Salta al contenuto principale



Come è brutta, Roma. Brutta di questa sua accecante bellezza, su cui risaltano i segni dello sfacelo come una voglia di barbabietola su un volto purissimo.
– Vittorio Gassman

#quoteoftheday #1Settembre #VittorioGassman



To verify your #Mastodon account just post a message saying whether you prefer vi or emacs and just hope that your admin agrees.
in reply to Juan Carlos Muñoz

I use both, depending on the task. Prefer emacs, though, as it's programmable in a half decent language


Hey Hey, still trying to raise money towards groceries and essentials until Friday. If you are able to share or donate I would greatly appreciate it. 🟩🟩🟩⬜⬜⬜⬜⬜⬜⬜ 36% of goal on Ko-fi! ko-fi.com/checkpointvibes/goal… #smallstreamer #indiegames #retrogamers #retrogaming #Homeless


Anything I need to know when buying a "switching power supply" (for a 3D printer)? It's the one thing I never cheap out on when buying a computer, but I don't know what to look for with these (neither established brands).

I found a 12V 50A (600W) unit for just 28€ (from some Amazon-throwaway brand, "NUOFUWEI"), which makes me immediately sceptical. Don't know the others (like "LightingWill") either though. Any thoughts?

(german Amazon)
amazon.de/Transformator-Schalt…
#3DPrinting #electronics #diy

in reply to Marius

@Zamfr Nah, that's just because I saw one on Amazon. The original got 350W, I'd like it to have 400 to 450W to get some extra capacity for a few mods.
in reply to Natasha Nox 🇺🇦🇵🇸

As others have already mentioned, go for Meanwell. Or Delta. Conrad, TME or RS Components are good suppliers for decent power supplies. And they are all based in the EU/Germany, so no restrictions.



Living-off-the-Land 2.0: quando gli aggressori trasformano gli strumenti di sicurezza in armi


Sophos ha messo in guardia da una pratica sempre più sofisticata da parte degli aggressori: l’utilizzo di strumenti di sicurezza informatica legittimi nell’ambito della tattica Living-off-the-Land (LotL), in cui un attacco viene effettuato utilizzando software esistente o disponibile al pubblico, anziché malware sviluppato internamente.

In un ultimo incidente, degli aggressori sconosciuti hanno introdotto Velociraptor, uno strumento open source di monitoraggio degli endpoint e di analisi forense digitale, nell’infrastruttura della vittima. Lo strumento è stato installato tramite msiexec, scaricando il programma di installazione MSI da un dominio sulla piattaforma Cloudflare Workers.

E’ risaputo che gli autori delle minacce, spesso, utilizzano tecniche “living-off-the-land” (LotL) o approfittano di strumenti legittimi di gestione e monitoraggio remoto (RMM) per i loro attacchi. Nonostante ciò, l’utilizzo di Velociraptor rivela un’evoluzione strategica evidente, in cui i software di risposta agli incidenti vengono utilizzati per ottenere un vantaggio e ridurre allo stesso tempo la necessità di diffondere malware creato ad hoc.

La nuova indagine sull’incidente ha messo in luce che i responsabili dell’attacco hanno sfruttato la funzione msiexec di Windows per recuperare un pacchetto di installazione MSI da un dominio di Cloudflare Workers. Quest’ultimo rappresenta il fondamento per altri tool impiegati dagli aggressori, come un’applicazione per il tunneling Cloudflare e un software per l’amministrazione remota conosciuto con il nome di Radmin.

Il file MSI è progettato per installare Velociraptor, che poi stabilisce un contatto con un altro dominio Cloudflare Workers. L’accesso viene quindi sfruttato per scaricare Visual Studio Code dallo stesso server di staging utilizzando un comando PowerShell codificato ed eseguire l’editor del codice sorgente con l’opzione tunnel abilitata per consentire sia l’accesso remoto che l’esecuzione di codice remoto.

