Weekly Shaarli

All links of one week in a single page.

Week 15 (April 12, 2021)

Postgres EXPLAIN Visualizer (pev)
diffoscope

In-depth comparison of files, archives, and directories.

FreeBSD 13.0-RELEASE

Only some of the highlights:

  • ZFS now provided by OpenZFS
  • in-kernel framing and encryption of TLS
  • arm64 is promoted to Tier-1 status
  • rewritten routing stack
  • clang, lld, llvm, libc++ update to 11.0.1
  • bhyve improvements
  • removed obsolete GDB
Statement on DNS Encryption

In this statement, the DNS root server operators explain why they don't feel comfortable being the early adopters of authoritative DNS encryption.

Element Matrix Services launches bridging for Microsoft Teams
thumbnail

Element Matrix Services is now bridging to Microsoft Teams.

Allow arbitrary URLs, expect arbitrary code execution | Positive Security
thumbnail

The article demonstrates with practical examples how insufficient user input validation leads to code execution vulnerabilities.

Argo CD 2.0
thumbnail
Fail-fast Is Failing... Fast!

Interesting read about the shortcomings of using fail-fast for achieving fault tolerance in modern distributed systems.

Nix Is the Ultimate Devops Toolkit

Blog post on how Nix can help to solve DevOps problems.

BleedingTooth: Linux Bluetooth Zero-Click Remote Code Execution

»BleedingTooth is a set of zero-click vulnerabilities in the Linux Bluetooth subsystem that can allow an unauthenticated remote attacker in short distance to execute arbitrary code with kernel privileges on vulnerable devices.«

Announcing KDE's Qt 5 Patch Collection

With the free support ending for Qt5, KDE is now maintaining security and functional fixes for it.

List of Online Text to Diagram Tools

Page with a comprehensive list of various text to diagram tools.

LLVM 12

Version 12 of the LLVM compiler toolchain was released.

FBI Cleans Web Shells From Hacked Exchange Servers in Rare Active Defense Move
thumbnail

The FBI actively removes backdoors from the hacked Microsoft Exchange servers.

VMware and Dell Technologies Reach Agreement Regarding Spin-Off

»Dell Technologies to Spin-off 81% Equity Ownership of VMware.«

KVM/Qemu VMs With a Multi-Screen Spice Console

In this multi-part article, the author covers access methods to multi-screen spice consoles.

Prioritizing Memory Safety Migrations

In this post, the author shows that replacing C/C++ with safer languages is not an all-or-nothing task and suggests prioritizing systematically.

Gradle 7.0
Osbuild 28

New release of OSBuild, the project providing tools for building operating system images.

Tahoe-LAFS

»Tahoe-LAFS is a Free and Open decentralized cloud storage system.«

DebOps

»The DebOps project is a set of Free and Open Source tools that let users bootstrap and manage an IT infrastructure based on Debian or Ubuntu operating systems.«

OpenNebula 6.0
Ancient Linux Servers: The Blighted Slum Houses of the Internet
thumbnail

Yes, running unsupported, unpatched servers on the Internet is a bad idea.

Microsoft Gets Two-Phase Immersion Cooling Running In an Azure Data Center
thumbnail

Article about Microsofts first production-environment deployment of two-phase liquid immersion cooling in a data center.

upptime
thumbnail

»Upptime is the open-source uptime monitor and status page, powered entirely by GitHub Actions and Issues.«

Expiration Date 4-6-2021

The Epic Games Reliability Engineering team did a post-mortem on a certificate expiration issue they recently experienced.

Opting Your Website Out of Google's FLoC Network
thumbnail

The short instructions on this post show how to set the Permissions-Policy: interest-cohort=() header in popular HTTP/S servers.

US Investigators Probing Breach at Code Testing Company Codecov

The Codecov supply chain hack gets investigated.

RFC: Rust in Linux Kernel

»Some of you have noticed the past few weeks and months that
a serious attempt to bring a second language to the kernel was
being forged. We are finally here, with an RFC that adds support
for Rust to the Linux kernel.«

xplr
thumbnail

xplr is »a hackable, minimal, fast TUI file explorer, stealing ideas from nnn and fzf. «

DNS Propagation Does Not Exist

This short post explains why, strictly speaking, the term DNS propagation is misused.

Multi-Master Replication Solutions for PostgreSQL
thumbnail

Post by Percona about different multi-master replication solutions for Postgres.

Nobody Cares About the Operating System Anymore
thumbnail

Pointed comment by Corey Quinn on why the operating system does not matter that much anymore.