Bonum Certa Men Certa

Links 05/10/2022: PL/Haskell 1.0 and RapidRows 1.0 Released



  • GNU/Linux

    • Audiocasts/Shows

      • VideoManjaro Shipped Broken Kernel on Apple M1 Systems - Invidious

        I don't know how Manjaro keeps doing it but it seems like everytime something happens Manjaro is here to break something, now they decided to ship a broken build of the Asahi Linux kernel to people running Apple M1/M2 hardware

      • mintCast Pocast396 - Ransomware Goes Wild – mintCast

        First up in the news, Stallman goes manual on C, DNF5 arrives in Fedora, LibreOffice gets fumigated, GNOME comes into its Shell, they have put hair in the Blender, Avast buys your cookies, and Intel fogs the processor market; In security and privacy, we have multi-stage malware, website leaks, and shell attacks; Then in our Wanderings, Norbert is cutting corners, Moss tries a different mint, Joe keeps modding, and Bill fixes a broken Arch …again.

    • Instructionals/Technical

      • Linux HintHow to List Installed Packages in Ubuntu 22.04

        A “package is referred to as a group of items such as scripts, text files, libraries, licenses, etc. These packages enable the installation of software in such a way that the package manager unpacks the software and includes it in your operating system. Linux-based systems such as Ubuntu 22.04 comprise some packages by default, and some are installed later on.

      • Containers Logging Guide | learn how to collect Containers logs | Medium

        From a DevOps standpoint, logging is one of the most important things to get right in applications.

      • Linux Made SimpleHow to install MetaTrader 4 with the OctaFX Broker on a Chromebook

        Today we are looking at how to install MetaTrader 4 with the OctaFX Broker on a Chromebook. Please follow the video/audio guide as a tutorial where we explain the process step by step and use the commands below.

      • rewrite rule representation

        I've begun writing up my phd and, not for the first time, I'm pondering issues of how best to represent things. Specifically, rewrite rules.

      • Linux CapableHow to Install WoeUSB on Linux Mint 21 LTS

        WoeUSB is a free, open-source simple tool that enables you to create your own USB stick windows installer from an iso image or an actual DVD. I have used it myself to create bootable USB sticks for installing Windows from ISO images, and it has worked flawlessly every time. The interface is straightforward to use. Select the ISO image or DVD you want to use, select your USB drive, and click “Create.” The process is quick and painless, and the results are always perfect. If you need to install Windows from a bootable USB stick, WoeUSB is the ideal tool for the job.

        The following tutorial will teach you how to install WoeUSB on Linux Mint 21 LTS release series using a LaunchPAD APT PPA with the command line terminal.

      • Linux NightlyHow to Install Signal on Ubuntu 22.04

        Signal is a secure messaging and voice chat application. It’s primarily used on mobile phones, and will require a phone number to register, but it can also be installed on PC operating systems such as Ubuntu Linux. It works similarly to WhatsApp and Telegram but has a much bigger focus on user privacy and security.

        In this tutorial, you will learn how to install Signal on Ubuntu 22.04 using GUI, snap, or apt package.

      • Securely Erase a SATA Hard Drive for Disposal using hdparm in Linux - Putorius

        There have been many stories about people discarding old computers only to have someone pick them out of the trash. Most of the time this is for innocent enough reasons. However, there is a real threat to someone getting there hands on your old hard drive. Since most people do not encrypt their drives someone can very easily pull all the data off of these old discarded hard drives. In this article we will discuss how to securely erase a hard drive before disposal. This method is effective on any SATA / PATA hard drive, including destroying hard drives from a system running Windows or any other operating system.

    • Desktop Environments/WMs

      • K Desktop Environment/KDE SC/Qt

        • Nate GrahamAutomate and systematize all the things! - Adventures in Linux and KDE

          As announced at Akademy a few days ago, I’m honored that my goal – Automate and Systematize Internal Processes – has been chosen by the KDE community! Those are a bunch of fancy words, but the idea is pretty simple: get our expertise (knowledge, skill, and wisdom) out of our heads, and onto KDE’s infrastructure.

