Sign in

LUL

@l-u-l.bsky.social
81 followers 255 following 235 posts

#infosec enthusiast living in /dev/kvm #NixOS #GrapheneOS #Matrix #bzh

PostsRepliesMedia
LUL @l-u-l.bsky.social · 18/09/2026
Perses (perses.dev) is a really nice and simpler alternative to Grafana
perses.dev
Perses - Perses
An open specification for dashboards. The open dashboard tool for Prometheus and other data sources.
010
Reposted by LUL
Stéphane Graber @stgraber.org · 08/09/2026
Back in March, the folks at @7asecurity.bsky.social performed an audit of #Incus. The details and report are now publicly available! discuss.linuxcontainers.org/t/incus-publ...
discuss.linuxcontainers.org
Incus publishes independent security audit by 7ASecurity
Incus is publishing the results of an independent security audit performed by 7ASecurity and funded by the Sovereign Tech Agency. The review covered Incus v6.22.0 and combined whitebox testing, runtim...
041
Reposted by LUL
Mathieu @welcomattic.com · 02/09/2026
Normalized Fascism in Open Source: $12 Million Given to DHH · brennan.day
brennan.day
brennan.day - Queer Métis Author & Web Developer
Brennan Kenneth Brown is a Queer Métis writer exploring Indigenous identity, digital culture, and creativity. Read essays on technology, craft, and human experience from Calgary, Alberta.
205
Reposted by LUL
Bodil @bodil.lol · 31/08/2026
If you ever wanted a handy list of which tech companies to stay _well_ clear of: omarchy.org/patrons
omarchy.org
Omacom Foundation
The foundation funding Omarchy.
4841
Reposted by LUL
France traversée @clementd.wtf · 26/08/2026
Did you know? Omarchy is an ancient Greek word which means "I can tolerate racism but I draw the line at configuring arch myself"
042
LUL @l-u-l.bsky.social · 18/08/2026
Reboot d'un système sous NixOS chiffré avec LUKS sans intervention humaine via kexec et une passphrase temporaire www.bevuta.com/en/blog/pass...
bevuta.com
Passphrase-less reboots using kexec under NixOS | bevuta IT
Why our reboots now work without manual intervention - despite encryption. And what kexec's got to do with it.
021
Reposted by LUL
grant @grantcuster.com · 07/08/2026
Window management from the digital tabletop, running through Niri scripts:
16613
LUL @l-u-l.bsky.social · 06/08/2026
mise-en-place par @jdx.dev commence tout doucement à se transformer en un outil de provisioning de machine de dev très puissant. On peut maintenant gerer les paquets, fichiers, dotfiles, repos, users et services de manière déclarative. mise.jdx.dev/bootstrap.html
mise.jdx.dev
Bootstrap | mise-en-place
mise-en-place documentation
000
Reposted by LUL
Symfony @symfony.com · 19/06/2026
🚀 Symfony AI Spotlight: One API to Rule Them All ➡️ symfony.com/blog/symfony-ai-spotlig…
011
Reposted by LUL
Michael @themimitoof.fr · 12/06/2026
L'IA est devenue omniprésente dans la société d'aujourd'hui. Des business, des projets sortent de terre chaque jours et, on se retrouve dans cette spirale infernale. Je me suis bcp questionné sur le sens de ce que j'ai toujours aimé faire. J'y ai donc mis des mots. themimitoof.fr/le-blues-de-...
themimitoof.fr
Le blues de l'artisan du web
« Vous êtes des PUTAINS d’artisans du web ! Vous maintenez un petit bout d’Internet, soyez-en fiers. » Voici ce qu’avait dit une fois Stephan, ancien PDG de Gandi lors d’une réunion générale devant to...
045
Reposted by LUL
SilverBullet @silverbullet.md · 11/06/2026
#SilverBullet 2.9 released! no.silverbullet.plus/2-9 Featuring a new (experimental) Object Graph visualization.
A visual representation of a (F1) graph
012
LUL @l-u-l.bsky.social · 21/05/2026
Claude meet CUE: From Intuition to Precision with Self-Correcting AI cue.dev/docs/claude-...
000
Reposted by LUL
damien 🥖🐈‍⬛🧣 @damien.zone · 20/05/2026
www.spacebar.news/stop-using-b...
spacebar.news
Stop using Brave Browser
Seriously.
