Good read, I suggest committing the time.
https://ryanholiday.net/this-is-how-smart-people-get-smart-and-fools-get-more-foolish/
Organizer @ BSidesCLE 2025 | Organizer @ ISC2CLE | Cybersecurity Advocate | Speaker | Community Builder | Linux Engineer. ♞ InfoSec - Linux - Open Source - LGBTQ+
Unformatted brain dumps happen here.
Good read, I suggest committing the time.
https://ryanholiday.net/this-is-how-smart-people-get-smart-and-fools-get-more-foolish/
Only in kernels greater than 5.1.
The source still needs 1‑2 syscalls (io_uring_setup, mmap), so not entirely invisible to syscall monitoring, but these in themself are not malicious.
With Linux Kernel (official) to Drop Support for Legacy i486 and Early 586 CPUs, it opens the possibility for another group to continue the work if desired. That's the beauty of Open Source.
This is about all of us. Never forget that.
@rjl20 To those that hate Fast Fashion, here is a solution!!
Just watching syscalls misses io_uring interface to the kernel allowing malware to go undetected.
On the news I missed front:
https://www.theregister.com/2025/04/29/linux_io_uring_security_flaw/
PoC Code:
https://github.com/armosec/curing
The article mentions a couple of endpoint detection & prevention tools, but not giant #crowdstrike
Interested to see if CrowdStrike watches io_uring calls. (I bet it will now.)
Pro tip: Do not upload the source code of your sooper sekrit Signal fork into the Media Library of your public WordPress web site
https://micahflee.com/heres-the-source-code-for-the-unofficial-signal-app-used-by-trump-officials/
This is the news we need right now:
American rock band R.E.M. remixes their old song Radio Free Europe, and rereleases it with all proceeds going to the actual Radio Free Europe, which Donald Trump is trying to shut down by cutting all funding.
News story about this rebel move:
https://youtu.be/FNy_hM0b_ro?si=bW4VANBJOqTGAPyO
Listen to the song on Spotify:
https://open.spotify.com/track/5jeQ6qxfi7nrDIP7WeBonZ?si=jQkDqppaRL-Uvg04C8BNVg&context=spotify%3Aalbum%3A3WUyr8kiPJQ8c7fYnDkm86
"Linux is only free if you don't value your time."
Fuck, Windows costs money and it doesn't value my time; I spend more time fighting with it to do (or not do) stupid shit than I do getting Arch setup.
@wendynather wow! I love this photo!
Fantastic, thank you for sharing.
Its easy to destroy, that is why so many do.
Be a builder.
#USPol #Make #Alternative #FOSS #LGBTQ
Two solid weeks of the flu. And I'm still not 100% It is not a good time. Do whatever you can to avoid it.
Self care is always a good idea. The same way you have plans and roadmaps and deliverables for work, do that for your health. Preventative maintenance isn't just for machinery.
@linuxgal that is the best explanation I’ve seen for that scene!!
@foone “what is the New traveling salesman problem?”
Ohh, how about “Towers of Annoy”
Linux and InfoSec folks:
OpenSSH has released version 10. This is the first release with post-quantum algorithms.
At this time, source builds would have it. The only Distros I see releasing 10.0 builds are OpenSuse and Mandriva.
RHEL is still on the 9.x channel.
Be yourself.
Strive to be the best version of yourself.
Help others to achieve the same.
Life is full of differences and variations.
Explore and learn the gifts others bring.
-Geoff
@deafferret oh that’s fun! Thanks for sharing