          Why? to reduce the burden on us personally to provide so much of that expertise on demand as an ongoing service, and to reduce the impact of breaks, vacations, and departures. Ultimately this will preserve expertise publicly in KDE where it’s easier to learn from, and free us all up to do other things!

  • Distributions and Operating Systems

  • Free, Libre, and Open Source Software

    • My journey and a begginers guide to Open Source

      I then worked on a project, which didn't solve any problem, but just strengthened my skills, it was my own Penguin-based OS, called Aryan Linux, made by using "Linux from Scratch". On compiling it, I understood what open source really is, it made me so happy.

    • GoogleAnnouncing the second group of Open Source Peer Bonus winners in 2022 | Google Open Source Blog

      We’re excited to announce our second group of Open Source Peer Bonus winners in 2022! The Google Open Source Peer Bonus program is designed to recognize external open source contributors nominated by Googlers for their open source contributions. This cycle, we are pleased to announce a total of 141 winners across 110+ projects, residing in 36 countries.

    • SaaS/Back End/Databases

      • PostgreSQLPostgreSQL: PL/Haskell v1.0 Released

        I'd like to announce the release of version 1.0 of the PL/Haskell extension. This extension allows users to write PostgreSQL functions in the Haskell functional programming language.

      • PostgreSQLPostgreSQL: RapidRows 1.0 released

        We are happy to announce the general availability of RapidRows -- an open-source, low-code API server designed for PostgreSQL that can be configured to run SQL queries, perform scheduled jobs and forward PostgreSQL notifications to websockets.

    • Programming/Development

      • CNX SoftwareThe BBC has released a new web-based Python editor for the micro:bit board - CNX Software

        There are already Python editors such as Thonny, but the BBC thought those were not good enough and released a new web-based Python editor specifically designed for the micro:bit education board targeting 11 to 14 years old pupils.

        The micro:bit Python editor includes drag and drop code examples, code structure & error highlighting, auto-complete feature, a simulator to test the code before uploading it to the micro:bit board, and a Quick ideas section to help pupils get started with projects.

      • Are Code Freezes a Thing of the Past? - IT Jungle

        After months of work on your modernization project, the consultant helping you is almost done. That’s the good news. The bad news is that the consultant is now asking you to put a code freeze on changes to your old application. It’s not clear whether the code freeze will lasts two months or two years, but it’s absolutely necessary, you’re told.

      • openQA: emulated aarch64 worker - openQA bites

        Are you in dire need of an aarch64 worker on your own openQA instance, but no suitable hardware lying around? If speed is not your main concern, then don’t worry - you can just enable a qemu-emulated aarch64 worker on your openQA instance (probably x86_64). In this post we’re gonna explore how to setup an emulated aarch64 qemu worker on your own openQA instance in less than 10 minutes.

      • What Modern Cloud-Native Apps are Made Of

        Modern applications are continuously being improved. They are created using modern product management techniques that ceaselessly strive for a better and better user experience.

        Modern cloud-native applications are always available, anytime and anywhere a user wants to engage with them. They never go offline, they provide continuous availability and they automatically scale to meet the needs of all customers, all the time.

      • GoogleFlutter SLSA Progress & Identity and Access Management through Infrastructure As Code | Google Open Source Blog

        We are excited to announce several new achievements in Dart and Flutter's mission to harden security. We have achieved Supply Chain Levels for Software Artifacts (SLSA) Level 2 security on Flutter’s Cocoon application, reduced our Identity and Access Management permissions to the minimum required access, and implemented Infrastructure-as-Code to manage permissions for some of our applications. These achievements follow our recent success to enable Allstar and Security Scorecards.

