Show newer

My matrix server got full of crap but the admin panel only allows deleting 250 media entries at a time. Luckily I could look at the API calls the app was making in devtools as I manually performed a delete and now I have these 30k spam entries getting purged in a while loop 🥰

Reminds me of when I acidentally deleted my entire client's notion DB and made a script to restore everything one item at a time 💀

If enough people learn how to do something, it protects those that don't know how to, this is known as nerd immunity

New secret code: if you see someone irl you think might be on Mastodon, nonchalantly ask them if they know Nicole from Toronto.

Next.js dropped a CVSS 9.1 authentication bypass vulnerability (CVE-2025-29927) over the weekend. This flaw is trivially exploitable by sending the header `x-middleware-subrequest: true` and causes the request to skip all middleware processing, including any authentication steps.

Shodan reports over 300,000 services with the `X-Powered-By: Next.js` header alone.

You can find links to the advisory and queries for runZero at: runzero.com/blog/next-js/

No, covid did not teach me that online conferences are just not working. It taught me that 2/3rds of all conferences could be fully online (though one still needs to think about best structure for them and not just transplant them without any adaptation) - and the remaining third needs to focus even more on interaction (unconferences, small workshops, hackatons...) and not the usual talks.

#subtoot #AcademicChatter #academia

I regret not bringing my computer on this trip cause this would be the perfect time for a dwarf fortress binge

Ok. #IT nerds of the fediverse. Let's do a thought experiment. It's Monday morning, the boss comes in. We need to move all out stuff off US clouds onto our own hardware. He's bought us a small data centre (or larger server room). It's empty, just a raised floor, a power panel on the wall, Aircon, and two MAN generators outside. He wants you to buy everything to make this facility work. The catch. It has to all come from European companies. Everything.

What do you buy from who?

1/n

"front end" code is so much more complex than "back end" when you have to juggle dozens of little bits of state all over the place.

AI web crawlers are a menace.

thelibre.news/foss-infrastruct

Literally no reason they can't just make their scraping a bit less evil to avoid this. Just add some cache logic and respect robots.txt 🤷

I'm more of a software necromancer than a computer scientist tbh

I should be walking and painting not sitting in bed snotting and coughing 😮‍💨

You know this 3 hour lomg shrek "fan theory" video is full of shit because he calls the dronkeys "donkagons" in addition to making huge leaps of faith in assumptions. 😵

It’s cool how all of YouTube is funded by lying about the security of public WiFi

Show older
Mauvestodon

Escape ship from centralized social media run by Mauve.