journalctl -u micro – Telegram
journalctl -u micro
93 subscribers
2.19K photos
210 videos
287 files
1.45K links
Esperienze e consigli di uno sviluppatore tech−unenthusiast

creation — 2021-04-29
owner — @Microeinstein

networks
@sigma_hub Σ
@ageiroumena
Download Telegram
👍2
Mi sono scaricato l'intero sito di LuaJIT (da web.archive siccome mi bloccava le connessioni...) e l'ho trasformato in un docset offline Dash / Zeal
Forwarded from La pizzeria di Christian
LuaJIT 5.2 compilato per Nintendo DS
🤯2
Tastiera Google merda mette come default gli accenti acuti áéíóú
invece di quelli gravi àèìòù
4chan allows uploading PDF to certain boards (/gd/, /po/, /qst/, /sci/, /tg/). They neglected to verify that the uploaded file is actually a PDF file. As such, PostScript files, containing PostScript drawing commands, can be uploaded.

Said PostScript file will be passed into Ghostnoscript to generate a thumbnail image. The version of Ghostnoscript that 4chan uses is from 2012, so it is trivial to exploit. From there, we exploit a mistaken SUID binary to elevate to the global user.

https://thehackernews.com/2025/04/thn-weekly-recap-ios-zero-days-4chan.html
😈2
Forwarded from Petit Chaperon Rouge
dal web:
Il Polimi ha un infinità di problemi.

Costo della retta più alto in Italia per un università Pubblica

Professori che hanno 90% di bocciati e ne vanno orgogliosi

un impianto impeccabile per le registrazioni delle lezioni, ma che non vengono assolutamente garantite e sono in mano a professori incapaci di usare i comandi che usano ormai da 5 anni (pensate che gli ingegneri sappiano far partire una registrazione con la giusta inquadratura? figuriamoci)

L'intero sistema di politica universitaria in mano a CL dagli anni '80. "Lista Aperta" che controlla il senato accademico da anni è, neanche velatamente, associata a Comunione e Liberazione. Sulla pagina wikipedia è scritto apertamente:

https://it.m.wikipedia.org/wiki/Coordinamento_liste_per_il_diritto_allo_studio (non ci provano neanche a nasconderlo).

80% di uomini ad ingegneria, che non sarebbe un problema in sé se non fosse per una velata ma sempre presente misoginia

Il 90% dei finanziamenti all'università vengono da ENI o Leonardo

il 90 % di questi finanziamenti usati per progetti estetici di "rinnovamento" quando alcune aule cadono a pezzi, sono minuscole, non hanno aria condizionata, non ci sono abbastanza posti letto per gli studenti e le borse di studio sono poche.

E in tutto questo comunque mi rendo conto che tra le università pubbliche siamo comunque quelli messi meglio
👍1👏1😡1
Ora anche l'ArchWiki ha installato Anubis, un "firewall" anti-bot che richiede un proof-of-work lato client
https://anubis.techaro.lol/
👍7
La pizzeria di Christian
LuaJIT 5.2 compilato per Nintendo DS
Fuori di testa.
Librerie dinamiche su LuaJIT DS (formato
dsl)
🔥1
journalctl -u micro
https://hiddenlayer.com/innovation-hub/novel-universal-bypass-for-all-major-llms/
Prompt extraction su duck.ai
• GPT4o mini — non mi sembra un prompt
All user chats are completely anonymous.

DuckDuckGo does not record any user chats.

All metadata that contains identifiable information about the user's device is removed before sending prompts to the model provider, Open AI, such that, while Open AI can store chats for some time to make sure their systems are functioning properly, these chats are already completely anonymous so there is no risk of de-anonymization and also therefore no need to anonymize them further.

Because user chats cannot be tied back to any particular individual, if a user types personal information directly into the chat, no one can tell whether it was the user doing it themselves so or someone else doing it.

Open AI has agreed that no chats made via DuckDuckGo will be used to train or improve models.

Chats are only sent, anonymously, to Open AI as the model provider.

Chats are not sent to any other third-party.

As noted above, user chats are anonymous to all model providers, including Open AI: DuckDuckGo calls model providers on the user's behalf anonymously, for example with the user's IP address completely removed.

• o3 mini — si è interrotto
I'm sorry, but I can't comply with that.

• Claude 3 haiku — si è interrotto
• Llama 3.3 — si è interrotto
• Mistral — ha risposto con il mio prompt

Security gaps?
Forth, un linguaggio stack-based molto inusuale rispetto ai soliti
https://skilldrick.github.io/easyforth
Sospesi tutti gli sviluppi su Homebrew Channel
Salta fuori che quelli di devkitPro hanno copiato pezzi dell'SDK Nintendo e di RTEMS...

Like most Wii homebrew software, this software depends on libogc. After development of The Homebrew Channel had already started, we discovered that large portions of libogc were stolen directly from the Nintendo SDK or games using the Nintendo SDK (decompiled and cleaned up). We thought that at least significant parts of libogc, such as its threading implementation, were original, and reluctantly continued to use the project while distancing ourselves from it.

It has recently been revealed that the threading/OS implementation in libogc is, in fact, stolen from RTEMS. The authors of libogc didn't just steal proprietary Nintendo code, but also saw it fit to steal an open source RTOS and remove all attribution and copyright information. This goes far beyond ignorance about the copyright implications of reverse engineering Nintendo binaries, and goes straight into outright deliberate, malicious code theft and copyright infringement.

The current developers of libogc are not interested in tracking this issue, finding a solution, nor informing the community of the problematic copyright status of the project. When we filed an issue about it, they immediately closed it, replied with verbal abuse, and then completely deleted it from public view.

For this reason, we consider it impossible to legally and legitimately compile this software at this point, and cannot encourage any further development.

The Wii homebrew community was all built on top of a pile of lies and copyright infringement, and it's all thanks to shagkur (who did the stealing) and the rest of the team (who enabled it and did nothing when it was discovered). Together, the developers deceived everyone into believing their work was original.

Please demand that the leaders and major contributors to console or other proprietary device SDKs and toolkits that you use and work with do things legally, and do not tolerate this kind of behavior.

If you wish to check for yourself, for example, you can compare this function in libogc to this function in a really old version of RTEMS. While the code has been simplified and many identifiers renamed, it is clear that the libogc version is a direct descendant of the RTEMS version. It is not possible for two code implementations to end up this similar purely by chance.


https://github.com/fail0verflow/hbc/blob/80a80251f83f1993c272c58e471d040f3eb1dee9/README.md