Between and I took 8284 steps.
Week Notes 24#50 (3 mins read).
What happened in the week of 2024-12-09?
Reposted
Jerry Lerman (@Jerry@hear-me.social)

Post details
Attached: 1 image Important reminder, if you own a domain name and don't use it for sending email. There is nothing to stop scammers from sending email claiming to be coming from your domain. And the older it gets, the more valuable it is for spoofing. It could eventually damage your domain's reputation and maybe get it blacklisted, unless you take the steps to notify email servers that any email received claiming to come from your domain should be trashed. Just add these two TXT records to the DNS for your domain: TXT v=spf1 -all TXT v=DMARC1; p=reject; The first says there is not a single SMTP server on earth authorized to send email on behalf of your domain. The second says that any email that says otherwise should be trashed. If you do use your domain for sending email, be sure to add 3 records: SPF record to indicate which SMTP server(s) are allowed to send your email. DKIM records to add a digital signature to emails, allowing the receiving server to verify the sender and ensure message integrity. DMARC record that tells the receiving email server how to handle email that fails either check. You cannot stop scammers from sending email claiming to be from your domain, any more than you can prevent people from using your home address as a return address on a mailed letter. But, you can protect both your domain and intended scam victims by adding appropriate DNS records. UPDATE: The spf and the dmarc records need to be appropriately named. The spf record should be named "@", and the dmarc record name should be "_dmarc". Here's what I have for one domain. One difference that I have is that I'm requesting that email providers email me a weekly aggregated report when they encounter a spoof. gmail and Microsoft send them, but most providers won't, but since most email goes to Gmail, it's enlightening when they come. #cybersecurity #email #DomainSpoofing #EmailSecurity #phishing

Liked
Terence Eden (@Edent@mastodon.social)
Post details
Wooooo! Looks like my #FOSDEM lightning talk was accepted for the BOF track 😃 Guess I'd better start packing!
Liked
ThatSexToyGuy (@hungry_joe@mas.to)
Post details
True story: my mum worked for the MoD. She was in the kitchen at Sandhurst once and Prince Andrew walked in. Everyone was surprised, no one reacted. He said. 'hm, let's try that again shall we?', then he left the kitchen and walked back in, just to make them all bow properly. Prick.
Reposted
Benjamin Carr, Ph.D. 👨🏻💻🧬 (@BenjaminHCCarr@hachyderm.io)
Post details
Every time you use #ChatGPT, half a litre of #water goes to waste #GenerativeAI already uses as much energy as a small country and is predicted to rival that of Japan within a year. Such searches use 10 times the energy of a normal web search. “We’re wasting a lot of water with these systems, and very few people realise that it’s a major problem. That’s why I think personally the No.1 priority for the sector should be #sustainability. Not the #AI race.” https://www.smh.com.au/technology/every-time-you-use-chatgpt-half-a-cup-of-water-goes-to-waste-20241128-p5kubq.html
Liked
Anders Eknert (@anderseknert@hachyderm.io)
Post details
Whenever I write a TIL (Today I Learnt) post, it’s because if I don’t, it’ll also be that Today I Forgot (TIF). I’ll still forget, but at least it’s written down somewhere I’ll never look.
Liked
Aral Balkan (@aral@mastodon.ar.al)
Post details
Luigi Mangione shocked health insurance CEOs who could never imagine working for free or stopping at killing just one person.
Liked
Christmas Carol 🎄 (@carol@social.lol)

Post details
Attached: 1 image i just stumbled upon this picture online and it instantly took me back to high school, when i used to hide the earphone cable under my hoodie and my hair, clip this very radio to my jeans and listen to the radio in class

Between and I took 7242 steps.
Liked
Hazel Weakly (@hazelweakly@hachyderm.io)
Post details
"hey hazel how do you know when you need to rest??" dont worry babes, my body has a really cool way of just shutting me the fuck down for two days whenever it wants, so thats usually when i schedule the rest time
Listened to
Cup o' Go | Update your crypto! And Go 1.24 preview

Post details
golang.org/x/crypto security updateGo 1.24 draft release notesBlog: What's missing from Golang Generics? by Nick TobeyLightning RoundBlog: Weak Pointers in Go: Why They Matter Now by Phuong LeOrchestrion: Compile-time auto-instrumentation for GoBuilding a distributed log using S3 (under 150 lines...