15341
LUL @l-u-l.bsky.social · 18/05/2026
Intel Arc B70 pro 32GB qui idle à 7W d'après nvtop avec qwen en memoire. Pas mal je trouve. (Cc @alexiagossa.bsky.social )
000
LUL @l-u-l.bsky.social · 15/05/2026
Si vous avez un wordpress avec le plugin SEO yoast et nginx. Il faut patcher en urgence
000
LUL @l-u-l.bsky.social · 14/05/2026
La faille nginx RCE qui tombe à pic depthfirst.com/research/ngi...
depthfirst.com
NGINX Rift: Achieving NGINX Remote Code Execution via an 18-Year-Old Vulnerability | depthfirst
We used the depthfirst system to analyze the NGINX source code, and it autonomously discovered 4 remote memory corruption issues, including a critical heap buffer overflow introduced in 2008. We furth...
100
LUL @l-u-l.bsky.social · 09/05/2026
LUKSbox Encrypted vaults that survive the next decade. github.com/PentHertz/LU...
github.com
GitHub - PentHertz/LUKSbox: Store sensitive files in the cloud, or on shared media without trusting the host. LUKSbox is a Rust-based encrypted-container tool with passphrase, FIDO2 (YubiKey, Titan, N...
Store sensitive files in the cloud, or on shared media without trusting the host. LUKSbox is a Rust-based encrypted-container tool with passphrase, FIDO2 (YubiKey, Titan, Nitrokey, Windows Hello), ...
010
LUL @l-u-l.bsky.social · 28/04/2026
Minio est maintenant marqué comme vulnérable sur #NixOS. github.com/NixOS/nixpkg...
github.com
minio: mark package as insecure by britter · Pull Request #491337 · NixOS/nixpkgs
Context: #490996 Things done Built on platform: x86_64-linux aarch64-linux x86_64-darwin aarch64-darwin Tested, as applicable: NixOS tests in nixos/tests. Package tests at passthru.tes...
020
LUL @l-u-l.bsky.social · 26/04/2026
Un feed bluesky pour les #lutinos (cc @imil.net ) bsky.app/profile/did:...
021
LUL @l-u-l.bsky.social · 03/04/2026
@surf.social Is there a way to get a feed as atom or rss ? If not, is it planned ?
100
LUL @l-u-l.bsky.social · 13/03/2026
Si vous utilisez ghostty. Il faut upgrade car CVE github.com/ghostty-org/...
github.com
Arbitrary command execution via control characters in paste and drag-and-drop operations
### Impact Ghostty allows control characters such as `0x03` (Ctrl+C) in pasted and dropped text. These can be used to execute arbitrary commands in some shell environments. In testing, only B...
000
LUL @l-u-l.bsky.social · 11/03/2026
Petit docu de 20 min sur Telegram ce repère de brigands 🙈https://www.arte.tv/fr/videos/126181-005-A/sources/
arte.tv
Sources - Telegram, le royaume des cybercriminels - Regarder le documentaire complet | ARTE
Aussitôt volées, aussitôt revendues. Cartes d’identité, données personnelles, informations bancaires... On trouve tout sur Telegram. Enquête sur un hypermarché de l’escroquerie en plein essor.
000
Reposted by LUL
GrapheneOS @grapheneos.org · 02/03/2026
We're happy to announce a long-term partnership with Motorola. We're collaborating on future devices meeting our privacy and security standards with official GrapheneOS support. motorolanews.com/motorola-thr...
motorolanews.com
Motorola News | Motorola's new partnership with GrapheneOS
Motorola announces three new B2B solutions at MWC 2026, including GrapheneOS partnership, Moto Analytics and more.
701037240
Reposted by LUL
The Matrix.org Foundation @matrix.org · 18/02/2026
Our analysis of reported issues in vodozemac: matrix.org/blog/2026/02...
matrix.org
Analysis of reported issues in vodozemac
Matrix, the open protocol for secure decentralised communications
0259
Reposted by LUL
Nextcloud @nextcloud.bsky.social · 18/02/2026
By popular demand! 🔥 We've set up a PeerTube channel where you can watch the global release of Nextcloud Hub 26 Winter. 📅 18 Feb, 2 PM (CET) 📍 Online global premiere peertube.nextcloud.com/c/nextcloud/...
peertube.nextcloud.com
Nextcloud
Nextcloud Hub is the industry-leading, fully open source, on-premises content collaboration platform. Teams access, share, and edit their documents, chat and participate in video calls, and manage ...