      • Perl / Raku

        • PerlLook mom I invented colors | lichtkind [blogs.perl.org]

          Just released Graphics::Toolkit::Color for the purpose to create computationally harmonic color pallets (2 lines max for most needs). It is in fact a chunk out of Chart I needed to reuse in other projects as the Harmonograph. And as you can see in the SEE ALSO section of the POD - I'm aware that there are plenty other modules doing, parts, similar stuff or even more.

          The reason you should care nonetheless are (beside having good error messages, being well tested, documented and maintained and having almost no dependencies) II (in words two).

  • Leftovers

    • Hardware

      • DaemonFC (Ryan Farmer)My 2020 Lenovo laptop is acting strangely again, and it's not even two years old. | BaronHK’s Rants

        Today, my left Control key has been working intermittently, although it’s working now and has been for a while, knock on wood.

        [...]

        If the SHTF, then I suppose I could use my older laptop to wait out the 30 days and have a Lenovo tech come out to my house and repair it again.

        I tried calling down to ubrekifix in Gurnee and the guy basically said they wanted $100 just to look at it but they couldn’t do very much because all of their diagnostic tooling is for Windows (of course) and they don’t know much about “Linux” (of course) and then we could go from there, but I could subscribe to a protection plan for everything in the house for….and that’s when I hung up.

    • Security

      • IT WireiTWire - Microsoft changes mitigation guidance for zero-days, but tells no one: claim

        Microsoft has changed a portion of the advice it issued for mitigation of two bugs in its Exchange Server product, but made no mention of the change, well-known British security researcher Kevin Beaumont says, adding that it looked like the company needed to familiarise itself with the source code of this product.

        The bugs, both zero-day vulnerabilities reported to be affecting Microsoft Exchange Server 2013, 2016, and 2019, are similar to the ProxyShell vulnerability for which updates were issued by Microsoft in May and July last year.

        ProxyShell comprises three separate bugs used as an integrated attack chain and allowed attackers to bypass authentication and execute code as a privileged user.

      • Kubernetes BlogCurrent State: 2019 Third Party Security Audit of Kubernetes | Kubernetes

        We expect the brand new Third Party Security Audit of Kubernetes will be published later this month (Oct 2022).

        In preparation for that, let's look at the state of findings that were made public as part of the last third party security audit of 2019 that was based on Kubernetes v1.13.4.

      • HelpSystems Goes on the Security Offensive Again - IT Jungle

        Penetration testing has become popular as security vulnerabilities in corporate systems have become more apparent. Adversary simulation, or “red teaming,” is a similar technique that involves an active defense against a live adversary. If penetration testing is a passive activity designed to identify static flaws in your defenses, then red teaming is the dynamic version of it that allows your internal cybersecurity team to test their abilities in real time against the bad guys (i.e. the red team).

    • Civil Rights/Policing

      • DaemonFC (Ryan Farmer)Trevor Noah leaves The Daily Show and there's nobody left watching it who cares. | BaronHK’s Rants

        The police drove Ian Murdock to suicide by hanging with about the same sort of things that they did to me.

        However, Justice was done in the case of Derek Chauvin, who is going to be in prison until at least 2038 already, and he’s about to go on trial yet again on 9 felony counts of tax evasion and failure to report income.

        I mean, you piss off the government, you piss off everyone in the country, bad things happen. They start digging up anything they can. I was pissed at what I saw. They had no right to do that, and I’m glad they were punished.

  • Gemini* and Gopher

    • Personal

      • Books I Am Currently Reading

        a sci-fi story that is unique for focusing on the lives and realities of common place person instead of the elitist figureheads of power most sci-fi novels go for. I first got into the book through the S.T.A.L.K.E.R games (playing shadow of chernobyl now, best fps ive played in years and its from 2007 lol) So far its very well written, translated and entertaining. Im reading the rediscovered classics version released in 2012 btw, which is the latest version.

        [...]

