What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0

소소하지만 내 삶의 즐거움이 되는 물건들: 메모리폼 토퍼, 와이드 샤워 헤드 그리고 좋은 비누.

이 셋은 없으면 일단 사고 본다. 비누는 한국에서 산다면 도브 센서티브가 괜찮음. 뽀득한 거 원하면 아이보리.

0

Story index:

Fantasy

SciFi

Contemp

Learn more at ChantingLureTales!

0
0
0
0
0
0
0
0

"1+1=3이라고 말만 했을 뿐인데 이렇게들 우르르 몰려와서 산수도 못하냐고 비난하시면 당황스럽네요... 의견도 말 못하나요? 님들같이 입틀어막는 사람들 있는거 생각해서라도 앞으로는 꼭 3이라고 사실대로 말하고 다닐거에요" 이런 사람들 온오프라인 안 가리고 분야별로 삼억팔천만명 있음

0
0

혹시 겹칠 수 있으니 제가 제보한 걸 밝히자면, - 회원가입할 때, 비밀번호에 <, >, ", ', _ 를 사용할 수 없는 특수문자라고 안내되어있는데 실제로 사용할 수 없는 문자가 이보다 더 많은 점 - 브라우저 창 크기를 조절하면서 상단 메뉴가 오작동할 수 있는 버그 ...입니다.

0
0

This thing works by generating fake vulnerability reports. Here are some of the qualities of the HackerOne report 3125832 sent to :
- It looks convincing at a glance, especially if you're not a subject matter expert.
- It's vague about actual repro steps. It makes it impossible for the victim project to reproduce the issue. For example, it makes up fake patches against non-existent, imaginary code.
- It refers to functions and methods that do not exist (in case someone tries to look for them). When confronted, the attacker refer to some old or new versions of components, using non-existent commit hashes.
- The report makes up some convincing functionality or names that are novel, but don't really exist.

An expert’s look at the report shows the number of discrepancies, but finding them takes time and effort. It requires attention from a subject matter expert, with limited resources.

The real exploit here is that the attacker (evilginx) exploits the fact that the victims (the orgs who paid the attacker money) don't have the capacity to perform thorough analysis and rather just pay up. TL;DR: It's cheaper to pay the bug bounty than hire an expert to perform true analysis.

Why didn't it work against the curl project? The attacker miscalculated badly. Curl project is not a company and has far greater capability in security response than your average org. Also they can smell miles away.

0
0

did you know that GDB includes a bytecode compiler? specifically, it has a private [edit: it's documented] bytecode format used between it and the GDB server, which the latter uses to implement conditional breakpoints with complex expressions and tracepoints

every time it hits a breakpoint/tracepoint it evaluates the bytecode, which has jumps and can read arbitrary target memory, and decides whether it really was hit or not

0
0

가짜뉴스와 선동과 파편화의 시대. 스스로는 순박하고 온건하고 비편향적인 입장을 취한다고 취하지만, 딛고 선 논리가 남들이 파탄내 놓은 구렁텅이인 줄을 모른다. 결국 남들이 해줄 말은 "당신 말이 처음부터 끝까지 다틀렸다" 밖에 없는데 그런 반응에는 상처입고 분노하더라... 당연함. 스스로는 소박한 진실만 말한 것인데 인신공격 수준의 대꾸가 돌아왔다고 여기기 때문임. 그런데 도대체 이 참사를 어째야하나.

0

사람은 정말 온건하고 순하고 조심스러운 태도로도 개쎈혐오가짜뉴스를 말할 수 있는 것이다. 온건하다고 가만 놔 두면 온건하게 동조자가 늘어나고, 그거 아니라고 정색하고 뜯어말리면 당혹하거나 심지어 "공격받았다"며 진심으로 토라지는 사람들을... 대체 어째야 하는가.

1
0
0

I'm excited to announce that registrations are open for my online course, "The Barbarian Kingdoms (376-751)," hosted by @medievalistsMedievalists.net!

What: Six weekly Zoom sessions, starting May 29, where we'll discuss the history and culture of the Franks, Visigoths, Lombards, and others! See the module descriptions below, and feel free to DM with questions!

