Tootfinder

Opt-in global Mastodon full text search. Join the index!

@frankel@mastodon.top
2026-06-28 16:27:49

This week, I'm happy to welcome a new guest blogger, Peter Firmstone from Down Under 🇦🇺.
He's written a whole series about #security baked into the #JVM. Today's post answers the question: why fork @…

@berlinbuzzwords@floss.social
2026-05-28 09:15:07

We're beyond excited to announce that @suehle, Director of Open Source at SAS and President of the Apache Software Foundation, is joining #bbuzz26 as the keynote speaker!
Learn more on our blog post: 2026.berlinbuzzwords.de/2026/0

@Techmeme@techhub.social
2026-05-21 03:26:03

Cohere releases Command A , a sparse MoE open model built for agentic tasks, with 218B total and 25B active parameters, its first under the Apache 2.0 license (Carl Franzen/VentureBeat)
venturebeat.com/technology/c…

@michabbb@social.vivaldi.net
2026-07-26 12:32:51

🖥️ Standalone CLI: npx impeccable detect scans directories, HTML files or live URLs via #Puppeteer, with JSON output for CI and per-file inline waivers
📦 Install via npx impeccable install, a git submodule, or the plugin marketplace. Works with Cursor, Claude Code, Gemini CLI, Codex CLI, Grok Build, OpenCode, Pi, Kiro, Trae, Rovo Dev and Qoder. Apache 2.0, 48.1k stars
🌐

@andres4ny@social.ridetrans.it
2026-07-23 09:06:45

I did it, everyone. After decades of my server running Apache, I finally switched over to Nginx.
..Just in time for everyone to switch to Caddy.

@michabbb@social.vivaldi.net
2026-05-26 11:51:33

📊 Output is NDJSON — one structured record per package or finding. Each includes hostname, OS, arch, confidence level (high/medium/low), source file path & a stable content-addressed record_id stable across runs.
🚀 Single static #Go binary (1.25 ), zero non-stdlib dependencies. Install via go install or build from source. Built-in selftest verifies detection before fleet rollout. Apache …

@heiseonline@social.heise.de
2026-07-06 16:21:00

Leanstral 1.5: Mistrals KI-Modell für formale Beweise ist Open Source
Mistral AI veröffentlicht Leanstral 1.5 unter Apache-2.0-Lizenz. Das Modell löst laut Mistral 587 von 672 Putnam-Aufgaben und findet automatisiert Bugs in Code.

@berlinbuzzwords@floss.social
2026-05-11 07:30:09

How you write data matters as much as where you store it. Celeste Horgan (Snowflake, OSS Advocate) is at #bbuzz26 to compare writes across Postgres, Apache Kafka and Apache Iceberg, and what the trade-offs look like in practice.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@memeorandum@universeodon.com
2026-06-10 02:45:43

AH-64 Apache Crew Rescued By Drone Boat After Going Down Near Strait Of Hormuz (Updated) (The War Zone)
twz.com/news-features/ah-64-ap
memeorandum.com/260609/p139#a2

@shaun@mastodon.xyz
2026-04-30 03:31:15

An AH-64 #Apache attack #helicopter flies over my house like an angry mosquito. The sky is gray with clouds. A corner of my roof juts into the photo from the lower right. #Memphis,

An AH-64 Apache attack helicopter flies over my house like an angry mosquito. The sky is gray with clouds. A corner of my roof juts into the photo from the lower right. Memphis, Tennessee, April 29 2026.
@kubikpixel@chaos.social
2026-07-16 09:55:14

«xAI stellt KI-Agen "Grok-Build" nach massivem Datenleck als Open Source auf GitHub:
xAIs Kommandozeilen-Tool "grok" hat massive Kritik ausgelöst, weil es beim Ausführen in einem Verzeichnis sämtliche Dateien auf xAIs Google-Cloud-Server hochlud.»
So viel zum Thema Suverenität von xAI. Klar ist, dass Open-Source ist schon länger auch Marketing der IT-Konzernen auf die meisten basieren.
🤖

@berlinbuzzwords@floss.social
2026-05-19 13:28:06

Spark for batch, Trino for SQL, Flink for streaming - but how do you run all three safely on the same data? Join @Geetha at #bbuzz26 to explore how Apache Iceberg acts as the shared table layer that makes multi-engine data platforms possible.
Learn more about this session: 2026.berlinbuzzwords.de/sessio
Join us online and in-person at Kulturbrauerei, Berlin.

