Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

È possibile essere più fascisti di Vannacci? Popolari e parte dei socialisti europei ci sono riusciti. La democrazia dell'Unione europea è, peraltro, una democrazia finta, con un parlamento che si chiama parlamento ma non ha potere di iniziativa legislativa.


Il dettaglio italiano della votazione odierna sulla Proposta di rifiuto di Chat Control.

Dovremo ricordarci sempre di tutte le persone che ci rappresentano a favore di questa porcheria (quindi contrarie al rifiuto)

dariofadda.it/chat-control/202…

#stopchatcontrol


Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

Il dettaglio italiano della votazione odierna sulla Proposta di rifiuto di Chat Control.

Dovremo ricordarci sempre di tutte le persone che ci rappresentano a favore di questa porcheria (quindi contrarie al rifiuto)

dariofadda.it/chat-control/202…

#stopchatcontrol

in reply to N_{Dario Fadda}

È online il progetto italiano di protesta civica digitale stopchatcontrol.it - documentazione ufficiale e percezione del pericolo per informare, informarsi come cittadino e votare consapevolmente quando servirà.

Seguiamo tutte le tappe perché l’attività non è terminata con queste proroga “ordinaria” c’è ancora tanto da combattere e la partita è ancora lunga anche per il ChatControl2.0.

Nella sezione Partecipa, ho messo a disposizione anche un forum per eventuali discussioni

Web scraping: le nuove linee guida EDPB per l’era dell’AI generativa


@Informatica (Italy e non Italy)
L'European Data Protection Board ha adottato le nuove linee guide per il web scraping nel contesto dell’AI generativa, aperte alla consultazione pubblica fino a fine ottobre di quest’anno. L’obiettivo è quello di fornire indicazioni più che operative con lo stile sempre

Cybersecurity & cyberwarfare ha ricondiviso questo.

#AssuranceAmerica Breach Exposes 7 Million Driver’s Licenses After Employee Account Hack
securityaffairs.com/195027/dat…
#securityaffairs #hacking #malware

Data center: dal caso Lacchiarella allo sviluppo tecnologico


@Informatica (Italy e non Italy)
In Lombardia, nella località Lacchiarella (Pavia), ci sarà una manifestazione contro la costruzione di un data center. Si tratta di una delle prime manifestazioni italiane ed il fatto merita una […]
L'articolo Data center: dal caso Lacchiarella allo sviluppo tecnologico proviene da

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

I modelli AI open-weight spaventano anche la Cina! In arrivo nuove restrizioni?

📌 Link all'articolo : redhotcyber.com/post/i-modelli…

A cura di Carolina Vivianti

#redhotcyber #news #intelligenzaartificiale #aiopenweight #cina #innovazione #glm52 #zhipuai

Cybersecurity & cyberwarfare ha ricondiviso questo.

📰 Srsly Risky Biz: Supreme Court Undermines Section 702

risky.biz/ssupreme-court-under…

reshared this

Cybersecurity & cyberwarfare ha ricondiviso questo.

In queste ore non stiamo vivendo un bel momento per i diritti civili, Internet e le libertà digitali.

Spero di sbagliarmi

#StopChatControl

Fixing a Dodgy Cheap Audio DAC


The media in this post is not displayed to visitors. To view it, please log in.

One of the attractions of buying at the bottom end of the electronics market by mail order from China is that you never quite know what will come your way. Sometimes it’s a diamond in the rough, while with others it’s a mess. Occasionally along comes something which should work but doesn’t, and that’s the moment when you wonder if you could fix it. [Nyanpasu64] had just such a device, an HDMI to VGA converter with audio that didn’t work. What could be wrong?

The HDMI to VGA chip has an onboard audio digital-to-analog converter (DAC), and it’s a delta-sigma design. This type of DAC is frequently used in audio applications because it works by shifting its switching frequency many times higher than the input sample rate, thus reducing considerably the distortion. This one wasn’t performing as advertised though, and the problem turned out to be that switching frequency being all over the output. Clearly the filter wasn’t working, which led to the design of a new filter. The write-up is therefore an extensive dive into filter design, and in part also a discovery of the effect of impedance on them.

For a super-cheap module to cause so much work, one might ask why not simply spend a few more dollars and get a better one. But had they done that we wouldn’t have seen this write-up, so we’re sticking with team cheap.

