Sign in

Codepoints.net

@codepoints.typo.social.ap.brid.gy
4 followers 0 following 46 posts

� We love Unicode, characters, lettering and language. Questions about #Unicode? Just ask! Previously @CodepointsNet on Twitter. 🌉 bridged from ⁂ typo.social/@codepoints, follow @ap.brid.gy to interact

PostsRepliesMedia
Codepoints.net @codepoints.typo.social.ap.brid.gy · 29/09/2026
In the meanwhile (see last post), enjoy here a cool explanation video of why currency symbols have all the lines through them: www.youtube.com/shorts/vhp22NEbgQM
002
Codepoints.net @codepoints.typo.social.ap.brid.gy · 29/09/2026
I’m working on the v18 update, but it’s soooo frustrating. Day 3 of debugging: After an hour of SQL constraint violations due to some new scripts that came in, I’m now battling the updated opentype.js that started to turn all glyphs upside-down. Long story short, it might still take some time […]
typo.social
Original post on typo.social
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 18/09/2026
Version 18 is published: The Unicode Blog: Announcing the Unicode® Standard, Version 18.0 blog.unicode.org/2026/09/announcing… (Yeah, yeah, I know, I'm still at 16...)
blog.unicode.org
Announcing the Unicode® Standard, Version 18.0
Version 18.0 of the Unicode Standard is now available. The Unicode Standard is the foundation for all digital communications, and this new version supports a wider range of text encoding needs. This major update includes new characters and code charts, updated data files, and updated specifications that define many fundamental aspects of text processing. This version adds 13,007 new characters, including nine new emoji characters as well as many other characters and symbols, bringing the total number of encoded characters to 172,808. Among the most anticipated new characters are three new currency symbols: * U+20C2 RUFIYAA SIGN * U+20C3 UAE DIRHAM SIGN * U+20C4 OMANI RIAL SIGN Each of these symbols was authorized for public use by the respective monetary authority over a year ago, but usage has been hindered by lack of a standardized encoding. With the release of Unicode 18.0, vendors are now able to implement support for these symbols. The largest set of new characters is for the historical Seal (or “Small Seal”) script. This set of 11,328 ideographic characters has important cultural significance in China, dating back to the Qin Dynasty (around 200 BCE). Another new cultural heritage script from China is Jurchen, used in northeastern China during the Jin Dynasty. See the delta code charts for details on all the new scripts and characters. For additional details regarding new emoji, see Emoji Recently Added, v18.0 No new algorithms have been introduced in this release, but new data files have been added for Seal and other East Asian scripts, along with a new Unicode Standard Annex documenting these new data files: UAX #60, Data for East Asian Scripts. Conformance language related to variation selectors has been updated, making clearer which uses of variation selectors are or are not conformant to the Unicode Standard. Recommendations for implementations were also added to make non-conformant uses of variation selectors visible in text. This is important as research has shown that sequences of invisible variation selector characters can be used to attack modern AI applications. For complete details on Unicode Version 18.0, see https://www.unicode.org/versions/Unicode18.0.0/.