Where: Zoom
When: Thurs, 1:00-2:30 PM ET

Fee: $149
Registration: medievalstudies.thinkific.com/

@histodonshistodons group @medievodonsMedievodons group @edutootersEduTooters group

0
0
0

가짜뉴스와 선동과 파편화의 시대. 스스로는 순박하고 온건하고 비편향적인 입장을 취한다고 취하지만, 딛고 선 논리가 남들이 파탄내 놓은 구렁텅이인 줄을 모른다. 결국 남들이 해줄 말은 "당신 말이 처음부터 끝까지 다틀렸다" 밖에 없는데 그런 반응에는 상처입고 분노하더라... 당연함. 스스로는 소박한 진실만 말한 것인데 인신공격 수준의 대꾸가 돌아왔다고 여기기 때문임. 그런데 도대체 이 참사를 어째야하나.

0
1
0
0
0
0
0

Der Bundestag hat für den Entschließungsantrag der CDU/CSU gestimmt, um Grenzschließungen für Geflüchtete und Grenzkontrollen dauerhaft durchzusetzen. Während Union, FDP und AfD diesmal gemeinsam dafür und und dagegen gestimmt haben, sollte nicht vergessen werden, dass es erst die Grünen und die SPD waren, die den Nährboden für diese autoritäre Politik geschaffen, gepflegt und gedüngt haben.

Nancy (SPD) hat seit Beginn der Ampel-Regierung versucht, über das ständige Verlängern eines Ausnahmezustandes, Grenzkontrollen permanent durchzusetzen. Grüne und SPD haben mit ihren Beschlüssen zur Bekämpfung von Geflüchteten und mit ihren Vorhaben, bis hin zur geplanten Einführung der biometrischen Massenüberwachung, eine rassistisch-autoritäre Politik der zunehmenden Staatsfaschisierung betrieben und weiter normalisiert. Was Rechtskonservative und Faschos jetzt zu Ende führen möchten, haben selbsternannte linksliberale Parteien und ihre Anhängsel die letzten Jahre eifrig vorangetragen.

tagesschau.de/inland/innenpoli

Der staatliche "Kampf gegen Hass und Hetze" konsequent zu Ende geführt.

Die bayerische führt einen digitalen Kalender. Darin werden alle Veranstaltungen erfasst, die polizeiliche Relevanz haben könnten: größere Gerichtsprozesse oder Kultur- und Sportveranstaltungen ebenso wie politische Kundgebungen und Demonstrationen. Die Veranstaltungen werden jeweils mit Schlagwörtern versehen, um sie recherchierbar zu machen. Das soll der Polizei helfen, mögliche Gefährdungslagen besser einzuschätzen und Einsätze effizienter zu planen.

Vor knapp zwei Wochen wurden nun alle bayerischen Polizisten per Artikel im Intranet der Polizei angewiesen, ab sofort im Bedarfsfall ein neues Schlagwort zu verwenden: "gegen CDU und CSU".

br.de/nachrichten/bayern/gegen

0
0
0
1
0
0
1
0
0
0

참고로 두번째 이미지 저거... 텍스트가 아니라 텍스트를 스크린샷 찍어둔 이미지(!) 인데다가 대체 텍스트(ALT 텍스트)도 없다... 그래서 대체 텍스트 넣어달란 제보도 했다. (아니 그냥 텍스트인데 그냥 간단하게 복사해서 넣으면 어디 덧나나...)

0
0
0

@TakTak! @hongminhee洪 民憙 (Hong Minhee) it's the other way around, FEP-5624 pre-dates GTS' interaction policies but was never implemented anywhere and did not get much traction; the bulk of the discussion at the time was about who should control the reply policy (original post author or person you immediately reply to)

GTS decided to pick the second solution even if it's not necessarily the ideal one, because it's much simpler to implement

GTS' interaction policies were then refined with a lot of back-and-forth with Mastodon devs when we were working on quote posts (resulting in FEP-044F which re-use GTS' interaction policies)

maybe we should retire FEP-5624

0

@TakTak! @hongminhee洪 民憙 (Hong Minhee) it's the other way around, FEP-5624 pre-dates GTS' interaction policies but was never implemented anywhere and did not get much traction; the bulk of the discussion at the time was about who should control the reply policy (original post author or person you immediately reply to)