We’ve looked at audio DACs, in the past.


hackaday.com/2026/07/09/fixing…

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

❗ Sul mio sito ho esposto una dashboard che evidenzia i risultati della votazione del 7 luglio 2026 in parlamento europeo sul tema #ChatControl.

Un tema che tocca profondamente le libertà digitali e distorce il senso di esistenza di Internet, per tante ragioni e nessuna di queste serve per combattere la pedo-pornografia.

Ecco come è andata per i partiti italiani sul tema Chat Control

Qui la dashboard completa:

dariofadda.it/chat-control/202…

#StopChatControl

in reply to alephoto85

@alephoto85 Perchè il sito fightchatcontrol.eu/ non fa una estrazione dei dati da ogni votazione, esprime solo l'intenzione del singolo.

Quest'analisi riprende invece i dati della votazione del 7 luglio e l'intenzione e di ripeterla anche per quella che avverrà oggi

Oblomov reshared this.

in reply to Oblomov

puoi vedere tutto sia sul sito di @nuke che sul sito fightchatcontrol.eu/ (qui trovi anche i dati degli altri paesi, non solo italianз).
Questa voce è stata modificata (1 mese fa)
Cybersecurity & cyberwarfare ha ricondiviso questo.

#Microsoft fixed #Defender flaw #RoguePlanet (CVE-2026-50656)
securityaffairs.com/195016/sec…
#securityaffairs #hacking #malware
Cybersecurity & cyberwarfare ha ricondiviso questo.

Querele. Lo Sportello Legale Ossigeno aiuta il giornalista Francesco Pesante
@giornalismo
ossigeno.info/querele-lo-sport…
9 lug 2026 - Un contributo in denaro al giornalista di Foggia per contribuire alle spese legali di un procedimento in cui è accusato di diffamazione a mezzo stampa
L'articolo Querele. Lo Sportello Legale Ossigeno aiuta il giornalista Francesco Pesante proviene da Ossigeno per l'informazione.

reshared this

Cybersecurity & cyberwarfare ha ricondiviso questo.

Organic Maps supera 6 milioni di download: l'alternativa a Google va anche offline

Sono ormai arrivati a 6 milioni i download che Organic Maps ha raggiunto a fine 2025, nonostante la concorrenza spietata di giganti come Google Maps. Un numero sensazionale per un'app nata con lo scopo di offrire mappe e navigazione senza rendere ogni spostamento dell'utente un concentrato di dati da analizzare e su cui monetizzare.

hdblog.it/google/articoli/n663…

@openstreetmap_it

L’OPERAZIONE “DAMOCLE” (SECONDA PARTE)

@Informatica (Italy e non Italy)

Al fine di procurarsi apparecchiature di sorveglianza elettronica sotto embargo, gli agenti del Mossad avvicinarono il capo della Mafia ebraica negli Stati Uniti, Meyer Lansky.
L'articolo L’OPERAZIONE “DAMOCLE” (SECONDA PARTE) proviene da GIANO NEWS.
#DIFESA

Cybersecurity & cyberwarfare ha ricondiviso questo.

Fake VPN and 7-Zip Apps Turn Victims Into Residential Proxy Nodes
securityaffairs.com/194990/mal…
#securityaffairs #hacking #malware

Die Casting Comes Home


The media in this post is not displayed to visitors. To view it, please log in.

You don’t normally think of die casting as something to do at home. Pressurized fluids demand respect at all times, which is perhaps in part why we see most projects skipping hydraulics for linear actuators. When the pressurized fluid is molten metal? Well, we’d say don’t try this at home, except that’s exactly what this video by [Know Art] is making us want to do. He’s doing die-cast aluminum, and it looks way easier than we thought it would.

If you’re wondering why anyone would attempt such a thing, it’s for the same reason die-casting has been an industrial powerhouse for the last couple hundred years — you can crank out a lot of parts, very quickly, with excellent detail and dimensional stability. You just need a mold, which in this process is called a die, and a way to squeeze metal into it with some force.

In this case the die was carved on a desktop CNC machine. Depending on how long you want your die to last, you’ll need something hard and heat resistant, like the graphite used in this video. Graphite is also used in constructing the piston for the injector, which is made from a modified hydraulic cylinder and a couple of old trampoline springs.