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 13/09/2026
RE: bildung.social/@_DigitalWriter_/117… TIL about the Croscore fonts, metrics-compatible free #fonts with Arial (Arimo), Times New Roman (Tinos) and Courier New (Cousine), and their newer additions for Calibri (Carlito) and Cambria (Caladea). See […]
typo.social
Original post on typo.social
001
Reposted by Codepoints.net
Terence Eden @edent.mastodon.social.ap.brid.gy · 11/09/2026
I've run into a weird #Unicode Nomalization problem with #WordPress. Thoughts and feedback welcome - core.trac.wordpress.org/ticket/66093
014
Reposted by Codepoints.net
Jens Ohlig @johl.mastodon.xyz.ap.brid.gy · 04/08/2026
ʅ͡(̸̢̛̼)̸͚͛:̴͓̑:̸͎̂ ҉ ͡ ͞ ͞ ͞ ҉● ࿀ ● ࿀ ● ҉⃝ ⃝͢ ͞ ͘ ͞⃝̕ ͢ ̛ ⃝ ̸ ̡ ͢⃝̧ ͡ ͡ ̀ ̧ ̢⃝͜ ҉ ͞ ͞ ⃝͞ ͘ ͞ ͡⃝ ⃝҉҈҉҈҉҈҉҈҉҈҉ :̶̢͙͆(̷̮͂)̵̳̊( ҈͜͢ͅ l̡ ̡͌ Ɵʅ͡(̸̢, also known as Wingdings, is the debut studio album by the English musician Kieran Hebden under the alias ⣎⡇ꉺლ༽இ•̛)ྀ◞ ༎ຶ ༽ৣৢ؞ৢ؞ؖ ꉺლ, known colloquially […]
mastodon.xyz
Original post on mastodon.xyz
010
Codepoints.net @codepoints.typo.social.ap.brid.gy · 17/07/2026
Happy #worldemojiday ! #emoji
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 08/07/2026
A Beginner’s Guide to English IPA www.youtube.com/shorts/djAG2eyeOe4 ...in under 3 minutes 😉
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 03/07/2026
Why ‘ji32k7au4a83’ Is a Remarkably Common Password gizmodo.com/why-ji32k7au4a83-is-a-r… Hint: it _is_ an actually typed password.
gizmodo.com
For too many people, moving the digits around in some variation of Patriots69Lover is their idea of a strong password. So you might expect something complicated like” “ji32k7au4a83” would be a great password. But according to the data breach repository Have I Been Pwned (HIBP), it shows up more often than one might expect. This interesting bit of trivia comes from self-described hardware/software engineer Robert Ou, who recently asked his Twitter followers if they could explain why this seemingly random string of numbers has been seen by HIBP over a hundred times. > Fun thing I learned today regarding secure passwords: the password "ji32k7au4a83" looks like it'd be decently secure, right? But if you check e.g. HIBP, it's been seen over a hundred times. Challenge: explain why and how this happened and how this password might be guessed > > — R (@ArcaneNibble) March 1, 2019 Have I Been Pwned is an aggregator that was started by security expert Troy Hunt to help people find out if their email or personal data has shown up in any prominent data breaches. One service it offers is a password search that allows you to check if your password has shown up in any data breaches that are on the radar of the security community. In this case, “ji32k7au4a83″ has been seen by HIBP in 141 breaches. Several of Ou’s followers quickly figured out the solution to his riddle. The password is coming from the Zhuyin Fuhao system for transliterating Mandarin. The reason it’s showing up fairly often in a data breach repository is because “ji32k7au4a83″ translates to English as “my password.” I reached out to my friend Ben Macaulay to help us verify what’s going on here. Macaulay is a graduate student in linguistics and Taiwan enthusiast who is focusing on endangered language documentation. He also regularly uses a Zhuyin (aka Bopomofo) keyboard, which is a key to this riddle. Macaulay told us it’s the most commonly used system for typing in Taiwan. The phonetic system is recognized by Unicode, and Macaulay confirmed that this is the general, simplified version of how the translation breaks down when the characters interact: > ji3 -> 我 -> M > 2K7 -> 的 -> Y > au4 -> 密 -> PASS > a83 -> 碼 -> WORD (Here are two charts explaining how the Unicode works.) That’s the only translation most of us need, but Macaulay elaborated on how it works. I’m just going to quote it all for no other reason than it makes me appreciate the fact that I only ever have to type in one language. > There are four tones: 1st tone (hold Space), 2nd tone (6), 3rd tone (3), 4th tone (4), unstressed/lack of tone (7). > Then, consonants for the beginning of the syllable, arranged by place of articulation: b (1) p (q) m (a) f (z); d (2) t (w) n (s) l (x); g (e) k (d) h (c); j (r) q (f) x (v); zh (5) ch (t) sh (g) r (b); z (y ) c (h). > Then, the vowels/semivowels: i/yi/y (u) u/wu/w (j) ü/yo (m); a (8) o (i) e (sounds like ‘uh’; k) e (sounds like ‘eh’; _). > Then, some syllable-final consonants and vowel+vowel/vowel+consonant combinations: ai (9) ei (o) ao (l) ou (!); an (0) en/-n (p) ang (;) eng/-ng (?). > To type in zhuyin, you type one of each (in that order, except the tone is last). > I = 我 = wo3 = u (j) + o (i) + 3rd tone (3). > Then the possessive marker 的 (like English ‘s) = de (toneless) = d (2) + e (k) + toneless (7). > Password = 密碼 = 密 ‘secret’ + 碼 (the second half of 號碼 ‘number’) 密 = mi4 = m (a) + i (u) + 4th tone (4) 碼 = ma3 = m (a) + a (8) + 3rd tone (3). What’s the lesson here? Well, you might conclude that people in Taiwan appear to have some bad password habits, just like the rest of us—but who knows what’s really going on here. They may be in on the joke. Also, you should add a quick check on the HIBP database to your good password creation practices just to make sure that your seemingly random string of characters doesn’t actually have another meaning. And above all, it’s a big wide world out there just waiting to pwn us all. [Robert Ou, Have I Been Pwned]
101
Codepoints.net @codepoints.typo.social.ap.brid.gy · 24/06/2026
The Physics Behind the Poo Emoji’s Shape nautil.us/the-physics-behind-the-po… Okay, okay. This one has more to do with poo than with #emoji, but it’s a funny, quick read.
nautil.us
The Physics Behind the Poo Emoji’s Shape
The Physics Behind the Poo Emoji’s Shape: And how lugworms tweak the rules by pooping upside down
000
Reposted by Codepoints.net
Stefan Bohacek @fediverse.stefanbohacek.online · 17/04/2026
A pretty neat online tool for making Unicode wireframes. wiretext.app via @piccalilli #WebDev #WebDesign #wireframes #unicode
wiretext.app
Wiretext — Unicode Wireframe Design Tool
A spatial design tool where everything renders as Unicode box-drawing characters. Create wireframes, diagrams, and mockups. Share as text.
002
Reposted by Codepoints.net
Henri Sivonen @hsivonen.mastodon.social.ap.brid.gy · 20/03/2026
TIL that with iOS set to fi-FI, in the Contacts app, adding a birthday when a contact does not already have one set always sets a Gregorian birthday. However, setting a second birthday defaults to a Hijri birthday with possibility to switch to Hebrew, Chinese, Korean, or Vietnamese. Now I have […]
mastodon.social
Original post on mastodon.social
101
Codepoints.net @codepoints.typo.social.ap.brid.gy · 17/03/2026
RE: w3c.social/@xfq/116243637082484325 This is a great tool! Use it like this for good explanations: bcp47 i-klingon (it mentions the better alternative tag) bcp47 de-Latn-DE (it mentions the needless default script Latn)
w3c.social
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 12/03/2026
Boy, I love the Curiosity Show! Upside Down Letters www.youtube.com/shorts/fNT2vgAId6M Deane presents a problem based on #letters and #symmetry.
000
Reposted by Codepoints.net
Chris Pirillo @chrispirillo.mastodon.social.ap.brid.gy · 07/03/2026
I just spent the last 24 hours building... a free tool to create your very own handwriting font quickly within the browser (no logins, all local processing): arcade.pirillo.com/fontcrafter.html Having tested it extensively on my own manuscript, I […] [Original post on mastodon.social]
81784
Codepoints.net @codepoints.typo.social.ap.brid.gy · 23/02/2026
RE: social.linux.pizza/@leffe/116120123… People tend to forget how life was before unified character encodings.
social.linux.pizza
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 23/02/2026
RE: norden.social/@leuchtturm/116108761… Interesting way of the norden.social admins to promote northern German cuisine. Wikipedia article on this thing: en.wikipedia.org/wiki/Franzbr%C3%B6…
norden.social
000
Reposted by Codepoints.net
Chee Aun 🤔 @cheeaun.mastodon.social.ap.brid.gy · 10/02/2026
RE: mastodon.social/@shimon1024/1152530… "AFAIK, Mastodon is the first global social networking service that displays Mongolian script posts vertically" github.com/mastodon/mastodon/issues… Quoting this […] [Original post on mastodon.social]
A Mastodon post showing a post by shimon1024@mastodon.social with a Traditional Mongolian content, vertically laid out.