GTS decided to pick the second solution even if it's not necessarily the ideal one, because it's much simpler to implement

GTS' interaction policies were then refined with a lot of back-and-forth with Mastodon devs when we were working on quote posts (resulting in FEP-044F which re-use GTS' interaction policies)

maybe we should retire FEP-5624

0

세계적인 극우파 약진…그 뒤엔 ‘기독교 우파 조직’과의 결탁이 있다 khan.co.kr/article/20250503110
"실제로 1990년대 이후 미국 기독교 우파 단체들이 유럽의 동료들을 전략적으로 지원하고 자금과 이념적 틀을 제공해왔다. 특히 유럽에서 기독교 우파의 입김이 강해진 영역이 반젠더, 반낙태, 반페미니즘인데 여기에는 미국 기독교 우파 단체의 유럽 지부나 네트워크 조직들이 깊이 관여하고 있다."

0
0
0
0

I just bought this book for my friend’s little boy, who has just become a big brother to his new baby sibling.
I wonder how many grown-ups can answer these questions without peeking under the flaps?
弟が生まれて大きいお兄ちゃんになったばかりのお友だちの息子さんに、プレゼントを買いました。「自分のものを他の人とシェアすべき理由」について考える絵本。大人でもうまく答えられない質問がたくさん(ALTに和訳)。

Usborne社の、フラップをめくると答えがわかるしかけ絵本。作 ケイティ・デインズ 、イラスト クリスティ・ピム、監修 ドクター リリー・リオンズ(児童心理学者)。
虫のキャラクターたちがキュートな表紙のデザイン。青い虫がツリガネソウの花のブランコで遊んでいる。順番を待っている他の虫たちのことはそっちのけで、交代してくれる様子はまったくない。 
(English) Book cover of Usborne Lift-the-Flap First Questions and Answers: Why Should I Share? by Katie Daynes, illustrated by Christine Pym, with expert advice from child psychologist Dr Lillie Lyons.
Illustration shows a cheerful blue bug swinging on a bellflower, seemingly unwilling to share the fun with a group of other bugs patiently waiting in line.見開きページ。ベリーやおもちゃを仲良くシェアしたり独り占めしたり。虫たちのカラフルなイラストが描かれている。
「シェアする意味ってなんだろう?」「シェアすることでみんなが公平に暮らせるようになるからだよ。まわりのみんなに優しくするというおこないが、自分にも何かをあたえてくれるはず。」
フラップに書かれた質問は
⚫︎どうしたら人にフェアになれる?
⚫︎でも人とシェアしたら、自分の分が少なくなっちゃうよね?
⚫︎どうやって不公平にならないようにケーキを分けたらいいの?
⚫︎人とシェアしなかったら…どうなるの?
⚫︎いちばん大切にしているお気に入りのおもちゃも、シェアしなくちゃいけないの?
⚫︎ブランコの順番はどうやって交代するの? (English)
The opening pages of the book:
“Why should I share?
Because sharing makes life more fair for everyone. It’s kind to others, and you get something out of it too.”
Illustrated with adorable bugs sharing - and sometimes not sharing - berries and toys with their friends.
Questions include:
	•	How can I be fair?
	•	But won’t I get less if I share?
	•	Can we share this cake fairly?
	•	Is it more fun to share?
	•	What will happen if I don’t share?
	•	Do I have to share my best toy?
	•	How can we share a swing?「どうすれば人にフェアになれる?」のフラップを開くと、グリーンの虫がパープルの虫に、自分が持っていた大きないちごのひとつを分けてあげているイラストが。
「人のためになることを考え、みんなに同じチャンスがまわって来るように努めること。世の中はいつも公平であるとは限らないけれど、おたがいの暮らしが良くなるように、とにかくベストをつくすことはできるよね。」
(English) Inside flap for “How can I be fair?”:
A green bug offers one of its two large strawberries to a purple bug, who only has a tiny berry.
The answer reads:
“By thinking of others and trying to give everyone the same chances. Life isn’t always fair, but we can do our best to make things better for each other.”
0
0
0
0
0
0
0