He first tests the setup with molten wax before moving onto aluminum, as the process is the same regardless: pour the hot liquid in, release the springs to provide the pressure that forces it into the die, and a part is made. It looks easy, if a bit frantic, as you have to work fast before the metal cools in the cylinder.

After CNC milling, EDM machining and all the fun things we’ve learned how to do with lasers and 3D printers, and now this we’ve got to wonder– is there any industrial process you can’t hack onto your desktop? We’ve even seen the chemists get in on the game.

youtube.com/embed/hQMCz1pG2Ns?…

Thanks to [Keith Olson] for the tip!


hackaday.com/2026/07/09/die-ca…

OpenAI lancia GPT-5.6 Sol, Terra e Luna: anteprima limitata e nuovi controlli cyber (in accordo col Governo Usa)


@Informatica (Italy e non Italy)
OpenAI avvia l’anteprima limitata della nuova serie GPT-5.6. La famiglia comprende tre modelli: Sol, il più potente; Terra, bilanciato per il lavoro quotidiano; e Luna, progettato per offrire

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

365 – I robotaxi di Tesla arrivano a Miami. E Musk vuole anche la vostra auto camisanicalzolari.it/365-i-rob…

reshared this

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

L’AI sbaglia sempre più spesso! Le aziende vogliono assicurarsi contro gli errori degli algoritmi

📌 Link all'articolo : redhotcyber.com/post/lai-sbagl…

A cura di Carolina Vivianti

#redhotcyber #news #intelligenzaartificiale #mercat assicurativo #crescitadelmercato

Cybersecurity & cyberwarfare ha ricondiviso questo.

ebook gratuiti su #milano

@libri

L’estate è la sta­gione in cui leg­giamo di più, se volete appro­fon­dire la sto­ria di Milano attra­verso pagine scritte da mila­nesi illu­stri, la Biblio­teca Sor­mani mette a libera dispo­si­zione (quindi gra­tis) una sele­zione di ebook di opere sulla nostra città.
Si chiama Gli ebook della Sor­mani

milano.biblioteche.it/opac/det…

è una col­lana digi­tale di edi­to­ria civica che riporta in cir­co­la­zione titoli ormai intro­vabili.
Sono 47 volumi tra memo­rie, romanzi e noir ambien­tati tra i Navi­gli e la neb­bia, ci sono scritti, tra gli altri, da Camilla Cederna, Gior­gio Bocca, Bru­nella Gaspe­rini e Oreste Del Buono.
I libri si sca­ri­cano libe­ra­mente, senza tes­sera né abbo­na­mento, nei for­mati ePub e MOBI.

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

⚠️ New threat actor on the radar ⚠️

🥷🏻 CRPxO
🗓️ added on July 09, 2026

#ransomNews #cybersecurity #newthreatactor

reshared this

Cybersecurity & cyberwarfare ha ricondiviso questo.

🚨 URGENTE

L'ultima edizione di #NINAsec arriva come Call to Action, perchè oggi si vota il Chat Control.

La situazione è grave per tutti i diritti di libertà di Internet, facciamo in modo che non si trasformi in un pericoloso sistema di controllo
ninasec.substack.com/p/lultimo…

@politica

Questa voce è stata modificata (1 mese fa)
Cybersecurity & cyberwarfare ha ricondiviso questo.

☕ CYBERBRIEFING — Giovedì 9 luglio 2026

👉 Leggi tutti gli aggiornamenti delle ultime 24 ore:
ilpuntocyber.rfeed.it/article.…

#newsletter #cybersecurity
@informatica

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

GitLab: patch di sicurezza per 8 bug che consentono il furto della sessione

📌 Link all'articolo : redhotcyber.com/post/gitlab-pa…

A cura di Luigi Zullo

#redhotcyber #news #cybersecurity #hacking #gitlab #vulnerabilita #sicurezzainformatica

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

Avvelenamento dei dati: come proteggere l’intelligenza artificiale aziendale

📌 Link all'articolo : redhotcyber.com/post/avvelenam…

A cura di Paolo Galdieri

#redhotcyber #news #sicurezzadatidigitali #intelligenzaartificiale #cybersecurity

C64 Finally Gets the SRAM Corporate Wouldn’t Pay For


The media in this post is not displayed to visitors. To view it, please log in.

