shakedown.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A community for live music fans with roots in the jam scene. Shakedown Social is run by a team of volunteers (led by @clifff and @sethadam1) and funded by donations.

Administered by:

Server stats:

271
active users

#nerdtalk

1 post1 participant0 posts today
Jan Wildeboer 😷:krulorange:<p>Le sigh. There must be a simpler way, but I cannot find it. Trying to get the SHA256 fingerprint of a x509 certificate as one long string without colons or something works with:</p><p> `openssl x509 -in roots.pem -noout -fingerprint -sha256 | sed 's/://g' | sed 's/^.*=//' | awk '{print tolower($0)}'`</p><p>UPDATE: This is what I now have in my .bashrc :)</p><p>function certfp(){ openssl x509 -in "$1" -outform DER | sha256sum | cut -d' ' -f1 ; }</p><p><a href="https://social.wildeboer.net/tags/nerdtalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nerdtalk</span></a></p>
Jan Wildeboer 😷:krulorange:<p><a href="https://social.wildeboer.net/tags/NerdTalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NerdTalk</span></a> Wow. A multi-step, sophisticated way of spoofing emails that pass SPF, DKIM, DMARC. Hardcore.</p><p>"And most importantly, the key trick is that you can put anything you want in the App Name field in Google"</p><p>Le sigh. That's where they put the email text. In the App Name field. Google can fix this by sanitising input better. </p><p><a href="https://easydmarc.com/blog/google-spoofed-via-dkim-replay-attack-a-technical-breakdown/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">easydmarc.com/blog/google-spoo</span><span class="invisible">fed-via-dkim-replay-attack-a-technical-breakdown/</span></a></p><p><a href="https://social.wildeboer.net/tags/Spam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Spam</span></a> <a href="https://social.wildeboer.net/tags/Phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Phishing</span></a> <a href="https://social.wildeboer.net/tags/MailAdmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MailAdmin</span></a></p>
Jan Wildeboer 😷:krulorange:<p>People that want the newest and shiniest dev tools, even if merely beta, that will often end up being unmaintained after a few years, demand that the switch from X to Wayland (which was first released 2008) should not be rushed because it’s not ready for prime-time, in their opinion.</p><p><a href="https://social.wildeboer.net/tags/SarcasmButOnlyHalf" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SarcasmButOnlyHalf</span></a> <a href="https://social.wildeboer.net/tags/Linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Linux</span></a> <a href="https://social.wildeboer.net/tags/NerdTalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NerdTalk</span></a></p>
Jan Wildeboer 😷:krulorange:<p>My current conspiracy theory: Now that <a href="https://social.wildeboer.net/tags/letsencrypt" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>letsencrypt</span></a> has more or less destroyed the market for domain certificates and people are more interested in using client/user certificate, Google throws the market a lifeline by removing clientAuth from acceptable certificates in the browser context with some vague "it's about security" arm waving. <a href="https://social.wildeboer.net/tags/NerdTalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NerdTalk</span></a></p><p>1/4</p>
Shawn King<p><span class="h-card"><a href="https://mastodon.social/@gedeonm" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>gedeonm</span></a></span> Hey! We read your <a href="https://mastodon.social/tags/Nerdtalk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nerdtalk</span></a>. Let us have the <a href="https://mastodon.social/tags/Sportsball" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sportsball</span></a> talk! :)</p>