Hirom

Bitwarden Statement on Checkmarx Supply Chain Incident

1mon 22d ago in blueteamsec@infosec.pub from community.bitwarden.com

The write up is disingenuous, or confusing at best. It highight early on "no evidence that end user vault data was accessed or at risk".

Then further down recommends to "Rotate any secrets that may have been exposed..." and "Review GitHub activity, CI workflows, and related credentials for unauthorized access or changes".

How could they even find evidence of end user data and vault being accessed? The CLI compromises affects end user systems, which they have no visibility into.

The worst is saying there's no evidence of risk, while making recommendations based on the assumption all data and secrets on affected systems may be compromised. That's a good assumption because there's definitely a risk.

Europe is running out of steam

1mon 23d ago in europe@feddit.org from www.euractiv.com

Blowing so much money on fossil fuel subsidies left the EU vulnerable to an oil crisis, greatly limit the budget available to invest in renewables or to react to such crisis.

Are you aware of the Piefed API? It's provided specifically to allow building front-ends and bots while avoiding scrapping.

Guess the director

2mon 1d ago in greentext@lemmy.ml from lemmy.ml

on Jan. 21 the EU began banning fuel made from Russia crude

Better late than never.

OOP at home:

4mon 7d ago in programmer_humor@programming.dev from feddit.nu

Separating data structure from implementation has benefits.

In languages with classic OOP classes and objects, it's often necessary to write wrappers or adapters to allow new operations on existing objects. This adds overhead and require more code.

G7 ‘falling behind’ China as world’s wind and solar plans reach new high in 2025

4mon 8d ago in climate@slrpnk.net from www.carbonbrief.org

That population figures surprises me. But Wolfram Alpha says it's roughly correct, ie 44% https://www.wolframalpha.com/input?i=population+of+USA+vs+population+of+G7+countries

More banks and businesses should support Taler.

If Visa/Mastercard get replaced by another company's centralized payment system, what prevent a large foreign corp from buying it, like they regularily do? Then we're back to square one.

Whoops: ‘AI’ Toy Company Leaks Chat Logs, Personal Data Of 50,000 Toddlers

4mon 8d ago in privacy@lemmy.dbzer0.com from www.techdirt.com

Bad ideas all the way down

Discord will require a face scan or ID for full access next month

4mon 8d ago in privacy@lemmy.ml from www.theverge.com

XMPP, Conversations is a Nice Android client.

Comment s’inscrire sur les listes électorales ?

4mon 15d ago in france@jlai.lu from www.info.gouv.fr