Tecniche simili che coinvolgono strumenti di accesso remoto sono state collegate a gruppi ransomware come Black Basta dalla metà del 2024, queste campagne più recenti rinunciano alla fase preliminare di email bombing e in ultima analisi sfruttano l’accesso remoto per distribuire un payload PowerShell con funzionalità comunemente associate al furto di credenziali, alla persistenza e all’esecuzione di codice remoto.

Questi attacchi iniziano con gli autori della minaccia che utilizzano tenant appena creati o compromessi per inviare messaggi diretti o avviare chiamate ai bersagli, impersonando i team dell’help desk IT o altri contatti fidati per installare software di accesso remoto come AnyDesk, DWAgent o Quick Assist e prendere il controllo dei sistemi delle vittime per diffondere malware.

Le credenziali di Windows possono essere richieste anche tramite attacchi di questo tipo, spingendo gli utenti a digitare le loro password sotto forma di richiesta apparentemente innocua per la configurazione del sistema, che vengono successivamente raccolte e archiviate in un file di testo nel sistema.

L'articolo Living-off-the-Land 2.0: quando gli aggressori trasformano gli strumenti di sicurezza in armi proviene da il blog della sicurezza informatica.



Hey everyone! 👋

We’ve just launched our LinkedIn page!

We're looking forward to connecting with researchers, alumni, industry professionals, and anyone passionate about #DigitalScience.

Join our community: www.linkedin.com/showcase/disc-uibk

#socialmedia #linkedin #scicomm



Leggo sunOpne: "Israele si prepara a trattare gli attivisti della Global Sumud Flotilla come terroristi. Le imbarcazioni saranno sequestrate e ai catturati saranno negati privilegi speciali come la televisione, la radio e il cibo specializzato."

Il cibo "specializzato"?

Non sarà un #falsoamico? 🤔



In 20 minutes, Norkunas plays #Bach #Vainiunas #Ciurlionis #Debussy and #Chopin in #Vilnius worldconcerthall.com/en/schedu… #wch


Früher hätte man gesagt:

Der Bundeskanzler nimmt den Mund zu voll, macht dicke Backen, plustert sich auf, macht einen auf dicke Hose.

Seit dem Wochenende muss man sagen:

Friedrich Merz lebt rhetorisch über seine Verhältnisse.

reshared this

in reply to Stella Schiffczyk

@VeithYaeger Rein physisch betrachtet, leben die Reichen über unser aller Verhältnisse. Dieser Planet kann sich die Reichen ökologisch nicht mehr leisten.


Estoy valorando bloquear cuentas que lleven 1 o 2 semanas siguiéndome y que no hayan configurado avatar.
in reply to papapep

@papapep que tens configurat que has d'acceptar els nous seguiments? La veritat és que no es mala idea fer-ho...
in reply to # Don T3rr0r

després d'alguna tanda de seguiments poc menys que maliciosos, així m'estalvio haver d'anar eliminant gent. No accedeixen i fora.



"I soccorsi procedono con estrema difficoltà a causa delle frane, delle piogge torrenziali e delle scosse di assestamento che continuano a colpire la regione."

#AfghanistanEarthquake #Afghanistan #humanRights #1settembre

lifegate.it/terremoto-in-afgha…





0rtanub0: fisarmonica, arpa, table tubes, cosmic bow, kalimba.
Associazione " Ad Alta Voce "
"ViviDaVivo"
Auditorium Torelli
Sondrio
4 settembre 2025, ore 21

5 settembre 2025, ore 21
Cepina - Val di Sotto (So)
Associazione Siro Mauro per le cure palliative



Sign on and tell Congress to IMPEACH Trump!


actionnetwork.org/letters/sign…






Just watched an interesting socialization ritual. Parents with a pro photographer directing a toddler in a summery dress to pose in the park: “smell the flower… try to look dreamy! Pretend you are meeting a fairy… smile at the bird! No, stand by the tree and look happy!”
Unknown parent

mastodon - Collegamento all'originale
angst-ridden wanderer
@dillyd yeah, it was kind of sad. But it was also kind of fun watching the kid doing her own thing and completely disregarding their instructions 😃


