2025-11-08 14:25:05
We presented “Advancing Vulnerability Tracking and Disclosure Through an Open and Distributed Platform” at the excellent @…
#cve #vulnerability
We presented “Advancing Vulnerability Tracking and Disclosure Through an Open and Distributed Platform” at the excellent @…
#cve #vulnerability
Ugh why is this always the way. I evaluated like 25 authentication servers for a small scale web project — I do want to support things like OIDC and Passkeys, so this is not something I really want to make myself like the old days of “use crypt() on the passwords and just make a simple database”.
5 of them are just dev mode garbage that will never see the light of day as a thing people use.
2 of them are home network nonsense for people who want enterprise login for their family, but where One Nerd controls the whole user-list.
15 of them are freemium "open source" where they withhold features for their enterprise tier and make them so unfortunately difficult to deploy, all requiring postgresql databases and a complex containerization setup and helm charts and oh so much.
and then there's kanidm, which is great except its opinions make it completely unusable for a community project, it's really more trying to fit the ‘enterprise unix authentication' space. Kudos to them for communicating it but it's the wrong tool, even if it is really good.
And then there's rauthy. Which is exactly what I want, well built and delightful, uses a lightweight embedded database, and even has a peer-to-peer sync for scalability. But customizing it is going to be a lesson in building it from source repeatedly, and its configuration is just a bit strange, and its frontend is extremely Backend Developer Wrote A Web UI. I guess I got a second project. And maybe a third to make debian packages of it.
Yet it really is the best of the options _by far_.
NLNet supported projects continue to punch above their weight class.
Localsend is Great!
If you need a App that flawless send files to your cross platfom devices, Try Localsend.
No cloud or internet needed.
End-to-end encrypted transfers.
Simple, user-friendly interface.
Open-source.
Plus, European-developed (German) and privacy-focused.
https://localsend.org/
RE: https://social.opensource.org/@policy/115575889086954433
Sure, bringing more Open Source into public infrastructures would be great. Pouring more funding (and structural support) into that space also would be fantastic.
But what has "AI…
Been working on Corsi-Rosenthal like filters devices and it's really nice to see them just sucking up PM2.5 particles in minutes when put in a room
Trying to make ones that look a bit less like a DIY shitshow and more professional
Really great and happy with these, considering making a little Open Source project for the few designs I made
Image is a prototype I put together but not yet finished the box with varnish or anything but really loving this
(background he…
Great article on MIDI and a reminder that open protocols won't easily go obsolete once adopted
https://www.sweetwater.com/insync/midi-essenti…
I’ve been researching #Italian #immigration to the #US for my #novel and every other primary source I open from 1890-1915 gives me major DéjŠ vu to how the #Republicans talk about immigration today.
“They aren’t white enough”, “they are a drain on our resources”, “deported because they would be a public charge”, “uneducated”, “barbaric”, “increasing crime”.
All the arguments are the same. Some of the laws are the same. And yet people in 1890 were arguing about the lack of race purity and “dirty blood” of people from Europe who the current conservatives would wholeheartedly consider white Christians and part of the great West or whatever.
Really makes you see as clear as day how BS and arbitrary all of this racist and anti-immigration rhetoric is. It’s nonsense. Always was. Always will be.
People deserve dignity and respect. Immigrants deserve to be welcomed in and accommodated.