weekly reel March 31, 2024
đ, and music with the WipEout soundtrack.
wipE'out'' - The Zero Gravity Soundtrack by CoLD SToRAGE (bandcamp.com)
News
[fr] ClĂ©ment Viktorovitch en entreveue chez Blast : Le journalisme neutre nâexiste pas.
Kottke: Gou Miyagi skates very mellow, Tyshawn Jones skates fast, Fabio Wibmer bikes fast, Ryan Williamsâ mindbreaking BMX Free Willy.
Software
That was quite the eventful security week:
-
Casey Muratori: The Apple M-series GoFetch attack (exploit site).
-
Backdoor in xz/liblzma leads to ssh server compromise (HN). Timeline. Itâs RCE, not auth bypass (2) (HN). xz/liblzma: Bash obfuscation explained (HN). Xz vuln: A microcosm of open-source projects interactions. xzbot: notes, honeypot, and exploit demo for the xz backdoor (HN). Prime Reacts: Jonathan Blow predicts xz years ago. Also, You are all on the hobbyists maintainersâ turf now and I am not a supplier, via Brodie Robertson. Jussi Pakkanen: Aesthetics matter. Low Level Learning: Revealing the features of the XZ backdoor. Initial detailed analysis & HN. Deep dive into the xz backdoor - Columbia Engineering, Advanced Systems Programming guest lecture (HN). 404media: Bullying in open source software is a massive security vulnerability.
Dom Marti: Internet users preferences about advertising, personalization, and privacy, varies wildly.
Real Engineering: The engineering of the Gameboy.
Prime Reacts: DHH - Be less precious.
AI
NYCâs AI chatbot tells businesses to break the law. Tasty skewer of factual errors presented as facts by a chatbot supposed to be authoritative. Via waxy.
Oh hey, Google Search is experimenting with pushing AI results first.