GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by AndresFreundTec (andresfreundtec@mastodon.social), page 2

  1. Embed this notice
    AndresFreundTec (andresfreundtec@mastodon.social)'s status on Sunday, 31-Mar-2024 13:19:43 JST AndresFreundTec AndresFreundTec

    I wholeheartedly agree with what Russ wrote here:

    "Also if there's anything the community can do for Lasse personally, please pass that along."

    "Anyone can be the victim of social engineering."

    "I suspect many of us here have had nightmares about being in Lasse's
    position, and probably will have more of them in the future."

    Indeed.

    https://www.openwall.com/lists/oss-security/2024/03/30/25

    In conversation about a year ago from mastodon.social permalink
  2. Embed this notice
    AndresFreundTec (andresfreundtec@mastodon.social)'s status on Saturday, 30-Mar-2024 04:46:54 JST AndresFreundTec AndresFreundTec

    @dgilman Unfortunately I suspect we'll see a lot more such attacks going forward, in all likelihood with more success in some cases.

    In conversation about a year ago from mastodon.social permalink
  3. Embed this notice
    AndresFreundTec (andresfreundtec@mastodon.social)'s status on Saturday, 30-Mar-2024 04:44:21 JST AndresFreundTec AndresFreundTec

    I accidentally found a security issue while benchmarking postgres changes.

    If you run debian testing, unstable or some other more "bleeding edge" distribution, I strongly recommend upgrading ASAP.

    https://www.openwall.com/lists/oss-security/2024/03/29/4

    In conversation about a year ago from mastodon.social permalink
  4. Embed this notice
    AndresFreundTec (andresfreundtec@mastodon.social)'s status on Saturday, 30-Mar-2024 04:44:20 JST AndresFreundTec AndresFreundTec
    in reply to

    I was doing some micro-benchmarking at the time, needed to quiesce the system to reduce noise. Saw sshd processes were using a surprising amount of CPU, despite immediately failing because of wrong usernames etc. Profiled sshd, showing lots of cpu time in liblzma, with perf unable to attribute it to a symbol. Got suspicious. Recalled that I had seen an odd valgrind complaint in automated testing of postgres, a few weeks earlier, after package updates.

    Really required a lot of coincidences.

    In conversation about a year ago from mastodon.social permalink
  • After

User actions

    AndresFreundTec

    AndresFreundTec

    Long time postgres developer, working at Microsoft.Account about tech, not politics. For the latter look to @AndresFreundPol

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          252580
          Member since
          29 Mar 2024
          Notices
          24
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.