What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
0
1
0
0

[國安簡報破局 賴清德:政黨可競合不能零和盼共同對外⸺中央社](cna.com.tw/news/aipl/202506180)

"總統府規劃邀在野黨領袖進行國安簡報最終破局。兼任民進黨主席的總統賴清德今天說,政黨可以「競合」,但不能「零和」。他仍然希望,未來主要在野政黨能夠一起面對國家受到的威權威脅與挑戰,共同堅定對外,捍衛台灣國家主權與民主制度。

賴總統原邀請在野黨主席今天進行國安簡報,但民眾黨主席黃國昌、國民黨主席朱立倫昨天先後宣布不參加。"

//這件事情背後的邏輯我覺得大概是這樣:

藍白過去一年把政黨競爭拉到憲政層次以上,已經沒有顧及國家的生存發展。但是他們又要求賴清德總統跟他們談。總統就說好,先來一起聽聽國安會報。這有兩個考量,一個是給一個機會讓藍白確認他們仍然在乎這個國家的安危,一個是一旦他們看到國家面臨的威脅後,希望他們比較傾向不擋軍售跟國安法案。如果可以建立起這個層次的共識,那接下來要談什麼總統也未必不考慮。

但結果也很清楚,這一點倒是沒有什麼陰謀,藍白已經擺明是魚死網破的賭局,沒有要回頭了。這次大罷免的意義會類似太陽花,而且其實更迫切更現實。只要失敗,一切就會急轉直下。

0
0
0
0
0
0

「Linux udisks の新しい脆弱性により、攻撃者は主要な Linux ディストリビューションのルート権限を取得できる 」:

「最初の欠陥( CVE-2025-6018 として追跡)は、openSUSE Leap 15およびSUSE Linux Enterprise 15のプラグ可能認証モジュール(PAM)フレームワークの構成で発見され、ローカルの攻撃者が「allow_active」ユーザーの権限を取得できるようになりました。

もう 1 つのセキュリティ バグ ( CVE-2025-6019 ) は libblockdev で発見され、これにより、「allow_active」ユーザーが udisks デーモン (ほとんどの Linux ディストリビューションでデフォルトで実行されるストレージ管理サービス) を介してルート権限を取得できるようになります。 」

bleepingcomputer.com/news/linu

0
0

seaborn에서 histplot()으로 히스토그램을 그리면 bin마다 에러 바를 그릴 수가 없다니... 단일 히스토그램은 분포가 없는 정확한 수치여서 그렇다고 한다. 듣고보니 맞는 말이군.

물론 countplot()을 활용하면 에러 바를 그릴 수 있습니다. 이 경우 histplot()처럼 적절한 bin을 자동으로 정해주는 게 아니라 직접 만들어서 변수로 넣어줘야합니다만.

0
0
0
0
0
0
0
0
0

I resonate with this article a lot. I started creating programs simply for the joy of making things, and maybe out of a bit of intellectual curiosity.

A lot of people around me ask "why make things people have done before," "what's the point," and "can you commercialize them?" Of course, it will be a good thing if I can make something useful to others, but that's not why I am doing it.

jsbarretto.com/blog/software-i

0
0

Highlight of today's conversation with AT&T

Me: "we currently have an internet service with you, but I'm calling about a different service."

Them: "ok, do you have it with you now?"

Me: "have what?"

Them: "the internet service."

Me: "I have the account number yes."

Them: "No, not the account number, the internet."

Me: "Do I have the internet with me now?"

Them: "yes."

Me: "I don't understand."

Them, frustrated: "Can you physically touch the internet right now?"

Me: "What?"

0
0
0
0
0
1
1
0
0
0
0
0

Hey Nuxters! 🏔️ I'm planning to work on an original @nuxt website course this summer ⛱️

What topics would you love to see covered?