If you think RAM is expensive now, try putting yourselves in the shoes of a Commodore engineer, circa 1981. RAM was eye-wateringly expensive by modern standards, and Jack Tramiel wanted 64K of the stuff for the next computer– hence the name, Commodore 64– but he didn’t want to pay for it. The solution was to use cheaper dynamic RAM over the more expensive static RAM that later took over the market in the kilobyte range. That’s a small problem for retrocomputer hobbiests, because while we’re complaining about the price of gigabytes of the stuff, you can’t buy new DRAM chips that fit a Commodore at any price. That’s why [Fabio Battaglia] aka [hkzlab] came up with an adapter board to fit easily-available SRAM chips onto aging C64s.

Nothing lasts forever– not cold September rain, and not DRAM chips. Heat damage? Internal corrosion? There are probably multiple failure modes, but someday the old stock of chips will run out and the retrocomputer community is going to be ready for it. [Keith Olson] sent us a tip on a video by [The Retro Shack]– embedded below, and thanks for the tip, [Keith]!–about this very problem, that serves as a good demo of what you get when you put SRAM into a C64. That said, the adapter board on offer is only good for C64s with the 250407 motherboard. If yours is different, you may have to modify the board– but hey, it’s open source, so go ye and do that thing. Let us know via the tips line if you do.

youtube.com/embed/jk2lEWJMcvk?…


hackaday.com/2026/07/08/c64-fi…

Gazzetta del Cadavere reshared this.

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

RHC Conference 2026 - Fast & Failure: Car Hacking

📍Guarda il video: youtube.com/watch?v=Ec3KoUZ_PE…

#redhotcyber #rhcconference #conferenza #informationsecurity #ethicalhacking

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

Sembra innocuo ma ruba i dati su macOS: ecco come funziona PamStealer

📌 Link all'articolo : redhotcyber.com/post/sembra-in…

A cura di Luigi Zullo

#redhotcyber #news #intelligenzaartificiale #grok #sintesideltesto #tecnologia #informatica

IBM Home Director: Home Automation in 1996


The media in this post is not displayed to visitors. To view it, please log in.

Back in the 1990s IBM had a pretty sizeable presence in the PC market, including its rather spiffy Aptiva series of PCs. Naturally their PCs had to feature heavily in another consumer-related thing that was popular in the 1990s, being smart home automation in the form of IBM Home Director. Recently [Ionic1k] took a look at this blast from the past, starting with one of the original IBM commercials.

At its core it used the same X10 protocol that similar solutions from RadioShack and others used, with many modules and packages you could get to use with it. You could also get a more bespoke installation performed at your home to move beyond mere X10, which some people are still finding when they’re buying a house.

Since this uses powerline communication, it required no wires to be run, just the requisite modules to be plugged into a power outlet, with the video demonstrating the basic setup and installation. The PC itself is plugged into the control module via the serial port, from which the Home Director control software can be used to create a configuration and control the state of connected modules.

Although X10 has the same issues as any kind of powerline communication, overall it seems like a very nice system, with a wide range of modules and absolutely easy to set up even for a casual Windows user.

youtube.com/embed/yveYvd6aMKs?…


hackaday.com/2026/07/08/ibm-ho…

An Analog Synth For The Modern World


The media in this post is not displayed to visitors. To view it, please log in.

We cover so many projects here at Hackaday that lead the author down a rabbit hole of technological investigation that distracts us from the task of bringing them to you. Such a project is polyUAnalog, a very modern take on an analogue synthesizer. If you are imagining a synth of old with modules and patch cables, think again. The modern way to do this is it seems to use an individual synthesizer chip for each voice, resulting in a very versatile instrument indeed.

The integrated circuit in question is the AS3397, which when coupled on a PCB with a Raspberry Pi Pico makes for a self-contained single-voice analog synth. It’s controlled via I2C from a conductor board for which frustratingly the README doesn’t give a processor, but we think may be powered by another Pi Pico. This board does the job of taking MIDI and other controls, and farming them out tot he individual voices. The prototype has ten, but it can support many more.

