most needed by drought-stricken towns and .

"Supporters of the mine are also at odds with the majority of Americans. According to this year’s Religious Freedom Index, an annual survey conducted by Becket, 74% of Americans believe that Native sacred sites on federal land should be protected from mining projects, even when the projects are purportedly pro-jobs and pro-environment.

"That conclusion is both sensible and humane. America can transition to renewable energy without blasting the cradle of Western Apache religion into oblivion. And it should. For too long, our nation has made excuses for taking advantage of and their land. Indeed, our nation drove the Western Apache off Oak Flat and surrounding lands in the 1800s precisely to make way for . It shouldn’t repeat that again.

"It is past time to protect Indigenous sacred sites from further destruction. Basic fairness and our constitutional commitment to religious freedom require no less. And, happily, most Americans agree."

https://news.yahoo.com/opinion-why-birthplace-western-apache-200000087.html

alexelcu, to programming
@alexelcu@social.alexn.org avatar
icing, to random
@icing@chaos.social avatar

In case you have not already had enough of the "HTTP/2 Rapid Reset" attack (remember? last week?), here is my blog on the situation and history in Apache httpd: https://github.com/icing/blog/blob/main/h2-rapid-reset.md

alltagsradler, to random German
@alltagsradler@social.tchncs.de avatar

Uh, Störung bei #atlassian.
#Jira geht nicht mehr. Viel interessanter finde ich die Fehlermeldung. Sie nutzen #Apache #Tomcat Version 9.0.68 in der Cloud. Die ist am 7.10.2022 erschienen (Aktuell ist 9.0.85). Ziemlich alt.
#Itkram

osjobhub, to hiring
@osjobhub@fosstodon.org avatar

Featured Jobs @fosdem: On a mission to make Linux secure, stable, and profitable, CloudLinux is seeking a Go developer for its Apache2Nginx project. Learn more and apply now on https://opensourcejobhub.com/job/12886/senior-go-developer-for-network-security-remote-work-anywhere/

rilindo, to RedHat

All this debate about and makes me reason something: Most of us are profiting from free work done by volunteers.

I setup recurring donations with , , and . It isn't much, but at least it is something.

koehnlein, (edited ) to firefox
@koehnlein@mastodon.social avatar

I had trouble with Content-Security-Policy reporting on a password protected staging environment in combination with Firefox. I found a nice solution and blogged about it:

https://www.koehnlein.eu/en/blog/2024/csp-reporting-basic-auth/

lorepozo, to foss

Software licenses should include data protections for users of services built with the software.

This would allow software developers to push GDPR-like protections rather than waiting for legislation making it a legal requirement.

Fits well into the ethos of Affero GPL, but would be excellent to see in Apache licenses and others.

ablackcatstail, to random

I'm a long time web server admin having sworn by it and had it in regular use since I started learning Unix in 1998. Well, for the first time ever, I'm not using Apache in production. I just realized that my two current web servers are only running . Now granted the reason for that is NGINX is recommended for Mastodon and Ghost Blog

Powerfromspace1, to random
@Powerfromspace1@mstdn.social avatar

These dark days of #Duginist sabotage of the West will pass and in future years hence EU 🇪🇺and West will reunify and defeat #Muscovy 🇷🇺 from the air!

#SlavaUkraine 💪🇺🇦
#SlavaNATO-1 led by France 🇫🇷 #SlavaUSAF 2029 escaped from the Dark Ages

Repost from @air_military_power

F15s in California Dream

@kayaspotter

Follow @air_military_power for more🛬

#apache #aviationpics #aviationgeek #aviationphotography #aviationphotographyphotos #helicopter #militaryaircraffighterjetdiariess

video/mp4

fatuus, to random
@fatuus@mstdn.fr avatar

Hello :mastodon:

I am hiring 💸 !

Looking 👀 for a Network Security Engineer 🕸️ for my customer.
Job description 📰 on demand.

Required are:
Cisco,
Palo Alto &
Checkpoint
(Algosec would be a plus)

Position based in 🇱🇺

Feel free to contact me

fatuus,
@fatuus@mstdn.fr avatar

Hello :mastodon:

I am hiring 💸 !

We're looking 👀 for a person with Linux Admin :debian: (RedHat actually) skill.
Strong Security mindset 🛡️

Job description 📰 in PM.

Skills needed :
/ ,



🇬🇧 Anglais mandatory

Job can be in 🇱🇺 , 🇫🇷 , 🇧🇪 or 🇵🇱
for Internal
Any country in 🇪🇺 as Contractor

Feel free to contact me for anything.

:boost_requested: makes your CPU faster

ubuntushell, to linux
@ubuntushell@mastodon.social avatar
happyborg, (edited ) to Redis
@happyborg@fosstodon.org avatar

is the latest example of why I don't contribute to non projects.

Good licensing

Bad etc

happyborg, to foss
@happyborg@fosstodon.org avatar

If your project is , or , you are now probably one of the bad guys.

If you don't know why this is bad:

Same for contributing to projects with permissive licensing.

As copyright owner of a project you can be a good guy again: switch to

Also stop contributing to other projects that won't switch, after politely explaining why you have a problem with their .

And avoid using those projects when you can.

schenklklopfer, to ChatGPT German
@schenklklopfer@chaos.social avatar

Mal wieder 30 Minten Lebenszeit verschenkt, weil nicht hilfreich war...

Daher die Frage an euch: Kann ich mit eine Query bauen, die zwei einzelne LogQL Qieries joint?

Ich will konkret aus einem alle IPs sehen, die eine URL1 aufruft, eine URL2 aber NICHT aufruft.

Der Gedanke ist herauszufinden, wie hoch der Anteil der Nutzer ist, die einen AdBlocker verwenden.

cloudron, to forum
@cloudron@social.cloudron.io avatar
jochie, to php
@jochie@strangeweb.page avatar

Scratched an itch this week where I replaced a fairly old MAMP app with ~70 lines of docker-related configuration files that create 3 containers (and 1 of those could easily be removed, it's just for convenience).

https://github.com/jochie/AMP

In particular I'm happy that the DB files are no longer in an app-directory (/Applications/MAMP/…) that may or may not be backed up, whereas everything in my home-directory definitely is, and I can easily run mysqldump.

DoomsdaysCW, to random
@DoomsdaysCW@kolektiva.social avatar

Native Warrior Women

Indian women have always been written out of history, but their bravery is being rediscovered in archives and Native oral traditions.

May 11, 2023

warrior had fought a number of battles in leadership roles. At the Battle of the , it is told she charged , grabbed his saber and stabbed him, knocking him off his horse, killing him. Afterward, Cheyenne and women stabbed their awls in Custer’s ears, chanting ‘you will listen to our people in the next world.’ They were avenged.'

"She wasn’t the only female warrior at the Little Big Horn. The Arapaho Chief, , fought there, too. She lived to be 101 years old and her grandson served in the Korean War as a U.S. Marine and later an Arapaho chief, just like his grandmother.

"Lozen (c. 1840-June 17, 1889) was a female warrior and prophet of the Chihenne Chiricahua who fought beside . She was the sister of Victorio, a prominent chief. Born into the band during the 1840s, Lozen was, according to legends, able to use her powers in battle to learn the movements of the enemy. The Apache tribesman, scholar and author, James Kaywaykla, was a child during the fighting days of Geronimo, Lozen and Victorio. Kaywaykla wrote, as a child:

"'I saw a magnificent woman on a beautiful horse—Lozen, sister of Victorio. Lozen the woman warrior! High above her head she held her rifle. 'She could ride, shoot, and fight like a man, and I think she had more ability in planning military strategy than did Victorio.'

"He added that Chief Victorio honored his sister as a great warrior: "Lozen is my right hand ... strong as a man, braver than most, and cunning in strategy. Lozen is a shield to her people."

Lozen fought beside Geronimo after his breakout from the San Carlos reservation in 1885, in the last campaign of the Apache wars. The band was pursued relentlessly by both the U.S. and Mexican cavalries. According to Alexander B. Adams in his book Geronimo, Lozen would try to ascertain where the enemy was by standing 'with her arms outstretched, chant a prayer to Ussen, the Apaches' supreme deity, and slowly turn around.' The band often relied on her strategic prowess.

"In 1885, Geronimo and about 140 of his followers, including Lozen, fled the reservation when they heard rumors that they were to be imprisoned on Alcatraz Island. Lozen and another female warrior, Dahteste, were designated to try to negotiate a peace treaty. Ultimately, after Geronimo's final surrender, Lozen traveled as a prisoner of war to the barracks in Mount Vernon, Alabama. There, along with many of her fellow warriors, Lozen died in confinement of tuberculosis in 1889.

" was a Apache warrior who rode with Lozen. Dahteste was fluent in English and often acted as a translator for the Apache people and was designated to lead in treaty negotiations with the American and Mexican armies. When Geronimo surrendered, she was arrested alongside Geronimo and Lozen, but was shipped to St. Augustine, Florida, rather than the barracks in Alabama. Nevertheless, like other prisoners in Florida, she contracted tuberculosis and pneumonia, but managed to survive both. Some scholars believe that and Dahteste were and lovers."

https://www.notesfromthefrontier.com/post/native-warrior-women

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • modclub
  • DreamBathrooms
  • mdbf
  • magazineikmin
  • InstantRegret
  • Durango
  • Youngstown
  • slotface
  • thenastyranch
  • love
  • kavyap
  • GTA5RPClips
  • normalnudes
  • tester
  • khanakhh
  • ngwrru68w68
  • everett
  • osvaldo12
  • rosin
  • ethstaker
  • Leos
  • anitta
  • cubers
  • tacticalgear
  • cisconetworking
  • provamag3
  • JUstTest
  • All magazines