185
Reposted by LUL
DistroWatch @distrowatch.mastodon.social.ap.brid.gy · 17/02/2026
Gentoo is migrating its source code repository to Codeberg: distrowatch.com/dwres.php?resource=…
distrowatch.com
DistroWatch.com: Put the fun back into computing. Use Linux, BSD.
News and feature lists of Linux and BSD distributions.
035
Reposted by LUL
The Matrix.org Foundation @matrix.org · 12/02/2026
We're delighted to welcome the massive influx of users looking for decentralised alternatives to Discord! Here's what to expect, and some clarity on the growing challenges posed by age verification. matrix.org/blog/2026/02...
matrix.org
Welcoming Discord users amidst the challenge of Age Verification
Matrix, the open protocol for secure decentralised communications
15428
Reposted by LUL
The Matrix.org Foundation @matrix.org · 09/02/2026
Hm, did something happen over at Discord?
in which the account registration rate on the matrix.org homeserver hockeysticks over the last few hours.
316357
Reposted by LUL
Geoffrey Dorne @geoffreydorne.bsky.social · 02/02/2026
J’ai grandi dans les années 90, au milieu des keygens pixelisés en ASCII et sons chiptunes. J’ai voulu partager cette histoire, cette âme du numérique qui résonne encore. Y2KEYGEN est un livre atlas graphique où le code et le hack sont élevés au rang d’œuvre d’art → shop.hckr.fr/product/y2ke...
3116
LUL @l-u-l.bsky.social · 01/02/2026
Nice talk at #FOSDEM on building a TODO app on top of forgejo. And btw stop using Microsoft Github fosdem.org/2026/schedul...
041
LUL @l-u-l.bsky.social · 15/01/2026
Pas mal ce petit projet qui se place entre Kafka et Redis Streams : Ayder – HTTP-native durable event log written in C (curl as client) github.com/A1darbek/ayder
github.com
GitHub - A1darbek/ayder
Contribute to A1darbek/ayder development by creating an account on GitHub.
011
LUL @l-u-l.bsky.social · 07/01/2026
Sandboxes for AI : www.luiscardoso.dev/blog/sandbox... #microvm (cc @imil.net )
luiscardoso.dev
031
Reposted by LUL
Geoffrey Dorne @geoffreydorne.bsky.social · 01/01/2026
🔻 Car tant qu’il restera des bugs, il restera un peu d’espoir. → IA↯NARCHIE : shop.hckr.fr/product/iana...
054
LUL @l-u-l.bsky.social · 28/12/2025
Piknik : un système de presse-papier client/serveur sécurisé pour faire du copier-coller entre machine / vm : github.com/jedisct1/pik...
111
Reposted by LUL
Symfony @symfony.com · 24/12/2025
🌟 Symfony AI v0.1.0 - First Tagged Release ➡️ symfony.com/blog/symfony-ai-v0-1-0-…
0114
LUL @l-u-l.bsky.social · 02/12/2025
Migration du homelab et laptop framework vers NixOS 25.11 C'est presque ennuyant, tout fonctionne nickel 🙊
020
Reposted by LUL
briancmoses @briancmoses.com · 27/11/2025
The #DIY #NAS: 2026 Edition is here in spite of rising prices! N355 CPU, 32GB DDR5 RAM, 1x10GbE, 2x2.5GbE, 6x3.5" bays, 2x2.5" bays (populated with 128GB SSDs), 2x 1TB NVMe SSDs, TrueNAS 25.10, and more! Check it out at: blog.briancmoses.com/2025/11/diy-...
blog.briancmoses.com
DIY NAS: 2026 Edition
An 8-bay DIY NAS with 10GbE networking, TrueNAS 25.10.0.1, an Intel N355 CPU, 32GB of DDR5 RAM, and a smallish form factor that occupies less than 20 liters of your office space.
022
Reposted by LUL
GrapheneOS @grapheneos.org · 19/11/2025
We were contacted by a journalist at Le Parisien newspaper with this prompt: > I am preparing an article on the use of your secure personal data phone solution by drug traffickers and other criminals. Have you ever been contacted by the police?