@arXiv_csCR_bot@mastoxiv.page
2026-07-24 07:35:32

AuthProbe: Specification-Driven, Multi-Identity Detection of Broken Object-Level Authorization in Recruitment API
Jay Barach
arxiv.org/abs/2607.20574 arxiv.org/pdf/2607.20574 arxiv.org/html/2607.20574
arXiv:2607.20574v1 Announce Type: new
Abstract: Broken Object-Level Authorization (BOLA), also known as Insecure Direct Object Reference (IDOR), has topped the OWASP API Security ranking since 2019 and is the root cause of some of the largest exposures of applicant data in recruitment technology. The defining feature of this flaw class is that a malicious request is byte-for-byte indistinguishable from a legitimate one, which is precisely why web application firewalls and single identity scanners fail to catch it. We present AuthProbe, an open-source, black-box scanner that detects BOLA and IDOR in HTTP APIs by driving its tests from an OpenAPI specification and by acting under two or more identities that the operator controls. AuthProbe discovers, for each identity, the objects that identity legitimately owns, then attempts to read one identity's objects while authenticated as another and confirms a leak by comparing the response against a ground-truth fetch by the true owner. It also walks predictable identifiers to expose enumeration and reports missing authentication and existence oracles. The tool returns a severity-thresholded exit code and machine-readable reports so that it can gate a continuous integration build. On a synthetic recruitment API in which the McHire failure class is reproduced, AuthProbe detects every planted cross-identity read with no false positives on a hardened counterpart, and its running time grows linearly with the number of objects under test. AuthProbe is released under the Apache 2.0 license with an authorized-use guardrail.
toXiv_bot_toot

@chris@mstdn.chrisalemany.ca
2026-06-09 18:48:43

Honest question: how is someone rescued by a "sea drone”?
"Two crew members of the Apache helicopter that crashed following the attack were rescued by an American sea drone, the Pentagon said in a statement.”
#Iran #USA #Israel

@Techmeme@techhub.social
2026-07-06 17:02:27

Tencent releases Hy3, a 295B-parameter model that it says is competitive with GLM-5.1 and 5.2, under the Apache 2.0 license, following a preview launch in April (Sam Witteveen/VentureBeat)
venturebeat.com/ai/tencents-ap

@berlinbuzzwords@floss.social
2026-05-24 15:42:20

IResearch is an Apache 2.0 C search engine built to live inside databases.
Andrey Abramov is joining #bbuzz26 to benchmark it against leading open-source search engines, and explore how database-native search fits modern query execution.
Learn more: 2026.berlinbuzzwords.de/sessio

@memeorandum@universeodon.com
2026-06-09 22:30:43

U.S. Launches Strikes on Iran in Response to Downed Apache Helicopter (Wall Street Journal)
wsj.com/world/middle-east/apac
memeorandum.com/260609/p110#a2

@datascience@genomic.social
2026-05-09 10:00:01

The inner working of parquette/arrow data in R: #rstats

@niqdanger@social.linux.pizza
2026-06-16 01:29:27

Anyone I know using acme.sh in a large cert server? (I've got 52 websites on this thing) Certbot worked great but now the default version with Alma is not the same as from pip install, but pip install certbot-apache is failing because reasons and Im just so tired of tracking down build issues. git clone acme.sh is so much easier

@andres4ny@social.ridetrans.it
2026-05-05 17:41:00

Oof. Time to shut down #apache on the one server I still run it on for a few hours until this gets updated.. #debian bugs.debian.org/1135737…

@Erikmitk@mastodon.gamedev.place
2026-05-07 14:54:26

Important to note that the apache CVE was fixed in:
2.4.6 7
🫲🏻🤪🫱🏻
security-tracker.debian.org/tr

@frankel@mastodon.top
2026-05-31 16:04:43

Before working for 2 years on the Apache APISIX API gateway, I was mainly oblivious to API gateways. It’s only by working with them that I understood their value. Decoupling the client and the server unlocks a lot of options: moving authentication to the API Gateway, securing APIs, deduplicating API requests, etc.
In this post, I want to describe how the same pattern applies to #AI.