Liked
Meg Frank (@peripateticmeg.bsky.social)
Post details
cats will scream at bathroom doors instead of just going to therapy 🙄
Liked
Mistress Matisse (@mistressmatisse.bsky.social)

Post details
Friday thoughts:
Liked
Christine Lemmer-Webber (@cwebber@social.coop)

Post details
Attached: 1 image And yes of course it is literally the paper that gives us this incredible FIGURE 1, which you have CERTAINLY seen if you have ever heard ANYONE talk about ANY "decentralized" or "distributed" system ever CENTRALIZED DECENTRALIZED DISTRIBUTED You know this image. You could never forget this image

Between and I took 3262 steps.
Liked
Clayton (@craftyguy@freeradical.zone)
Post details
Today was "upgrade my personal fleet of Alpine Linux systems to the latest (3.21) release" day 🥳 I upgraded 5 systems in about 30min! It was boring! 🎉 Upgrading to newer releases was always an annoying experience for me on other distros, but the #alpinelinux folks have done an incredible job making this Just Work twice per year, every year. I have a few silly system configs that always seem to survive release upgrades without needing changes, it's really amazing. @alpinelinux@fosstodon.org crushed it!
Between and I took 2740 steps.
Liked
Cynthia Dunlop (@cynthiadunlop.bsky.social)

Post details
The book that @sarna.dev and I co-authored on writing engineering blog posts is now published. And it’s flanked by the best imaginable “bookends”: a foreword by @bcantrill.bsky.social and an afterword by @scott.hanselman.com! Details and Amazon/Manning links at bit.ly/3AVPWn9.
Liked
kat cosgrove (@kat.lol)

Post details
UKF 15 tomorrow at Drumsheds and I don't know if I'll survive this lineup
Reposted
vk (@vee.cool)
Post details
i've been increasing shareholder value like you wouldn't believe
Liked
usrbinkat (@usrbinkat.io)

Post details
apt? I don't know her.💅
Liked
Heather (@Habigelo@spore.social)

Post details
Attached: 1 image Anytime you're looking to criminalize homelessness, I think you should be required to put a pricetag on it #OnPoli Source: https://homelesshub.ca/sites/default/files/attachments/costofhomelessness_paper21092012.pdf

Reposted
Josh Simmons (@josh@josh.tel)
Post details
I am deeply alarmed for the trans and gender expansive community in the UK. What the fuck: https://www.lgbtqnation.com/2024/12/united-kingdom-bans-puberty-blockers-indefinitely-its-a-death-sentence/ (Yes also alarmed about what's happening in the US, esp in Florida right now, and what the next four years may bring.) #UKPol #USPol #Trans #LGBTQ
Liked
Steve Bellovin (@SteveBellovin@infosec.exchange)
Post details
Exploiting mansplaining as tradecraft during WW II: “If she wants to know something specific, but doesn’t want people to notice her asking questions, she should simply make incorrect statements while in the company of experts. Her companions will correct her, especially if they're men.” From Elyse Graham's “Book and Dagger”, describing a training school for the SOE.
Liked
Legit_Spaghetti (@Legit_Spaghetti@mastodo.neoliber.al)

Post details
Attached: 1 image As far as manifestos go, this is pretty short and concise. I think killing people is wrong, especially if it's premeditated, carefully planned, and carried out with cold detachment. There are no heroes in this story as far as I'm concerned; just one killer encountering a killer of a different stripe. Still, news organizations suppressing this manifesto is a dereliction of duty. So, here you go.