116
Codepoints.net @codepoints.typo.social.ap.brid.gy · 07/02/2026
Punycode: My New Favorite Algorithm www.iankduncan.com/engineering/2025… by Ian Duncan, on BlueSky: <https://bsky.app/profile/iankduncan.com>
iankduncan.com
Punycode: My New Favorite Algorithm - Ian Duncan
A deep dive into how Punycode works, and why I think it's so neat.
001
Reposted by Codepoints.net
Chao-c' @xchaos.f.cz.ap.brid.gy · 20/01/2026
>>> sorted(['🥚','🐤']) ['🐤', '🥚'] #python #unicode #meme
113
Codepoints.net @codepoints.typo.social.ap.brid.gy · 14/01/2026
RE: mendeddrum.org/@fanf/11589279557794… Oh look, @emojipedia, a classic!
mendeddrum.org
000
Reposted by Codepoints.net
Kilu von Prince @kilinguistics.bsky.social · 10/01/2026
Calligraphy and resistance. This is life-giving.
0187
Codepoints.net @codepoints.typo.social.ap.brid.gy · 07/01/2026
RE: front-end.social/@stephaniewalter/1… This is a nice way to visualize differences in fonts. It’s also got a nice technical base. TIL about the t-SNE algorithm to place N-dimensional data in a 2-D space.
front-end.social
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 05/01/2026
Are you using #Emacs ? Then this post is for you: Composing Text in Emacs: Unicode, Emojis, and the Power of C-x 8 www.rahuljuliato.com/posts/unicode-… /via @publicvoit #unicode #emojis #editor
rahuljuliato.com
Composing Text in Emacs: Unicode, Emojis, and the Power of C-x 8 | Rahul's Blog
Rahul's Blog
003
Codepoints.net @codepoints.typo.social.ap.brid.gy · 19/12/2025
Don't leave the screen reader hungry htmhell.dev/adventcalendar/2025/17 The #HTMHellAdventcalendar entry 17 by @gerireid explores fascinating differences between visible and read out text on websites. And #Unicode makes a guest appearance in form of emoji names.
htmhell.dev
Don't leave the screen reader hungry - HTMHell
A collection of bad practices in HTML, copied from real websites.
001
Reposted by Codepoints.net
Kayin @kayin.moe · 02/12/2025
using emojis in subtitles to indicate saying a word twice in different ways is so wildly modern that I am left in shock
48413
Reposted by Codepoints.net
Dr Ian McCormick @wokestudies.bsky.social · 16/11/2025
For anyone who's struggled with variable spelling practices before modern printing, there's a summary of what's "interchangeable" in Thomas Wright's Dictionary of Obsolete and Provincial English. 2 vols. London, 1857. #orthography #English #language #dialect #manuscripts #medieval
LETTERS, &c., COMMONLY INTERCHANGEABLE. (Wright, p. viii)
a, o, and sometimes e.
ar, er, or, ur.
be, bi, by, as prefixes.
c, s, ch, sh, sch.
e, ee, i.
ʒ, g, gh, y.
ʒ, th.
h. often omitted where it ought to be inserted, or used superfluously.
i, y.
k, c, ch. 
o, oo, ou, u.
qu, wh, w.
s, c.