Rompere l’assedio, fermare il genocidio
pressenza.com/it/2025/09/rompe…
La Global Sumud Flotilla, carica di aiuti alimentari e sanitari, composta da più di 50 imbarcazioni provenienti da tutta Europa battenti bandiera di diversi Paesi, è salpata da Barcellona per dirigersi verso Gaza, congiungendosi con le imbarcazioni che sono salpate…
Renato Franzitta


In August, @mkbhd published five videos averaging 14 minutes and 47 seconds in length. Three of these featured a sponsor segment. Google was the most covered brand this month. On average, a video was released every five days.
#MKBHDStats #mkbhd #tech #YouTube #funfact


Here's a different headline on this story (they try multiple versions to see which works best) wapo.st/3JzMByi


in reply to Freedom!

I've been repairing our old washing machine. It has a lot of things wrong with it, but have made it last for quite a while.

We will need to find a replacement for it soon, though.



📄 #Rentrée2025 | Tous niveaux

🔷 Sur #Éduscol, une infographie interactive présente les grands axes de la circulaire de rentrée 2025

✒️ En Français : reconquête de l’écrit, nouveaux programmes en #Cycle3, évaluations nationales, ajustements des groupes de besoin, renforcement des parcours éducatifs et notamment de l’#EAC

👉 eduscol.education.fr/3898/circ…





👉Le CLEMI✨is back pour présenter ses ressources et son offre de formation renouvelée lors de la journée académique de l'innovation #Cardie et aussi l'occasion de revoir des collègues et de découvrir des projets @gallegochris2A 😉 #EMI




A installer en ce début d'année, merci @maximebecquet pour garder une trace claire et organisée de votre temps de travail.


"Iceland is a case study in strategic leverage. It took what it had—hydro, fish, hot water, scenery—and made it work. This wasn’t a departure from the fossil era. It was one of its cleaner-looking artifacts. The miracle is real, but like every fossil-fueled success, it rests on the unstable foundation of cheap, abundant oil. Iceland is fully integrated into the global superorganism—thriving when the system runs smoothly, exposed when it bends, finished when it breaks."

pelicanweb.org/solisustv21n09p…




#photography #photograph #photoAfter I retired, from 2016 to 2021, I roamed rural #Georgia with my camera and took pictures. Here is image #112 from the series. 📍 Concord, Georgia


From October: Basic Plex and Jellyfin server tips

diversetechgeek.com/basic-plex…

#plex #jellyfin #tech



LEGO The Lord of the Rings just got a small update that got it the #SteamDeck Verified badge:

steamdeckhq.com/lego-lord-of-t…



Now mastonapp.uk is functioning normally again, here's #LoriTheRomi 's contribution to #Mondog. She was totally engrossed by #theHundred last night.

#dogsOfMastodon #AdoptDontShop

Questa voce è stata modificata (3 settimane fa)


Benedetta Porcaroli con lo zaino Prada rende smart l'abito custom made: ecco l'ultimo look visto a Venezia
https://www.vogue.it/article/benedetta-porcaroli-zaino-prada-look-venezia?utm_source=flipboard&utm_medium=activitypub

Pubblicato su Vogue Italia @vogue-italia-VogueItalia





📱 Quais as melhores apps para usar o Mastodon?📱
Se estás à procura de uma boa experiência no Mastodon, aqui vão algumas sugestões para todas as plataformas:

Oficiais:
✅ Mastodon (Web, iOS, Android) – A app oficial, simples e funcional.
✅ Mastodon for iOS/Android – Versões nativas para telemóvel.

Terceiros (iOS/Mac):
🍎 Ivory – Elegante, intuitiva e com suporte a múltiplas contas.
🐘 Mammoth – Design minimalista, ideal para quem gosta de ler sem distrações.

Terceiros (Android):
🤖 Toot! – Uma das mais populares, cheia de funcionalidades.
🧪 Fedilab – Avançada, com suporte a várias instâncias.
🌱 Tusky – Leve, de código aberto e bem integrada.