🧊 For now I'm thinking Tailwind, TresJS, Stripe checkout, and Prismic - but I'm open to ideas! Let me know 💚

0
0
0
0

[國安簡報破局 賴清德:政黨可競合不能零和盼共同對外⸺中央社](cna.com.tw/news/aipl/202506180)

"總統府規劃邀在野黨領袖進行國安簡報最終破局。兼任民進黨主席的總統賴清德今天說,政黨可以「競合」,但不能「零和」。他仍然希望,未來主要在野政黨能夠一起面對國家受到的威權威脅與挑戰,共同堅定對外,捍衛台灣國家主權與民主制度。

賴總統原邀請在野黨主席今天進行國安簡報,但民眾黨主席黃國昌、國民黨主席朱立倫昨天先後宣布不參加。"

//這件事情背後的邏輯我覺得大概是這樣:

藍白過去一年把政黨競爭拉到憲政層次以上,已經沒有顧及國家的生存發展。但是他們又要求賴清德總統跟他們談。總統就說好,先來一起聽聽國安會報。這有兩個考量,一個是給一個機會讓藍白確認他們仍然在乎這個國家的安危,一個是一旦他們看到國家面臨的威脅後,希望他們比較傾向不擋軍售跟國安法案。如果可以建立起這個層次的共識,那接下來要談什麼總統也未必不考慮。

但結果也很清楚,這一點倒是沒有什麼陰謀,藍白已經擺明是魚死網破的賭局,沒有要回頭了。這次大罷免的意義會類似太陽花,而且其實更迫切更現實。只要失敗,一切就會急轉直下。

0
1
0

11.0.2 was just released!

We recommend that all installations are upgraded to the latest version.

Check out the release notes and download it at forgejo.org/releases/. If you experience any issues with this release, please report to codeberg.org/forgejo/forgejo/i.

0
0
0
0
0

Beratung auf Augenhöhe für eine OA-freundliche Zukunft:
Das Projekt P2P.OA.HAW bringt Hochschulleitungen und -Expert*innen (Peers) zusammen, um HAWs individuell und strategisch zu beraten.
Für den Beratungsdurchlauf 2025 stehen die Peers fest:
🔹 HS Fulda: Prof. Dr. Günter Mey, Prof. Dr. Thomas Stäcker und Prof. Dr. Susanne Weissman
🔹 HHN: Prof. Dr. Ellen Euler, Prof. Dr. Kristin Mitte und Dr. Bernhard Mittermaier
Mehr zum Projekt: hsbi.de/bib/p2p-oa-haw

Das Bild zeigt mehrere Personen in Gesprächen, die symbolisch für Open-Access-Expert*innen stehen, die Hochschulen beraten und gemeinsam Ideen entwickeln. Die Illustration ist in verschiedenen Grüntönen gehalten und zeigt zwei Gruppen von Menschen an Tischen. Links sitzen drei Personen, zwei sprechen miteinander, eine dritte hebt die Arme und es sind Sprechblasen über ihnen. Rechts diskutieren drei weitere Personen, wobei eine stehend eine Karte mit einer leuchtenden Glühbirne hält. Oben links befindet sich das Logo "P2P.OA.HAW".
0
0

I genuinely do not understand people who have deep fried opinions about Signal needing a goddamn phone number in 2025.

Many privacy nerds were outraged when you needed to give out a phone number to other people in order to talk with them. I was one of those nerds. They fixed that with the usernames rollout.

As a mobile phone app, Signal uses your phone number to bootstrap your enrollment into the protocol. This is literally the path of least resistance as an SMS replacement app, for most users.

If you want to know whether Signal can obtain enough metadata to target users that have enrolled, the answer is complicated.

The way profiles are encrypted, and how sealed sender works, makes any targeting seem infeasible. (Your profile key rotates, at mininum, when you block someone.)

Signal currently does not have IP addresses, etc. stored. If this changes in the future, it will not be retroactive. If you're worried about that, Molly boasts Tor support. Maybe that's fine. I haven't audited Molly, and won't.

0
0
0
3
0
0
0
0
0
0
0
0
0
0