What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0

In his 2025 talk, "From Blue Screens to Orange Crabs" Mark Russinovich shared how Rust is being adopted across large, established platforms at Microsoft Azure — from security improvements to real integration challenges. Revisit this memorable moment here:
youtube.com/watch?v=uDtMuS7BExE

0
0
0

While working on , I noticed something about how handles object access. When a remote server requests a followers-only post or DM with a valid HTTP Signatures (draft-cavage) from an authorized actor, Misskey still returns 404 instead of the content. It seems Misskey only checks the visibility field (public/home) without verifying the signature at all.

takes a different approach—when is enabled, it validates the HTTP Signatures and returns the content if the requesting actor has permission. I think it would be beneficial if Misskey could adopt a similar mechanism, since it would better respect the access control semantics that ActivityPub intends. Has anyone else run into this, or are there specific reasons Misskey handles it this way?

0

julian shared the below article:

Snapshot of the load ap.space sees from AI crawlers

julian @julian@activitypub.space

<p>Can you guess when I turned Anubis back on?</p> <ul> <li>Grey line (left-hand; y-axis) tracks page views</li> <li>Blue line (right-hand; y-axis) tracks unique users</li> </ul> <p><img src="https://activitypub.space/assets/uploads/files/1769183491489-6fef34a9-80f9-4b9f-b266-212a31f486cb-image.png" alt="6fef34a9-80f9-4b9f-b266-212a31f486cb-image.png" /></p> <p>You can even see the spike in traffic that brought down the site hard enough that I got my butt in gear to tune Anubis and turn it back on.</p> <p>Based on the numbers here, there is a thirteen-fold decrease in activity (or a ~92% drop in traffic), all identified by Anubis as bots and blocked.</p>

Read more →
0
0
0

soir (tonight 🇬🇧 )

City hunter || Kiyomi Suzuki - give me your love tonight

It's gettin' late now
I'm wide awake now
A lover's moon on the rise
I'm feelin' restless
A little breathless
Will you be comin' tonight ?

youtube.com/watch?v=bm2A207GxP

0

Snapshot of the load ap.space sees from AI crawlers

julian @julian@activitypub.space

<p>Can you guess when I turned Anubis back on?</p> <ul> <li>Grey line (left-hand; y-axis) tracks page views</li> <li>Blue line (right-hand; y-axis) tracks unique users</li> </ul> <p><img src="https://activitypub.space/assets/uploads/files/1769183491489-6fef34a9-80f9-4b9f-b266-212a31f486cb-image.png" alt="6fef34a9-80f9-4b9f-b266-212a31f486cb-image.png" /></p> <p>You can even see the spike in traffic that brought down the site hard enough that I got my butt in gear to tune Anubis and turn it back on.</p> <p>Based on the numbers here, there is a thirteen-fold decrease in activity (or a ~92% drop in traffic), all identified by Anubis as bots and blocked.</p>

Read more →
0
0
0

2/

To handle public-key cryptography safely, often a user should be able to have multiple public-keys.

For example, a user might have a different public-key on each device, rather than sharing public-keys.

A user might delegate to a 3rd party — and there may be a delegated versus non-delegated public-key distinction.

Key-rotation is also often necessary for safety reasons.

Etc.

...

3/

All that requires that a Fediverse user can have multiple public-keys specified for them.

...

Although w3id.org/security/v1 seems to allow for multiple public-keys —

I wonder how much Fediverse software could actually handle multiple public-keys (rather than just one)?

(And, don't just assume one public-key?)

How mucg Fediverse software could handle public-keys changing over time?

Etc?

0

2/

To handle public-key cryptography safely, often a user should be able to have multiple public-keys.

For example, a user might have a different public-key on each device, rather than sharing public-keys.

A user might delegate to a 3rd party — and there may be a delegated versus non-delegated public-key distinction.

Key-rotation is also often necessary for safety reasons.

Etc.

...

