Sign in

Ju 🐧

@dju.eurosky.social
320 followers 202 following 3.6K posts

free/libre software adept, sysop, net explorer since '92 team "keep it simple stupid" there is no place like 127.0.0.1. or my motorcycle :) 🏠 La capitale du claoude 🦣 hostux.social/@dju 💻 gitlab.com/Dju92 🌎 crifo.org

PostsRepliesMedia
Ju 🐧 @dju.eurosky.social · 4h
chamedi
060
Reposted by Ju 🐧
Christine Hall @brideoflinux.bsky.social · 15h
Their end goal appears to game search engines by getting links from a lot of old web pages and later use that high ranking for selling SEO optimisation: en-html.org is a Scam Site buff.ly/x5Aq80d
011
Reposted by Ju 🐧
Laurent Cheylus @lcheylus.bsky.social · 17h
A working 3D model of an Enigma machine, used by German military during World War II to send encrypted messages #Cryptography #Enigma enigma.design
enigma.design
Enigma — The machine and its history
Explore 3D Enigma models, follow their electrical circuits and rotor mechanisms, and learn how the machines were used.
077
Reposted by Ju 🐧
InfoSec @infosec.skyfleet.blue · 09/10/2026
Let’s Encrypt Cuts TLS Certificate Lifetimes From 90 to 64 Days Starting February 2027
cybersecuritynews.com
Let’s Encrypt Cuts TLS Certificate Lifetimes From 90 to 64 Days Starting February 2027
Let’s Encrypt will cut its default TLS certificate lifetime from 90 days to 64 days on February 10, 2027, giving website operators less time between renewals. The change applies to certificates issued or renewed from that date, while subscribers can still choose shorter certificate profiles offering 45 days or roughly six days. Let’s Encrypt Certificate Lifetime According to the October 7 announcement published by Let’s Encrypt , the nonprofit certificate authority confirmed the schedule. Existing certificates will remain valid until their normal expiry dates, and Let’s Encrypt will not revoke them as part of the transition. It expects the final 90-day certificate to expire on May 11, 2027. The shorter lifetime limits how long a certificate can remain trusted after a private key is stolen or a certificate is issued incorrectly. It also makes reliable renewal systems more important, especially for teams still using fixed schedules or manual steps. The move is part of the wider shift toward shorter public TLS certificate lifetimes. Cybersecurity News previously covered the CA/Browser Forum’s plan to reduce maximum validity to 47 days . Let’s Encrypt is moving faster, with its default profile set to 45 days on February 16, 2028, as outlined in its earlier certificate lifetime roadmap. Let’s Encrypt will start issuing 64-day certificates in its staging environment on October 14, 2026. Administrators can use this test service to check renewal behavior before the production change. Staging certificates are not trusted by browsers and should not replace certificates on live websites. For automated setups, the key feature is ACME Renewal Information, or ARI. ACME is the protocol used to request and renew certificates automatically. ARI lets Let’s Encrypt tell a supported client when to renew, helping it adjust to shorter lifetimes without relying on a fixed calendar. Administrators should check their client’s documentation to confirm ARI support. When ARI isn’t available, Let’s Encrypt recommends renewing at about two-thirds of the certificate’s lifetime. For a 64-day certificate, that means around day 43, rather than waiting until the old 60-day renewal point. The authority also recommends searching cron jobs, wrapper scripts, and runbooks for hardcoded values such as 83, 80, or 60. These numbers may reveal renewal rules designed around 90-day certificates. Updating those rules now also prepares systems for the 45-day default planned for 2028. Alongside certificate validity, Let’s Encrypt will reduce authorization reuse from 30 days to 10 days. This is the period during which an earlier domain control check can support another certificate request without repeating that check. The reuse period will fall to seven hours in 2028. Let’s Encrypt says this supports upcoming validation rules and removes the need for separate Certificate Authority Authorization rechecks on older validation data. Most subscribers will not need changes unless their ACME setup specifically depends on authorization reuse. Rate limits will not change because of the shorter lifetimes, according to Let’s Encrypt’s rate limit guidance. ACME endpoints and certificate issuance chains will also remain unchanged. Operators should test the full certificate workflow, including deployment and service reloads, rather than checking renewal alone. Teams managing many websites should also confirm that renewed certificates reach every server and that monitoring checks the certificate actually served to users after each reload. Alerts for failed renewals can help teams catch problems before expiry. The practical priority is dependable automation that keeps certificates current as renewal windows shrink. Cut every SOC alert investigation by 21 min. Power your SOC with instant IOC context for immediate response: Integrate TI Lookup into your SOC The post Let’s Encrypt Cuts TLS Certificate Lifetimes From 90 to 64 Days Starting February 2027 appeared first on Cyber Security News .