1019084
Reposted by LUL
Bodil @bodil.lol · 14/11/2025
Regardless of the size of the tent, after thirty years of having to outright boot into flipping MS-DOS to flash a BIOS, fully automated BIOS updates via fwupd will never stop feeling like a miracle, and I really, really don't want to ever go back to the bad old days.
Photo of a Framework laptop BIOS flashing in progress.
011
LUL @l-u-l.bsky.social · 02/11/2025
Une app Android pour faire des sauvegardes avec Restic : codeberg.org/dawdyd/resti...
codeberg.org
resticopia
A mobile Android application that enables efficient and straightforward data backups powered by Restic backup software
020
Reposted by LUL
Dagu @dagu-sh.bsky.social · 21/10/2025
🚀 New release v1.23.0 is here! Run GitHub Actions locally, use Secrets 🔐, validate params with JSON Schema 🧾, enjoy improved Windows support 🪟 and a refreshed Web UI 💻 + tons of fixes 🐛 Huge thanks to all amazing contributors 🙏 👉 github.com/dagu-org/dag...
github.com
Release v1.23.0 · dagu-org/dagu
This release introduces several enhancements, including a GitHub Actions executor (which allows you to run GitHub Actions in your DAG locally!), JSON Schema validation for parameters, secrets suppo...
012
Reposted by LUL
Léαlinux 🐧 @lea-linux.org · 17/10/2025
undercodetesting.com/the-bpce-bre... Magnifique...
undercodetesting.com
The BPCE Breach: How A Single JavaScript Infection Can Steal Your Banking Session - Undercode Testing
The BPCE Breach: How a Single JavaScript Infection Can Steal Your Banking Session - "Undercode Testing": Monitor hackers like a pro. Get real-time updates,
52016
Reposted by LUL
aeris @aeris.eu.org · 17/10/2025
Je suis exténué de devoir me battre contre notre Ronflex national de CNIL, et je suis bien seul avec 2-3 autres à tenter de faire bouger les choses. Venez nous soutenir. On a besoin de vous.
1104
LUL @l-u-l.bsky.social · 03/10/2025
Incroyable ce truc pour se faire son propre desktop Linux : quickshell.org
quickshell.org
Quickshell
A fully user customizable desktop shell
020
Reposted by LUL
Léαlinux 🐧 @lea-linux.org · 01/10/2025
exodus-privacy.eu.org/fr/post/sant...
exodus-privacy.eu.org
Santé de l'association et pourquoi nous rejoindre · Exodus Privacy
022
Reposted by LUL
Benjamin Sonntag @benjamin.sonntag.fr · 20/09/2025
Si vous avez enfin compris que sur le temps long, bluesky ne sera ni décentralisé (je parle en terme de gouvernance !) ni un lieu de discussion fiable (le capitalisme ne l'a pas encore emmerdifié, mais ça ne tardera probablement pas ...) un rappel que piaille.fr est toujours ouvert !
piaille.fr
Piaille
Piaille.fr est un serveur mastodon public francophone accessible à toutes et à tous. Joignable via Tor ici : piaillesmbiv4wjdy7no6r4eijsv6mlsp3cxrpy37dhmose2jwyqdrid.onion
33018
Reposted by LUL
BleepingComputer @bleepingcomputer.com · 11/09/2025
A new Spectre-like attack dubbed VMScape allows a malicious virtual machine (VM) to leak cryptographic keys from an unmodified QEMU hypervisor process running on modern AMD or Intel CPUs.
bleepingcomputer.com
New VMScape attack breaks guest-host isolation on AMD, Intel CPUs
A new Spectre-like attack dubbed VMScape allows a malicious virtual machine (VM) to leak cryptographic keys from an unmodified QEMU hypervisor process running on modern AMD or Intel CPUs.
1106
LUL @l-u-l.bsky.social · 10/09/2025
chromium 140.0.7339.80 on #debian tries to access sensitive folders : ~/.ssh/ ~/.gnupg/ ~/.dbus/ /boot/ bugs.debian.org/cgi-bin/bugr... #security
bugs.debian.org
#1108642 - chromium: potentially serious security bug - Debian Bug report logs
012