Skip Navigation
which git server for a company?
  • If you only need a bare minimum, and don't plan to heavily use CI/CD, container/packages registries, integrations with other tools i would go with gitea/forgejo (you can always use external tools on top), else i would use selfhosted Gitlab, it has pretty much all the things you could imagine to need with software development and deployment

  • Hacking Millions of Modems (and Investigating Who Hacked My Modem)
  • It doesn't matter that website loads javascript code for logged in user, as you need a token (which server will give you after a successful login) to authenticate to apis, it is pretty common to do that way

    There wasn't a client side API, but the API was missing crucial validation of user input (eg only checking the mac address but didn't check who is actually authenticated)

  • Hacking Millions of Modems (and Investigating Who Hacked My Modem)
    samcurry.net Hacking Millions of Modems (and Investigating Who Hacked My Modem)

    Two years ago, something very strange happened to me while working from my home network. I was exploiting a blind XXE vulnerability that required an external HTTP server to smuggle out files, so I spun up an AWS box and ran a simple Python webserver to receive the traffic from the vulnerable server.

    Hacking Millions of Modems (and Investigating Who Hacked My Modem)

    This article is a great example why you should use your own router instead of ISP provided one

    9
    Lemmy is probably hurting email spammers because users and community names look like email addresses.
  • At my instance I did setup a email wildcard (receive emails from any address on that domain which don't already have a account) and I get a lot of phishing and scam emails, most of them are send "to" /c/meta@femboys.bar, as link to this community is linked in sidebar, but I also seen emails "send to" random usernames

    screenshot showing email mailbox, about 15 phishing emails

    So yeah, It is happening, i wonder how bad it is on larger instances

  • Good hosting?
  • For me Hetzner cloud is on the top, fair pricing (especially comparing to top cloud providers), very quick instance creation, pretty versatile - for example you can create an internal network between dedicated servers in hetzner and their cloud instances.

  • Flash Global ROM Onto Chinese Band?
  • If I remember correctly, the Chinese version is the same thing as the later global release and it should not be necessary to flash a ROM, it should contain English right out of the box and more feature will come later with update over zepp life/whatever the app is called now

  • Removed
    PSA: Be careful with online SMS services
  • I doubt it was a real wallet - most likely it was just a scam exchange that would prompt you to send cryptocurrency "for verification" before you could try to withdraw them.
    The idea was already exploited on prnt.sc, where it is possible to try bruteforce screenshot ID and find other users public screenshots - https://splashdot.github.io/scam1/

  • Lemmy selfhost problem
  • Your docker install is too old and it doesn't support that docker-compose version, you probably should update your docker to more recent one (are you running debian 10 on default repositories?), or you could remove logging references from file (these x-logging lines in each service and whole section on top of file)

  • lemmy.ml is going slow and sometimes fails
  • Well, probably, but considering that sh.itjust.works was targeted by bots, i suspect that it is slow not only because of the users

    You can always switch to different, smaller instance (all posts and comments are available on all lemmy instances), but i'm not sure if there is any easy tool to transfer your subscribed communities

  • Low latency remote desktop for Linux VMs without GPU?
  • I'm using x2go to access my remote KDE session for a couple of years now - it runs over ssh tunnel and supports audio, generally im pretty happy with the performance, the only disadvantage that I come across is a lack of mobile app and the session sometimes can be a bit flakey

  • What specs for a self-hosted Lemmy instance?
  • Close enough! I'm using a HP z230 SFF, not as small as those 1L USFF, but pretty practical for a small homeserver, have a couple of PCI-E slots to expand, can hold 2x HDD (if you count replacing 5,25 optical drive with a tray) or multiple SSD wherever they fit. Pretty happy with this build, day-to-day it draws about ~18-50W from the wall, depends on load.

  • InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)MO
    moira @femboys.bar
    Posts 2
    Comments 24