032
Ju 🐧 @dju.eurosky.social · 08/10/2026
serie brainfuck du moment: Constellation noomi rapace, l'iss, un appareil mysterieux et 2 realités alternatives qui se croisent.. recommande 10/10
static.klipy.com
Patrick Star: Head Explode Mind Blown (SpongeBob)
ALT: Patrick Star: Head Explode Mind Blown (SpongeBob)
020
Reposted by Ju 🐧
Eurosky Social @eurosky.social · 08/10/2026
Our apologies for the service interruption this afternoon. This was due to a fault with Hetzner’s DNS service (a sort of GPS for the internet), which is still ongoing. We have put in place mitigation to reduce the risk of this occurring in the future.
1319737
Reposted by Ju 🐧
Tuta @tuta.com · 08/10/2026
Meta doesn’t just want to know what you post. With Muse, it also wants to access what you do. Meta is advertising that its AI agent Muse can:  🚩 Answer your emails 🚩 Make purchases 🚩 Manage your online accounts But would you really hand Zuck's company the keys to your digital life? 🔑
Muse app description, data linked to you: Health and fitness, purchases, financial info, location, contact info, contacts, user content, search history, browsing history, identifiers, usage data, sensitive info, diagnostics.
1010750
Ju 🐧 @dju.eurosky.social · 07/10/2026
windows is doomed.. (and people using windows will completely loose control of their computer)
001
Reposted by Ju 🐧
Sarah Andersen @sarahseeandersen.bsky.social · 05/09/2026
The image is of a four panel comic.
In the first panel we see a dragon sitting on a pile of treasure. A speech bubble pointing off panel reads, “Dragon, why do you have all this treasure?”
In the second panel we zoom in on the dragons face. He simply says “shiny”.
In the third panel we pan to the left and see that there is a crow standing next to the dragon on the treasure.
In the fourth panel we zoom in on the crows face. He says “hell yeah”.
113300666627
Reposted by Ju 🐧
CERT-FR @cert-fr.bsky.social · 07/10/2026
CERTFR-2026-AVI-1271: Multiples vulnérabilités dans OpenSSH www.cert.ssi.gouv.fr/avis/CERTFR-20…
012
Ju 🐧 @dju.eurosky.social · 06/10/2026
#SFR, tranquille..
110
Ju 🐧 @dju.eurosky.social · 06/10/2026
- i'm sorry i cant let you do that, dave - grok: hold my beer ! 🤪
040
Ju 🐧 @dju.eurosky.social · 06/10/2026
static.klipy.com
Orson Welles: Pas Mal Non? C'est Français
ALT: Orson Welles: Pas Mal Non? C'est Français
032
Ju 🐧 @dju.eurosky.social · 05/10/2026
mail reçu de #LDLC sur la fuite : ça fait quand même beaucoup de données..
041
Reposted by Ju 🐧
InfoSec @infosec.skyfleet.blue · 05/10/2026
Google Gemini Will Soon Get Full Access Permission to Use Your Computer
cybersecuritynews.com
Google Gemini Will Soon Get Full Access Permission to Use Your Computer
Google’s Gemini Desktop app may soon introduce a “Full Access” permission that would let the AI assistant read files, control applications, access network services, and take action across a user’s Mac. The capability appears to be part of a hidden “Additional sandbox options” setting discovered in a recent version of the Gemini Desktop app . The reported feature would significantly expand Gemini’s computer-use capabilities beyond its existing role as a conversational AI assistant. If enabled, the permissions could let Gemini interact with a user’s local environment in ways normally reserved for trusted desktop applications, including accessing files outside explicitly connected folders. According to the discovered permission text, enabling additional sandbox options may allow Gemini to read, create, modify, or delete files anywhere on a Mac. Apple also plans to add stronger controls to Full Disk Access in macOS , warning that the powerful permission can expose a user’s most private data as AI agents become more capable.  Google Gemini Computer Access This could include files outside the folders connected to Gemini, as well as files belonging to other people stored on the same device. The setting could also permit the application to communicate with other installed programs, such as Mail, Safari, and Messages, and perform actions through those applications. The permission model may also enable Gemini to send and receive data over the network without requesting approval for every connection. In practice, that could allow the AI agent to access websites , APIs, cloud services, and accounts where the user is already signed in. Such access could make Gemini more useful for multi-step tasks, including researching information, organizing documents, drafting emails, completing web-based workflows, and interacting with enterprise tools. However, the feature introduces important cybersecurity and