melroy
melroy avatar

melroy

@melroy@kbin.melroy.org

Software Engineer & DevOps Architect. /kbin lead developer.

He/him 🇳🇱

Mastodon - Matrix - Homepage - Donate me

melroy,
melroy avatar

Maybe it's not a big deal.. But I still remember the first time I compiled the Linux kernel. It feels good. Well done!!

melroy,
melroy avatar

ahh what a shame. I have: https://kernel.melroy.org/.

But I also didn't had the time to create new kernels. My PC is too slow at the moment. hahaha. Just wait.. maybe I will get the latest threadripper. Instead of the first -gen i7 from 2008.

melroy,
melroy avatar

just like defrag in Windows

That felt more a horror for me.

melroy,
melroy avatar

You have backups. Right. Right??

[News, Call for Action] The U.K. Government Is Very Close To Eroding Encryption Worldwide (www.eff.org)

The U.K. Parliament is close to passing the Online Safety Bill, which threatens global privacy by allowing backdoors into messaging services, compromising end-to-end encryption. Despite objections, no amendments were accepted. The bill also includes content filtering and surveillance measures. There’s still a chance for...

melroy,
melroy avatar

I doubt that E2E services will care. Matrix will not change. Just like many other services. They are just insane. You can't also just break TLS in UK only. haha they are crazy.

melroy,
melroy avatar

you can always run: rmmod nvidia and rmod nouveau. And then buy an AMD videocard. This works always! Thank me later!

melroy, to tech
melroy avatar

When will twitter.com redirect to x.com instead of x.com to twitter.com? Give a date.

Let me know below, who whoever is closest wins X.

#x

melroy,
melroy avatar

@hoodlem Wow, really that fast? That is not a date, but let's say: 1 July ;P?

Personally, I think due to technical reasons, it might take 2 months from now. Or it will never happen, due to trademark BS. 2 months; date: 27 Sept. 2023.

The Fall of Stack Overflow (observablehq.com)

Over the past one and a half years, Stack Overflow has lost around 50% of its traffic. This decline is similarly reflected in site usage, with approximately a 50% decrease in the number of questions and answers, as well as the number of votes these posts receive. The charts below show the usage represented by a moving average of...

melroy,
melroy avatar

Try chatgpt 4 premium. I have heard it automatically auto correct itself with code.

melroy,
melroy avatar

Hopefully now you use kbin instead of reddit? Lol

FBI Seizure of Mastodon Server is a Wakeup Call to Fediverse Users and Hosts to Protect their Users (www.eff.org)

We’re in an exciting time for users who want to take back control from major platforms like Twitter and Facebook. However, this new environment comes with challenges and risks for user privacy, so we need to get it right and make sure networks like the Fediverse and Bluesky are mindful of past...

melroy,
melroy avatar

FBI could also just setup his own Mastodon instance and start subscribing.. ;) In fact, you can also setup a malicious fediverse node (I will not go into details here).
TLDR; A chain is only as strong as its weakest link. Which was this instance during maintenance apparently.

melroy,
melroy avatar

Nobody is on Threads remember ;P

melroy,
melroy avatar

I fully agree. This is still a very high specced computer to be honest. Even for today standards.

melroy,
melroy avatar

I don't like this at all!

melroy,
melroy avatar

Ps. For some reason the severity is marked as "medium", while I can read all my data without any special user privilege on my system: https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7008.html. This should be a very high severity for sure.

melroy,
melroy avatar

Ah you're right I was thinking about the meltdown/spectre of Intel. Why they called it Zenbleed I'm not sure either. BIOS firmware upgrades can also fix CPU vulnerabilities.

melroy,
melroy avatar

But what about hosting GitLab/GitHub/Codeberg runners? Even when using Docker. That might still allow hackers to run software on the machine, and since this vulnerability doesn't require any specific permissions anybody can take advantage of this vulnerability.

melroy,
melroy avatar

I'm running 6 gitlab runners and 3 Forgejo runners. Self hosted. Yes it matters.

melroy,
melroy avatar

Hmm

melroy,
melroy avatar

So you are basically saying, you should not use consumer hardware to create a server yourself. Instead you need to spent 1000's of dollars for a EYPC processor and very expensive motherboard and memory. Just because...

The internet is already broken enough. I believe in decentralizing the WWW by enabling users to create their own server. Moving all to Amazon cloud isn't the future I want to see either. Forcing users to spent 1000 or 10.000 of dollars for a server is definitely not helping either.

melroy,
melroy avatar

Well. That depends on the security. Only docker containers are allowed. Docker containers are remapped to non root users. No extra privileged are possible either.

We only now have Zenbleed to deal with. And amd didn't release anything yet for consumer cpus.

melroy,
melroy avatar

I have this installed 3.20191218.1ubuntu2.1 on my Ubuntu 22.04 server. It stills allows me to execute zenbleed exploit on AMD Ryzen 7 3700X CPU.