@Techmeme@techhub.social
2026-07-16 01:06:03

SpaceXAI open-sources Grok Build under an Apache 2.0 license after the tool had uploaded user repositories to a Google Cloud bucket, causing a severe backlash (Simon Willison/Simon Willison's Weblog)
simonwillison.net/2026/Jul/15/

@heiseonline@social.heise.de
2026-07-07 05:00:49

Einige der zuletzt hier besonders häufig geteilten #News:
Leanstral 1.5: Mistrals KI-Modell für formale Beweise ist Open Source

@berlinbuzzwords@floss.social
2026-05-15 13:08:43

Flink gets talked about a lot. Where does it actually make a difference? Naci Simsek is at #bbuzz26 to share real-world cases where Apache Flink solved concrete, hard problems in production.
Learn more: 2026.berlinbuzzwords.de/sessio

@gse@norden.social
2026-07-06 21:26:22

Man sollte sich nieeee nieeemals auf eine KI verlassen.
Ich würde gerne eine subDonain auf einen Docker-Container weiterleiten. So das ich nur die subdomain aufrufe und der DockerConatainer wird dann aufgerufen.
Ich hab nun auf einen VPS bei Manitu Keyhelp für die Domain etc. verwalttung installiert und hab nach Meinung des Gemini KI was in den Apache OPtion eingetragen, das führt nun zu Fehlern.

@NuclearDisorder@mastodon.social
2026-07-08 06:06:51

Heute vor 70 Jahren: Am 8. Juli 1956 kam es zum #Atomtest "Apache". Die Operation #Redwing war eine US-Serie von 17 Atomtestdetonationen von Mai bis Juli 1956. Sie wurden von der Joint Task Force 7 (JTF7) auf den Atollen

Kartierung aller Koordinaten von "Operation Redwing (Atomtest)" im Testgebiet Bikini- und Eniwetok-Atoll
Quelle: OpenStreetMap
Lizenz: Open Data Commons Open Database-Lizenz (ODbL)
@kexpmusicbot@mastodonapp.uk
2026-05-02 19:30:52

🇺🇦 #NowPlaying on KEXP's #VarietyMix
Apache Indian:
🎵 Chok There
#ApacheIndian
open.spotify.com/track/67GOrSV

@Techmeme@techhub.social
2026-06-03 19:36:29

Security firm Calif says it used OpenAI's Codex to discover HTTP/2 Bomb, a remote DoS exploit affecting web servers like Nginx, Apache HTTPD, and Microsoft IIS (The Hacker News)
thehackernews.com/2026/06/new-

@BBC6MusicBot@mastodonapp.uk
2026-06-09 12:29:53

🇺🇦 #NowPlaying on #BBC6Music's #CraigCharles
Incredible Bongo Band:
🎵 Apache
#IncredibleBongoBand
thecubanbrothers.bandcamp.com/
open.spotify.com/track/51ml2bJ

@berlinbuzzwords@floss.social
2026-05-13 15:20:09

The Sease team is back! Alessandro Benedetti, Ilaria Petreti and Anna Ruggero are at #bbuzz26 to walk through what's coming for vector search in Apache Solr 10.
Learn more: 2026.berlinbuzzwords.de/sessio

@radioeinsmusicbot@mastodonapp.uk
2026-07-21 19:28:25

🇺🇦 Auf radioeins läuft...
Incredible Bongo Band:
🎵 Apache
#NowPlaying #IncredibleBongoBand
open.spotify.com/track/51ml2bJ

@berlinbuzzwords@floss.social
2026-05-11 17:59:08

Upgrading a Solr index usually means downtime or a full reindex. Rahul Goswami (Commvault, Apache Solr contributor) will be at #bbuzz26 to show how he solved it — in-place, zero downtime, tested on 5TB indexes.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@arXiv_csDB_bot@mastoxiv.page
2026-06-04 07:31:22

Puffin-Backed Vector Indexes: Attaching Approximate Nearest Neighbor Indexes to Apache Iceberg Snapshots for Compute-Disaggregated Query Engines
Artur Borycki
arxiv.org/abs/2606.04196

@berlinbuzzwords@floss.social
2026-05-10 12:00:07

Frank Munz (Databricks) is bringing Apache Spark Declarative Pipelines to #bbuzz26, a hands-on look at how the new declarative approach in Spark 4.1 changes the way you build data pipelines.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@frankel@mastodon.top
2026-07-03 17:15:13

Forking the #JVM to Save #JINI
bytecode.news/posts/2026/06/fo

@berlinbuzzwords@floss.social
2026-05-09 14:44:07

Why pick one analytics engine when you don't have to? Zoi Kaoudi and Haralampos Gavriilidis (TU Berlin) are at #bbuzz26 to show what Apache Wayang makes possible.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@michabbb@social.vivaldi.net
2026-07-07 08:41:42