13516
Codepoints.net @codepoints.typo.social.ap.brid.gy · 29/10/2025
RTL Styling 101 – An extensive guide on how to style for right-to-left text in #CSS rtlstyling.com/posts/rtl-styling by @shadeed9
rtlstyling.com
Right to Left Styling 101
An extensive guide on how to style for RTL in CSS
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 22/10/2025
Do I get this right? The obfuscation technique that is used in the GlassWorm virus is basically using variation selectors instead of a-z0-9 for base64-encoding the payload? www.koi.ai/blog/glassworm-first-sel…
koi.ai
GlassWorm: First Self-Propagating Worm Using Invisible Code Hits OpenVSX Marketplace | Koi Blog
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 21/10/2025
This is a written word: www.youtube.com/shorts/uKyiBwrFgjg Turns out there is actually text written on the Mexican flag.
002
Reposted by Codepoints.net
Max Iorsh @iorsh.kishkush.net.ap.brid.gy · 10/10/2025
Glad to announce the October 2025 FontForge release. Some interesting stuff: * Show CNC fonts in Font View * Harfbuzz integration * GTK3 support kick-off #FontForge #typography #FOSS #GTK #GTK3
Screenshot of letter outlines in green colorScreenshot of Arabic inscription with complex connection between lettersScreenshot of a simple dialog with a numerical field input
010
Reposted by Codepoints.net
Terence Eden @edent.mastodon.social.ap.brid.gy · 10/10/2025
The layout of this paper is expert level trolling! journals.uc.edu/index.php/vl/articl…
journals.uc.edu
View of Optimal Line Length in Reading — A Literature Review
115
Codepoints.net @codepoints.typo.social.ap.brid.gy · 15/09/2025
What does a lowercase emoji look like? www.youtube.com/shorts/MQp2HRZHFBA
001
Reposted by Codepoints.net
Terence Eden @edent.mastodon.social.ap.brid.gy · 10/09/2025
Android will *not* be getting most of the Unicode 17 updates. Some of its fonts are over a decade out of date - and Google refuses to re-use its own Noto font stack. I've raised the issue at: issuetracker.google.com/issues/3664… If you're a Googler please ask someone to prioritise […]
mastodon.social
Original post on mastodon.social
3330
Codepoints.net @codepoints.typo.social.ap.brid.gy · 22/07/2025
If you ever wondered about the difference between Sheriff and Sans-Sherif, @alvaromontoro has got you covered: comicss.art/comics/190 Part of his comiCSS series.
comicss.art
comiCSS #190: Sheriff
cartoon with two panels. The first one shows a sheriff with a curly mustache, curly cowboy hat, curly eyebrows, and additional shadows that make it 'fancy'; it is titled Sheriff. The second one is the same sheriff, but the mustache is straight also the eyebrows and the cowboy hat; it is titled Sans-Sheriff.
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 14/07/2025
Oh no! corp.unicode.org/pipermail/unicode/… @babelstone died four days ago. Rest in Peace and thank you for all your work! Thank you @Evertype for being the messenger of such sad news!
corp.unicode.org
Andrew C. West 魏安 1960–2025
014
Codepoints.net @codepoints.typo.social.ap.brid.gy · 27/06/2025
[swearwords] This is the reason why the site is so slow currently. Fucking useless spiders.
screenshot of an access log showing lots of requests to long-tail specific search pages
000
Codepoints.net @codepoints.typo.social.ap.brid.gy · 25/06/2025
Currently the site is a bit slow. This is due to high server load. I’m at that problem and will hopefully figure it out soon. Thanks for the patience and sorry for the inconvenience!
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 23/05/2025
The Rarest Sounds in Language… www.youtube.com/shorts/aO9wVq5aUos a short by human1011 on YouTube.