It’s the work of a pair of researchers from the University of Angers in France, and we’re told it’s a side project from their work in the field of spectroscopy. There’s a video about it which we’ve placed below the break, and they’ve also written a paper about it.

youtube.com/embed/D0RlbqAYujU?…


hackaday.com/2026/07/08/an-ana…

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

Un incendio in un magazzino dell’azienda BRT nella zona nord di Milano ha causato una grossa colonna di fumo

L’incendio nella zona nord di Milano, in via Don Minzoni, fra i quartieri Bovisa e Dergano coinvolge una superficie di 8mila metri quadri, un po’ più di un campo da calcio, e ha provocato una grossa colonna di fumo nero visibile da diverse zone della città. L’origine dell’incendio non è chiara, e al momento non sembra ci siano feriti.

ilpost.it/2026/07/08/incendio-…

@news

reshared this

Cybersecurity & cyberwarfare ha ricondiviso questo.

The media in this post is not displayed to visitors. To view it, please go to the original post.

🇪🇺 Your #privacy & #freedoms are at risk.
📢 Send a clear message:
❌ NO to #MassSurveillance 👀
✅ YES to #DigitalPrivacy🔒
🔔 Take Action Now:
👉 FightChatControl.eu

@chatcontrol
@echo_pbreyer

#ChatControl #ChatKontrolle #CSAM #FightChatControl #StopChatControl⁩ #DigitalRights #HumanRights #Freedom #FreedomOfSpeech #SpeechFreedom

in reply to ViaCampesinaBE ⁂⏚

The media in this post is not displayed to visitors. To view it, please go to the original post.

🇪🇺 Your #privacy & #freedoms are at risk.
📢 Send a clear message:
❌ NO to #MassSurveillance 👀
✅ YES to #DigitalPrivacy🔒
🔔 Take Action Now:
👉 FightChatControl.eu

@echo_pbreyer

#ChatControl #ChatKontrolle #CSAM #FightChatControl #StopChatControl⁩ #DigitalRights #HumanRights #Freedom #FreedomOfSpeech #SpeechFreedom

reshared this

Pi 5 Becomes ALSA-Compatible TOSLINK Sound Card


The media in this post is not displayed to visitors. To view it, please log in.

This is one of those hacks that makes you stop in your tracks and say, “wait, you can do that!?” — before realizing, oh, yes, of course you can do that. With enough computational power, you can do a lot of things, and the Raspberry Pi 5 is a far cry from the single-board computer’s humble beginnings. In this case, the “you can do that!?” is both that [Oliver] was able to get the digital audio TOSLINK working via an LED tied to one GPIO pin on the Pi, but also the larger project that is embedded in: using the Pi as a full featured 8-channel USB sound card called Camilla DSP.

For the first one: the old TOSLink standard is very simple, and all you need to do is blink an LED quickly enough. Considering the clock frequency of the Pi 5 is in the GHz range and the TOSLINK is the same 3.1 Mbit/s S/PDIF signal you could pull off your CD-ROM drive to your Sound Blaster, there’s no problem there. Except, wouldn’t the operating system get in the way? Well, not when you have enough clock cycles to throw at the problem. Using a Pi 5 doesn’t hurt: the RP1 I/O chip included on the board is keeping things smooth with its included PIO while Linux mucks about in the background. There’s a reason we called it the most important product Raspberry Pi ever made.

As for making a USB sound card from an SBC — well, we’re not sure why that got the “you can do that” reaction. The Raspberry Pi family had ‘gadget mode’ for over a decade now, allowing you to present the computer as a USB device, so why not a sound card? That’s a valid class of USB device.


hackaday.com/2026/07/08/pi-5-b…

FLOSS Weekly Episode 874: Really, We Do PDFs


The media in this post is not displayed to visitors. To view it, please log in.

This week Jonathan chats with Andrea Gallo about RISC-V! What does it mean for RISC-V to be an Open ISA? Where is RISC-V popping up, and what’s the new frontier? Watch to find out!


youtube.com/embed/UbSsmwglMng?…

Did you know you can watch the live recording of the show right on our YouTube Channel? Have someone you’d like us to interview? Let us know, or have the guest contact us! Take a look at the schedule here.

play.libsyn.com/embed/episode/…

Direct Download in DRM-free MP3.

If you’d rather read along, here’s the transcript for this week’s episode.

Places to follow the FLOSS Weekly Podcast:


Theme music: “Newer Wave” Kevin MacLeod (incompetech.com)

Licensed under Creative Commons: By Attribution 4.0 License


hackaday.com/2026/07/08/floss-…

Hacking Amazon Echo Show 8 3rd Gen via UART and eMMC


The media in this post is not displayed to visitors. To view it, please log in.