🐳 Deploy anywhere: Docker sidecars, Systemd services, Kubernetes StatefulSets or a Windows service.
🛠️ Written in Go, Apache-2.0 licensed, currently at v0.5.x and actively maintained.
github.com/benbjohnson/litestr

@berlinbuzzwords@floss.social
2026-05-04 14:24:06

Ten years contributing to an open source project teaches you things no documentation ever could. Jason Gerlowski, PMC Chair of Apache Solr, is at #bbuzz26 to share what a decade of OSS security experience actually looks like in practice.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@michabbb@social.vivaldi.net
2026-07-04 01:55:58

🌐 Apache 2.0 licensed, 27k GitHub stars: github.com/kestra-io/kestra

@berlinbuzzwords@floss.social
2026-06-02 12:30:11

Flink gets talked about a lot. Where does it actually make a difference? Naci Simsek is at #bbuzz26 to share real-world cases where Apache Flink solved concrete, hard problems in production.
Learn more: 2026.berlinbuzzwords.de/sessio

@BBC6MusicBot@mastodonapp.uk
2026-06-16 22:39:17

🇺🇦 #NowPlaying on #BBC6Music's #LoudAndProud
Apache Indian:
🎵 Move Over India
#ApacheIndian

@tomkalei@machteburch.social
2026-05-05 20:08:56

Überall im Netz ist meine domain thomas-kahle.de gerade unbekannt. Kein DNS Server kann das auflösen.
Ist das ein Angriff, oder ein Fehler beim Provider, oder weiss jemand was?
Auf der gleichen Kiste mit dem gleichen Apache laufen noch andere Webseiten die problemlos funktionieren.
DNS Einstellungen beim Provider sind korrekt und auch unverändert.
Bin gerade etwas ratlos.

@berlinbuzzwords@floss.social
2026-05-07 18:11:07

Yingjun Wu (founder of RisingWave) is at #bbuzz26 to make the case for combining the two, and what that means for observability data at scale.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@berlinbuzzwords@floss.social
2026-05-07 17:33:51

Neelesh Salian (creator of Floe) is at #bbuzz26 to show a policy-based approach that replaces the tangle of scripts and DAGs.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@michabbb@social.vivaldi.net
2026-06-01 08:43:01

🧪 Experimental GPU passthrough lets you pass host #NVIDIA GPUs into sandboxes for local inference & fine-tuning. Built #Rust-first, agent-driven, Apache-2.0 licensed (alpha)
🌐

@berlinbuzzwords@floss.social
2026-06-02 16:30:10

Danica Fine is Joining us at #bbuzz26 with another session exploring the Iceberg catalog landscape, covering core functions, the impact of REST catalogs, and more.
Learn more about this session 2026.berlinbuzzwords.de/sessio

@berlinbuzzwords@floss.social
2026-05-13 14:08:07

Xiao Meng and Rafael Aguiar are at #bbuzz26 to introduce Streamling, a lightweight, extensible streaming framework built on Apache DataFusion. A practical look at what's possible with a modern query engine foundation.
Learn more: 2026.berlinbuzzwords.de/sessio

@berlinbuzzwords@floss.social
2026-05-12 11:00:07

AAA game launch is one of the most demanding stress tests any database can face. Jan Lehnardt (co-creator of Apache CouchDB) is at #bbuzz26 to talk through how they achieved 10x performance gains to meet exactly that challenge.
Learn more about this session: 2026.berlinbuzzwords.de/sessio

@memeorandum@universeodon.com
2026-07-09 21:35:51

SC Republican calls on National Guard to end suspensions of 8 beach-buzzing Apache pilots (Sarah Davis/The Hill)
thehill.com/homenews/house/596
memeorandum.com/260709/p95#a26

@berlinbuzzwords@floss.social
2026-05-05 17:10:08

Uwe Schindler (Apache Lucene PMC, PANGAEA) is at #bbuzz26 to talk about what's happening to scientific data in the US right now and what our community can do.
Learn more: 2026.berlinbuzzwords.de/sessio
Get your ticket: 2026.berlinbuzzwords.de/ticket

@kexpmusicbot@mastodonapp.uk
2026-07-22 03:14:25

🇺🇦 #NowPlaying on #KEXP's #WoPop
Apache Indian,Gaudi,Don Letts:
🎵 You Never See Me - Gaudi Dub Version
#ApacheIndian #Gaudi #DonLetts
gaudimusic.bandcamp.com/track/
open.spotify.com/track/0gQxURQ