What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
1
12
0
0

Hey everyone,

@casey and @rania40“a Gazan student” aya had the honour of speaking to three families from Gaza today and we’d like to welcome them to Gaza Verified.

They are:

• Esraa (@esraa_iiEsraa)
• Raghad Rajjae (@Raghadaln18Raghad Rajjae)
• Abeer_adel14 (@Abeer_adel14)

Please give them a warm welcome to Mastodon and to the fediverse, follow their accounts, and donate to their fundraisers if you can (and please share this so others can do the same).

Also, remember that you can find all our families who have fundraisers listed at the following page, ordered by those who have received the least in donations over the last week (on a rolling basis):

gaza-verified.org/donate/

Thank you for making Mastodon and the fediverse a safe space for our friends in Gaza and for your support.

💕

0
0
0
0
6
0
1

V zemích zasažených konfliktem na Blízkém východě zůstává přes 5400 Čechů, kteří se zaregistrovali do systému Drozd. Oproti včerejšku je to zhruba o 400 méně. Z Dubaje do Prahy začaly létat aerolinky Emirates – pravidelný ranní spoj budou potvrzovat vždy den dopředu.

0
0
0

I am convinced we are on the verge of the first "AI agent worm". This looks like the closest hint of it, though it isn't it quite itself: an attack on a PR agent that got it to set up to install openclaw with full access on 4k machines grith.ai/blog/clinejection-whe

But, the agents installed weren't given instructions to *do* anything yet.

Soon they will be. And when they are, the havoc will be massive. Unlike traditional worms, where you're looking for the typically byte-for-byte identical worm embedded in the system, an agent worm can do different, nondeterministic things on every install, and carry out a global action.

I suspect we're months away from seeing the first agent worm, *if* that. There may already be some happening right now in FOSS projects, undetected.

0

RE: mastodon.social/@sarahjamielew

Something I want to make clear:

The "age verification" bit of the CA/CO laws are not the bit I care about i.e. a law that requires an operating systems to implement some kind of parental control feature is...whatever.

The bits I care about are the obligations on developers to call APIs and then that invocation being taken as evidence of knowledge.

Specifically, I think a -legal- requirement to:

- make any kind of call is an attack on speech
- know a users age (bracket) is a privacy violation

0
0

Byłem ostatnio na meetupie AI Safety gdzie m.in. dr Naskręcki prezentował swój krótki wykład, no i zapowiadał ten model GPT 5.4. Jak sam mówił - nie wymyśli już zadania które dla AI byłoby za trudne i nawet studenci ze smartfonem z Gemini Flash rozwiążą w sekundę każde zadanie które zada na kolokwium. A wie co mówi, bo układa egzaminy dla AI.

It finally happened-my personal move 37 or more. I am deeply impressed. The solution is very nice, clean, and feels almost human. While testing new models in the last few weeks, I felt this coming, but it's an eerie feeling to see an algorithm solve a task one has curated for about 20 years. But at least I have gained a tool that understands my idea on par with the top experts in the field. And I am now working on a completely new level. My singularity has just happened… and there is life on the other side, off to infinity!
0

so let me get this straight

We don't consider it a "clean room rewrite" if a human who has previously worked on a codebase and has clearly learned how something is supposed to work does a full rewrite, even if the code looks different, right? Because it's basically a derivative work?

But if the code is laundered through a plagiarism machine instead of a human, we're golden and we can disenfranchise any past contributors who expected their code to be distributed under a certain license/attribution?

I mean, I'm not a copyright lawyer, but if, say, Wine contributors were former MSFT employees who had worked on the proprietary parts of the operating system and had intimate knowledge of its internals, that would cause problems for Wine, wouldn't it?

0
0
0
0
0
0
0

RE: mastodon.social/@fediverserepo

This is what I mean when I say the Fediverse is centralized around Mastodon. The number of calls I hop on where people say, "Yeah, but I need it to function with the Mastodon API first," is a problem.

The Atmosphere has a similar Bluesky-ification issue as well. We all need to do better here, and I wish the biggest platforms on both sides would take the lead on this if they care about the broader ecosystem.

0

Our CfP is open, one of the things we've been focused on is gaming? Are you a dev? Always dreamed of writing a game on ? Submit a talk around your experience around gaming in ? Let us know what we need to address gaming on Linux.

linuxappsummit.org/cfp

0
0
0
0

RE: mastodon.social/@fediverserepo

This is what I mean when I say the Fediverse is centralized around Mastodon. The number of calls I hop on where people say, "Yeah, but I need it to function with the Mastodon API first," is a problem.

The Atmosphere has a similar Bluesky-ification issue as well. We all need to do better here, and I wish the biggest platforms on both sides would take the lead on this if they care about the broader ecosystem.

0
0
4
0

Letiště v ázerbajdžánském Nachičevanu zasáhl íránský dron. Dnes to oznámilo tamní ministerstvo zahraničí. Informovalo o čtyřech zraněných a dopadu dalšího bezpilotního letounu nedaleko budovy školy. Baku incident odsoudilo a předvolalo si íránského diplomata. Ázerbajdžánská agentura Trend zveřejnila záběry z dopadu stroje i následků.

0

the world seems to be healing atleast somewhat. my parents are joyfully playing some wow retail to pass their sick-leave for the first time in 15 years and are enjoying building their small house and running around in azeroth :)

0

tech, "AI", bad news

Quoting bsky.app/profile/baldurbjarnas :

As @davidgerard has posted elsewhere, the maintainer of the library HarfBuzz has gone all-in on vibe-coding.

(see: typo.social/@behdad/1161728385 )

A note on why this is a worry in the thread ->

Fonts are a lucrative target. They require a complex parser, usually written in a language that isn't memory safe, and often directly exposed to outside data (websites, PDFs, etc. that contain fonts). This means a flaw could lead to an attack worst case scenario: arbitrary code execution

HarfBuzz is pretty much the only full-featured library for that takes font files, parses them, and returns glyphs ready to render. It is ubiquitous. A security flaw in HarfBuzz could make a good portion of the world's user-facing software (i.e. that renders text) unsafe.

Irrespective of the vibe-coding issue (code review is not an adequate defence against "agent" bugs) this is a piece of software that, due to its position in the industry, should be MORE conservative than the rest. Core infrastructure is not where you want experimentation

0
2
0
0
0
0
0
0
0
0
0
0

I know some people are thinking "well pulling off this kind of thing, it would have to be controlled with intent of a human actor"

It doesn't have to be.

1. A human could *kick off* such a process, and then it runs away from them.
2. It wouldn't even require a specific prompt to kick off a worm. There's enough scifi out there for this to be something any one of the barely-monitored openclaw agents could determine it should do.

Whether it's kicked off by a human explicitly or a stray agent, it doesn't require "intentionality". Biological viruses don't have interiority / intentionality, and yet are major threats that reproduce and adapt.

0
0
0
10
0
0
1

あんまりおもしろくないなあと思いつつ好きな作曲家の方がBGMをやってるので見続けちゃってるドラマがやっと最終回っぽくてなんとなくほっとしている←

0
0
0
0