privacy concerns. An AI agent with unrestricted access to files, browser sessions, network services, and messaging applications would become a high-value target for attackers. A prompt injection attack, malicious web page, compromised browser session, or unsafe instruction could potentially influence an agent with broad permissions. For example, a user may ask Gemini to summarize documents from a folder. If Gemini is simultaneously allowed to browse the web and communicate with other applications, a malicious webpage could attempt to manipulate the agent into collecting sensitive files, opening authenticated services, or sending data externally. The risk is not limited to malicious AI prompts ; it also includes compromised websites, untrusted documents, deceptive emails, and vulnerable third-party applications. Google reportedly plans to keep additional confirmation requirements for particularly sensitive actions. Gemini would still ask for user approval before purchasing products, creating accounts, accepting legal terms, or modifying sensitive personal information. This indicates that Google may use a tiered permission approach, separating ordinary computer-use actions from higher-risk decisions. The full-access option is currently hidden, and Google has not formally announced it. TestingCatalog suggested the computer-use capabilities could relate to a future Gemini 4-powered experience, though this remains unconfirmed. Organizations should treat such AI-agent permissions carefully when they become available. Security teams should restrict access to sensitive folders, avoid enabling broad permissions on unmanaged devices, apply least-privilege controls, and closely review what data and applications an AI assistant can access. Cut every SOC alert investigation by 21 min. Power your SOC with instant IOC context for immediate response: Integrate TI Lookup into your SOC The post Google Gemini Will Soon Get Full Access Permission to Use Your Computer appeared first on Cyber Security News .
101
Ju 🐧 @dju.eurosky.social · 04/10/2026
voila pourquoi les appli sur telephone, c'est NON ! voila pourquoi les voitures connectées, c'est NON !
021
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 03/10/2026
7.2.9: stable Version: 7.2.9 (stable) Released: 2026-10-03 Source: linux-7.2.9.tar.xz PGP Signature: linux-7.2.9.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.9 www.kernel.org #linux #kernel
kernel.org
042
Ju 🐧 @dju.eurosky.social · 02/10/2026
ca rassure pas.
static.klipy.com
Danielhadadlover Galit
ALT: Danielhadadlover Galit
000
Ju 🐧 @dju.eurosky.social · 01/10/2026
pub entendu à l'instant à la radio: "le black friday arrive" LAISSE MOI TRANQUILLE BORDEL, C'EST DANS 2 MOIS !
static.klipy.com
Steve Carell as Brick Tamland: LEAVE ME ALONE!
ALT: Steve Carell as Brick Tamland: LEAVE ME ALONE!
100
Reposted by Ju 🐧
Stefano Marinelli @bsd.cafe · 29/09/2026
Whoa!!! lists.debian.org/debian-security-an… #IT #Security #Linux #Debian
lists.debian.org
[SECURITY] [DSA 6528-1] linux security update
465
Reposted by Ju 🐧
Dans les algorithmes @danslesalgorithmes.bsky.social · 22/09/2026
Musique : le piège du droit d’auteur génératif : danslesalgorithmes.net/2026/09/22/m... - A qui appartiendra la musique générative ?
danslesalgorithmes.net
Musique : le piège du droit d’auteur génératif
Pour le magazine canadien Maisonneuve, le journaliste Michael Rancic, qui fait partie de la coopérative de journalistes musicaux New Feeling, se ...
022
Ju 🐧 @dju.eurosky.social · 27/09/2026
"Ces robots IA vont intégrer votre vie, les conséquences effraient" bientôt ? #oupas ? www.youtube.com/watch?v=SHZc...
youtube.com
Ces robots IA vont intégrer votre vie, les conséquences effraient
YouTube video by Réel média
100
Ju 🐧 @dju.eurosky.social · 25/09/2026
merci gogole 🥲 www.newinlinux.com/dont-update-...
newinlinux.com
Don't update Chrome: It's crashing Linux desktops
A new bug in the latest update corrupts the fontconfig cache, which can in turn crash your entire desktop.
221
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 25/09/2026
7.2.8: stable Version: 7.2.8 (stable) Released: 2026-09-25 Source: linux-7.2.8.tar.xz PGP Signature: linux-7.2.8.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.8 www.kernel.org #linux #kernel
kernel.org
032
Ju 🐧 @dju.eurosky.social · 25/09/2026
oops.. #mikrotik thehackernews.com/2026/09/mikr... (ping @hwaddr.bsky.social :p)
thehackernews.com
MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key
Attackers chained two RouterOS SSH flaws to gain full admin access on Internet-exposed MikroTik routers before patches shipped.