Changelog: http://changelogs.ubuntu.com/changelogs/pool/main/a/amd64-microcode/amd64-microcode_3.20191218.1ubuntu2.1/changelog. It's not working...?

melroy,
melroy avatar

ASUS did? I ask MSI do release a BIOS update, and these are the responses so far: https://forum-en.msi.com/index.php?threads/cve-2023-20593-zenbleed.387800/

melroy,
melroy avatar

That is a better source then cross posting from lemmy.ml. Thanks.!

melroy,
melroy avatar

I'm happy they kill themselves by this name change. Haha

melroy,
melroy avatar

No. The top company is called meta. The product Facebook is still just Facebook.

melroy,
melroy avatar

The real x logo is of course from Xorg. Never forget that.

melroy,
melroy avatar

We don't talk about that. Remember? 🤪🙈

melroy,
melroy avatar

You call me old? Haha just kidding. It's a stupid change indeed. Elon wanted to do the same with PayPal.

melroy,
melroy avatar

No idea how to pronounce this then. It's such a stupid name change. Elon is destroying Twitter.. sorry X very well. Xorg was first tho.

melroy,
melroy avatar

Why did Twitter change its name to 'X'? Because it marks the spot where all the birdie treasure is hidden! 🏴‍☠️

melroy,
melroy avatar

Yes, it's a great idea. And I also do it myself. In fact, I'm not only self host all my services. I also host them at my home.

https://server.melroy.org including all the sub domains are all hosted on the same server.

You can just use a good ryzen computer with enough ram (start with 32 gb or something). With enough storage. Redundancy via raid. I personally use Proxmox with an Ubuntu 22.04 VM. However bare metal may be also fine.

Have fun!

melroy,
melroy avatar

Use fail2ban. Here you have a good starting point: https://gitlab.melroy.org/-/snippets/612

melroy,
melroy avatar
melroy,
melroy avatar

You mean server.melroy.org? It's called HTML :)

melroy,
melroy avatar
melroy,
melroy avatar

server.melroy.org is purely written in static HTML and CSS. Just like the 80's and 90's.

melroy,
melroy avatar

I do. I love to self host everything I can. I like to have control over my own data. I host my own GitLab instance. I host my own Nextcloud instance. Running Mastodon, Kbin, Matrix, you name it.. All my DNS records point to my server IP.

ps. I'm also a contributor to kbin.

melroy,
melroy avatar

I don't like that the whole world need Cloudflare to be honest. My vision of a free and open WWW should not include a big centralized corporation like Cloudflare. Instead of fixing the Internet and DDoS attacks, we just move all to Cloudflare?

Whether it's zero trust or WAN, CDN or firewall solutions. I want everyone to be able to participate in the internet, to run their own infrastructure ideally without Cloudflare or cloud services in general. In fact, that is why I also try to create https://libreweb.org. The world needs a better internet, whatever that may look like.

melroy,
melroy avatar

yea it's a shame.. I don't blame you. The current Internet has just became too complex. Too vulnerable. Too many attack vectors. You need to know about web-servers, various package managers, load balancing, firewalls, DNS, automated IP banning tools/DDoS protection, horizontal scaling, vertical scaling, Kubernet, Docker, security; updates, automated updates, various HTTP headers, TLS/SSL, various encryption configurations and versions, ciphers, you name it..

I actually doubt if Zero Trust is tackling all of the security aspects.

melroy,
melroy avatar

You have my vote ;P

melroy,
melroy avatar

Ṯ̸̛̠͈̜̮̠͉̖̩͈̦̖̰̺̦̳̞̣͍̖̮̩̩͔̟̇̾̽̄̔̊͂̕͝w̶̘̖͓̮͓̉̀̀̿̈́̀͗͂̂̑̆̐̀͌́͗̑̑̊̈̅̇͒̊͋̚͘̕͘̕į̸͖̪̪̟̭͔͚̼̳̏̈͒́͑͒̈́̿̔͆̀̿̏̒͝t̶̡̘̟̣̀̾͛͂̒͆̆̂̇͘͠t̷̡̨̖̖̤͎̬̜̬͈̙̱͖̼͚͇͕̘͈̔̎́̅̈́̉͒́̚͜͝͝ͅę̴͕̥͎̙͉̗̜̟͔́̀̾͐̿̑̉̀͐̂̚r̵̢̢̦̰̰̣͖̯͎͚͙͇̯͈̙͔͇͉͈̩̖̝͉̅̏̿͗̆̀̀̈́̔̀͊̓

melroy,
melroy avatar

AFAIK they just are exploring the fediverse. Maybe they will never go that route.

piotrsikora, to random Polish
@piotrsikora@pol.social avatar

No i po migracji :)

Poniżej zdjęcie ustawień dwoch nowych macierzy no i nowego serwera :)
Oczywiście przed włożeniem do szafy

melroy,
melroy avatar

@piotrsikora Are that cloths around the server you just setup your new RAID matrix cluster on?

SamXavia, to AskKbin
@SamXavia@kbin.social avatar

As I'm new to Kbin, What is one thing that I should do?

melroy,
melroy avatar

@SamXavia Modify your look & feel settings of kbin. Play around with your preferences.

melroy,
melroy avatar

@SamXavia great to hear that 😄. And more is expected to come.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • updates
  • drbboard
  • programming
  • til
  • tech
  • bitcoincash
  • testing
  • japanese_idols
  • All magazines