Even with Amazon’s Echo Show devices running Linux in the form of the Android-derived FireOS, using them for non-Amazon approved purposes can be a chore at best. In the case of the Echo Show 8 even simple workarounds using ADB and the bootloader have been locked-down, requiring more drastic measures. Here [Vowed] over at the XDA forums shows off one such hack, involving directly tapping into the device’s eMMC.

Suffice it to say that this is not a hack for the faint of heart, with even the iFixit teardown guide for this device being rather daunting. Even after you get access to the mainboard, you still have to remove or cut open the metal can that covers the eMMC, so that you can unleash an eMMC programmer on it. It’s best to make sure to make a backup image of the original contents too, just in case you have to restore things.

With the shield out of the way you can solder fine wires to pads that connect to the eMMC to program it. You also have to solder wires to pads for the UART, though if you’re fancy you can also create a custom pogo pin adapter. With a serial connection established to the original firmware you can then enable features like ADB, and courtesy of the connected eMMC adapter it’s possible to directly alter system files to make rooting as easy as possible.

In addition to rooting the system you can also do a straight replacement of the eMMC contents, such as the demonstrated Debian installation. Even if not the most easy of mods, it’s good to see that it’s possible to repurpose these devices.

(Top image: Amazon Echo Show 8 3rd generation mainboard. Credit: iFixit, CC BY-NC-SA 3.0.)


hackaday.com/2026/07/08/hackin…

Linux Fu: The Local Phonebook


The media in this post is not displayed to visitors. To view it, please log in.

I’ll admit it: I miss the simplicity of /etc/hosts. There was something elegant about it. You wanted laserprinter to mean 192.168.1.40, so you opened a text file and wrote:
192.168.1.40 laserprinter
Done. No cloud account, no discovery daemon, no dashboard with material-themed icons. Just a name and an address. The trouble, of course, is that /etc/hosts is only simple when you have one machine. The moment you have a desktop, a laptop, a Raspberry Pi, a NAS, a test box, and a phone or two, every little network change becomes a tiny distributed-database problem. Which copy of /etc/hosts is authoritative? Did you update the laptop? What about the machine you only boot once a month?

One Solution


Modern LANs solved this with mDNS, using Avahi on Linux. It resolves addresses that end in .local. Instead of asking a central DNS server “who is thing.local?”, a machine sends a multicast query on the local network: “who has thing.local?” The device that owns the name answers. This is why your Linux box named spock and usually be reached as spock.local on your LAN.

There are limits. mDNS is link-local; it is meant for the local LAN, not the whole Internet and shouldn’t route across subnets. Each device is supposed to publish its own name. That works fine when the device cooperates. But what about devices that do not publish mDNS? Or little embedded things that barely even have an IP address?

That is where I wanted the best of both worlds: keep a small authoritative /etc/hosts file on one Linux box, but publish selected entries onto the LAN using mDNS.

Publishing House


Avahi includes a handy tool for this:

avahi-publish-address widget.local 192.168.1.50

While that process is running, Avahi advertises widget.local as an mDNS address record. Kill the process, and the record goes away. So you could just write a script to publish all the addresses for things that won’t do it themselves and launch in in local.rc or a systemd unit. But that seems inelegant. I wanted to just pick things out of the /etc/hosts file. But not everything. Here is a simple publisher, installed as /usr/local/sbin/localip_pub:
#!/bin/sh
# Scan /etc/hosts for .local addressess and publish them using avahi

tmp="$(mktemp)"
pids=""

cleanup() {
rm -f "$tmp"
for p in $pids; do
kill "$p" 2>/dev/null
done
wait
}

mdns_name_exists() {
timeout 2 avahi-resolve-host-name -4 "$1" 2>/dev/null |
awk -v h="$1" '
BEGIN {
sub(/\.$/, "", h)
rc = 1
}
{
n = $1
sub(/\.$/, "", n)
}
n == h && $2 ~ /^([0-9]{1,3}\.){3}[0-9]{1,3}$/ {
rc = 0
}
END {
exit rc
}'
}

trap cleanup INT TERM EXIT

awk '
NF < 2 { next } # skip short lines
$1 ~ /^127\./ { next } # skip local address
# This assumes .local
# it will reject anything with an alias or subdomain or trailing comment
# it also rejects any full comment lines or IPv6 addresses
# although you could certainly patch it for IPv6 if you wanted to
/^[[:space:]]*[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+[[:space:]]+[^.]+\.local[[:space:]]*$/ {
ip=$1
name=$2
if (!seen[ip]++) print name, ip
}
' /etc/hosts > "$tmp"

while read name ip; do
if mdns_name_exists "$name"
then
echo found $name
continue
fi
echo avahi-publish-address "$name" "$ip"
avahi-publish-address "$name" "$ip" &
pids="$pids $!"
done < "$tmp"
wait

