GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 02:10:57 JST Phantasm Phantasm
    Aw shit, here we go again.
    0575243c-3ab9-4614-afae-f5369759be63.jpg
    In conversation about 4 days ago from fluffytail.org permalink

    Attachments


    1. https://upload.fluffytail.org/media/1f/4f/3f/1f4f3f5f04092db3e1bb671f78d9ce87011935583fd48e1959225b6dc30ba79b.jpg?name=0575243c-3ab9-4614-afae-f5369759be63.jpg
    • pistolero likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 02:12:57 JST Phantasm Phantasm
      in reply to
      • pistolero
      cc @p You might want to check on this when more info comes out.
      In conversation about 4 days ago permalink
      pistolero likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 02:32:20 JST Phantasm Phantasm
      in reply to
      • pistolero
      @p It looks like a nothingburger
      https://github.com/erlang/otp/security/advisories/GHSA-934x-xq38-hhqf
      Screenshot_2025-05-08-19-31-07-97_5dca195d7d09adf043e42a8f3ad62b19.jpg
      In conversation about 4 days ago permalink

      Attachments


      1. https://upload.fluffytail.org/media/8e/06/16/8e06169b5ba2b0533d413e762386b42826e00ca50654b30fb973f1d2f9fa9e9a.jpg?name=Screenshot_2025-05-08-19-31-07-97_5dca195d7d09adf043e42a8f3ad62b19.jpg
      2. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
        Strict KEX Violations in Erlang/OTP SSH
        ### Summary Erlang/OTP SSH fails to enforce strict kex handshake hardening measures by allowing optional messages to be exchanged. This allows a Man-in-the-Middle attacker to inject these messag...
      pistolero likes this.
    • Embed this notice
      pistolero (p@fsebugoutzone.org)'s status on Friday, 09-May-2025 05:33:38 JST pistolero pistolero
      in reply to
      @phnt Ha!

      > Erlang/OTP 24 [erts-12.3]
      In conversation about 4 days ago permalink
      Phantasm likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 05:37:34 JST Phantasm Phantasm
      in reply to
      • pistolero
      @p The GHSA page lists vulnerable version as low as the latest OTP 22 release, but it's probably nothing major to worry about unlike the SSH RCE that was also discovered by the same guys.
      In conversation about 4 days ago permalink
      pistolero likes this.
    • Embed this notice
      pistolero (p@fsebugoutzone.org)'s status on Friday, 09-May-2025 05:40:03 JST pistolero pistolero
      in reply to
      @phnt

      > It looks like a nothingburger

      Yeah, kex problem; ssh is not exposed to the outside any more for now.

      Side note about vulnerabilities: I have, somewhere, some song that starts with a sample of the guy going "Aw, shit, here we go again" and I can't remember what song it is and I thought it was this one but it is not and you've earwormed me by saying "Aw, shit, here we go again".
      Battletoads_Arctic_Mayhem_OC_ReMix.mp3
      In conversation about 4 days ago permalink

      Attachments


      Phantasm likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 05:53:28 JST Phantasm Phantasm
      in reply to
      • pistolero
      @p
      >and you've earwormed me by saying "Aw, shit, here we go again".
      Ffs. After reading that, I had to listen to the MainFrame song from Borderlands: The Pre-Sequel which is played multiple times in an earworm quest.
      borderlands-mainframe-earworm.ogg
      In conversation about 4 days ago permalink

      Attachments


      pistolero likes this.
    • Embed this notice
      pistolero (p@fsebugoutzone.org)'s status on Friday, 09-May-2025 05:58:03 JST pistolero pistolero
      in reply to
      @phnt Is this subquest about an actual brainworm? Is this a double entendre?

      Also I found the song:
      Super_Mario_Odyssey_Now_the_Flowers_Will_Grow_OC_ReMix.mp3
      In conversation about 4 days ago permalink

      Attachments


      Phantasm likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 06:18:39 JST Phantasm Phantasm
      in reply to
      • pistolero
      @p In a way yes. It's from a story DLC for the base game which takes place in the mind of a robot that sometimes guides you through the game. The quest is given by the bot's consciousness when he complains about a song being stuck in his head and you are supposed to kill it. The objective is to kill a modified creature from the base game that has multiple speakers attached to its body which play the MainFrame song on a loop. Of course as an intended side-effect of that quest, you now have that song stuck in the head for some time.

      >Also I found the song:
      Great song.
      In conversation about 4 days ago permalink
      pistolero likes this.
    • Embed this notice
      Phantasm (phnt@fluffytail.org)'s status on Friday, 09-May-2025 06:20:19 JST Phantasm Phantasm
      in reply to
      • pistolero
      @p And the creature itself hides in dirt like a worm.
      In conversation about 4 days ago permalink
      pistolero likes this.
    • Embed this notice
      pistolero (p@fsebugoutzone.org)'s status on Friday, 09-May-2025 06:38:22 JST pistolero pistolero
      in reply to
      @phnt

      > The quest is given by the bot's consciousness when he complains about a song being stuck in his head and you are supposed to kill it.

      This is kind of hilarious.

      > Great song.

      bing bing wahoo
      Super_Mario_3D_Land_2D_Beat_OC_ReMix.mp3
      Super_Mario_Bros_The_Ballad_of_Bowser_s_Balls_OC_ReMix.mp3
      Super_Mario_World_Koopa_Reaper_OC_ReMix.mp3
      In conversation about 4 days ago permalink

      Attachments




Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.