igorette

dumdidum. Kekse! #metal

igorette boosted:
Ben Royce 🇺🇦benroyce
2025-06-21
Marc Russinovich, Bill Gates, Linus Torvalds, Dave Cutler
2025-06-21

Zu heute passt dieser Erobique Banger, finde ich
link.deezer.com/s/30g7gGlz7iGF

2025-06-20

Sonntag release party
King Size Dub #Hamburg im/am Hochwasserbassin

link.deezer.com/s/30fsHlqfmR3Q

2025-06-19

@Lorker Ich habe mir ne zeitlang jeden Morgen den Sonnenaufgang angeschaut, das war teilweise spektakulär

Sonnenaufgang mit Spiegelung auf dem Wasser
igorette boosted:
2025-06-18

More people have been working on blocking whole ranges of IP numbers, since that catches hosting providers that give bots access to the whole range they control. They switch IP numbers all the time so a filter based on IP numbers won't catch them. But if we can determine their autonomous system number (ASN), for example, we can block all the IP number ranges they control.
Now, since these hosting providers also host nice things like other fediverse instances, I don't want to block them forever. I want to block them for 10min, and if they continue after a few of these shorter blocks, I want to block them for a week. Hopefully, their clients have ended their Internet slurping and things are back to normal. This is how fail2ban works, but only for individual IP numbers.
I want code that bridges this gap.

This script here tries to guess (!) IP ranges and bans those using fail2ban. I need to investigate more.
https://github.com/WKnak/fail2ban-block-ip-range

I'm still fascinated by asncounter. It might even work without logfiles, using tcpdump!
https://anarc.at/blog/2025-05-30-asncounter/

There's also the problem of how deep to go into the rabbit hole. Here's somebody who calls whois to determine the networks:
https://unix.stackexchange.com/questions/181114/how-can-i-teach-fail2ban-to-detect-and-block-attacks-from-a-whole-network-block

#ButlerianJihad

igorette boosted:
2025-06-18
igorette boosted:
BenjaminHHBenjaminhh
2025-06-18

Am Sonntag ist es wieder soweit, mit dem über die in

Routenplan Fahrradsternfahrt Hamburg 2025
igorette boosted:
2025-06-16

😂

"Download festival rockers told to take off smartwatches after moshpits spark emergency alerts

Police received nearly 700 false ‘collision’ 999 calls from Leicestershire heavy metal event in 2023"

theguardian.com/music/2025/jun

igorette boosted:
2025-06-14

🇬🇧I can't recommend the EU-funded DNS service #DNS4EU because access is logged. When you override warnings to access "harmful websites" they even log your IP address. techradar.com/vpn/vpn-privacy-

There are government-free services that do not log: privacyguides.org/en/dns

Update: I understand now the IP address is kept for 24 hours to prevent the confirmation prompt from showing again.

Screenshot of policy: "In case the User uses DNS resolution service with one of the additional optional flavors, the service
notifies the User he/she is going to access a potentially malicious, illegal or otherwise harmful website
(a landing page pops up). If the User decides to attend the website anyway, in such a case the User's IP
address is stored by the DNS resolver for up to 24 hours in order to identify the User and not block the
access."
igorette boosted:
Jake in the desertjake4480@c.im
2025-06-12

This week's #ThursDeath is a killer new find, Hyvinkää, Uusimaa Finland's DEATHGOAT and their fucking EXCELLENT new LP 'Dragged Into Realms Below' that Xtreem just put out. This thing is a churning, raging, roaring mass of filthy death metal. Riffs, solos, it's got it all. Finnish death metal doesn't fuck around, man. And there's often a lot of gems via Xtreem. A surprising contender this year and REALLY worth a listen.

xtreemmusic.bandcamp.com/album

#metal #DeathMetal #Finland #FinnishMetal #Deathgoat #Xtreem #2025Albums #2025Records @wendigo @HailsandAles @rtw @Kitty @lola @umrk @cory

igorette boosted:

Love the pitch.

Relooted is an Africanfuturist heist experience on PC and Xbox developed by South African studio Nyamakop where players steal cultural artifacts from the west and bring them back to their home.

butwhytho.net/2025/06/relooted

#afrogaming #gaming #linuxgaming #BlackMastodon #BlackFedi #antiWesternism #africanFuturism #africanFuturist #africa

igorette boosted:
Ted Pavlic (he/him)tedpavlic@mas.to
2025-06-09

Just a reminder that Nobel-prize winning PCR (1983), used in basically any genetic tech today, was only possible because of an extremophile bacterium discovered in 1964 in Yellowstone funded by a small ~$80k NSF grant with no obvious application at the time. The value of basic #science cannot be predicted and often is realized decades after it's done.

How a discovery in Yellowstone National Park led to the development of PCR - Richmond Scientific
richmondscientific.com/how-a-d

igorette boosted:
2025-06-09

Can’t wait for @jwildeboer ’s https://nerdcert.eu/ to take off and be included in the usual bundles like Debian ca-certificates as a big FU to Google, who mandate webbrowser-consumer-only key usages for certificates soon, and to Let’s Encrypt who are following Google mindlessly and try to argue people with these uses to death instead of standing up for people’s freedom and keep existing, working uses of SSL/TLS merely because those are not webbrowser-consumer uses.

#nerdcert #LetsEncrypt #SSL #TLS #X509 #CA

2025-06-07

@rufposten
Als ich für die Technik der tagesschau-App zuständig war, hat der damalige zweite Chefred. Nitsche das Benutzen der API durch eine Alternativ-App abgewürgt
@fraunora @OeRR_bewegen

2025-06-06

@me
* Openvibe - unified Mastodon/Bluesky
* AntennaPod - Podcasts
* Pano Scrobbler - LastFM/LibreFM Scrobbler, auch von Mikro
* Voyager - Lemmy Client
* StreetComplete - Openstreetmap vervollständigen
* SeriesGuide - Serien/Movies tracken
* IronFox - Firefox Variante
* Tiny Tiny RSS - RSS Reader
* DeltaChat - Messenger mit SocialGraph auf Email-basierend
* JuiceSSH - SSH Client
* Kvaesito - Homescreen mit neuartigen Bedienkonzept
* Zapp - ÖRR Mediatheken und Livestreams

2025-06-06

@mxk @iverbpunkt @rufposten

es kam eine Antwort, weil zu lang habe ich es woanders abgelegt:
pinboard.in/u:igorette/notes/7

igorette boosted:

Signal (and many other messengers) stores push tokens in their database in plain text. Which allows law enforcement to subpoena them (though signal has never publicly admitted this happening) and then law enforcement uses these push tokens to subpoena apple to get personal information associated with it like your full name, address, phone number etc.

This way Law Enforcement can correlate your personal information with your signal account which means participants in conversations are deanonimzed. (Though content is still encrypted).

If you organize in large signal groups (or any Messaging app using push notifications) there is a high chance law enforcement and intelligence agencies can tell that you're part of a group or not.

I don't understand why nobody is talking about this more. It's extremely problematic.

Apple started publishing stats on how often this happens now. They were gag ordered to not speak about it before but they have changed course (reuters.com/technology/cyberse)

You can find the stats here:

apple.com/legal/transparency/p

2025-06-05

@mxk @iverbpunkt @rufposten Gerade per Kontaktformular hinterlassen

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst