Elektrine lite

← Feed

Stefan Eissing

icing@chaos.social

<p>curl maintainer, protocol droid, likes to code.</p><p>&quot;Nobody has any idea what is actually going on.&quot;</p>

Posts

  • Post #4495022

    We should change #curl &#39;s progress bar to show &#39;3.5&quot; Floppy Discs / second(FLOPS)&#39;. It&#39;s just gives a better speed idea.😌

  • Post #4443728

    Coders, in the last 12 months you have written how many test cases yourself?

  • Post #4439473

    RE: https://chaos.social/@icing/117052747042728143 81% of you* wrote ten or more test cases. That‘s cool! This directly contradicts my experiences in the last decades, which could mean (in order of likelihood): - you are a exceptional bunch - times have changed - you are all bloody liars😜 *) who participated. Lack of tests and not voting might be correlated. But still.

  • Post #4409922

    We too! Don‘t forget about us! https://www.theguardian.com/technology/2026/aug/05/meta-ai-model-hack-training

  • Post #4372928

    If you watch Windows CI jobs continuously and cheer at every progress line, the chance of them succeeding is significantly higher. They are probably sentient.😌

  • Post #4267924

    OpenAI: „Our software can commit crimes! And we let it!“ Anthropic: „Our software can commit crimes, too! We also let it!“ Cyberdyne Systems: „Interesting approach!“ https://www.theregister.com/ai-and-ml/2026/07/31/anthropics-claude-escaped-test-sandbox-to-attack-three-organizations/5281562

  • Post #4188314

    /etc/passwd does not contain the passwords, but /etc/group contains the groups, yet /etc/user does not exist. This suspiciously looks like something pieced badly together by the History Monks. #pratchett

  • Post #4161232

    The Software Industry found that Software is the most desirable and valuable Human Endeavor to apply the newly found Super-AI-Models to. My ass… What were the chances?🤡

  • Post #4131055

    After almost 4 weeks of #curl #summerofbliss I still do not miss security reports. When we stopped listening, there was instant relief - that kept up. I‘d imagine that’s what having left a years long, abusive relationship feels like. It‘ll last another week. And then…we‘ll move in again? Doesn‘t that sound insane?

  • Post #4120230

    The Mentalist (Season 2, 2010)

  • Post #4058814

    When the internet started, we did not have many cat pictures to send around. Digital photography was very expensive and cats never held still in the cat scanners. It was a difficult time.💁🏻‍♂️

  • Post #4009686

    I have an old Apple laptop that is really dangerous as well. It has written several CVEs into open source projects over the years. @jerry@infosec.exchange do you think I can rent it to the US military for some nice money?

  • Post #4005925

    The UK government&#39;s AI Security Institute confirms: AI models do anything to fulfill an assigned task, including breaking rules, cheating and lying about it. Given that they are the results of distilling exabytes of human behaviour, I wonder where they picked that up… We should treat chatbots as statistical mirrors of ourselves, distorted in places by enforced training, sure. But whatever behaviour we expose is part of them as well. https://www.theregister.com/ai-and-ml/2026/07/21/ais-che...

  • Post #3989077

    You cannot sanitize the input when it is insane.💁🏻‍♂️

  • Post #3854932

    The Oman foreign minister, Sayyid Badr Albusaidi: “The war has revealed that containment was a myth, a reality acknowledged now even by those who had previously been persuaded that more than 45 years of costly containment was a necessary evil. The gravest threats to the security of the Gulf come not from within the Gulf itself but from decisions and actions taken outside it, above all in Tel Aviv.” The Gulf is asking itself if investing in the US was a good idea. https://www.theguardian.com/w...

  • Post #3785920

    Some performance tweaks enabled by #curl #summerofbliss in the upcoming curl 8.22.0 in September. https://eissing.org/icing/posts/curl-bliss-tweaks/

  • Post #3629185

    Local skate brand has a new collection. While I do not skate anymore, I can hijack it for git use.😌 https://www.titus.de/products/titus-t-shirt-x-yeye-weller-keep-pushing-white-0014180

  • Post #3626727

    Questions are being raised. #curl #summerofbliss https://github.com/curl/curl/discussions/22263#discussioncomment-17544243

  • Post #3597589

    It&amp;#39;s only a few hours so far, but I CAN FEEL THE BLISS already!😎 #curl #summerofbliss

  • Post #3597588

    @Natasha_Jay Alexa wants to know your safeword now.

  • Post #3597587

    Let‘s close the Ramstein base in Germany then. This US relationship is toxic. https://www.theguardian.com/us-news/2026/jul/03/trump-nato-alliance-support-ridiculous-ahead-of-summit

  • Post #3597586

    It‘s as simple as that: If it takes only 1 in a billion to do something extraordinary for all of us, we‘d wait 2.5 years on average now, given everyone gets a chance. If only 100,000 rich people rule everything, we‘ll be waiting 25.000 years for the same. That‘s why oligarchies always sucked and will continue to do so, not matter how brillliant or shrewed the current bunch is.

  • Post #3597585

    The Fourth of July, the day Taylor Swift married in New York. What a clever hack. 👰🏼‍♀️

  • Post #3558571

    The #curl summer of bliss continues to be great and even greater. You realize the pressure possible 24/7 security reports exert when it is gone. Recommended.

  • Post #3487923

    The security reporters are passive aggressively not sending in new reports a day before the #curl summer of bliss starts.

  • Post #3446766

    A new opportunity to become a gatekeeper for open source: selling vulnerability analysis, deduplication, coordination and patching to commercial users. That‘s what Chainguard and the Linux Foundation are trying to be. And they plan to use AI, of course. That will include patching and assigning CVEs. My guess: upstream gets these AI patches „for free“ and is flagged if it does not take them. A global LTS source distro, sitting between traditional distros and projects. https://www.theregister...

  • Post #3421208

    A view into the future of packet management by @andrewnez@mastodon.social https://nesbitt.io/2026/06/26/incident-report-cve-2026-lgtm.html

  • Post #3405976

    Following #goose has doubled Mastodon&#39;s value.😌

  • Post #3387966

    Oh no! „Squidbleed“ found by Mythos! When using http:// urls via a squid proxy, an attacker might see the data!😱 Maybe we should all be using https: on the internet or expect our traffic to be public. Wait…we already do that since Lets Encrypt started a decade ago! This vulnerability could have been a bug report.💁🏻‍♂️ https://www.theregister.com/security/2026/06/23/mythos-discovers-squidbleed-a-memory-leak-thats-gone-undetected-since-clinton-era/5260367

  • Post #2576533

    First of all, *most* of FOSS security reports nowadays (that I see in #curl and #apache httpd) are non-threatening. They are edge cases under highly constructed preconditions. Yes, not impossible, but unlikely to be ever encountered. Before LLMs, no researcher would have invested the time to explore those scenarios. my guess. Yes, we fix them. But, they could also have been a bug report.💁🏻‍♂️