        Take a look at this thing of beauty. Such a dope looking book, its friggin sweeet. More beautiful than any jewel. Soul Arts is an artbook that collects hundreds of artist finest submissions for contest based on the games, then binds them in the best looking cover+slipcase I have ever seen. I WANT THE PYSICAL EDITION SOOO SOOOO BAD MAN! Unfortunately I couldn't justify the 80$ asking price for a book when it was first announced, and I still cant now.

        THANK GOODNESS that they offer a 15$ pdf version (DRM FREE!) which can be loaded onto the ereader. 15$ is a slightly easier pill to swallow and I held off on even that for months but this week finally bit the bullet and got the damn thing. If I REALLY REALLY REALLY REALLY REALLY like the book I might consider it as a christmaas present to myself. But for 80 dollaroonies the books contents gotta be so cool that looking at each page is near orgasmic.


* Gemini (Primer) links can be opened using Gemini software. It's like the World Wide Web but a lot lighter.



Recent Techrights' Posts

"Many Applications Labelled as "Cybersecurity" and Given a Veneer of Legitimacy Are Really "Weaponised" and Abusive Code"
New from Dr. Andy Farnell
Security Advisory: Debian falls for social engineering hacks
Reprinted with permission from Daniel Pocock
The High Cost of Making Scepticism of Proprietary Voting Machines a "Trump" and "Conspiracy Theory" Territory
Time to get back to paper? Or read an old paper?
 