The script is intentionally conservative. It ignores loopback, ignores IPv6, and only publishes single names that already end in .local. So consider this hosts snippet:

192.168.1.51 oscope.local
192.168.1.52 server.example.com

The script will publish oscope.local, but leaves server.example.com alone. That avoids accidentally dumping every fully qualified name in your hosts file into mDNS.

But Wait...


The wait at the end of the script matters. Each avahi-publish-address process has to stay alive for the record to remain published. If the shell script simply started them in the background and exited, systemd would consider the service finished and might clean up the child processes. By waiting, the script remains the service’s main process.

Here is the matching systemd unit:

<h1>/etc/systemd/system/localip_pub.service</h1>


[Unit]Description=Publish selected /etc/hosts names via Avahi/mDNS
Requires=avahi-daemon.service
After=network-online.target avahi-daemon.service
Wants=network-online.target


[Service]Type=simple
ExecStart=/usr/local/sbin/localip_pub
Restart=on-failure
RestartSec=5s
KillMode=control-group


[Install]WantedBy=multi-user.target

Install and start it:

sudo chmod 755 /usr/local/sbin/localip_pub
sudo systemctl daemon-reload
sudo systemctl enable --now localip_pub.service

After editing /etc/hosts, restart the publisher:
sudo systemctl restart localip_pub.service
Of course, if you want to use this, it has to be a machine that knows to query mDNS. Ironically, your workstation probably does, but if it is configured to use /etc/hosts first, that won't matter there. But it does lead to a practical annoyance: not every application on every platform uses mDNS the same way. Android itself only relatively recently grew better support for normal application-level mDNS resolution, so behavior can vary depending on Android version, app, and resolver path. Chrome on Android seems to resolve .local names correctly in my testing.

Firefox was a little more subtle. At first it looked like Firefox on Android simply did not understand mDNS, but the real culprit was Secure DNS. If Firefox is configured to use DNS-over-HTTPS, it may bypass the local resolver path that knows how to handle .local names. Turning Secure DNS off, or adding exceptions for the local names you care about, lets those names resolve normally. That is not really an Avahi problem; it is an application side effect. To be fair, even if you stood up a LAN DNS server to solve the problem, Firefox would have probably still have skipped it in favor of its "secure" DNS.

Conflicting Data


There is another gotcha: name conflicts are not the only kind of conflict. You might expect trouble if you try to publish widget.local when some other device already owns widget.local, but address conflicts can be troublesome too. If some device is already publishing mDNS information associated with a particular IP address, trying to publish a second name for that same address may fail. In my case, avahi-publish-address did not fail gracefully; it wandered into a collision path and crashed. The safe approach is to check before publishing, avoid duplicate names and duplicate addresses, and let the device itself publish its own mDNS name when possible.

Still, for a small LAN, this is a nice compromise. /etc/hosts remains the simple text file I wanted, but Avahi turns selected entries into something other machines can discover without copying that file everywhere. It is not a replacement for real DNS, and it is not quite as seamless as the old single-machine hosts file. But for those odd devices that sit quietly on the network with an IP address and no useful name, it is a handy little bridge between the old world and the new one. Were there other ways to solve this? There always are. But this works for me.

We've looked under the covers at mDNS. The system can be a lifesaver when you have too many Raspberry Pis.


hackaday.com/2026/07/08/linux-…

Cybersecurity & cyberwarfare ha ricondiviso questo.

#Ubiquiti Patches Critical UniFi OS Flaws Allowing Command Injection and Privilege Escalation
securityaffairs.com/194978/sec…
#securityaffairs #hacking
Cybersecurity & cyberwarfare ha ricondiviso questo.

A Hacker Claims 35 GB of #Accenture Source Code. The Company discloses the data breach
securityaffairs.com/194962/dat…
#securityaffairs #hacking