0

1/

One way ActivityPub can be extended is — through JSON-LD namespaces.

For example, many Fediverse servers use the following JSON-LD namespace to specify cryptographic public-key(s) for the user.

w3id.org/security/v1

(This particular namespace is an HTTPS URL.)

...

But, does extant Fediverse software support cryptographic public-key(s) well?

...

0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0

🦊 Firefox 147 is here! What's new?

✨ CSS Anchor Positioning enabled by default
🚀 WebGPU on all macOS with Apple Silicon
🧭 Navigation API for better SPA control
🎨 DevTools improvements for pseudo-elements & animations
and more...

Release notes 👇
developer.mozilla.org/en-US/do

0
0
0
0
0
0

Measures like GDP, in addition to not measuring the thing that you care about, may not measure the thing that they think they're measuring.

For example, apparently the US GDP grew by 2.55% in 2025 (some things are not fully reported, disclaimers about partial data apply). But this is measured in US dollars. The US dollar is down 11% against the EURO over the same period. It's down almost 9% against the British Pound. Down over 4% against the Canadian dollar. It's down over 4% against the Chinese Yuan, a currency issued by a central bank that intentionally controls the quantity to keep its value closely tied to a dollar.

Measured in pretty much any unit except US dollars, the US GDP has shrunk since Trump took office. If you measured the US economy in Euros, Pounds, or Yuan, the US economy meets most definitions of being in recession.

But the fact that most of this is hidden in the devaluation of the dollar and reporters never pay attention what units things are reported in.

Note that this also applies to a load of share prices. Quite often, growth in share price of multinational companies is actually a decline in the value of the currency that the company's shares are traded in (see: most reporting about MSFT last year).

0
0
0
여러분의 건강을 위해 ​:ssubway:​ 에서는
베지 샌드위치, 빵은 위트(토스팅), 아메리칸 치즈, 할라피뇨와 피클 빼고, 올리브유, 후추, 레드와인식초만 해서 드시면 한끼 5100원으로 해결하는 최고의 다이어트 식사가 됩니다.
Try Try
0

낮 동안 우리를 활기 있게 하신 저의 주님, 날아다니는 스파게티 괴물 님,
당신과 함께 있으리니, 자는 동안도 지켜 주시어 편히 쉬게 하소서.

"11. 고요한 밤, 주님께서 보이지 않는 체로 저희 삶의 쓸모 없는 근심을 걸러내주소서."

🍝 날아다니는 스파게티 괴물 님께서 여러분과 함께.
😋 또한 주교의 면발과 함께 하소서.
🍝 기도합시다.
저의 주님, 날아다니는 스파게티 괴물 님, 이 밤을 편히 쉬게 하시고, 거룩한 죽음을 맞게 하소서.

2026-01-24T00:56:16+09:00


0

2/

To handle public-key cryptography safely, often a user should be able to have multiple public-keys.

For example, a user might have a different public-key on each device, rather than sharing public-keys.

A user might delegate to a 3rd party — and there may be a delegated versus non-delegated public-key distinction.

Key-rotation is also often necessary for safety reasons.

Etc.

...

3/

All that requires that a Fediverse user can have multiple public-keys specified for them.

...

Although w3id.org/security/v1 seems to allow for multiple public-keys —

I wonder how much Fediverse software could actually handle multiple public-keys (rather than just one)?

(And, don't just assume one public-key?)

How mucg Fediverse software could handle public-keys changing over time?

Etc?

0

이런 것을 볼 때마다 '인간 유전자의 가능한 조합이 얼마나 적은데 차라리 지금 태어나 있는 어린이 중 나와 가장 닮은 사람을 찾는 것이 나을지도' 같은 생각을 합니다.

RE: https://bsky.app/profile/did:plc:uabkr6tn7ru4b4e5e6udleuf/post/3m27jxuaeuk2s

0
0
0
0
0
0
0
0
0
0
0
1
0