Deciphering Centralised CAs and Why Their Demise Should be a Goal
Encryption in transmission is good; but who controls the key exchange and certification/authentication/validation?
Links 08/11/2024: Strikes, Recessions, and Slowdowns
Links for the day
[Teaster] [Meme] New Ways of Wrecking (NWoW)
The EPO
Gateway for News and Blogs
In the long run, this site and its sister site (less overlap between them now) should hopefully become a popular destination for people who look for information, not chaff
Going Even Faster
We hope the site will be faster soon
Psychopaths Who Reaffirm Our Work's Value
Psychopaths and sociopaths lack empathy, so they're willing to go very far and stoop as low as they deem necessary
[Meme] How Low Can You Go at the European Patent Office?
Not just in terms of patent quality
More Cuts/End to Benefits for EPO Workers (Europe's Working Conditions Incompatible With the European Patent Convention)
"The Office is now reviving it but plans to introduce new cuts on benefits"
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, November 07, 2024
IRC logs for Thursday, November 07, 2024
Gemini Links 08/11/2024: US Election, RetroChallenge 2024, and More
Links for the day
[Meme] Questioning Proprietary Software? Not OK...
A disaster long in the making
Links 07/11/2024: HTTP/3, Health Research, and Punditry
Links for the day
Gemini Links 07/11/2024: On Writing Publicly and Record Player Table
Links for the day
Open Source Security Foundation (OpenSSF) Hosted SOSS as Microsoft Propaganda Platform With Microsoft Front Group OSI
They essentially promote what they're attacking under false pretences [...] OSI is deeply corrupt. It's more toxic than arsenic.
Anti-Linux FUD, Now in LLM Form, Thanks to Brittany Day
They attack Linux with chatbots
[Meme] When You Discredit People Who Discredit Secret Code
proprietary systems with hundreds of millions of transistors (and hundreds of millions of lines of code)
Links 07/11/2024: Online Manipulation in Social Control Media, Election Deniers, and More
Links for the day
Gemini Links 07/11/2024: emacs-guix and File Hoarding
Links for the day
[Meme] Election Day at the European Patent Office
Less than 60 minutes left to cast your vote
Staff Union of the European Patent Office (SUEPO) Election Ending Today
In one hour
[Meme] When the Patent Office Does Illegal Things and Staff Speaks Out
many leaks received today
Today We Got an Early Birthday Gift
Exciting times
[Meme] Going Too Far to the Left Can Breed Militant Ideology
Some people can never be appeased because they prefer not to be appeased
Apple's Debt Has Skyrocketed While Gimmicks Like Vision Pro Failed
In Apple's case, the debt is almost double the "Cash on Hand", which isn't even cash
FSF Expressed No Preference Regarding Presidential Candidates (Its Founder Did)
Because he is a principled person, he does not prioritise loyalty to customers or employers (money)
A President Trump is Excellent News to Microsoft
His racist policies gave lots of contracts to Microsoft
Who Next on the Linux Foundation's 'Kill List'?
Remember that only about 2% of the "Linux" Foundation's budget goes to Linux
Links 07/11/2024: Facebook Scams, Journalists on Strike
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, November 06, 2024
IRC logs for Wednesday, November 06, 2024
Microsoft-Connected Publishers Want Us to Think That Linux is Some Sort of a Virus and a "Backdoor"
"The problem is with windows and the attack vector is via Windows"
We've Made it to 18! Here's to Another 18!
Going on for another 18 years means until some time at the end of 2042
Links 07/11/2024: Political Angst and Laptop Issues
Links for the day
Even LKML Subjected to Slop/SPAM by Guardian Digital, Inc (linuxsecurity.com)
They're really awful
Links 06/11/2024: BPF in RFC 9669, More Facebook Fines for Privacy Abuses
Links for the day
Gemini Links 06/11/2024: Political Shock and Hermaic Encouragement
Links for the day
Planet Debian Allows Politics (But It Depends on Your Opinions and Debian's Big Sponsors)
Planet Debian is OK with politics... as long as all your political opinions are the "correct" ones and you add cute animals
What Makes RMS Such an Attractive Target ('Discreditisation' Campaigns)
Don't be so easily fooled
The Biggest OEMs or Vendors of GNU/Linux Stopped Competing With Microsoft (Which Pays Them to Promote Windows, Too)
Where are the competition authorities (or regulators for that matter)?
Let's Encrypt Falls to a New Low of Only 0.6% of Gemini Capsules Known to Lupa
In Gemini Protocol, certificates for encryption are required, but centralised Certificate Authorities (CAs) aren't needed
Computer-Generator Crap Flooding the Web, the Latest Example About "Linux"
Here's today's example
Links 06/11/2024: Election Disinformation and Legal Actions
Links for the day
Gemini Links 06/11/2024: Stargazing and Death on Hallowe'en
Links for the day
Would You Trust a Liar?
Why lie about the authorship?
Mass Layoffs at Mozilla Announced During US Elections
Maybe nobody will notice?
[Meme] Announcing "Results" Before Everyone Even "Played"
There is a "tech" angle to otherwise political news
US Polls Close in One Minute (Social Control Media Does Not Care, Will Not Wait)
US election results will be known in about 2 days
Concentration and Centralisation Versus Aggregation or Syndication
KDE has a history of burying old sites
Social Control Media, Even Hours Before Polls Have Closed
Has social control media controlled by CPC (TikTok) and the Trumpmobile guy (Musk's "X") done enough to convince people not to even vote (based on presumptive "results", presented a long time before all polls have closed)?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, November 05, 2024
IRC logs for Tuesday, November 05, 2024
Wayland Pains in Community-Led Distros of GNU/Linux
Few people and companies use Wayland; there's hardly any technical or practical reason to choose it
IBM Still Conflating Microsoft With 'Security'
As a meme
Sanctions Cause Fragmentation in Software
some Chinese Linux developers are already subjected to restrictions similar to Russians'
Web Failing With Slop, Even in 'Linux' Sites (LLM Spam)
Add SEO prompting to the mix and the Web becomes a pool of slop, not knowledge
[Meme] State of the World Wide Web and Online Journalism
Technically a failure (DRM) and cannot even get basic things right
Trump's signature policy, building a wall, copied from Irish-Australian student politician
Reprinted with permission from Daniel Pocock
Linus Torvalds' self-deprecating LKML CoC mail linked to Hitler's first writing: Gemlich letter
Reprinted with permission from Daniel Pocock
[Meme] Turning 18 in One Day
just one more day