001
Codepoints.net @codepoints.typo.social.ap.brid.gy · 21/05/2025
The #Unicode v17 beta review period has opened: blog.unicode.org/2025/05/unicode-17… New scripts that will be encoded in this version: > Beria Erfe is a modern-use script used in central Africa. > > Chisoi is a modern-use script used in northeast India. > > Tolong […]
typo.social
Original post on typo.social
000
Reposted by Codepoints.net
daniel:// stenberg:// @bagder.mastodon.social.ap.brid.gy · 16/05/2025
Detecting malicious Unicode in #curl daniel.haxx.se/blog/2025/05/16/dete…
daniel.haxx.se
Detecting malicious Unicode
In a recent educational trick, curl contributor James Fuller submitted a pull-request to the project in which he suggested a larger cleanup of a set of scripts. In a later presentation, he could show us how not a single human reviewer in the team nor any CI job had spotted or remarked on one of the changes he included: he replaced an ASCII letter with a Unicode alternative in a URL. This was an eye-opener to several of us and we decided we needed to up our game. We are the curl project. We can do better. ## GitHub The replacement symbol looked identical to the ASCII version so it was not possible to visually spot this, but the diff viewer knows there is a difference. In this GitHub website screenshot below I reproduced a similar case. The right-side version has the Latin letter ‘g’ replaced with the Armenian letter co. They appear to be the same. GitHub shows a diff. But what is actually the difference? The diff viewer says there is a difference but as a human it isn’t possible to detect what it is. Is it a flaw? Does it matter? If done “correctly”, it would be done together with a _real_ and expected fix. The impact of changing one or more letters in a URL can of course be devastating depending on conditions. When I flagged about this rather big omission to GitHub people, I got barely no responses at all and I get the feeling the impact of this flaw is not understood and acknowledged. Or perhaps they are all just too busy implementing the next AI feature we don’t want. ## Warnings When we discussed this problem on Mastodon earlier this week, Viktor Szakats provided me with an example screenshot of doing a similar stunt with Gitea which quite helpfully highlights that there is something special about the replacement: Gitea warns that the replacement is using “ambiguous Unicode characters” I have been told that some of the other source code hosting services also show similar warnings. As a user, I would actually like to know even more than this, but at least this warns about the proposed change clearly enough so that if this happens I would get the code manually and investigate before accepting such a change. ## Detect While we wait for GitHub to wake up and react (which I have no expectation will actually happen anytime soon), we have implemented checks to help us poor humans spot things like this. _To detect malicious Unicode._ We have added a CI job that scans all files and validates every UTF-8 sequence in the git repository. In the curl git repository most files and most content are plain old ASCII so we can “easily” whitelist a small set of UTF-8 sequences and some specific files, the rest of the files are simply not allowed to use UTF-8 at all as they will then fail the CI job and turn up red. In order to drive this change home, we went through all the test files in the curl repository and made sure that all the UTF-8 occurrences were instead replaced by other kind of escape sequences and similar. Some of them were also used more or less by mistake and could easily be replaced by their ASCII counterparts. The next time someone tries this stunt on us it could be someone with less good intentions, but now ideally our CI will tell us. ## Confusables There are plenty of tools to find similar-looking characters in different Unicode sets. One of them is provided by the Unicode consortium themselves: https://util.unicode.org/UnicodeJsps/confusables.jsp ## Reactive This was yet another security-related fix _reacting_ on a demonstrated problem. I am sure there are plenty more problems which we have not yet thought about nor been shown and therefore we do not have adequate means to detect and act on automatically. We want and strive to be proactive and tighten everything _before_ malicious people exploit some weakness somewhere but security remains this never-ending race where we can only do the best we can and while _the other side_ is working in silence and might at some future point attack us in new creative ways we had not anticipated. That future unknown attack is a tricky thing.
33554
Reposted by Codepoints.net
myrmepropagandist @futurebird.sauropods.win.ap.brid.gy · 10/04/2025
If anyone wants a horrible python program that will write integers in cuneiform sexegesimal (base sixty) using unicode so you can paste it all over the place in emails, documents and text messages I have just the thing. Use with en.wikipedia.org/wiki/Plimpton_322 For maximum amusement. […]
sauropods.win
Original post on sauropods.win
6431
Codepoints.net @codepoints.typo.social.ap.brid.gy · 09/04/2025
Quick hieroglyphs YouTube short: This Ancient Hieroglyph is ADORABLE www.youtube.com/shorts/-nnW8xrxp4w
010