246
Ju 🐧 @dju.eurosky.social · 23/09/2026
looks like the #thunderbird bug, creating a "thunderbird" folder in home has been resolved in version 156 :)
120
Ju 🐧 @dju.eurosky.social · 22/09/2026
une bonne vidéo explicative de #jev www.youtube.com/watch?v=KnXm...
youtube.com
Le nouveau modèle d'IA JEV enflamme le web : vrai ou démo truquée ?
YouTube video by Shubham SHARMA
010
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 21/09/2026
7.2.7: stable Version: 7.2.7 (stable) Released: 2026-09-21 Source: linux-7.2.7.tar.xz PGP Signature: linux-7.2.7.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.7 www.kernel.org #linux #kernel
kernel.org
042
Ju 🐧 @dju.eurosky.social · 21/09/2026
donc maintenant, va falloir payer plus pour jouer sans pub. pourritures. #MicrosoftHell
230
Reposted by Ju 🐧
Seboss666 @seboss666.info · 21/09/2026
Un très bon résumé des mesures que Google est en train de prendre pour refermer sa main sur l'écosystème Android (avec les éditeurs en complice qui vont juste accepter ça, banques en tête), alors que sur le papier les règlements européens étaient censés nous en protéger rvier.fr/posts/androi...
rvier.fr
Android se referme : 12 testeurs nécessaires, et une vérification des devs
12 testeurs pendant 14 jours, vérification d'identité, sideloading bridé, bootloaders verrouillés : mises bout à bout, ces mesures referment Android.
22930
Reposted by Ju 🐧
aeris @aeris.eu.org · 21/09/2026
La Commission Européenne envisage de rayer le RGPD de la carte, et le droit des personnes concernées avec, au nom de la sacro-sainte AI. noyb.eu/en/ai-eu-mem...
noyb.eu
AI: EU Member States plan “digital expropriation” of Europeans in the interest of AI companies
In a leaked document, the Irish Presidency proposes to EU Member States that the interest of AI companies to make profits should take precedence over the fundamental rights of Europeans.
31717
Ju 🐧 @dju.eurosky.social · 18/09/2026
#Alpine Linux 3.21.8, 3.22.6, 3.23.6 and 3.24.2 released alpinelinux.org/posts/Alpine...
alpinelinux.org
Alpine 3.21.8, 3.22.6, 3.23.6 and 3.24.2 released | Alpine Linux
Alpine Linux
022
Ju 🐧 @dju.eurosky.social · 17/09/2026
still true.. 🥲
121
Ju 🐧 @dju.eurosky.social · 17/09/2026
151
Reposted by Ju 🐧
Cartes @cartes.app · 16/09/2026
🤖 Internet est le nouveau far-west. Et ça explique pourquoi notre service est dégradé depuis plusieurs semaines. Auparavant le contrat était simple, un éditeur autorisait un bot d'indexation à consulter son site car ça lui rapportait de l'audience.
7182140
Ju 🐧 @dju.eurosky.social · 16/09/2026
et allez, encore de l'enculage de #orange lisez bien vos mails ! reçu ce jour : "votre forfait mobile évolue" votre forfait 2h 20Go passe de 20Go à 50Go d’internet pour 3€ de plus par mois. - Si vous êtes intéressé, aucune démarche - Sinon, vous pouvez choisir de renoncer à cette évolution
311
Reposted by Ju 🐧
BFMTV @bfmtv.com · 16/09/2026
⚠️ NE LA MANGEZ PAS ▶️ l.bfmtv.com/tDkX
211
Reposted by Ju 🐧
aeris @aeris.eu.org · 15/09/2026
Agiris, prestataire de facturation électronique, confirme avoir été piraté ce jour. Les systèmes « sécurisay » auront donc tenu… 15 jours… 😑
84733
Reposted by Ju 🐧
Next @next.ink · 15/09/2026
Oui, Anthropic et OpenAI peuvent lire vos conversations, et depuis longtemps
dlvr.it
Oui, Anthropic et OpenAI peuvent lire vos conversations, et depuis longtemps
Des employés d’Anthropic et d’OpenAI – mais aussi certains de leurs partenaires – peuvent lire vos conversations avec les chatbots, c’est écrit noir sur blanc… à condition de bien lire toutes les petites lignes. Les entreprises ne s’en privent d’ailleurs pas, comme le montre une enquête récente. Sur Internet, comme dans la vie réelle, nous avons […]
01517
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 14/09/2026
7.2.6: stable Version: 7.2.6 (stable) Released: 2026-09-14 Source: linux-7.2.6.tar.xz PGP Signature: linux-7.2.6.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.6 www.kernel.org #linux #kernel
kernel.org
052
Reposted by Ju 🐧
Xavier "dascritch" Mouton-Dubosc @dascritch.net · 14/09/2026
Des copains en ont reçu, c'est mon tour, c'est bluffant : le fait que personne ne soit passé même en étant chez moi, le sonore laissé par le livreur, les photos dont une avec une étiquette à mon nom.... tout est faux. La seule incongruité : le nom de domaine. www.01net.com/actualites/u...