Web:
🌐 Pinafore – Alternativa leve e rápida.
🦌 Elk – Minimalista e de código aberto.

Desktop:
💻 Whalebird – Multi-colunas e multi-contas.
🖥️ TheDesk – Avançada, com suporte a várias redes federadas.

Dica: Antes de escolher, verifica a compatibilidade e as avaliações!

Qual é a tua favorita? Ou falta alguma nesta lista? 👇 #Mastodon #Apps #Tecnologia

Questa voce è stata modificata (3 settimane fa)


ADMIN ALERT: You're all very smart so I shouldn't have to say this, but as a moderator I feel like I should at least say *something*

If you see a toot from "Mastodon Support" or similar asking you to follow a link to verify your account or whatever, don't. It's bollocks. Just report it instead.

I mean, the giveaway should be the idea that Mastodon has any kind of fuckin support in the first place.

reshared this



La Ville de Paris attaquée pour avoir autorisé un hôtel de stars à Montmartre

Pour plusieurs associations locales, l’Hôtel Particulier Montmartre n’a pas respecté ses obligations de financement de logements sociaux en compensation de sa création. #rediff

▶️ l.linforme.com/yckrvkc3?utm_so…



Pourquoi votre antivirus pense que Linux est un virus (et cela depuis 25 ans) ?


https://poliverso.org/photo/preview/1024/57751170

**, c’est le score qu’affiche Windows Defender quand vous téléchargez Kali Linux. C’est pas mal pour un simple fichier ISO, non ? D’après les discussions sur SuperUser , c’est parfaitement normal et ça arrive surtout avec les payloads Metasploit inclus dans la distribution. Mais le plus drôle dans cette histoire, c’est que ce “problème” existe depuis plus de 25 ans et touche toutes les distribs.

Jesse Smith de DistroWatch reçoit en effet régulièrement des messages paniqués de nouveaux utilisateurs Linux. Leur crime ? Avoir osé télécharger une distribution Linux pendant que Windows montait la garde. Et boom, l’antivirus s’affole comme si vous veniez de DL la peste bubonique. Le gars explique que sur 1000 alertes de ce genre, 999 sont des faux positifs donc autant dire que votre antivirus a plus de chances de se tromper que vous de gagner au loto.

Mais pourquoi cette paranoïa des antivirus Windows face aux ISOs Linux ?

La réponse est presque trop logique et simple pour être vraie. Un fichier ISO, c’est une archive qui contient du code exécutable. Du code qui peut modifier les partitions, installer un bootloader, toucher au kernel… Bref, exactement le genre de trucs qu’un malware adorerait faire sur Windows… sauf que dans le cas de Linux, c’est précisément ce qu’on veut qu’il fasse !

Et quand on réalise que les développeurs Linux bossent quasi exclusivement sur… Linux, les chances qu’un malware Windows se glisse accidentellement dans une ISO Linux sont à peu près aussi élevées que de voir Microsoft open-sourcer Windows demain matin. C’est techniquement possible, mais hautement improbable.

Le problème est particulièrement visible avec les distributions orientées sécurité, ce qui est normal, car elles embarquent des outils de pentest qui ressemblent furieusement à des malwares du point de vue d’un antivirus. Password crackers, frameworks d’exploitation, outils d’accès distant… Pour Windows Defender, c’est Noël tous les jours.

Ce qui devient vraiment problématique, c’est l’impact sur les nouveaux utilisateurs qui prennent peur. Il y a eu des cas où même des fichiers boot innocents comme memtest64.efi, bootia32.efi ou grubx64.efi sont flaggés comme suspects, alors je vous laisse imaginer la tête du débutant qui veut juste essayer Linux et qui se retrouve face à une avalanche d’alertes rouges.

La situation a même empiré récemment puisque selon les rapports de septembre 2025 sur Windows Forum , il y a eu une augmentation notable des signalements ces dernières semaines. Différentes distributions, différents antivirus, mais toujours le même refrain : “Attention, virus détecté !