Liked
Ian Smith (@IanDSmith@mastodonapp.uk)

Post details
Attached: 1 image

Listened to
Alpha-Omega’s Michael Winser and Catalyzing Sustainable Improvements in Open Source Security - What's in the SOSS? An OpenSSF Podcast

Post details
In this episode, CRob talks to Michael Winser, Technical Strategist for Alpha-Omega, an associated project of the OpenSSF that with open source software project maintainers to systematically find new, as-yet-undiscovered vulnerabilities in open so...
Liked
austin 🎄 (@aparker.io)
Post details
uhc.ceo this was absolutely worth ten bucks https://uhc.ceo
Liked
ThatSexToyGuy (@hungry_joe@mas.to)
Post details
it's only erotic if it's from the Eroti region of Italy, otherwise it's just fizzy porn
Liked
Truth Or Consequences ✅ (@Savvyhomestead@mastodon.social)

Post details
Attached: 1 image

Reposted
Truth Or Consequences ✅ (@Savvyhomestead@mastodon.social)

Post details
Attached: 1 image

Liked
ThatSexToyGuy (@hungry_joe@mas.to)
Post details
Panic At The Disco is so 2014. Welcome to Dissociative Disorder At The Bukkake
You can now resolve remote presets when using Renovate's local platform in renovate-graph (2 mins read).

Announcing a new release of renovate-graph, which can now follow github> and local> presets.
Listened to
The Business of Open Source | KubeCon Special Episode: Changing Culture with Software with Cole Kennedy

Post details
This week on the Business of Open Source, I have an episode recorded on-site at KubeCon SLC last month with Cole Kennedy, co-founder of TestifySec. We kicked off the conversation with a discussion about software development practices in the US Department of Defense and the US government at large...

Between and I took 10699 steps.
Reposted
Andy in Indy (@naptowncode@mastodon.online)
Post details
If you have to stream it, you don’t own it. If you have to log in to it, you don’t own it. If you have to “activate” or “register” it, you don’t own it. If you have to connect it to somebody else’s computer EVER, for ANY REASON, then YOU. DON’T. OWN. IT. Any and all of these methods will be used against you for somebody else’s profit. If you yell about personal property rights but you don’t sign on to these statements, you are not serious about property rights. https://arstechnica.com/gadgets/2024/12/startup-will-brick-800-emotional-support-robot-for-kids-without-refunds/
Listened to
Pitching Go in 2025 with Kent Quirk & Christian Gabrielsson (Go Time #339)

Post details
With so many great programming languages having emerged in the last decade, many of them purpose-built, when and where does Go still make sense and how do you make the case for it at work?
Liked
Terence Eden (@Edent@mastodon.social)
Post details
And now, mastodon.social sends referrers! https://github.com/mastodon/mastodon/pull/33214 (Don't worry, it is up to your instance to opt in to this. Your Mastodon install is private by default.)
Liked
Fesshole 🧻 (@fesshole@mastodon.social)
Post details
In every job I've had before, I put in 100% effort, but ended up exhausted after a few months and hating work. Started a new job last year and consciously decided to only put ~50-60% effort from the off. Manager happy, no burnout and I don't hate work. 10/10, would recommend.
Liked
Cat Hicks (@grimalkina@mastodon.social)
Post details
"How did you get to where it doesn't feel so awkward" hahaha bad news
Liked
ThatSexToyGuy (@hungry_joe@mas.to)
Post details
not a big fan of murder as a political tool, naturally, but i am a fan of big symbolic gestures, and shooting the CEO of an insurance company with bullets that have 'deny', 'defend', 'depose' written on them is... *respectful whistle*
Between and I took 3006 steps.
Liked
tierney cyren (@bnb.im)
Post details
if your corporation requires you to use your phone for work, they need to provide you a phone fuck you if you're going to require me to allow you to remotely wipe my personal phone, what the fuck?
Reposted
Michael Beckwith - Cabin boy☠️ (@tw2113.bsky.social)
Post details
Just say no to AI generated blog content/articles/media. Keep what little we have left of humanity on the web, with actual humans.