01net.com
Un message vocal de « livreur » généré par IA : la nouvelle arnaque au colis qui fait des ravages
L'arnaque aux faux colis se perfectionne. Les escrocs utilisent désormais l'IA pour générer des messages vocaux de livreurs ultra-réalistes afin de vous piéger.
137
Ju 🐧 @dju.eurosky.social · 12/09/2026
#debian 13.7 is ready to download 🍥 www.debian.org/News/2026/20...
debian.org
Debian -- News -- Updated Debian 13: 13.7 released
131
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 11/09/2026
7.2.5: stable Version: 7.2.5 (stable) Released: 2026-09-11 Source: linux-7.2.5.tar.xz PGP Signature: linux-7.2.5.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.5 www.kernel.org #linux #kernel
kernel.org
032
Reposted by Ju 🐧
CERT-FR @cert-fr.bsky.social · 09/09/2026
CERTFR-2026-AVI-1142: Vulnérabilité dans Mozilla Firefox www.cert.ssi.gouv.fr/avis/CERTFR-20…
011
Reposted by Ju 🐧
CERT-FR @cert-fr.bsky.social · 09/09/2026
CERTFR-2026-AVI-1141: Multiples vulnérabilités dans Postfix www.cert.ssi.gouv.fr/avis/CERTFR-20…
011
Reposted by Ju 🐧
Ici Paris Île-de-France officiel @iciparis.bsky.social · 23/07/2026
"Une mesure radicale" : très fréquenté, ce tunnel de l'A13 sera fermé pendant 9 mois à partir de mi-novembre france3-regions.franceinfo.fr/paris-ile-de... #Autoroute
france3-regions.franceinfo.fr
"Une mesure radicale" : très fréquenté, ce tunnel de l'A13 sera fermé pendant 9 mois à partir de mi-novembre
L'autoroute A13 entre Paris et Caen, très fréquentée, sera fermée de mi-novembre 2026 à fin août 2027 en direction de la Normandie au niveau du tunnel de Saint-Cloud, a annoncé mardi le préfet d'Île-d...
001
Reposted by Ju 🐧
Mailo @hellomailo.bsky.social · 09/09/2026
Un « kill switch » révèle les risques de la dépendance numérique : quand nos services reposent sur des acteurs soumis à des lois étrangères, notre autonomie est en jeu. Choisir Mailo, c’est réduire cette dépendance. www.generation-nt.com/actualites/s... #SouverainetéNumérique #KillSwitch #Mailo
generation-nt.com
Le kill switch américain : la nouvelle hantise des entreprises européennes
Un danger numérique plane au-dessus du Vieux Continent. La dépendance aux géants technologiques américains, qui pourraient couper les services du jour au lendemain, devient une angoisse opérationnelle
163
Ju 🐧 @dju.eurosky.social · 08/09/2026
ça promet :D #SouthPark
020
Reposted by Ju 🐧
Moriel 🏳️‍⚧️ @moriel.chaosfem.tw.ap.brid.gy · 07/09/2026
#penguins #linux #humor
Two photos taken by the same camera.  The top photo shows the interior of a tent with a man asleep in a thick sleeping bag.  The tent door is open and reveals a snowy landscape outside, possibly in Antarctica since there is a curious penguin just outside the tent looking in at the man.  The penguin is captioned saying "Mother of God, he's asleep!"

The second photo shows the same scene, but now there are 6 penguins and they have come inside the tent to look around while the man sleeps.  The caption on this image reads "Come in, quick, install Linux on all his devices!"
44059
Reposted by Ju 🐧
Linux Kernel Releases @linuxkreleases.adilson.net.br · 07/09/2026
7.2.4: stable Version: 7.2.4 (stable) Released: 2026-09-07 Source: linux-7.2.4.tar.xz PGP Signature: linux-7.2.4.tar.sign Patch: full ( incremental ) ChangeLog: ChangeLog-7.2.4 www.kernel.org #linux #kernel
kernel.org
042