Donc pour vérifier que votre ISO n’est pas réellement infectée (spoiler : elle ne l’est pas), la procédure est simple. Téléchargez la depuis les sources officielles, vérifiez le hash SHA256 fourni sur le site, et si vous êtes vraiment parano, scannez la avec un autre antivirus. Si deux antivirus différents détectent exactement le même malware spécifique, là vous pouvez commencer à vous inquiéter. Sinon, c’est juste Windows qui fait sa drama queen.

Le côté pervers de ces fausses alertes répétées, c’est qu’elles poussent également les utilisateurs à désactiver leur protection ou à ignorer systématiquement les avertissements. Et ça c’est un vrai problème de sécurité car à force de crier au loup pour rien, les antivirus finissent par perdre un peu crédibilité.

Alors bien sûr, Microsoft pourrait facilement créer une liste blanche pour les ISOs des distributions Linux majeures, mais après 25 ans d’inaction, on peut raisonnablement penser que ce n’est pas leur priorité. Puis j’sais pas, peut-être qu’ils trouvent ça amusant de voir les nouveaux utilisateurs Linux flipper avant même d’avoir booté sur leur clé USB.

Voilà, donc attendant, si votre antivirus vous dit que votre ISO Ubuntu contient 42 virus, respirez un grand coup. C’est juste Windows qui ne comprend pas qu’on puisse vouloir utiliser autre chose que lui…

Source
posted by pod_feeder

N. E. Felibata 👽 reshared this.



#MonochromeMonday :
G. Stanislaus Brien (Poland, active London 1920s-30s)
#Lions, 1920s
Lino-cut print on paper, H 365.125 x W 260.35 mm
V & A CIRC.187-1929 collections.vam.ac.uk/item/O10…


I’ve been to India so many times since 2004, but I haven’t been in a while coz of immigration, covid, American vacation policies.

When I go back, I’m going to go to Coorg, Wayanad and Mangalore. I broadly consider anywhere with coconuts in most of the food to be ‘home’.

Some one told me recently of a N American Coorgi (haha!) gathering where they get together to make giant pots of pandi (pork) curry and it is now my mission to be one day invited to one

#India #Food

in reply to Adrianna Tan

@davep looks delicious, the pork would obviously need to be replaced, I think one would also need to experiment with the amount of Kachampuli

In some Indian dishes, I've made, and some European dishes a vinegar like substance is added to "breakdown" the meat, with a vegan substitute having too much vinegar (or vinegar substitute) might add unexpected sourness, when compared to the original. As the recipe tells the cooks to add the Kachampuli and then add water and simmer, my guess is that this is the case here. I'm happy to be corrected, if I'm wrong




Immeuble à #Montauban (#TarnEtGaronne) La place Nationale constitue un intéressant ensemble de maisons dont le rez-de-chaussée forme une double galerie voûtée sur croisées d'ogives et dont les trois étages sont...
Suite 👉 monumentum.fr/monument-histori…
#Patrimoine #MonumentHistorique
Photo CC-BY-SA 4.0 : MOSSOT


+ + + Eilmeldung + + +

Jens Spahn fordert Wehrpflicht für Bürgergeldempfänger.

»Wir geben denen so viel, da ist ja wohl ein bisschen Blut als Gegenleistung nicht zu viel erwartet.«

Carsten Linnemann ergänzt: Keinesfalls dürften den Nutznießern staatlicher Daseinsvorsorge scharfe Waffen ausgehändigt werden.

»Da könnten ja auch Linksextremisten dabei sein«

Die SPD sieht sich außerstande, zuzustimmen, bis sie es doch tut.

Questa voce è stata modificata (3 settimane fa)
in reply to Mina

Da droht die CxU bissl mit Machtverlust für die Genosken (Bruch der Koa z.B.) und schon ist alles vergessen




Fascinating world of ancient #glass: A close-up of the spiral design of a mosaic glass bowl, one of the principal patterns employed by #Hellenistic glassmakers. The three-dimensional effect is truly mesmerising. 2nd century BC

📸 me




la scaletta della trasmissione settimanale
TUTTA SCENA TEATRO
martedì 02 settembre 2025 ore 14
ondarossa.info/newstrasmission…
in streaming qui:
ondarossa.info/player-ror.html

la_r_go* reshared this.



For the next couple of years it's not going to matter if you can automated or AI'd out of a job, but if it looks to someone who doesn't really understand what you do that you can.


I would be very happy for the tiny minority of genuinely ethnonationalist cunts to fuck away off and be ethnically pure on disused oil rigs and the like.

I mean you’d have to take any kids off them because they’re all right dangers, but otherwise, fine.

in reply to Nick

But I saw them waving hastily lashed-together signs saying "PROTECT ARE KIDS!!"
in reply to Rocco Prestia's Basilisk

tbf the overlap of people howling "PROTECT ARE KIDS" and people who really wish they were allowed to larrup their kids is *large*



Quando il cliente chiede la sicurezza di Fort Knox ma il budget è quello per la porta del pollaio! 🐔🔒

La dura realtà della cybersecurity, raccontata in due immagini: a sinistra, i sogni di gloria del cliente; a destra, la cruda verità del portafoglio! 💸

Dite la verità, quanti di voi si riconoscono in questo?
Raccontateci la vostra esperienza più "creativa" per far quadrare i conti tra aspettative e budget! 👇

E ricorda: la cybersecurity la paghi sempre. Se non la paghi prima la pagherai dopo e il conto sarà molto salato!

#redhotcyber #cybersecurity #hacking #hacker #infosec #infosecurity #quotes #meme #comica #vignette #citazioni #cybersec #sicurezzainformatica #malware #cybercrime #awareness #meme #memetime




Researchers have disrupted an operation attributed to Russian state-sponsored threat group Midnight Blizzard, who sought access to Microsoft 365 accounts and data.

bleepingcomputer.com/news/secu…

in reply to Fritz Adalis

@FritzAdalis Microsoft's tracking is cute but doesn't align exactly with ours. However, there is significant overlap between Midnight Blizzard and FLAMBOYANT PIZZLY.


SSD-Ausfälle unter Windows: Microsoft und Phison geben Entwarnung

Das Windows-Update KB5063878 stand im Verdacht, SSD-Ausfälle zu verursachen. Microsoft und dessen Partner konnten allerdings keinen Zusammenhang feststellen.

heise.de/news/SSD-Ausfaelle-un…

#IT #Microsoft #SSD #Windows #Windows #news



J'ai procrastiné quelques trucs, et maintenant j'angoisse vraiment de m'y mettre. 😬
in reply to Parleur

Un jour j'ai lu un billet d'un collègue sur la question qui disait que sa solution a lui pour en sortir c'était de s'y mettre et juste faire un petit truc. Même si c'est que pour 5 minutes, tu t'y mets et t'en fais un petit bout. Généralement ça finit par venir. J'essaie de m'y prendre comme ça maintenant. Plus facile à dire qu'à faire avec un TDAH mais de temps en temps, c'est une technique qui m'aide.


Hey astrophotographers: do any of you have hands-on experience with diffusion/mist filters? Any brands you recommend? I'm not looking for a particularly strong effect, I don't like images where stellar haloes are overdone. But sometimes I do wish that constellations were slightly more recognisable in my pics, just a bit.

I know you can mimic this by breathing on the lens, but I know from past experience that this doesn't work in the super dry Atacama Desert 😉 Thanks!

#astrophotography



Heute vierter Abend in Folge #pnpde, ich muss dringend mit meiner Sekretärin sprechen, dass die Termine besser geplant werden.

Aber irgendwie ist's auch geil. ❤️🤩

Wen es interessiert:
- 1️⃣ An Altogether Different River
- 2️⃣ Desperation: The Isabel
- 3️⃣ Galactic 2e
- 4️⃣ Und dann heute: Wir lernen Daggerheart in einem Two-Shot und sollen alte heißgeliebte Figuren mitbringen. Mal sehen was meine DSA-Ritterin Oleana von Dunkelstein gemeinsam mit Rolemaster- und Vampire-Charakteren erlebt!